webapps

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2021-05-21 WordPress Plugin WP Statistics 13.0.7 – Time-Based Blind SQL Injection (Unauthenticated)
  • webapps
  • Mansoor R
    2021-05-19 COVID19 Testing Management System 1.0 – ‘Admin name’ Cross-Site Scripting (XSS)
  • webapps
  • Rohit Burke
    2021-05-19 COVID19 Testing Management System 1.0 – SQL Injection (Auth Bypass)
  • webapps
  • Rohit Burke
    2021-05-19 ManageEngine ADSelfService Plus 6.1 – CSV Injection
  • webapps
  • Metin Yunus Kandemir
    2021-05-19 In4Suit ERP 3.2.74.1370 – ‘txtLoginId’ SQL injection
  • webapps
  • Gulab Mondal
    2021-05-19 WordPress Plugin Stop Spammers 2021.8 – ‘log’ Reflected Cross-site Scripting (XSS)
  • webapps
  • Hosein Vita
    2021-05-18 Microsoft Exchange 2019 – Unauthenticated Email Download
  • webapps
  • Gonzalo Villegas
    2021-05-18 EgavilanMedia PHPCRUD 1.0 – ‘First Name’ SQL Injection
  • webapps
  • Dimitrios Mitakos
    2021-05-17 Advanced Guestbook 2.4.4 – ‘Smilies’ Persistent Cross-Site Scripting (XSS)
  • webapps
  • Abdulkadir AYDOGAN
    2021-05-17 Billing Management System 2.0 – Union based SQL injection (Authenticated)
  • webapps
  • Mohammad Koochaki
    2021-05-17 Simple Chatbot Application 1.0 – ‘Category’ Stored Cross site Scripting
  • webapps
  • Vani K G
    2021-05-17 Dental Clinic Appointment Reservation System 1.0 – Cross Site Request Forgery (Add Admin)
  • webapps
  • Reza Afsahi
    2021-05-17 Dental Clinic Appointment Reservation System 1.0 – ‘Firstname’ Persistent Cross Site Scripting (Authenticated)
  • webapps
  • Reza Afsahi
    2021-05-17 IPFire 2.25 – Remote Code Execution (Authenticated)
  • webapps
  • Mücahit Saratar
    2021-05-17 Customer Relationship Management (CRM) System 1.0 – ‘Category’ Persistent Cross site Scripting
  • webapps
  • Vani K G
    2021-05-17 Printable Staff ID Card Creator System 1.0 – ’email’ SQL Injection
  • webapps
  • bwnz
    2021-05-17 Subrion CMS 4.2.1 – Arbitrary File Upload
  • webapps
  • Fellipe Oliveira
    2021-05-14 Chamilo LMS 1.11.14 – Remote Code Execution (Authenticated)
  • webapps
  • M. Cory Billington
    2021-05-14 Podcast Generator 3.1 – ‘Long Description’ Persistent Cross-Site Scripting (XSS)
  • webapps
  • Ayşenur KARAASLAN
    2021-05-14 Student Management System 1.0 – ‘message’ Persistent Cross-Site Scripting (Authenticated)
  • webapps
  • mohsen khashei
    2021-05-13 ZeroShell 3.9.0 – Remote Command Execution
  • webapps
  • Fellipe Oliveira
    2021-05-13 Dental Clinic Appointment Reservation System 1.0 – ‘date’ UNION based SQL Injection (Authenticated)
  • webapps
  • Mesut Cetin
    2021-05-13 Dental Clinic Appointment Reservation System 1.0 – Authentication Bypass (SQLi)
  • webapps
  • Mesut Cetin
    2021-05-12 Chevereto 3.17.1 – Cross Site Scripting (Stored)
  • webapps
  • Akıner Kısa