webapps

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2020-12-03 Online Matrimonial Project 1.0 – Authenticated Remote Code Execution
  • webapps
  • Valerio Alessandroni
    2020-12-03 EgavilanMedia Address Book 1.0 Exploit – SQLi Auth Bypass
  • webapps
  • Mayur Parmar
    2020-12-03 Coastercms 5.8.18 – Stored XSS
  • webapps
  • Hardik Solanki
    2020-12-03 User Registration & Login and User Management System 2.1 – Cross Site Request Forgery
  • webapps
  • Dipak Panchal
    2020-12-02 Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated) via Edit Profile
  • webapps
  • Shahrukh Iqbal Mirza
    2020-12-02 Pharmacy Store Management System 1.0 – ‘id’ SQL Injection
  • webapps
  • Aydın Baran Ertemir
    2020-12-02 Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated) via Add Artwork
  • webapps
  • Shahrukh Iqbal Mirza
    2020-12-02 ILIAS Learning Management System 4.3 – SSRF
  • webapps
  • Dot
    2020-12-02 Employee Record Management System 1.1 – Login Bypass SQL Injection
  • webapps
  • Anurag Kumar
    2020-12-02 Expense Management System – ‘description’ Stored Cross Site Scripting
  • webapps
  • Nikhil Kumar
    2020-12-02 WonderCMS 3.1.3 – ‘Menu’ Persistent Cross-Site Scripting
  • webapps
  • Hemant Patidar
    2020-12-02 Local Service Search Engine Management System 1.0 – SQLi Authentication Bypass
  • webapps
  • Aditya Wakhlu
    2020-12-02 Online News Portal System 1.0 – ‘Title’ Stored Cross Site Scripting
  • webapps
  • Parshwa Bhavsar
    2020-12-02 Bakeshop Online Ordering System 1.0 – ‘Owner’ Persistent Cross-site scripting
  • webapps
  • Parshwa Bhavsar
    2020-12-02 WordPress Plugin Wp-FileManager 6.8 – RCE
  • webapps
  • Mansoor R
    2020-12-02 NewsLister – Authenticated Persistent Cross-Site Scripting
  • webapps
  • Emre Aslan
    2020-12-02 Car Rental Management System 1.0 – SQL Injection / Local File include
  • webapps
  • Mosaaed
    2020-12-02 Online Voting System Project in PHP – ‘username’ Persistent Cross-Site Scripting
  • webapps
  • Sagar Banwa
    2020-12-02 Simple College Website 1.0 – ‘page’ Local File Inclusion
  • webapps
  • Mosaaed
    2020-12-02 PRTG Network Monitor 20.4.63.1412 – ‘maps’ Stored XSS
  • webapps
  • Amin Rawah
    2020-12-02 Anuko Time Tracker 1.19.23.5311 – Password Reset leading to Account Takeover
  • webapps
  • Mufaddal Masalawala
    2020-12-02 WonderCMS 3.1.3 – Authenticated Remote Code Execution
  • webapps
  • zetc0de
    2020-12-02 Anuko Time Tracker 1.19.23.5311 – No rate Limit on Password Reset functionality
  • webapps
  • Mufaddal Masalawala
    2020-12-02 WonderCMS 3.1.3 – Authenticated SSRF to Remote Remote Code Execution
  • webapps
  • zetc0de