D-Link DIR601 2.02 Credential Disclosure
D-Link DIR601 version 2.02 suffers from a credential disclosure vulnerability.MD5 | c61414fb5926f355ef5323c1ac400496Download# Exploit title: D-Link DIR601 2.02NA - Credential disclosure# Date:...
View ArticleELO (Elektronischer Leitz-Ordner) 9 / 10 SQL Injection
ELO (Elektronischer Leitz-Ordner) versions 9 and 10 suffer from a remote time-based blind SQL injection vulnerability.MD5 | fda5d95acef9735b638fd20d5bcc1144DownloadTitle:======ELO (Elektronischer...
View ArticleMonstra CMS Authenticated Arbitrary File Upload
Monstra CMS 3.0.4 allows users to upload arbitrary files which leads to remote command execution on the remote server. An attacker may choose to upload a file containing PHP code and run this code by...
View ArticleIBM QRadar SIEM Unauthenticated Remote Code Execution
IBM QRadar SIEM has three vulnerabilities in the Forensics web application that when chained together allow an attacker to achieve unauthenticated remote code execution. The first stage bypasses...
View ArticleInstagram-Clone Script 2.0 - Cross-Site Scripting
EDB-ID: 45003Author: L0RDPublished: 2018-07-11CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Date: 2018-07-10 # Exploit Author: L0RD # Vendor Homepage:...
View ArticleIBM QRadar SIEM - Unauthenticated Remote Code Execution (Metasploit)
EDB-ID: 45005Author: MetasploitPublished: 2018-07-11CVE: CVE-2016-9722... Type: RemotePlatform: UnixAliases: N/AAdvisory/Source: LinkTags: Metasploit Framework (MSF), RemoteVulnerable App: N/A # This...
View ArticleBarracuda ADC 5.x Filter Bypass / Cross Site Scripting
Barracuda ADC versions 5.x suffer from filter bypass and cross site scripting vulnerabilities.MD5 | 4922f65cd11623f8f9e1265483337ccdDownloadDocument Title:===============Barracuda ADC 5.x - Filter...
View ArticleBarracuda ADC 5.x Client-Side Script Insertion
Barracuda ADC versions 5.x suffer from a client-side script insertion vulnerability.MD5 | 69346ee00813123dcfab7c214226b00dDownloadDocument Title:===============Barracuda ADC 5.x - Client Side Cross...
View ArticleInstagram Clone Script 2.0 Cross Site Scripting
Instagram Clone Script version 2.0 suffers from a cross site scripting vulnerability.MD5 | 0c815e52abb806819d20e05d3af573fcDownload# Exploit Title: Instagram-clone Script 2.0 - Cross-Site Scripting#...
View ArticleWAGO e!DISPLAY 7300T XSS / File Upload / Code Execution
WAGO e!DISPLAY 7300T WP 4.3 480x272 PIO1 version FW 01 - 01.01.10(01) suffer from code execution, cross site scripting, weak permission, and remote file upload vulnerabilities.MD5 |...
View ArticleSecutech DSL WR RIS 330 Cross Site Scripting
Secutech DSL WR RIS 330 suffers from bypass and cross site scripting vulnerabilities.MD5 | 17790cf345c66be4d62639d40e195a4fDownloadDocument Title:===============Secutech DSL WR RIS 330 - Filter Bypass...
View ArticleIntel System CU 14.0 / 14.1 Buffer Overflow
Intel System CU versions 14.0 and 14.1 suffer from a buffer overflow vulnerability.MD5 | eb846c95a5557b45f2f5ae448248b0cfDownloadDocument Title:===============Intel System CU - Buffer Overflow (Denial...
View ArticleAT&T Bizcircle Cross Site Scripting
AT&T Bizcircle suffered from a persistent cross site scripting vulnerability.MD5 | 6af7e51a7e3f193603f050d6f1455865DownloadDocument Title:===============AT&T Bizcircle - Persistent Profile...
View ArticleASUS WRT-AC66U 3.x Cross Site Scripting
ASUS WRT-AC66U version 3.x suffers from a cross site scripting vulnerability.MD5 | aba480dfcc85355673312758589656c4DownloadDocument Title:===============ASUS WRT-AC66U 3.x - Cross Site Scripting...
View ArticleDicoogle PACS 2.5.0 - Directory Traversal
EDB-ID: 45007Author: Carlos AvilaPublished: 2018-07-11CVE: N/A Type: WebappsPlatform: LinuxVulnerable App: N/A # Date: 2018-05-25 # Software Link: http://www.dicoogle.com/home # Version: Dicoogle PACS...
View ArticleLinux Kernel < 4.13.9 (Ubuntu 16.04/Fedora 27) - Local Privilege Escalation
EDB-ID: 45010Author: rlarabeePublished: 2018-07-10CVE: CVE-2017-16995 Type: LocalPlatform: LinuxAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Credit @bleidl, this is a slight...
View ArticleMicrosoft Edge Chakra JIT - Out-of-Bounds Reads/Writes
EDB-ID: 45011Author: Google Security ResearchPublished: 2018-07-12CVE: CVE-2018-8145 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: Denial of Service (DoS), Out Of BoundsVulnerable...
View ArticleMicrosoft Edge Chakra JIT - BoundFunction::NewInstance Out-of-Bounds Read
EDB-ID: 45012Author: Google Security ResearchPublished: 2018-07-12CVE: CVE-2018-8139 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: Denial of Service (DoS), Out Of BoundsVulnerable...
View ArticleMicrosoft Edge Chakra JIT - Type Confusion with Hoisted...
EDB-ID: 45013Author: Google Security ResearchPublished: 2018-07-12CVE: CVE-2018-8229 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: Type ConfusionVulnerable App: N/A Here's a PoC: */...
View Article