KeystoneJS 4.0.0-beta.5 Unauthenticated Stored Cross Site Scripting
KeystoneJS version 4.0.0-beta.5 suffers from an unauthenticated stored cross site scripting vulnerability.MD5 | b25bac8103481cb0935773ae248e5749Download# Exploit Title: KeystoneJS 4.0.0-beta.5...
View ArticleFortinet FortiOS CVE-2017-7733 Cross Site Scripting Vulnerability
Fortinet FortiOS is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary script code in the...
View ArticleKeystoneJS 4.0.0-beta.5 - CSV Excel Macro Injection
EDB-ID: 43053Author: Ishaq MohammedPublished: 2017-10-25CVE: CVE-2017-15879 Type: WebappsPlatform: NodeJSVulnerable App: N/A # Vendor Homepage: http://keystonejs.com/ # Exploit Author: Ishaq Mohammed #...
View ArticleKeystoneJS 4.0.0-beta.5 - Cross-Site Scripting
EDB-ID: 43054Author: Ishaq MohammedPublished: 2017-10-25CVE: CVE-2017-15878 Type: WebappsPlatform: NodeJSVulnerable App: N/A # Vendor Homepage: http://keystonejs.com/ # Exploit Author: Ishaq Mohammed #...
View ArticleNetgear DGN1000 1.1.00.48 - Setup.cgi Unauthenticated Remote Code Execution...
EDB-ID: 43055Author: MetasploitPublished: 2017-10-25CVE: N/A Type: RemotePlatform: HardwareAliases: N/AAdvisory/Source: LinkTags: Metasploit FrameworkVulnerable App: N/A # This module requires...
View ArticleRedis CVE-2016-10517 Cross Site Scripting Vulnerability
Redis is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied text. An attacker may leverage this issue to execute arbitrary script code in the browser of...
View ArticleFS Realtor Clone SQL Injection
FS Realtor Clone suffers from a remote SQL injection vulnerability.MD5 | 2a946b5f681b8bd5273606f8d983368bDownload# Exploit Title: FS Realtor Clone - 'id' SQL Injection# Date: 2017-10-24# Exploit...
View ArticleFS Crowdfunding Script SQL Injection
FS Crowdfunding Script suffers from a remote SQL injection vulnerability.MD5 | 26d9f95285eea3c7e08796d13bf38b0fDownload# Exploit Title: FS Crowdfunding Script - 'id' SQL Injection# Date: 2017-10-24#...
View ArticleFS Care Clone SQL Injection
FS Care Clone suffers from a remote SQL injection vulnerability.MD5 | 3281a4f2f0df534d804f36b3ea6b904fDownload# Exploit Title: FS Care Clone - 'sitterService' SQL Injection# Date: 2017-10-24# Exploit...
View ArticleFS Monster Clone SQL Injection
FS Monster Clone suffers from a remote SQL injection vulnerability.MD5 | 205ec95cf63927ae912b80b63c975fd7Download# Exploit Title: FS Monster Clone - 'id' SQL Injection# Date: 2017-10-24# Exploit...
View ArticleFS Trademe Clone SQL Injection
FS Trademe Clone suffers from a remote SQL injection vulnerability.MD5 | 54ea77b77d0952c0f60760443b89b1c7Download# Exploit Title: FS Trademe Clone - 'id' SQL Injection# Date: 2017-10-24# Exploit...
View ArticleFS Thumbtack Clone SQL Injection
FS Thumbtack Clone suffers from a remote SQL injection vulnerability.MD5 | 58e820cb9131804c0d6f9c1b94b2c144Download# Exploit Title: FS Thumbtack Clone - 'ser' SQL Injection# Date: 2017-10-24# Exploit...
View ArticleFS Shutter Stock Clone SQL Injection
FS Shutter Stock Clone suffers from a remote SQL injection vulnerability.MD5 | 0a29af0c7176a61783bbafa2fd9ec4bcDownload# Exploit Title: FS Shutter Stock Clone - 'keywords' SQL Injection# Date:...
View ArticleMura CMS Server-Side Request Forgery / XXE Injection
Mura CMS versions prior to 6.2 suffer from server-side request forgery and XML external entity injection vulnerabilities.MD5 | 082f770ed9b178ced262ba51f73e3f10Download# Exploit Title: Mura CMS before...
View ArticleTOR Virtual Network Tunneling Tool 0.3.1.8
Tor is a network of virtual tunnels that allows people and groups to improve their privacy and security on the Internet. It also enables software developers to create new communication tools with...
View ArticlePHPMailer 5.2.21 Local File Disclosure
PHPMailer versions 5.2.21 and below suffer from a file disclosure vulnerability.MD5 | a21bf718aa3bbe772180a151ff098db0Download# Exploit Title: PHPMailer <= 5.2.21 - Local File Disclosure...
View ArticleDrupal Brilliant Gallery Module Multiple Security Vulnerabilities
Brilliant Gallery Module of Drupal is prone to the following multiple security vulnerabilities: 1. An SQL-injection vulnerability 2. A cross-site request forgery vulnerability 3. A cross-site...
View ArticlePHPMailer
EDB-ID: 43056Author: Maciek KrupaPublished: 2017-10-25CVE: CVE-2017-5223 Type: LocalPlatform: PHPVulnerable App: N/A # Date: 2017-10-25 # Exploit Author: Maciek Krupa # All credit only to Yongxiang Li...
View ArticleDrupal Mosaik Module Cross Site Scripting Vulnerability
The Mosaik module for Drupal is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied text. An attacker may leverage this issue to execute arbitrary script...
View ArticleHitmanPro 3.7.15 Build 281 - Kernel Pool Overflow
EDB-ID: 43057Author: cbayetPublished: 2017-10-26CVE: CVE-2017-6008 Type: LocalPlatform: WindowsAliases: N/ATags: N/AVulnerable App: N/A The CVE-2017-6008 is a vulnerability in the HitmanPro scan that...
View Article