Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2016-06-08   Apache Continuum 1.4.2 Command Injection / Cross Site Scripting 70 WEB David Shanahan
2016-06-07   WordPress Uncode Theme 1.3.1 - Arbitrary File Upload 156 WEB wp0Day.com
2016-06-07   WordPress Newspaper Theme 6.7.1 - Privilege Escalation 168 WEB wp0Day.com
2016-06-07   WordPress WP PRO Advertising System Plugin 4.6.18 - SQL Injection 199 WEB wp0Day.com
2016-06-07   WordPress Creative Multi-Purpose Theme 9.1.3 - Stored XSS 216 WEB wp0Day.com
2016-06-01   FlatPress 1.0.3 - CSRF Arbitrary File Upload 268 WEB LiquidWorm
2016-05-30   WordPress Ninja Forms Unauthenticated File Upload 127 WEB Rob Carr
2016-05-30   Linknat VOS3000/VOS2009 SQL Injection Exploit 253 WEB Osama Khalid
2016-05-24   Job Script by Scubez - Remote Code Execution 101 WEB Bikramaditya Guha
2016-05-19   Magento < 2.0.6 - Unauthenticated Arbitrary Unserialize -> Arbitrary Write File 174 WEB agix
2016-05-17   TP-Link SC2020n Authenticated Telnet Injection 99 WEB Nicholas Starke
2016-05-17   Meteocontrol WEB’log - Admin Password Disclosure 90 WEB Karn Ganeshen
2016-05-17   eXtplorer 2.1.9 - Archive Path Traversal 165 WEB hyp3rlinx
2016-05-17   Web interface for DNSmasq / Mikrotik - SQL Injection 261 WEB hyp3rlinx
2016-05-06   ImageMagick < 6.9.3-9 - Multiple Vulnerabilities 231 WEB Nikolay Ermishkin
2016-05-05   PHP Imagick 3.3.0 - disable_functions Bypass 567 WEB RicterZ
2016-04-28   Multiple Vendors (RomPager <= 4.34) - Misfortune Cookie Router Authentication Bypass 115 WEB Milad Doorbash
2016-04-26   Gemtek CPE7000 - WLTCS-106 sysconf.cgi Unauthenticated Remote Command Execution (MSF) 89 WEB Federico Scalco
2016-04-26   Gemtek CPE7000 - WLTCS-106 Administrator SID Retriever (MSF) 135 WEB Federico Scalco
2016-04-22   Gemtek CPE7000 / WLTCS-106 - Multiple Vulnerabilities 228 WEB Federico Ramondino
2016-04-22   Symantec Brightmail 10.6.0-7- LDAP Credentials Disclosure 111 WEB Fakhir Karim Reda
2016-04-21   PHPBack 1.3.0 - SQL Injection 219 WEB hyp3rlinx
2016-04-15   Oracle Application Testing Suite 12.4.0.2.0 - Authentication Bypass and Arbitrary File Upload Exploi 191 WEB Zhou Yu
2016-04-06   WordPress Advanced Video Plugin 1.0 - Local File Inclusion Exploit 207 WEB evait security GmbH
2016-03-18   Zenphoto 1.4.11 - Remote File Inclusion Vulnerability 121 WEB curesec