Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2014-06-10   Xornic Contact Us Form CAPTCHA Bypass / XSS 89 WEB Scott Arciszewski
2014-06-09   Madness Pro <= 1.14 - SQL Injection 65 WEB bwall
2014-06-09   Madness Pro <= 1.14 - Persistent XSS 84 WEB bwall
2014-05-22   SPIP - CMS < 3.0.9 / 2.1.22 / 2.0.23 - Privilege Escalation 76 WEB Gregory DRAPERI
2014-05-20   UPS Web/SNMP-Manager CS121 Login Bypass 74 WEB jkmac
2014-05-20   SafeNet Sentinel Protection Server 7.0 - 7.4 and Sentinel Keys Server 1.0.3 - 1.0.4 Directory Traver 64 WEB Matt Schmidt
2014-05-20   HP Release Control Authenticated XXE 86 WEB Brandon Perry
2014-05-16   ElasticSearch Remote Code Execution 68 WEB Jeff Geiger
2014-05-14   WordPress Formidable Forms Remote Code Execution 82 WEB Manish Tanwar
2014-05-14   AlienVault OSSIM 4.6.1 - Authenticated SQL Injection 100 WEB Chris Hebert
2014-05-09   F5 iControl Remote Command Execution Vulnerability 65 WEB Brandon Perry
2014-05-04   HP Laser Jet - JavaScript Persistent XSS via PJL Directory Traversal 71 WEB @0x00string
2014-04-25   Bonefire v.0.7.1 - Reinstall Admin Account Exploit 56 WEB Mehmet Ince
2014-04-23   No-CMS 0.6.6 rev 1 - Admin Account Hijacking / RCE Exploit via Static Encryption Key 172 WEB Mehmet Ince
2014-04-23   Sixnet Sixview 2.4.1 - Web Console Directory Traversal 56 WEB daniel svartman
2014-04-22   Comtrend CT 5361T Cross Site Request Forgery / Cross Site Scripting 80 WEB TUNISIAN CYBER
2014-04-22   ATSEngine credential disclosure vulnerability 48 WEB Xylitol
2014-04-21   CU3ER 1.24 Cross Site Scripting / Content Spoofing 66 WEB MustLive
2014-04-16   NETGEAR N600 WIRELESS DUAL BAND WNDR3400 - Multiple Vulnerabilities 72 WEB Santhosh Kumar
2014-04-15   Madss Software Solution SQL Injection 116 WEB Ashiyane Digital Security Team
2014-04-14   Plex Media Server 0.9.9.10 CSRF / Disclosure 168 WEB S. Viehbock
2014-04-14   eScan Web Management Console Command Injection 58 WEB juan vazquez
2014-04-10   Sophos Web Protection Appliance Command Execution 55 WEB Brandon Perry
2014-04-10   RunCMS 1.6.1 - 'pm.class.php' Multiple SQL Injection Vulnerabilities 109 WEB The:Paradox
2014-04-09   Vtiger Install Unauthenticated Remote Command Execution 36 WEB Jonathan Borgeaud