Hospital Management System created by kishan0725 suffers from a persistent cross site scripting vulnerability.
>> CATEGORY: exploit
COVID-19 Testing Management System version 1.0 suffers from multiple remote SQL injection vulnerabilities. This is a variant of the original discovery of SQL injection in this version as discovered by…
Crime Records Management System version 1.0 suffers from a remote SQL injection vulnerability.
Simple Image Gallery version 1.0 suffers from an unauthenticated remote shell upload vulnerability.
Crossfire Server version 1.0 SetUp() remote buffer overflow exploit.
Simple Image Gallery version 1.0 suffers from an unauthenticated remote shell upload vulnerability.
Cyberoam NetGenie with a firmware version of C0101B1-20141120-NG11VO suffers from a cross site scripting vulnerability.
SonicWall NetExtender version 10.2.0.300 suffers from an unquoted service path vulnerability.
GeoVision Geowebserver versions 5.3.3 and below suffer from code execution, cross site request forgery, cross site scripting, html injection, and local file inclusion vulnerabilities.
This Metasploit module exploits an arbitrary file write in Lucee Administrator’s imgProcess.cfm file to execute commands as the Tomcat user.