Online Shopping Alphaware version 1.0 suffers from an unauthorized administrative functionality access vulnerability.
>> CATEGORY: exploit
Victor CMS version 1.0 suffers from a search remote SQL injection vulnerability. Original discovery of SQL injection in this version is attributed to BKpatron.
This Metasploit module escapes from a privileged Docker container and obtains root on the host machine by abusing the Linux cgroup notification on release feature. This exploit should work against…
Car Rental Management System version 1.0 suffers from a persistent cross site scripting vulnerability.
Pi-hole version 4.3.2 authenticated remote code execution exploit.
Car Rental Management System version 1.0 unauthenticated remote code execution exploit.
RTSP for iOS version 1.0 denial of service proof of concept exploit.
Daily Expenses Management System version 1.0 suffers from a remote SQL injection vulnerability.
Mocha Telnet Lite for iOS version 4.2 denial of service proof of concept exploit.
Gantt-Chart for Jira versions 5.5.3 and below misses a privilege check which allows an attacker to read and write the module configuration for other users.