Joomla! CW Article Attachments 1.0.6 – ‘id’ SQL Injection
Joomla! CW Article Attachments 1.0.6 – ‘id’ SQL Injection
LG SuperSign EZ CMS 2.5 – Remote Code Execution
MyBB Visual Editor 1.8.18 – Cross-Site Scripting
udisks2 2.8.0 – Denial of Service (PoC)
WordPress FV Flowplayer plugin version 7.2.0.727 suffers from a cross site scripting vulnerability.
Staubli Jacquard Industrial System JC6 suffers from a bash environment variable handling code injection vulnerability.
Antidote versions 9.5.1 and below suffer from an update related code execution vulnerability.
MyBB Visual Editor versions 1.8.18 and below suffer from a cross site scripting vulnerability.
On vulnerable versions of Windows the alpc endpoint method SchRpcSetSecurity implemented by the task scheduler service can be used to write arbitrary DACLs to .job files located in c:windowstasks because…
NICO-FTP version 3.0.1.19 SEH buffer overflow exploit.