T-Soft E-Commerce 4 – ‘UrunAdi’ Stored Cross-Site Scripting (XSS)
T-Soft E-Commerce 4 – ‘UrunAdi’ Stored Cross-Site Scripting (XSS)
Survey Sparrow Enterprise Survey Software 2022 – Stored Cross-Site Scripting (XSS)
This Metasploit module exploits CVE-2022-30525, an unauthenticated remote command injection vulnerability affecting Zyxel firewalls with zero touch provisioning (ZTP) support. By sending a malicious setWanPortSt command containing an mtu field…
Multiple Konica Minolta bizhub MFP printer terminals suffer from a sandbox escape with root access and have clear-text password vulnerabilities.
Multiple Konica Minolta bizhub MFP printer terminals suffer from a sandbox escape with root access and have clear-text password vulnerabilities.
F5 BIG-IP version 16.0.x remote code execution exploit.
Royal Event Management System version 1.0 suffers from a remote SQL injection vulnerability.
REvil ransomware looks for and executes DLLs in its current directory. Therefore, we can hijack a DLL, execute our own code, and control and terminate the malware pre-encryption. The exploit…
TLR-2005KSH suffers from an arbitrary file deletion vulnerability.
College Management System version 1.0 suffers from a remote SQL injection vulnerability.