Codiad version 2.8.4 remote reverse shell upload exploit. Original discovery of code execution in this version is attributed to WangYihang in 2018.
This Metasploit module uses an authentication bypass vulnerability in WordPress Pie Register plugin versions 3.7.1.4 and below to generate a valid cookie. With this cookie, hopefully of the admin, it…
10-Strike Network Inventory Explorer Pro version 9.31 suffers from a buffer overflow vulnerability.
Employee Record Management System version 1.2 suffers from a remote SQL injection vulnerability.
Dynojet Power Core version 2.3.0 suffers from an unquoted service path vulnerability.
This Metasploit module exploits an arbitrary command execution vulnerability in Ericsson Network Location Mobile Positioning Systems. The export feature in various parts of the application is vulnerable. It is a…
This Metasploit module exploits a privilege escalation vulnerability in Ericsson Network Location Mobile Positioning Systems.
i3 International Annexxus Cameras Ax-n version 5.2.0 does not allow creation of more than one administrator account on the system. This also applies for deletion of the administrative account. The…
Eclipse Jetty 11.0.5 – Sensitive File Disclosure
Fuel CMS 1.4.1 – Remote Code Execution (3)