Rocket.Chat 3.12.1 unauthenticated NoSQL injection to remote code execution exploit.
WordPress Plainview Activity Monitor plugin version 20161228 authenticated remote code execution exploit.
Okta Access Gateway version 2020.5.5 suffers from multiple authenticated remote root command injection vulnerabilities.
WordPress Plugin SP Project & Document Manager 4.21 – Remote Code Execution (RCE) (Authenticated)
Wyomind Help Desk 1.3.6 – Remote Code Execution (RCE)
Employee Record Management System 1.2 – Stored Cross-Site Scripting (XSS)
Online Covid Vaccination Scheduler System 1.0 – Arbitrary File Upload to Remote Code Execution (Unauthenticated)
Exam Hall Management System 1.0 – Unrestricted File Upload + RCE (Unauthenticated)
Visual Tools DVR VX16 version 4.2.28 suffers from a local privilege escalation vulnerability.
Netgear DGN2200v1 unauthenticated remote command execution exploit.