This Metasploit module exploits an input validation error on the log file extension parameter. It does not properly validate upper/lower case characters. Once this occurs, the application log file will…
This Metasploit module exploits an unauthenticated command injection in Cisco HyperFlex HX Data Platform’s /storfs-asup endpoint to execute shell commands as the Tomcat user.
My Notes Safe 5.3 – Denial of Service (PoC)
Macaron Notes great notebook 5.5 – Denial of Service (PoC)
Color Notes 1.4 – Denial of Service (PoC)
Inkpad Notepad & To do list 4.3.61 – Denial of Service (PoC)
Gitlab 13.10.2 – Remote Code Execution (Authenticated)
Monstra CMS 3.0.4 – Remote Code Execution (Authenticated)
Proof of concept exploit for a remote code execution vulnerability in Microsoft’s RDP service.
GetSimple CMS version 3.3.4 suffers from an information disclosure vulnerability.