Online Health Care System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
PHPJabbers Appointment Scheduler version 2.3 suffers from a cross site scripting vulnerability.
Trend Micro InterScan Web Security Virtual Appliance (IWSVA) versions below 6.5 SP2 EN Patch 4 Build 1919 suffers from bypass, command execution, cross site request forgery, cross site scripting, and…
Nxlog Community Edition version 2.10.2150 denial of service proof of concept exploit.
Flexmonster Pivot Table and Charts version 2.7.17 suffers from multiple cross site scripting vulnerabilities.
Library Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
This Metasploit module exploits a stack-based buffer overflow in the Solaris PAM library’s username parsing code, as used by the SunSSH daemon when the keyboard-interactive authentication method is specified. Tested…
WordPress Plugin Duplicator 1.3.26 – Unauthenticated Arbitrary File Read (Metasploit)
Alumni Management System 1.0 – “Course Form” Stored XSS
Alumni Management System 1.0 – Unrestricted File Upload To RCE