Sony BRAVIA Digital Signage 1.7.8 – Unauthenticated Remote File Inclusion
Sony BRAVIA Digital Signage 1.7.8 – Unauthenticated Remote File Inclusion
mojoPortal forums 2.7.0.0 – ‘Title’ Persistent Cross-Site Scripting
Online Matrimonial Project 1.0 – Authenticated Remote Code Execution
EgavilanMedia Address Book 1.0 Exploit – SQLi Auth Bypass
TypeSetter version 5.1 suffers from a cross site request forgery vulnerability.
SciKit-Learn version 0.23.2 suffers from a denial of service vulnerability.
WordPress EventON Calendar plugin version 3.0.5 suffers from a cross site scripting vulnerability.
eClass LMS version 2.6 suffers from a remote shell upload vulnerability.
This archive contains all of the 185 exploits added to Packet Storm in November, 2020.
Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated)