This Metasploit module abuses a known default password in IBM Data Risk Manager. The a3user has the default password idrm and allows an attacker to log in to the virtual…
IBM Data Risk Manager (IDRM) contains three vulnerabilities that can be chained by an unauthenticated attacker to achieve remote code execution as root. The first is an unauthenticated bypass, followed…
http://www.laoluang101.go.th/datafile/JT.html notified by Mr.GonzX
GitLab 12.9.0 – Arbitrary File Read
webTareas 2.0.p8 – Arbitrary File Deletion
Online Clothing Store 1.0 – ‘username’ SQL Injection
Booked Scheduler 2.7.7 – Authenticated Directory Traversal
i-doit Open Source CMDB 1.14.1 – Arbitrary File Deletion
YesWiki cercopitheque 2020.04.18.1 – ‘id’ SQL Injection
Online Clothing Store 1.0 – Persistent Cross-Site Scripting