Grandstream UCM6200 Series CTI Interface – ‘user_password’ SQL Injection
Grandstream UCM6200 Series CTI Interface – ‘user_password’ SQL Injection
FlashFXP 4.2.0 Build 1730 – Denial of Service (PoC)
This Metasploit module can be used to leverage the extension functionality added since Redis 4.0.0 to execute arbitrary code. To transmit the given extension it makes use of the feature…
Multiple DrayTek Products – Pre-authentication Remote Root Code Execution
Joomla! com_fabrik 3.9.11 – Directory Traversal
Odin Secure FTP Expert 7.6.3 – ‘Site Info’ Denial of Service (PoC)
Webexcels Ecommerce CMS version 2.x suffers from cross site scripting and remote SQL injection vulnerabilities.
FreeCommander XE 2020 Build 810a 32-bit suffers from a pathname buffer overflow vulnerability.
rConfig version 3.9.4 searchField unauthenticated remote root code execution exploit.
codeBeamer versions 9.5 and below suffer from multiple persistent cross site scripting vulnerabilities.