vBulletin 5.6.1 – ‘nodeId’ SQL Injection
>> TAG: #remote exploit
vBulletin 5.6.1 – ‘nodeId’ SQL Injection
Complaint Management System 1.0 – ‘username’ SQL Injection
Netlink XPON 1GE WiFi V2801RGW – Remote Command Execution
Dameware Remote Support 12.1.1.273 – Buffer Overflow (SEH)
E-Commerce System 1.0 – Unauthenticated Remote Code Execution
Remote Desktop Audit 2.3.0.157 – Buffer Overflow (SEH)
Orchard Core RC1 – Persistent Cross-Site Scripting
qdPM 9.1 – Arbitrary File Upload
ChopSlider3 WordPress Plugin3.4 – ‘id’ SQL Injection
CuteNews 2.1.2 – Authenticated Arbitrary File Upload