[webapps] Moodle 3.9 – Remote Code Execution (RCE) (Authenticated)
Posted by deepcore under Security (No Respond)
GFI Mail Archiver 15.1 – Telerik UI Component Arbitrary File Upload (Unauthenticated)
Tags: 0day, remote exploitWordPress Plugin WP Customize Login 1.1 – ‘Change Logo Title’ Stored Cross-Site Scripting (XSS)
Tags: 0day, remote exploitApacheOfBiz 17.12.01 – Remote Command Execution (RCE) via Unsafe Deserialization of XMLRPC arguments
Tags: 0day, remote exploitHotel Management System 1.0 – Cross-Site Scripting (XSS) Arbitrary File Upload Remote Code Execution (RCE)
Tags: 0day, remote exploit