Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2017-09-18   D-Link DIR8xx Routers - Leak Credentials 32 WEB embedi
2017-09-11   Nimble Professional 1.0 - Cross-Site Request Forgery (Update Admin) 24 WEB Ihsan Sencan
2017-09-11   Topsites Script 1.0 - Cross-Site Request Forgery / PHP Code Injection 22 WEB Ihsan Sencan
2017-08-31   Invoice Manager 3.1 - Cross-Site Request Forgery (Add Admin) 41 WEB Ali BawazeEer
2017-08-24   Automated Logic WebCTRL 6.5 - Unrestricted File Upload / Remote Code Execution 55 WEB LiquidWorm
2017-08-11   DALIM SOFTWARE ES Core 5.0 Build 7184.1 User Enumeration 15 WEB LiquidWorm
2017-08-09   Synology Photo Station 6.7.3-3432 / 6.3-2967 - Remote Code Execution 16 WEB Kacper Szurek
2017-08-02   Advantech SUSIAccess <= 3.0 - 'RecoveryMgmt' File Upload 13 WEB James Fitts
2017-08-02   Advantech SUSIAccess <= 3.0 - Directory Traversal / Information Disclosure (Metasploit) 6 WEB James Fitts
2017-07-31   GitHub Enterprise < 2.8.7 - Remote Code Execution 32 WEB orange
2017-07-27   WebKit JSC - 'JSObject::putInlineSlow and JSValue::putToPrimitive' Universal Cross-Site Scripting 12 WEB Google Security Research
2017-07-25   ManageEngine Desktop Central 10 Build 100087 - Remote Code Execution (Metasploit) 19 WEB Kacper Szurek
2017-07-21   Netscaler SD-WAN 9.1.2.26.561201 - Command Injection (Metasploit) 25 WEB xort
2017-07-21   Sonicwall < 8.1.0.2-14sv - 'sitecustomization.cgi' Command Injection (Metasploit) 15 WEB xort
2017-07-21   Sonicwall < 8.1.0.6-21sv - 'gencsr.cgi' Command Injection (Metasploit) 9 WEB xort
2017-07-19   Easy File Sharing Web Server 7.2 Buffer Overflow 19 WEB N_A
2017-07-18   Barracuda Load Balancer Firmware <= 6.0.1.006 - Remote Command Injection (Metasploit) 15 WEB xort
2017-07-18   Sophos Web Appliance 4.3.0.2 - 'trafficType' Remote Command Injection (Metasploit) 11 WEB xort
2017-07-17   WDTV Live SMP 2.03.20 - Remote Password Reset 14 WEB Sw1tCh
2017-07-17   Apache Struts 2.3.x Showcase - Remote Code Execution (PoC) 50 WEB Vex Woo
2017-07-13   RaidenHTTPD 2.0.44 User-Agent Cross Site Scripting 9 WEB sultan albalawi
2017-07-12   NfSen < 1.3.7 / AlienVault OSSIM 4.3.1 - 'customfmt' Command Injection 16 WEB Paul Taylor
2017-07-03   Humax HG100R 2.0.6 - Backup File Download 43 WEB gambler
2017-06-29   Easy File Sharing Web Server 7.2 - Unrestricted File Upload 59 WEB Chako
2017-06-26   Easy File Sharing HTTP Server 7.2 POST Buffer Overflow 19 WEB Marco Rivoli