Commit graph

2 commits

Author SHA1 Message Date
Offensive Security
16b24da825 DB: 2022-08-02
19 changes to exploits/shellcodes

Omnia MPX 1.5.0+r1 - Path Traversal
Easy Chat Server 3.1 - Remote Stack Buffer Overflow (SEH)

OctoBot WebInterface 0.4.3 - Remote Code Execution (RCE)
Wavlink WN533A8 - Cross-Site Scripting (XSS)
Wavlink WN530HG4 - Password Disclosure
Wavlink WN533A8 - Password Disclosure
WordPress Plugin Duplicator 1.4.6 - Unauthenticated Backup Download
WordPress Plugin Duplicator 1.4.7 - Information Disclosure
CuteEditor for PHP 6.6 - Directory Traversal
mPDF 7.0 - Local File Inclusion
NanoCMS v0.4 - Remote Code Execution (RCE) (Authenticated)
Webmin 1.996 - Remote Code Execution (RCE) (Authenticated)
2022-08-02 05:01:49 +00:00
Offensive Security
8f90c99e8c DB: 2021-09-07
8 changes to exploits/shellcodes

SmartFTP Client 10.0.2909.0 - 'Multiple' Denial of Service

Argus Surveillance DVR 4.0 - Unquoted Service Path
OpenEMR 6.0.0 - 'noteid' Insecure Direct Object Reference (IDOR)
FlatCore CMS 2.0.7 - Remote Code Execution (RCE) (Authenticated)
Bus Pass Management System 1.0 - 'viewid' Insecure direct object references (IDOR)
Patient Appointment Scheduler System 1.0 - Unauthenticated File Upload & Remote Code Execution (RCE)
Patient Appointment Scheduler System 1.0 - Persistent/Stored XSS
Antminer Monitor 0.5.0 - Authentication Bypass
2021-09-07 05:02:00 +00:00