[
•
]
NeoSense
E
X
P L O I T S
title
author
type
platform
port
cve
id
M. Cory Billington
SuiteCRM 7.11.18 - Remote Code Execution (RCE) (Authenticated) (Metasploit)
webapps
php
CVE-2021-42840
Rahad Chowdhury
Quick.CMS 6.7 - Cross Site Request Forgery (CSRF) to Cross Site Scripting (XSS) (Authenticated)
webapps
php
Vasu
Bludit 3.13.1 - 'username' Cross Site Scripting (XSS)
webapps
php
CVE-2021-35323
Hosein Vita
CMDBuild 3.3.2 - 'Multiple' Cross Site Scripting (XSS)
webapps
multiple
djebbaranon
Online Learning System 2.0 - Remote Code Execution (RCE)
webapps
php
CVE-2021-42580
Hosein Vita
PHP Laravel 8.70.1 - Cross Site Scripting (XSS) to Cross Site Request Forgery (CSRF)
webapps
php
CVE-2021-43617
Mohammed Aadhil Ashfaq
WordPress Plugin Contact Form to Email 1.3.24 - Stored Cross Site Scripting (XSS) (Authenticated)
webapps
php
Rahad Chowdhury
Fuel CMS 1.4.13 - 'col' Blind SQL Injection (Authenticated)
webapps
php
Daniel Haro
Simple Subscription Website 1.0 - SQLi Authentication Bypass
webapps
php
CVE-2021-43140
Fabricio Salomao
KONGA 0.14.9 - Privilege Escalation
webapps
multiple
Davide Taraschi
WordPress Plugin WPSchoolPress 2.1.16 - 'Multiple' Cross Site Scripting (XSS)
webapps
php
CVE-2021-24664
Shain Lakin
Mumara Classic 2.93 - 'license' SQL Injection (Unauthenticated)
webapps
multiple
Marcio Mendes
Windows MultiPoint Server 2011 SP1 - RpcEptMapper and Dnschade Local Privilege Escalation
local
windows
Yehia Elghaly
Xlight FTP 3.9.3.1 - Buffer Overflow (PoC)
dos
windows
Murat DEMİRCİ
WordPress Plugin AccessPress Social Icons 1.8.2 - 'icon title' Stored Cross-Site Scripting (XSS)
webapps
php
Murat DEMİRCİ
WordPress Plugin WP Symposium Pro 2021.10 - 'wps_admin_forum_add_name' Stored Cross-Site Scripting (XSS)
webapps
php
«
...
113
114
115
116
117
118
119
120
121
122
123
...
»
page: 118/3001 [exploits: 48015]