[] NeoSense
Metin Yunus Kandemir Klog Server 2.4.1 - Unauthenticated Command Injection (Metasploit)
webapps php CVE-2020-35729
Guillem Alminyana Linux/x64 - Bind_tcp (0.0.0.0:4444) + Password (12345678) + Shell (/bin/sh) Shellcode (142 bytes)
linux
Aitor Herrero Library System 1.0 - 'category' SQL Injection
webapps php
Richard Jones CASAP Automated Enrollment System 1.0 - 'route' Stored XSS
webapps php
Anita Gaud CASAP Automated Enrollment System 1.0 - 'First Name' Stored XSS
webapps php CVE-2021-3294
Deha Berkin Bir Collabtive 3.1 - 'address' Persistent Cross-Site Scripting
webapps php CVE-2021-3298
0xB9 MyBB Timeline Plugin 1.0 - Persistent Cross-Site Scripting
webapps php
Armando Huesca Prida Windows/x86 - Download File (http://10.10.10.5:8080/2NWyfQ9T.hta) Via mshta + Execute + Stager Shellcode (143 bytes)
windows_x86 143.0
46o60 Atlassian Confluence Widget Connector Macro - SSTI
webapps multiple CVE-2019-3396
Hodorsec ERPNext 12.14.0 - SQL Injection (Authenticated)
webapps multiple
Himanshu Shukla CASAP Automated Enrollment System 1.0 - Authentication Bypass
webapps php
Himanshu Shukla Library System 1.0 - Authentication Bypass
webapps php
Photubias Oracle WebLogic Server 14.1.1.0 - RCE (Authenticated)
webapps java CVE-2021-2109
LiquidWorm Selea Targa IP OCR-ANPR Camera - 'addr' Remote Code Execution (Unauthenticated)
webapps hardware
LiquidWorm Selea Targa 512 IP OCR-ANPR Camera - Stream Disclosure (Unauthenticated)
webapps hardware
LiquidWorm Selea Targa IP OCR-ANPR Camera - CSRF Add Admin
webapps hardware
page: 179/3001 [exploits: 48015]