[
•
]
NeoSense
E
X
P L O I T S
title
author
type
platform
port
cve
id
Metin Yunus Kandemir
Klog Server 2.4.1 - Unauthenticated Command Injection (Metasploit)
webapps
php
CVE-2020-35729
Guillem Alminyana
Linux/x64 - Bind_tcp (0.0.0.0:4444) + Password (12345678) + Shell (/bin/sh) Shellcode (142 bytes)
linux
Aitor Herrero
Library System 1.0 - 'category' SQL Injection
webapps
php
Richard Jones
CASAP Automated Enrollment System 1.0 - 'route' Stored XSS
webapps
php
Anita Gaud
CASAP Automated Enrollment System 1.0 - 'First Name' Stored XSS
webapps
php
CVE-2021-3294
Deha Berkin Bir
Collabtive 3.1 - 'address' Persistent Cross-Site Scripting
webapps
php
CVE-2021-3298
0xB9
MyBB Timeline Plugin 1.0 - Persistent Cross-Site Scripting
webapps
php
Armando Huesca Prida
Windows/x86 - Download File (http://10.10.10.5:8080/2NWyfQ9T.hta) Via mshta + Execute + Stager Shellcode (143 bytes)
windows_x86
143.0
46o60
Atlassian Confluence Widget Connector Macro - SSTI
webapps
multiple
CVE-2019-3396
Hodorsec
ERPNext 12.14.0 - SQL Injection (Authenticated)
webapps
multiple
Himanshu Shukla
CASAP Automated Enrollment System 1.0 - Authentication Bypass
webapps
php
Himanshu Shukla
Library System 1.0 - Authentication Bypass
webapps
php
Photubias
Oracle WebLogic Server 14.1.1.0 - RCE (Authenticated)
webapps
java
CVE-2021-2109
LiquidWorm
Selea Targa IP OCR-ANPR Camera - 'addr' Remote Code Execution (Unauthenticated)
webapps
hardware
LiquidWorm
Selea Targa 512 IP OCR-ANPR Camera - Stream Disclosure (Unauthenticated)
webapps
hardware
LiquidWorm
Selea Targa IP OCR-ANPR Camera - CSRF Add Admin
webapps
hardware
«
...
174
175
176
177
178
179
180
181
182
183
184
...
»
page: 179/3001 [exploits: 48015]