[
•
]
NeoSense
E
X
P L O I T S
title
author
type
platform
port
cve
id
Synacktiv
Sony Playstation 4 (PS4) < 6.72 - 'ValidationMessage::buildBubbleTree()' Use-After-Free WebKit Code Execution (PoC)
webapps
hardware
Felipe Winsnes
Nidesoft 3GP Video Converter 2.6.18 - Local Stack Buffer Overflow
local
windows
Abdulazeez Alaseeri
Wordpress Plugin Good LMS 2.1.4 - 'id' Unauthenticated SQL Injection
webapps
php
Sarang Tumne
Water Billing System 1.0 - 'username' and 'password' parameters SQL Injection
webapps
php
Fatih Çelik
CMSUno 1.6.2 - 'user' Remote Code Execution (Authenticated)
webapps
php
Ahmed Abbas
Customer Support System 1.0 - 'username' Authentication Bypass
webapps
php
Ahmed Abbas
Customer Support System 1.0 - Cross-Site Request Forgery
webapps
php
Ahmed Abbas
Customer Support System 1.0 - 'description' Stored XSS in The Admin Panel
webapps
php
Mufaddal Masalawala
Anuko Time Tracker 1.19.23.5325 - CSV/Formula Injection
webapps
php
CVE-2020-15255
Joe Helle
ShoreTel Conferencing 19.46.1802.0 - Reflected Cross-Site Scripting
webapps
php
CVE-2020-28351
Fortunato Lodari
Car Rental Management System 1.0 - SQL injection + Arbitrary File Upload
webapps
php
Philip Holbrook
Joplin 1.2.6 - 'link' Cross Site Scripting
webapps
multiple
CVE-2020-28249
Mohammed Alshehri
Privacy Drive v3.17.0 - 'pdsvc.exe' Unquoted Service Path
local
windows
Mohammed Alshehri
DiskBoss v11.7.28 - Multiple Services Unquoted Service Path
local
windows
Erick Galindo
RealTimes Desktop Service 18.1.4 - 'rpdsvc.exe' Unquoted Service Path
local
windows
Paulina Girón
Deep Instinct Windows Agent 1.2.24.0 - 'DeepNetworkService' Unquoted Service Path
local
windows
«
...
199
200
201
202
203
204
205
206
207
208
209
...
»
page: 204/3001 [exploits: 48015]