[
•
]
NeoSense
E
X
P L O I T S
title
author
type
platform
port
cve
id
thoughtfault
phpfm v1.7.9 - Authentication type juggling
webapps
php
thoughtfault
PimpMyLog v1.7.14 - Improper access control
webapps
php
Mirabbas Ağalarov
Pluck v4.7.18 - Remote Code Execution (RCE)
webapps
php
abhishek morla
WinterCMS < 1.2.3 - Persistent Cross-Site Scripting
webapps
php
CVE-2023-37269
Mirabbas Ağalarov
Admidio v4.2.10 - Remote Code Execution (RCE)
webapps
php
Fatih Sencer
Cisco UCS-IMC Supervisor 2.2.0.0 - Authentication Bypass
webapps
hardware
CVE-2019-1937
Mirabbas Ağalarov
ProjeQtOr Project Management System v10.4.1 - Multiple XSS
webapps
php
Hubert Wojciechowski
News Portal v4.0 - SQL Injection (Unauthorized)
webapps
php
Dante Corona
Icinga Web 2.10 - Authenticated Remote Code Execution
webapps
php
CVE-2022-24715
Andrey Stoykov
XAMPP 8.2.4 - Unquoted Path
local
windows
Idan Malihi
Game Jackal Server v5 - Unquoted Service Path _GJServiceV5_
local
windows
CVE-2023-36166
Idan Malihi
AVG Anti Spyware 7.5 - Unquoted Service Path _AVG Anti-Spyware Guard_
local
windows
CVE-2023-36167
LiquidWorm
Ateme TITAN File 3.9 - SSRF File Enumeration
webapps
hardware
Idan Malihi
BuildaGate5library v5 - Reflected Cross-Site Scripting (XSS)
webapps
php
CVE-2023-36163
Sander Ferdinand
Frappe Framework (ERPNext) 13.4.0 - Remote Code Execution (Authenticated)
webapps
python
Idan Malihi
MiniTool Partition Wizard ShadowMaker v.12.7 - Unquoted Service Path _MTSchedulerService_
local
windows
CVE-2023-36165
«
...
49
50
51
52
53
54
55
56
57
58
59
...
»
page: 54/3001 [exploits: 48015]