Posts

GNU glibc < 2.27 - Local Buffer Overflow

PHP Dashboards 4.5 SQL Injection

Linux/x86 - Reverse (10.10.2.4:4444/TCP) Shell Shellcode (68 bytes)

OpenDaylight - SQL Injection

Linux/x86 - Reverse (10.0.7.17:4444/TCP) Shell (/bin/sh) Shellcode (101 Bytes)

EU MRV Regulatory Complete Solution 1 - Authentication Bypass

ASP.NET jVideo Kit - 'query' SQL Injection

Honeywell XL Web Controller - Cross-Site Scripting

MySQL Smart Reports 1.0 Cross Site Scripting / SQL Injection

MySQL Blob Uploader 1.7 Cross Site Scripting / SQL Injection

Microsoft Internet Explorer 11 (Windows 7 x64/x86) - vbscript Code Execution

Flash ActiveX 18.0.0.194 - Code Execution

Siemens SCALANCE S613 - Remote Denial of Service

SKT LTE Wi-Fi SDT-CW3B1 - Unauthorized Admin Credential Change

Mcard Mobile Card Selling Platform 1 - SQL Injection

GPSTracker 1.0 - 'id' SQL Injection

FTPShell Server 6.80 - Denial of Service

Wecodex Restaurant CMS 1.0 - 'Login' SQL Injection

Mobile Card Selling Platform 1 - Cross-Site Request Forgery

Linux/x86 - Bind (4444/TCP) Shell (/bin/sh) + IPv6 Shellcode (113 bytes)

PHP Dashboards 4.5 - SQL Injection

Gigs 2.0 - 'username' SQL Injection

PHP Dashboards 4.5 - 'email' SQL Injection

Wecodex Hotel CMS 1.0 - 'Admin Login' SQL Injection

Wecodex Store Paypal 1.0 - SQL Injection

WordPress Plugin Peugeot Music - Arbitrary File Upload

NewsBee CMS 1.4 - Cross-Site Request Forgery

Samsung Galaxy S7 Edge - Overflow in OMACP WbXml String Extension Processing

Online Store System CMS 1.0 - SQL Injection

School Management System CMS 1.0 - 'username' SQL Injection

SAT CFDI 3.3 - SQL Injection

eWallet Online Payment Gateway 2 - Cross-Site Request Forgery

Shipping System CMS 1.0 - SQL Injection

Library CMS 1.0 - SQL Injection

Honeywell Scada System - Information Disclosure

Epic Games Launcher 7.9.4-4058369 Insecure File Permissions

Epic Games Fortnite 4.2-CL-4072250 Insecure File Permissions

Procps-ng Audit Report

Feedy RSS News Ticker 2.0 SQL Injection

QNAP PhotoStation Cross Site Scripting

EasyService Billing 1.0 SQL Injection / Cross Site Scripting

FTPShell Server 6.80 Local Buffer Overflow

Teradek VidiU Pro 3.0.3 (snapshot.cgi) Stream Disclosure

Teradek Slice 7.3.15 (snapshot.cgi) Stream Disclosure

Teradek T-RAX 7.3.2 (snapshot.cgi) Stream Disclosure

Siemens SIMATIC S7-1200 CPU Cross Site Scripting

PaulPrinting CMS Printing 1.0 SQL Injection