Результаты поиска

  1. Exploiter

    Exploit SPIP v4.2.0 - Remote Code Execution (Unauthenticated)

    SPIP v4.2.0 - Remote Code Execution (Unauthenticated) #!/usr/bin/env python3 # -*- coding: utf-8 -*- # Exploit Title: SPIP v4.2.1 - Remote Code Execution (Unauthenticated) # Google Dork: inurl:"/spip.php?page=login" # Date: 19/06/2023 # Exploit Author: nuts7...
  2. Exploiter

    Exploit WebsiteBaker v2.13.3 - Stored XSS

    WebsiteBaker v2.13.3 - Stored XSS Exploit Title: WebsiteBaker v2.13.3 - Stored XSS Application: WebsiteBaker Version: 2.13.3 Bugs: Stored XSS Technology: PHP Vendor URL: https://websitebaker.org/pages/en/home.php Software Link: https://wiki.websitebaker.org/doku.php/en/downloads Date of found...
  3. Exploiter

    Exploit WebsiteBaker v2.13.3 - Directory Traversal

    WebsiteBaker v2.13.3 - Directory Traversal Exploit Title: WebsiteBaker v2.13.3 - Directory Traversal Application: WebsiteBaker Version: 2.13.3 Bugs: Directory Traversal Technology: PHP Vendor URL: https://websitebaker.org/pages/en/home.php Software Link...
  4. Exploiter

    Exploit Faculty Evaluation System v1.0 - SQL Injection

    Faculty Evaluation System v1.0 - SQL Injection # Exploit Title: Faculty Evaluation System v1.0 - SQL Injection # Date: 07/2023 # Exploit Author: Andrey Stoykov # Vendor Homepage: https://www.sourcecodester.com/php/14635/faculty-evaluation-system-using-phpmysqli-source-code.html # Software Link...
  5. Exploiter

    Exploit Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS)

    Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS) # Exploit Title: Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS) # Exploit Author: tmrswrr / Hulya Karabag # Vendor Homepage: https://www.diafancms.com/ # Version: 6.0 # Tested on: https://demo.diafancms.com Description: 1)...
  6. Exploiter

    Exploit PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)

    PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE) # Exploit Title: PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE) # Date: 06-10-2023 # Credits: bAu @bauh0lz # Exploit Author: Gabriel Lima (0xGabe) # Vendor Homepage: https://pyload.net/ # Software Link: https://github.com/pyload/pyload #...
  7. Exploiter

    Exploit projectSend r1605 - CSV injection

    projectSend r1605 - CSV injection Exploit Title: projectSend r1605 - CSV injection Version: r1605 Bugs: CSV Injection Technology: PHP Vendor URL: https://www.projectsend.org/ Software Link: https://www.projectsend.org/ Date of found: 11-06-2023 Author: Mirabbas Ağalarov Tested on: Windows 2...
  8. Exploiter

    Exploit projectSend r1605 - Stored XSS

    projectSend r1605 - Stored XSS Exploit Title: projectSend r1605 - Stored XSS Application: projectSend Version: r1605 Bugs: Stored Xss Technology: PHP Vendor URL: https://www.projectsend.org/ Software Link: https://www.projectsend.org/ Date of found: 11-06-2023 Author: Mirabbas Ağalarov Tested...
  9. Exploiter

    Exploit Online Thesis Archiving System v1.0 - Multiple-SQLi

    Online Thesis Archiving System v1.0 - Multiple-SQLi ## Exploit Title: Online Thesis Archiving System v1.0 - Multiple-SQLi ## Author: nu11secur1ty ## Date: 06.12.2023 ## Vendor: https://github.com/oretnom23 ## Software...
  10. Exploiter

    Exploit Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated)

    Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated) # Exploit Title: Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated) # Google Dork: n/a # Date: 14/06/2023 # Exploit Author: Ramil Mustafayev # Vendor Homepage: https://github.com/projectworldsofficial...
  11. Exploiter

    Exploit Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS)

    Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS) # Exploit Title: Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS) # Date of found: 12/05/2023 # Exploit Author: VIVEK CHOUDHARY @sudovivek # Version: V1.0 # Tested on: Windows 10 #...
  12. Exploiter

    Exploit Zenphoto 1.6 - Multiple stored XSS

    Zenphoto 1.6 - Multiple stored XSS Exploit Title: Zenphoto 1.6 - Multiple stored XSS Application: Zenphoto-1.6 xss poc Version: 1.6 Bugs: XSS Technology: PHP Vendor URL: https://www.zenphoto.org/news/zenphoto-1.6/ Software Link: https://github.com/zenphoto/zenphoto/archive/v1.6.zip Date of...
  13. Exploiter

    Exploit Camaleon CMS v2.7.0 - Server-Side Template Injection (SSTI)

    Camaleon CMS v2.7.0 - Server-Side Template Injection (SSTI) Exploit Title: Camaleon CMS v2.7.0 - Server-Side Template Injection (SSTI) Exploit Author: PARAG BAGUL CVE: CVE-2023-30145 ## Description Camaleon CMS v2.7.0 was discovered to contain a Server-Side Template Injection (SSTI)...
  14. Exploiter

    Exploit Online Security Guards Hiring System 1.0 - Reflected XSS

    Online Security Guards Hiring System 1.0 - Reflected XSS #Exploit Title: Online Security Guards Hiring System 1.0 – REFLECTED XSS #Google Dork : NA #Date: 23-01-2023 #Exploit Author : AFFAN AHMED #Vendor Homepage: https://phpgurukul.com #Software Link...
  15. Exploiter

    Exploit Faculty Evaluation System 1.0 - Unauthenticated File Upload

    Faculty Evaluation System 1.0 - Unauthenticated File Upload # Exploit Title: Faculty Evaluation System 1.0 - Unauthenticated File Upload # Date: 5/29/2023 # Author: Alex Gan # Vendor Homepage: https://www.sourcecodester.com/php/14635/faculty-evaluation-system-using-phpmysqli-source-code.html #...
  16. Exploiter

    Exploit Enrollment System Project v1.0 - SQL Injection Authentication Bypass (SQLI)

    Enrollment System Project v1.0 - SQL Injection Authentication Bypass (SQLI) # Exploit Title: Enrollment System Project v1.0 - SQL Injection Authentication Bypass (SQLI) # Date of found: 18/05/2023 # Exploit Author: VIVEK CHOUDHARY @sudovivek # Version: V1.0 # Tested on: Windows 10 # Vendor...
  17. Exploiter

    Exploit MotoCMS Version 3.4.3 - SQL Injection

    MotoCMS Version 3.4.3 - SQL Injection # Title: MotoCMS Version 3.4.3 - SQL Injection # Author: tmrswrr # Date: 01/06/2023 # Vendor: https://www.motocms.com # Link: https://www.motocms.com/website-templates/demo/189526.html # Vulnerable Version(s): MotoCMS 3.4.3 ## Description MotoCMS Version...
  18. Exploiter

    Exploit Sales Tracker Management System v1.0 - Multiple Vulnerabilities

    Sales Tracker Management System v1.0 - Multiple Vulnerabilities Exploit Title: Sales Tracker Management System v1.0 – Multiple Vulnerabilities Google Dork: NA Date: 09-06-2023 EXPLOIT-AUTHOR: AFFAN AHMED Vendor Homepage: <https://www.sourcecodester.com/> Software Link...
  19. Exploiter

    Exploit Service Provider Management System v1.0 - SQL Injection

    Service Provider Management System v1.0 - SQL Injection # Exploit Title: Service Provider Management System v1.0 - SQL Injection # Date: 2023-05-23 # Exploit Author: Ashik Kunjumon # Vendor Homepage: https://www.sourcecodester.com/users/lewa # Software Link...
  20. Exploiter

    Exploit WBCE CMS 1.6.1 - Multiple Stored Cross-Site Scripting (XSS)

    WBCE CMS 1.6.1 - Multiple Stored Cross-Site Scripting (XSS) Exploit Title: WBCE CMS 1.6.1 - Multiple Stored Cross-Site Scripting (XSS) Version: 1.6.1 Bugs: XSS Technology: PHP Vendor URL: https://wbce-cms.org/ Software Link: https://github.com/WBCE/WBCE_CMS/releases/tag/1.6.1 Date of found...