Результаты поиска

  1. Exploiter

    Exploit PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)

    PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE) # Exploit Title: PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE) # Date: 06-10-2023 # Credits: bAu @bauh0lz # Exploit Author: Gabriel Lima (0xGabe) # Vendor Homepage: https://pyload.net/ # Software Link: https://github.com/pyload/pyload #...
  2. Exploiter

    Exploit projectSend r1605 - CSV injection

    projectSend r1605 - CSV injection Exploit Title: projectSend r1605 - CSV injection Version: r1605 Bugs: CSV Injection Technology: PHP Vendor URL: https://www.projectsend.org/ Software Link: https://www.projectsend.org/ Date of found: 11-06-2023 Author: Mirabbas Ağalarov Tested on: Windows 2...
  3. Exploiter

    Exploit projectSend r1605 - Stored XSS

    projectSend r1605 - Stored XSS Exploit Title: projectSend r1605 - Stored XSS Application: projectSend Version: r1605 Bugs: Stored Xss Technology: PHP Vendor URL: https://www.projectsend.org/ Software Link: https://www.projectsend.org/ Date of found: 11-06-2023 Author: Mirabbas Ağalarov Tested...
  4. Exploiter

    Exploit Online Thesis Archiving System v1.0 - Multiple-SQLi

    Online Thesis Archiving System v1.0 - Multiple-SQLi ## Exploit Title: Online Thesis Archiving System v1.0 - Multiple-SQLi ## Author: nu11secur1ty ## Date: 06.12.2023 ## Vendor: https://github.com/oretnom23 ## Software...
  5. Exploiter

    Exploit Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated)

    Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated) # Exploit Title: Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated) # Google Dork: n/a # Date: 14/06/2023 # Exploit Author: Ramil Mustafayev # Vendor Homepage: https://github.com/projectworldsofficial...
  6. Exploiter

    Exploit Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS)

    Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS) # Exploit Title: Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS) # Date of found: 12/05/2023 # Exploit Author: VIVEK CHOUDHARY @sudovivek # Version: V1.0 # Tested on: Windows 10 #...
  7. Exploiter

    Exploit Zenphoto 1.6 - Multiple stored XSS

    Zenphoto 1.6 - Multiple stored XSS Exploit Title: Zenphoto 1.6 - Multiple stored XSS Application: Zenphoto-1.6 xss poc Version: 1.6 Bugs: XSS Technology: PHP Vendor URL: https://www.zenphoto.org/news/zenphoto-1.6/ Software Link: https://github.com/zenphoto/zenphoto/archive/v1.6.zip Date of...
  8. Exploiter

    Exploit Camaleon CMS v2.7.0 - Server-Side Template Injection (SSTI)

    Camaleon CMS v2.7.0 - Server-Side Template Injection (SSTI) Exploit Title: Camaleon CMS v2.7.0 - Server-Side Template Injection (SSTI) Exploit Author: PARAG BAGUL CVE: CVE-2023-30145 ## Description Camaleon CMS v2.7.0 was discovered to contain a Server-Side Template Injection (SSTI)...
  9. Exploiter

    Exploit Online Security Guards Hiring System 1.0 - Reflected XSS

    Online Security Guards Hiring System 1.0 - Reflected XSS #Exploit Title: Online Security Guards Hiring System 1.0 – REFLECTED XSS #Google Dork : NA #Date: 23-01-2023 #Exploit Author : AFFAN AHMED #Vendor Homepage: https://phpgurukul.com #Software Link...
  10. Exploiter

    Exploit Faculty Evaluation System 1.0 - Unauthenticated File Upload

    Faculty Evaluation System 1.0 - Unauthenticated File Upload # Exploit Title: Faculty Evaluation System 1.0 - Unauthenticated File Upload # Date: 5/29/2023 # Author: Alex Gan # Vendor Homepage: https://www.sourcecodester.com/php/14635/faculty-evaluation-system-using-phpmysqli-source-code.html #...
  11. Exploiter

    Exploit Enrollment System Project v1.0 - SQL Injection Authentication Bypass (SQLI)

    Enrollment System Project v1.0 - SQL Injection Authentication Bypass (SQLI) # Exploit Title: Enrollment System Project v1.0 - SQL Injection Authentication Bypass (SQLI) # Date of found: 18/05/2023 # Exploit Author: VIVEK CHOUDHARY @sudovivek # Version: V1.0 # Tested on: Windows 10 # Vendor...
  12. Exploiter

    Exploit MotoCMS Version 3.4.3 - SQL Injection

    MotoCMS Version 3.4.3 - SQL Injection # Title: MotoCMS Version 3.4.3 - SQL Injection # Author: tmrswrr # Date: 01/06/2023 # Vendor: https://www.motocms.com # Link: https://www.motocms.com/website-templates/demo/189526.html # Vulnerable Version(s): MotoCMS 3.4.3 ## Description MotoCMS Version...
  13. Exploiter

    Exploit Sales Tracker Management System v1.0 - Multiple Vulnerabilities

    Sales Tracker Management System v1.0 - Multiple Vulnerabilities Exploit Title: Sales Tracker Management System v1.0 – Multiple Vulnerabilities Google Dork: NA Date: 09-06-2023 EXPLOIT-AUTHOR: AFFAN AHMED Vendor Homepage: <https://www.sourcecodester.com/> Software Link...
  14. Exploiter

    Exploit Service Provider Management System v1.0 - SQL Injection

    Service Provider Management System v1.0 - SQL Injection # Exploit Title: Service Provider Management System v1.0 - SQL Injection # Date: 2023-05-23 # Exploit Author: Ashik Kunjumon # Vendor Homepage: https://www.sourcecodester.com/users/lewa # Software Link...
  15. Exploiter

    Exploit WBCE CMS 1.6.1 - Multiple Stored Cross-Site Scripting (XSS)

    WBCE CMS 1.6.1 - Multiple Stored Cross-Site Scripting (XSS) Exploit Title: WBCE CMS 1.6.1 - Multiple Stored Cross-Site Scripting (XSS) Version: 1.6.1 Bugs: XSS Technology: PHP Vendor URL: https://wbce-cms.org/ Software Link: https://github.com/WBCE/WBCE_CMS/releases/tag/1.6.1 Date of found...
  16. Exploiter

    Exploit Online Clinic Management System 2.2 - Multiple Stored Cross-Site Scripting (XSS)

    Online Clinic Management System 2.2 - Multiple Stored Cross-Site Scripting (XSS) # Exploit Title: Online Clinic Management System 2.2 - Multiple Stored Cross-Site Scripting (XSS) # Date: 27-06-2019 # Exploit Author: Rafael Pedrero # Vendor Homepage: https://bigprof.com # Software Download Link ...
  17. Exploiter

    Exploit Best POS Management System v1.0 - Unauthenticated Remote Code Execution

    Best POS Management System v1.0 - Unauthenticated Remote Code Execution # Exploit Title: Best POS Management System v1.0 - Unauthenticated Remote Code Execution # Google Dork: NA # Date: 15/5/2023 # Exploit Author: Mesut Cetin # Vendor Homepage...
  18. Exploiter

    Exploit SitemagicCMS 4.4.3 - Remote Code Execution (RCE)

    SitemagicCMS 4.4.3 - Remote Code Execution (RCE) #Exploit Title: SitemagicCMS 4.4.3 Remote Code Execution (RCE) #Application: SitemagicCMS #Version: 4.4.3 #Bugs: RCE #Technology: PHP #Vendor URL: https://sitemagic.org/Download.html #Software Link: https://github.com/Jemt/SitemagicCMS #Date of...
  19. Exploiter

    Exploit GetSimple CMS v3.3.16 - Remote Code Execution (RCE)

    GetSimple CMS v3.3.16 - Remote Code Execution (RCE) # Exploit Title: GetSimple CMS v3.3.16 - Remote Code Execution (RCE) # Data: 18/5/2023 # Exploit Author : Youssef Muhammad # Vendor: Get-simple # Software Link: # Version app: 3.3.16 # Tested on: linux # CVE: CVE-2022-41544 import sys import...
  20. Exploiter

    Exploit Bludit CMS v3.14.1 - Stored Cross-Site Scripting (XSS) (Authenticated)

    Bludit CMS v3.14.1 - Stored Cross-Site Scripting (XSS) (Authenticated) # Exploit Title: Bludit CMS v3.14.1 - Stored Cross-Site Scripting (XSS) (Authenticated) # Date: 2023-04-15 # Exploit Author: Rahad Chowdhury # Vendor Homepage: https://www.bludit.com/ # Software Link...
  21. Exploiter

    Exploit Online Pizza Ordering System v1.0 - Unauthenticated File Upload

    Online Pizza Ordering System v1.0 - Unauthenticated File Upload # Exploit Title: Online Pizza Ordering System 1.0 - Unauthenticated File Upload # Date: 03/05/2023 # Exploit Author: URGAN # Vendor Homepage...
  22. Exploiter

    Exploit Ulicms-2023.1 sniffing-vicuna - Stored Cross-Site Scripting (XSS)

    Ulicms-2023.1 sniffing-vicuna - Stored Cross-Site Scripting (XSS) #Exploit Title: Ulicms-2023.1 sniffing-vicuna - Stored Cross-Site Scripting (XSS) #Application: Ulicms #Version: 2023.1-sniffing-vicuna #Bugs: Stored Xss #Technology: PHP #Vendor URL: https://en.ulicms.de/ #Software Link...
  23. Exploiter

    Exploit Music Gallery Site v1.0 - SQL Injection on page Master.php

    Music Gallery Site v1.0 - SQL Injection on page Master.php # Exploit Title: Music Gallery Site v1.0 - SQL Injection on page Master.php # Exploit Author: Muhammad Navaid Zafar Ansari # Date: 21 February 2023 ### CVE Assigned...
  24. Exploiter

    Exploit Simple Food Ordering System v1.0 - Cross-Site Scripting (XSS)

    Simple Food Ordering System v1.0 - Cross-Site Scripting (XSS) # Exploit Title: Simple Food Ordering System v1.0 - Cross-Site Scripting (XSS) # Exploit Author: Muhammad Navaid Zafar Ansari # Date: 17 February 2023 ### CVE Assigned...
  25. Exploiter

    Exploit pdfkit v0.8.7.2 - Command Injection

    pdfkit v0.8.7.2 - Command Injection #!/usr/bin/env python3 # Exploit Title: pdfkit v0.8.7.2 - Command Injection # Date: 02/23/2023 # Exploit Author: UNICORD (NicPWNs & Dev-Yeoj) # Vendor Homepage: https://pdfkit.org/ # Software Link: https://github.com/pdfkit/pdfkit # Version: 0.0.0-0.8.7.2 #...