Veritas NetBackup versions 6.5.6 and 7.6.10 suffer from remote command execution, denial of service, path traversal, and privilege escalation vulnerabilities.
fbc0e17e197a27b1fd0bae15bb4f69d626cea18ab7a047be5ebf20165a1eb24c
WePresent WiPG-1500 has a backdoor account installed.
17839a48df196431201c62c2532aaa9acf9739ba03634e746b90812100f2fd24
Aruba AirWave versions 8.2.3 and below suffer from XXE injection and cross site scripting vulnerabilities.
26d6fd5588cb2706ccd2898c50798a639ccb5ed66cc64b8e72e5688fa5250278
SysGauge version 1.5.18 suffers from a buffer overflow vulnerability.
f96541cc46b2d9634b51aada91c4f36032cbd40a2421de5ba4ff46d0b41807c9
BlueIris version 4.5.1.4 suffers from a denial of service vulnerability.
a2c5115ad6a37fa750e172519882082ffa411085aa72f9b8d5413e397f0148c9
Meme Maker Script version 2.1 suffers from a remote SQL injection vulnerability.
3b680b1eea85ef4f48ef5800fc8f6755ef642152ecb4e4066e93a5f79c6d8b55
Synchronet BBS versions 3.16c for Windows suffers from denial of service vulnerabilities.
a681bf492f0e36b93a7fc183338830d0a1f80483c5bd6e997784651d80b2c7d0
Rage Faces Script version 1.3 suffers from a remote SQL injection vulnerability.
a939cfe1fb5829636cdac4246585ffa4d9e023d3c7cf83515fb474b246beddb6
84 bytes small Linux/x86-64 reverse shell shellcode.
f168c1f1f36a8117fccc0ba9a8c292fb68070285c33d750866af2ec3353d836e
D-Link DSL-2730U Wireless N 150 suffers from cross site request forgery vulnerabilities.
8a8d39643221306911e1ebc9e7fe18a969319fc139f6155ad1683590b57c4de0
WordPress Trust Form plugin version 2.0 suffers from a cross site scripting vulnerability.
f0520b62eba5142812d52e24b0842400be91238307a22751b2fc0270207501f7
WordPress Analytics Stats Counter Statistics plugin version 1.2.2.5 suffers from a PHP object injection vulnerability.
d1935f94c13d237a769e00666940587d42964a0f386dbc6ac59063ea3b38e413
osTicket version 1.9.12 suffers from multiple persistent cross site scripting vulnerabilities.
c97da578520b0fab8d0625cbd24015f598369f9b2be34ed0c37ea35a53f87da2
322 bytes small Windows x86 reverse TCP staged alphanumeric shellcode.
e392c28549e212edefc14d36ba95313226d72ff59c0520ebcbd9c1d0ea0ee1cd
WordPress WP-Filebase Download Manager plugin version 3.4.4 suffers from a cross site scripting vulnerability.
979fbbeecfa00a214223f001ac5c8d271726113e0cf0f2b7d1d6a1a6d7cb5942
WordPress Admin Custom Login plugin version 2.4.5.2 suffers from a persistent cross site scripting vulnerability.
6d78f22f7c67f695ae49fc60ee47fad5693fd927af00a1ecb56df1fdaf5bd89c
JexBoss is an exploitation tool that demonstrates deserialization remote code execution attacks against multiple applications and platforms.
aeb7832bfac3aaa324b3d6950c3ff7b7b82470cbcb90aeff584aa5ef011c82f5
WordPress WP-SpamFree Anti-Spam plugin version 2.1.1.4 suffers from a cross site scripting vulnerability.
db5dbfcbe4a5e667c55abb55d4576550faf4d3a1fe318516f8a382e265bfffd1
SchoolDir suffers from a remote SQL injection vulnerability.
376eb17e31241b67a7372e39547a62fd9f325c32ec08ad696bc079f6ca7856ea
sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.
41e3f47071c41caae1800eeddd98eb6edb87d322184f5e7aab87d4697a2b885f
X.org suffers from privilege escalation, weak entropy, and use-after-free vulnerabilities.
f72f05abe9036269c3ae97121d5341b234d6db2cbe445c9d8643a82f22648e4d