• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

execution

  1. 1

    Exploits Fortinet FCM-MB40 Cross Site Request Forgery / Remote Command Execution

    Fortinet FCM-MB40 suffers from remote command execution and cross site request forgery vulnerabilities. View the full article
  2. 1

    Exploits SAPIDO RB-1732 Remote Command Execution

    SAPIDO RB-1732 version 2.0.43 suffers from a remote command execution vulnerability. View the full article
  3. 1

    Exploits SuperDoctor5 NRPE Remote Code Execution

    SuperDoctor5 implemented a remote command execution plugin in their implementation of NRPE that can be leveraged without authentication. View the full article
  4. 1

    Exploits FortiCam FCM-MB40 Code Execution / Privilege Escalation

    Fortinet's FortiCam FCM-MB40 product suffers from root code execution, privilege escalation, hardcoded key, and various other vulnerabilities. View the full article
  5. 1

    Exploits SeedDMS Remote Command Execution

    SeedDMS versions prior to 5.1.11 suffers from a remote shell upload vulnerability. View the full article
  6. 1

    Exploits EA Origin Remote Code Execution

    EA Origin versions prior to 10.5.38 suffer from a remote code execution vulnerability. View the full article
  7. 1

    Exploits BlogEngine.NET 3.3.6 / 3.3.7 Theme Cookie Directory Traversal / Remote Code Execution

    BlogEngine.NET versions 3.3.6 and 3.3.7 suffer from theme Cookie directory traversal and remote code execution vulnerabilities. View the full article
  8. 1

    Exploits BlogEngine.NET 3.3.6 / 3.3.7 dirPath Directory Traversal / Remote Code Execution

    BlogEngine.NET versions 3.3.6 and 3.3.7 suffer from dirPath directory traversal and remote code execution vulnerabilities. View the full article
  9. 1

    Exploits BlogEngine.NET 3.3.7 Directory Traversal / Remote Code Execution

    BlogEngine.NET versions 3.3.7 and earlier are vulnerable to two separate directory traversal issues that can lead to remote code execution. View the full article
  10. 1

    Exploits AROX School-ERP Pro Unauthenticated Remote Code Execution

    This Metasploit module exploits a command execution vulnerability in AROX School-ERP. "import_stud.php" and "upload_fille.php" do not have session control. Session start/check functions in Line 8,9,10 are disabled with slashes. Therefore an unauthenticated user can execute the command on the...
  11. 1

    Exploits WAGO 852 Industrial Managed Switch Series Code Execution / Hardcoded Credentials

    The industrial managed switch series 852 from WAGO is affected by multiple vulnerabilities such as old software components embedded in the firmware. Furthermore, hardcoded password hashes and credentials were also found by doing an automated scan with IoT Inspector. View the full article
  12. 1

    Exploits Sitecore 8.x Deserialization Remote Code Execution

    Sitecore versions 8.x suffer from a deserialization vulnerability that allows for remote code execution. View the full article
  13. 1

    Exploits FusionPBX 4.4.3 Remote Command Execution

    FusionPBX versions 4.4.3 and below suffer from a remote code execution vulnerability via cross site scripting. View the full article
  14. 1

    Exploits WordPress Insert Or Embed Articulate Content 4.2997 Remote Code Execution

    WordPress Insert or Embed Articulate Content plugin versions 4.2995 through 4.2997 suffers from a remote code execution vulnerability. View the full article
  15. 1

    Exploits Webmin 1.910 Remote Command Execution

    This Metasploit module exploits an arbitrary command execution vulnerability in Webmin 1.910 and lower versions. Any user authorized to the "Package Updates" module can execute arbitrary commands with root privileges. View the full article
  16. 1

    Exploits IBM Websphere Application Server Remote Code Execution

    This Metasploit module exploits untrusted serialized data processed by the WAS DMGR Server and Cells in the IBM Websphere Application Server. NOTE: There is a required 2 minute timeout between attempts as the neighbor being added must be reset. View the full article
  17. 1

    Exploits Interspire Email Marketer 6.20 Remote Code Execution

    Interspire Email Marketer version 6.20 suffers from a remote code execution vulnerability in surveys_submit.php. View the full article
  18. 1

    Exploits Brocade Network Advisor 14.4.1 Unauthenticated Remote Code Execution

    Brocade Network Advisor version 14.4.1 unauthenticated remote code execution exploit. View the full article
  19. 1

    Exploits Horde Webmail 5.2.22 XSS / CSRF / SQL Injection / Code Execution

    Horde Webmail version 5.2.22 suffers from code execution, cross site request forgery, cross site scripting, and remote SQL injection vulnerabilities. View the full article
  20. 1

    Exploits GetSimpleCMS 3.3.15 Remote Code Execution

    This Metasploit module exploits a remote code execution vulnerability found in GetSimpleCMS versions 3.3.15 and below. An arbitrary file upload (PHPcode for example) vulnerability can be triggered by an authenticated user, however authentication can be bypassed by leaking the cms API key to...
Back
Top