mount.cifs chdir() allows for arbitrary file identification as root. All versions prior to 5.4 are affected.
41c9373a80e2bccfd96a9841362dc921This python script scans for 58 vulnerable Joomla component payloads.
1f2e168c439731b5d2528a5ef6a5466bPSI suffers from a remote integer overflow denial of service vulnerability. Proof of concept code is included.
0237354cd81dac5592010af49e36942eWordpress suffers from an unauthenticated forced upgrade vulnerability.
a8cee2b4bf4fe5452182dfd96b3c61f0The SmbClientParser perl module suffers from a vulnerability that allows for remote command execution.
435e611466edb69599f8c7790d08fce3The Tikiwiki CMS has a vulnerability that allows an attacker to get the first 1000 bytes from an arbitrary file through the tiki-listmovies.php script.
5eee6c20979ac907f14a5250773f0b54wwwstats versions 3.21 and below suffer from a persistent cross site scripting vulnerability.
b7f7aebf9320772283841e111dbcc87dSimple exploit that demonstrates a script insertion vulnerability in wwwstats.
ec5f4aab77adfa1a9be1add8fed7cc49Cygwin is vulnerable to a buffer overflow when checking filename lengths. cygwin1.dll versions up to 1.5.7 are susceptible.
20fb5ba384fafc5019b93acaf0190eb4VTLS Inc.'s vtls.web.gateway CGI is susceptible to a cross site scripting vulnerability. Versions up to 48.1.0 are affected.
2a8b7b1bc67d3bbbf94037535e82cdfcMicrosoft IIS5 suffers from NTLM and basic authentication bypass vulnerabilities.
1b15b612bd51141e0b499c25a3feb7f0The BlueSocket web administration interface is vulnerable to a cross site scripting attack. Versions below 5.2 are susceptible.
cde2ee3ca53a545cca5919eb8071d8df123flashchat server versions 5.1 and below suffer from directory traversal attacks that allow for arbitrary file creation.
6b899581652a6d00c78163f8d0a75085