CVE-2024-38468

Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword...Read More ...

Continue Reading
Exploit for OS Command Injection in Php

CVE-2024-4577 In PHP when using Apache and PHP-CGI on Windows, if the system is set up to use certain code pages, Windows may use "Best-Fit" behavior to replace characters in command ...

Continue Reading
Exploit for CVE-2024-30078

CVE-2024-30078 Detection and Command Execution Script This project contains a NASL script that detects the CVE-2024-30078 vulnerability and executes a specified command if the target is vulnerable. Th ...

Continue Reading
Exploit for CVE-2024-36837

CVE-2024-36837 POC write URL in url.txt and run CVE-2024-36837.py CVE-2024-36837 In my freshman year, I found that an educational institution used CRMEB Mall as an online store in an Internet protect ...

Continue Reading
CVE-2024-5685

Users with "User:edit" and "Self:api" permissions can promote or demote themselves or other users by performing changes to the group's memberships via API cal ...

Continue Reading
Information Disclosure

github.com/cilium/cilium is vulnerable to Information Disclosure. The vulnerability is due to the output of cilium-bugtool containing sensitive data when the tool is run with the --envoy-dump flag in ...

Continue Reading
CVE-2024-6003 Guangdong Baolun Electronics IP Network Broadcasting Service Platform maps sql injection

A vulnerability was found in Guangdong Baolun Electronics IP Network Broadcasting Service Platform 2.0. It has been classified as critical. Affected is an unknown function of the file /api/v2/maps. Th ...

Continue Reading
CVE-2024-6003

A vulnerability was found in Guangdong Baolun Electronics IP Network Broadcasting Service Platform 2.0. It has been classified as critical. Affected is an unknown function of the file /api/v2/maps. Th ...

Continue Reading

Back to Main

Subscribe for the latest news: