Biggest News Aggregation in the World
📰 Exploit Title News

Page 12 - Exploit Title News Today

Fast, Ad-Free News Updates

Stay updated with breaking news from Exploit Title. Real-time updates on events, politics, business and more.

ChurchCRM 4.5.3 SQL Injection - KizzMyAnthia.com

# Exploit Title: ChurchCRM 4.5.3 - Authenticated SQL Injection# Date: 27-04-2023# Exploit Author: Iyaad Luqman K# Software Link: https://github.com/ChurchCRM/CRM/releases# Vendor Homepage: http://churchcrm.io/# Version: 4.5.3# Tested on: Windows, Linux# CVE: CVE-2023-24685ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Event Attendance reports module.- After Logging in, go
Iyaad Luqman Software Link Exploit Title Exploit Author Vendor Homepage Event Attendance

Online Book Store 1.0 SQL Injection - KizzMyAnthia.com

# Exploit Title: Online Book Store 1.0 - (process.php) SQL injection# Google Dork: 4/26/2023# Exploit Author: Or4nG.M4n# Vendor Homepage: https://projectworlds.in/free-projects/php-projects/online-book-store-project-in-php/# Software Link: https://github.com/projectworlds32/online-book-store-project-in-php/archive/master.zip# Version: 1.0* STEPS *1- go to any book and add it to cart2- after that u will redirected to /cart.php3- click on Go To Checkout /checkout.php4- inject your'e injecton ...
Software Link Online Book Exploit Title Online Book Store Google Dork Exploit Author

Piwigo 13.6.0 Cross Site Scripting - KizzMyAnthia.com

Exploit Title: Piwigo 13.6.0 - Stored Cross-Site Scripting (XSS)Application: PiwigoVersion: 13.6.0 Bugs: Stored XSSTechnology: PHPVendor URL: https://piwigo.org/Software Link: https://piwigo.org/get-piwigoDate of found: 18.04.2023Author: Mirabbas AğalarovTested on: Linux 2. Technical Details & POC========================================steps: 1.After uploading the image, we write payload: Host: localhostContent-Length: 159Cache-Control: max-age=0sec-ch-ua: "Not?A_Brand";v="8&...
Software Link Exploit Title Stored Cross Site Scripting

Chitor-CMS 1.1.2 SQL Injection - KizzMyAnthia.com

#!/usr/bin/python3######################################################## # # Exploit Title: Chitor-CMS v1.1.2 - Pre-Auth SQL Injection ## Date: 2023/04/13 ## ExploitAuthor: msd0pe ## Project: https://github.com/waqaskanju/Chitor-CMS ## My Github: https://github.com/msd0pe-1 ## Patched the 2023/04/16: 69d3442 commit ## ########################################################__description__ = 'Chitor-CMS < 1.1.2 Pre-Auth SQL Injection.'__author__ = 'msd0pe'__version__ = &#...
Exploit Title

Stay Updated with Latest News

Get breaking news updates delivered to your inbox

Browse All News →

ProjeQtOr Project Management System 10.3.2 Shell Upload

Exploit Title: ProjeQtOr Project Management System 10.3.2 -Remote Code Execution (RCE)Application: ProjeQtOr Project Management SystemVersion: 10.3.2Bugs: Remote Code Execution (RCE) (Authenticated) via file uploadTechnology: PHPVendor URL: https://www.projeqtor.orgSoftware Link: https://sourceforge.net/projects/projectorria/files/projeqtorV10.3.2.zip/downloadDate of found: 19.04.2023Author: Mirabbas AğalarovTested on: Linux 2. Technical Details & POC========================================...
Software Link Exploit Title Projeqtor Project Management System Remote Code Execution Projeqtor Project Management

Franklin Fueling Systems TS-550 Hash Disclosure / Default Credentials

# Exploit Title: Franklin Fueling Systems TS-550 - Default Password# Date: 4/16/2023# Exploit Author: parsa rezaie khiabanloo# Vendor Homepage: Franklin Fueling Systems (http://www.franklinfueling.com/)# Version: TS-550# Tested on: Linux/Android(termux)Step 1 : attacker can using these dorks and access to find the panelinurl:"relay_status.html"inurl:"fms_compliance.html"inurl:"fms_alarms.html"inurl:"system_status.html"inurl:"system_reports.html'i...
Exploit Title Franklin Fueling Systems Exploit Author Vendor Homepage

Bang Resto 1.0 SQL Injection - KizzMyAnthia.com

# Exploit Title: Bang Resto v1.0 - 'Multiple' SQL Injection# Date: 2023-04-02# Exploit Author: Rahad Chowdhury# Vendor Homepage:https://www.hockeycomputindo.com/2021/05/restaurant-pos-source-code-free.html# Software Link:https://github.com/mesinkasir/bangresto/archive/refs/heads/main.zip# Version: 1.0# Tested on: Windows 10, PHP 7.4.29, Apache 2.4.53# CVE: CVE-2023-29849*Affected Parameters:*btnMenuItemID, itemID, itemPrice, menuID, staffID, itemPrice, itemID[],itemqty[], btnMenuItemID...
Rahad Chowdhury Software Link Exploit Title Bang Resto Exploit Author Vendor Homepage

Bang Resto 1.0 Cross Site Scripting - KizzMyAnthia.com

# Exploit Title: Bang Resto v1.0 - Stored Cross-Site Scripting (XSS)# Date: 2023-04-02# Exploit Author: Rahad Chowdhury# Vendor Homepage:https://www.hockeycomputindo.com/2021/05/restaurant-pos-source-code-free.html# Software Link:https://github.com/mesinkasir/bangresto/archive/refs/heads/main.zip# Version: 1.0# Tested on: Windows 10, PHP 7.4.29, Apache 2.4.53# CVE: CVE-2023-29848*Steps to Reproduce:*1. First login to your admin panel.2. then go to Menu section and click add new menu from group.y...
Rahad Chowdhury Software Link Exploit Title Bang Resto Stored Cross Site Scripting Exploit Author

File Replication Pro 7.5.0 Insecure Permissions / Privilege Escalation

# Exploit Title: File Replication Pro 7.5.0 - Password disclosure/reset & PrivEsc due Incorrect Access Control# Date: 2023-04-13# Exploit Author: Andrea Intilangelo# Vendor Homepage: http://www.diasoft.net - https://www.filereplicationpro.com# Software Link: http://www.filereplicationpro.com/install/InstData/Windows_64_Bit/VM/frpro.exe# Version: 7.5.0# Tested on: Windows 10 Pro 22H2 x64# CVE: CVE-2023-26918Incorrect file/folder permissions in Diasoft Corporation's File Replication Pro 7...
Andrea Intilangelo Program Filesfilereplicationproprunsrv Software Link Program Files Windows Services Diasoft Corporation File Replication Pro

Explore More Categories

World News India News Business Technology Sports Entertainment Health Science