header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Vulnerability Type
No results found
Buffer Overflow (19)
Cross-Site Request Forgery (CSRF) (15)
SQL Injection (13)
Privilege Escalation (11)
Stored XSS (11)
DLL Hijacking (9)
Elevation of Privileges (9)
Authentication Bypass (8)
Cross-Site Request Forgery (8)
Local Privilege Escalation (7)
Denial of Service (6)
Local File Inclusion Vulnerability (6)
Remote Code Execution (5)
Stored Cross Site Scripting (5)
Arbitrary File Deletion (4)
Command Injection (4)
Cross-Site Scripting (4)
Cross-Site Scripting (XSS) (4)
Cross-site Scripting (XSS) and Cross-site Request Forgery (CSRF) (4)
CSRF (4)
Database Backup Disclosure (4)
Directory Traversal (4)
Hard-coded credentials (4)
Local File Inclusion (4)
Arbitrary File Upload (3)
Authenticated Arbitrary PHP Code Execution (3)
Heap-overflow (3)
Local File Disclosure (3)
Password Disclosure (3)
Remote Arbitrary File Deletion (3)
Remote Buffer Overflow (3)
Remote Denial of Service (3)
Stack Buffer Overflow (3)
Stack-Based Buffer Overflow (3)
Stored Cross-Site Scripting (XSS) (3)
Unauthenticated Device Configuration and Client-Side Hidden Functionality Disclosure (3)
Authenticated OS Command Injection (2)
Cross-Site Request Forgery and Stored XSS (2)
Heap Memory Corruption (2)
HTTP Response Splitting (2)
Insecure Direct Object References (2)
Insecure File Permissions (2)
Multiple Blind SQL Injection (2)
Multiple Cross-Site Scripting (2)
Multiple XSS Vulnerabilities (2)
Open Redirection (2)
Stack Overflow (2)
Stored Xss and CSRF (2)
Stored XSS and SQL Injection (2)
Unauthenticated Device Configuration and Hidden Functionality Disclosure (2)
CWE
No results found
79 (56)
119 (41)
352 (38)
89 (31)
22 (30)
78 (25)
264 (24)
287 (12)
N/A (10)
200 (9)
798 (9)
20 (8)
427 (8)
400 (6)
284 (5)
601 (5)
611 (5)
113 (4)
434 (4)
639 (4)
121 (3)
122 (3)
16 (3)
94 (3)
134 (2)
259 (2)
269 (2)
276 (2)
311 (2)
369 (2)
77 (2)
Unknown (2)
120 (Buffer Copy without Checking Size of Input) (1)
352 (Cross-Site Request Forgery) (1)
4 (1)
426 (1)
462 (1)
6 (1)
732 (1)
89.1 (1)
912 (1)
918 (1)
98 (1)
CPE
No results found
N/A (18)
a:stefan_p_minder:u5cms (4)
a:r_radio_network:fm_transmitter:1.07 (3)
a:c97net:cart_engine:3.0.0 (2)
a:c97net:kemana_directory:1.5.6 (2)
a:c97net:kemana:1.5.6 (2)
a:edrawsoft:edraw_flowchart_activex_control:2.3 (2)
a:emby_llc:emby_mediaserver (2)
a:impresspages_uab:impresspages_cms (2)
a:jic:sonicdicom_pacs:2.3.2 (2)
a:logicaldoc:logicaldoc_enterprise (2)
a:mantisbt_group:mantisbt (2)
a:microweber_team:microweber:1.0.3 (2)
a:net4visions.com:imanager_plugin:1.2.8 (2)
a:next_click_ventures:realtyscript:4.0.2 (2)
a:omeka_team:omeka (2)
a:openmrs:openmrs (2)
a:operation_technology:etap:14.1.0.0 (2)
a:oxwall_software_foundation:oxwall (2)
a:petr_nejedly:serviio (2)
a:soca_technology_co.ltd:soca_access_control_system (2)
a:telecomunicazioni_elettro_milano:tem_opera_plus_fm_family_transmitter:35.45 (2)
a:teradek:vidiu (2)
a:video_medios:vimesa_vhf_fm_transmitter_blue_plus:9.7.1 (2)
a:wowza_media_systems:wowza_streaming_engine (2)
a:wowza_media_systems:wowza_streaming_engine:4.5.0 (2)
a:zen_ventures:zen_cart (2)
h:beward:n100_h.264_vga_ip_camera (2)
h:dasan_networks:h640gr-02 (2)
h:dasan_networks:h64x_series (2)
h:elber:ese_dvb-s_s2_satellite_receiver:1.5.179 (2)
h:flir:ax8_thermal_camera (2)
h:schneider_electric:pelco_sarix_spectra_cameras (2)
o:nethserver:nethserver:7.3.1611-u1-x86_64 (2)
_ltd.:espace_meeting:1.0.8.8:*:*:*:*:*:*:* (1)
2.0.4 (1)
2.3:a:digital_scribe:digital_scribe:1.5 (1)
2.3:a:idera_inc:up.time:7.5.0:*:*:*:*:*:*:* (1)
2.3:a:novacapta_software_&_consulting_gmbh:ov3_online_administration:3.0 (1)
2.6:a:ininet_solutions_gmbh:spidercontrol_scada_web_server_service:2.02.0000 (1)
2.6.0 beta (build 327) (1)
a:acestream:ace_player_hd:2.1.9 (1)
a:acros_security:0patch (1)
a:actimind:actitime (1)
a:adam_czajkowski:windu_cms (1)
a:adobe_systems:audition:3.0 (1)
a:adobe:extendscript_toolkit_cs5:3.5.0.52 (1)
a:adobe:extension_manager_cs5:5.0.298 (1)
a:adobe:indesign:cs3 (1)
a:aladdin:etoken_pki_client:4.5.52 (1)
Vendor
No results found
Ltd. (33)
Inc (30)
LLC (15)
FLIR Systems (10)
C97net (8)
Elber S.r.l. (8)
Austin Hughes Electronics Ltd. (7)
Huawei Technologies Co. (6)
NUUO Inc. (6)
ZKTeco Inc. | Xiamen ZKTeco Biometric Identification Technology Co. (6)
Beward R&D Co. (5)
Corel Corporation (5)
Schneider Electric SE (5)
Adobe Systems Inc. (4)
Dasan Networks (4)
Native Instruments GmbH (4)
OpenMRS Inc. (4)
R Radio Network (4)
Stefan P. Minder (4)
TECO Electric and Machinery Co. (4)
Telecomunicazioni Elettro Milano (TEM) S.r.l. (4)
Teradek (4)
Wowza Media Systems (4)
Idera Inc. (3)
ImpressPages UAB (3)
JIUN Corporation (3)
LogicalDOC Srl (3)
Miwisoft LLC (3)
MTP Scripts (3)
net4visions.com (3)
Petr Nejedly | Six Lines Ltd (3)
SOCA Technology Co. (3)
Telesquare Co. (3)
TP-LINK Technologies Co. (3)
ATutor (Inclusive Design Institute) (2)
BaleroCMS Software (2)
Crouzet Automatismes SAS (2)
Dell Inc. (2)
EdrawSoft (2)
Emby LLC (2)
EyeLock (2)
Fahad Ibnay Heylaal (2)
Google Inc. (2)
Horos Project (2)
iniNet Solutions GmbH (2)
IWCn Systems Inc. (2)
iWT Ltd. (2)
KYOCERA Corporation (2)
Leica Geosystems AG (2)
Lunar CMS (2)
Product Name
No results found
FLIR AX8 Thermal Camera (4)
FM Transmitter (4)
InfraPower Manager PPS-02-S (4)
OpenMRS (4)
TEM Opera Plus FM Family Transmitter (4)
u5CMS (4)
Wowza Streaming Engine (4)
Cart Engine (3)
eSpace Meeting (3)
ImpressPages CMS (3)
InfraPower PPS-02-S (3)
Kemana Directory (3)
MiwoFTP (3)
N100 H.264 VGA IP Camera (3)
NVRmini 2 (3)
Pelco VideoXpert (3)
Serviio (3)
SOCA Access Control System (3)
SonicDICOM PACS (3)
up.time (3)
ZKBioSecurity 3.0 (3)
Balero CMS (2)
Croogo (2)
EDraw Flowchart ActiveX Control (2)
eLMS Pro (2)
Emby MediaServer (2)
eSpace (2)
ETAP (2)
FaceSentry Access Control System (2)
Family Connections (2)
GNU Barcode (2)
GPON ONT WiFi Router H64X Series (2)
H64X Series (2)
Horos (2)
iManager Plugin (2)
KONTAKT 4 PLAYER (2)
KYOCERA Net Admin (2)
LogicalDOC Enterprise (2)
Lunar CMS (2)
MantisBT (2)
Microweber (2)
NethServer (2)
NUUO NVRmini (2)
NVRmini2 (2)
O2 Connection Manager (2)
Omeka (2)
Oxwall (2)
Pacer Edition CMS (2)
Pelco Sarix/Spectra Cameras (2)
PHlyMail Lite (2)
Version
From
No results found
3.1 (10)
1.0 (9)
2.2 (7)
Q213V1 (Firmware: V2395S) (7)
2.1 (6)
1.11.2 and 1.10.0) (4)
2.0 (Platform 1.11.4 (Build 6ebcaf) (4)
3.0.1.0_R_230 (4)
35.45 (4)
M2.1.6.04C014 (4)
OpenMRS 2.3 (4)
01.07 (3)
1.0.3 (3)
1.0.5 (3)
1.17.13 (3)
1.2 (3)
1.3.3 GA and 1.3.2 (3)
1.3.4 GA (3)
1.4 (3)
1.5.6 (3)
1.8.0.0 PRO (3)
2.3.2002 (3)
3.0.0 (3)
3.9.2002 (3)
7.5.0 (build 16) (3)
eSpace 1.1.11.103 (3)
Firmware version: 8.0.0.64 (3)
Firmware: 1.32.16 (3)
FwVer: SDT-CS3B1 (3)
OS: neco_v1.8-0-g7ffe5b3 (3)
Release: 1.4.1 (3)
Software version: 10.0.2.43 (3)
sw version 1.2.0 (3)
0.01 Revision 0 (2)
0.99 (2)
1.00.395 (2)
1.1 (2)
1.12.0105 (2)
1.3.9f (2)
1.5.179 Revision 904 (2)
1.7.0 (build 7907 and 7906) (2)
14.1.0.0 (2)
180612 (2)
2.0 (build 7651) (2)
2.0.0 (2)
2.1.8.0 (2)
2.2.1 (2)
2.3 (2)
2.3.2 (2)
2.45-1045 (2)
To
No results found
1.0 (9)
N/A (9)
3.5-RC7 (6)
Q216V3 (Firmware: IPD-02-FW-v03) (6)
3.0.0 (5)
Unknown (5)
01.07 (4)
35.45 (4)
M2.1.6.04C014 (4)
OpenMRS-TB System (OpenMRS 1.9.7 (Build 60bd9b)) (4)
1.0.3 (3)
1.0.5 (3)
1.17.13 (3)
1.2 (3)
1.5.6 (3)
3.0.1.0_R_230 (3)
3.6 (3)
3.9.2003 (3)
7.4.0 (build 13) (3)
Firmware: 1.32.16 (3)
OS: neco_v1.8-0-g7ffe5b3 (3)
1.2.1 (2)
1.229 Revision 440 (2)
1.3.9f (2)
1.6.1 (2)
1.7.0 (build 7907 and 7906) (2)
1.7.2003 (2)
14.1.0.0 (2)
180612 (2)
2.0 (build 7651) (2)
2.0.0 (2)
2.0.41 (2)
2.1 (2)
2.1.8.0 (2)
2.2 (2)
2.3 (2)
2.3.1 (2)
2.3.2002 (2)
2.4.10 (2)
2.45-1045 (2)
2000.7.2 (2)
3.0 (2)
3.3 (2)
3.4.0906 (2)
3.51 (2)
4.0.2 (2)
4.30.063 (2)
4.5.0 (build 18676) (2)
7.1.1 (2)
7.3.1611-u1-x86_64 (2)
Severity Type
No results found
HIGH (324)
MEDIUM (19)
N/A (16)
CRITICAL (2)
Severity Number
No results found
7 (110)
5 (80)
7.5 (78)
8 (63)
8.8 (32)
2 (25)
N/A (22)
6.1 (21)
9 (12)
5.5 (10)
Gjoko 'LiquidWorm' Krstic
No results found
SecurityFocus (6696)
Unknown (2432)
Ihsan Sencan (887)
Gjoko 'LiquidWorm' Krstic (361)
Anonymous (353)
Project Zero (308)
milw0rm.com (271)
juan vazquez (245)
rgod (243)
LiquidWorm (222)
MC (202)
ajann (187)
Luigi Auriemma (187)
N/A (187)
Google Security Research (183)
indoushka (182)
shinnai (162)
sinn3r (154)
hdm (138)
John Page (aka hyp3rlinx) (131)
jduck (121)
cr4wl3r (113)
Hussin X (113)
Not mentioned (111)
Vulnerability Laboratory Research Team (108)
ZoRLu (99)
Kacper (a.k.a Rahim) (92)
nu11secur1ty (91)
mr_me (90)
Easy Laster (89)
CWH Underground (88)
S@BUN (84)
SirGod (83)
Ahmet Ümit BAYRAM (80)
High-Tech Bridge Security Research Lab (80)
xoron (80)
Dr_IDE (78)
Sid3^effects aKa haRi (78)
Todor Donev (75)
hyp3rlinx (74)
Stack (73)
Francis Provencher (71)
High-Tech Bridge SA - Ethical Hacking & Penetration Testing (70)
Ismail Tasdelen (70)
AntiSecurity (69)
His0k4 (68)
Kingcope (65)
ThE g0bL!N (65)
Not Specified (64)
Miroslav Stampar (61)
Platforms Tested
No results found
Microsoft Windows XP Professional SP3 (EN) (41)
Microsoft Windows 7 Ultimate SP1 (EN) (39)
Microsoft Windows 7 Professional SP1 (EN) (37)
Apache 2.2.14 (Win32) (20)
MySQL 5.1.41 (20)
PHP 5.3.1 (20)
Apache-Coyote/1.1 (19)
MySQL 5.5.25a (16)
Apache/2.4.7 (Win32) (15)
MySQL 5.6.14 (15)
PHP/5.5.6 (15)
Apache 2.4.2 (Win32) (14)
PHP 5.6.3 (13)
Apache 2.4.10 (Win32) (12)
Linux (12)
MySQL 5.6.21 (12)
Microsoft Windows XP Professional SP3 (English) (11)
PHP/5.4.7 (10)
PHP/5.3.9 (9)
Windows (9)
embOS/IP (8)
lighttpd/1.4.28 (8)
NBFM Controller (8)
PHP 5.4.4 (8)
lighttpd/1.4.30-devel-1321 (7)
lighttpd/1.4.31 (7)
Linux 2.6.28 (armv5tel) (7)
SQLite/3.7.10 (7)
Boa/0.94.14rc21 (6)
Microsoft Windows 7 Professional SP1 EN 64bit (6)
PHP (6)
Apache 2.2.21 (5)
GNU/Linux 2.6.31.8 (armv5tel) (5)
lighttpd/1.4.33 (5)
Microsoft Windows 7 Professional (5)
Microsoft Windows 7 Ultimate SP1 (EN) 64bit (5)
MySQL (5)
PHP/5.5.3 (5)
Apache Tomcat/6.0.36 (4)
Apache Tomcat/7.0.26 (4)
Apache Tomcat/7.0.56 (4)
Apache/2.2.22 (Debian) (4)
Apache2 (4)
CSBtechDevice (4)
Farady ARM Linux 2.6 (4)
GNU/Linux 3.0.8 (armv7l) (4)
Kali Linux 3.7-trunk-686-pae (4)
Microsoft Windows XP Professional SP3 (4)
MySQL 5.5.20 (4)
MySQL 5.5.28 (4)
Year
Year
No results found
2016 (56)
2014 (43)
2015 (40)
2011 (32)
2018 (30)
2017 (28)
2010 (25)
2013 (24)
2023 (20)
2009 (18)
2012 (16)
2019 (13)
2008 (8)
2020 (2)
Not Specified (2)
Unknown (2)
2022 (1)

Explore all Exploits:

Elber ESE DVB-S/S2 Satellite Receiver 1.5.x Device Configuration Vulnerability

The Elber ESE DVB-S/S2 Satellite Receiver 1.5.x devices suffer from an unauthenticated device configuration and client-side hidden functionality disclosure. An attacker can exploit this vulnerability to manipulate device configuration settings and reveal hidden functionalities without authentication.

Elber Wayber Analog/Digital Audio STL 4.00 Device Configuration Vulnerability

Elber Wayber Analog/Digital Audio STL 4.00 devices are vulnerable to unauthenticated device configuration and disclosure of hidden functionalities on the client-side. An attacker can exploit this issue to modify device configurations without authentication and reveal hidden functionalities that are not intended for regular users.

Elber ESE DVB-S/S2 Satellite Receiver 1.5.x Authentication Bypass

The Elber ESE DVB-S/S2 Satellite Receiver 1.5.x devices are prone to an authentication bypass vulnerability due to unauthorized access to the password management function. By manipulating the set_pwd endpoint, attackers can change the password of any user, granting them unauthorized administrative access to critical parts of the application and compromising system security.

Elber Cleber/3 Broadcast Multi-Purpose Platform 1.0.0 Authentication Bypass

The Elber Cleber/3 Broadcast Multi-Purpose Platform 1.0.0 is vulnerable to an authentication bypass issue that allows attackers to gain unauthorized administrative access by manipulating the set_pwd endpoint to overwrite user passwords within the system. This exploit compromises the security of the device's system.

Elber Reble610 M/ODU XPIC IP-ASI-SDH Microwave Link Authentication Bypass

The Elber Reble610 device is vulnerable to an authentication bypass issue that allows attackers to gain unauthorized and administrative access to protected areas of the application. This vulnerability occurs due to a flaw in the password management functionality, specifically in the set_pwd endpoint, which can be manipulated by attackers to overwrite the password of any user within the system.

Elber Reble610 M/ODU XPIC IP-ASI-SDH Microwave Link Device Configuration Vulnerability

The Elber Reble610 M/ODU XPIC IP-ASI-SDH Microwave Link Device allows an attacker to configure the device without authentication and reveals hidden functionality on the client-side. By exploiting this vulnerability, an unauthorized user can manipulate device settings and access undisclosed features.

Elber Cleber/3 Broadcast Multi-Purpose Platform 1.0.0 Device Configuration Vulnerability

The Elber Cleber/3 Broadcast Multi-Purpose Platform 1.0.0 device is prone to an unauthenticated device configuration vulnerability and client-side hidden functionality disclosure. An attacker can exploit this issue by sending unauthorized commands to the affected device, leading to unauthorized access and potential disclosure of hidden functionalities.

Elber Signum DVB-S/S2 IRD Unauthenticated Configuration Disclosure

Elber Signum DVB-S/S2 IRD devices with affected versions 1.999, 1.317, 1.220, 1.217, 1.214, 1.193, 1.175, and 1.166 are prone to unauthenticated device configuration and client-side hidden functionality disclosure. An attacker can exploit this vulnerability to manipulate device configurations and reveal hidden functionalities without authentication.

TELSAT marKoni FM Transmitter 1.9.5 Root Command Injection PoC Exploit

The TELSAT marKoni FM transmitters are vulnerable to unauthenticated remote code execution with root privileges. By manipulating the Email settings' WAN IP info service, which uses the 'wget' module, an attacker can exploit a command injection flaw. This allows unauthorized access with administrative privileges through the 'url' parameter in the HTTP GET request to ekafcgi.fcgi.

Recent Exploits:

cqrsecured