header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

MediaCoder PMP Edition 0.8.17 Buffer Overflow Exploit (SEH)

MediaCoder PMP Edition 0.8.17 is vulnerable to a buffer overflow vulnerability due to improper bounds checking of user-supplied input. An attacker can exploit this vulnerability by supplying a specially crafted M3U file, which when opened in MediaCoder PMP Edition 0.8.17, can cause a buffer overflow and allow arbitrary code execution.

GLPI v0.83.8 Multiple Error-based SQL Injection Vulnerabilities

Input passed via the POST parameter 'users_id_assign' in '/ajax/ticketassigninformation.php' script, POST parameter 'filename' in '/front/document.form.php' script, and POST parameter 'table' in 'glpi/ajax/comments.php' script is not properly sanitised before being used in SQL queries. This can be exploited by a malicious attacker to manipulate SQL queries by injecting arbitrary SQL code in the affected application.

SPBAS Business Automation Software- XSS & CSRF Vulnerability

The SPBAS Business Automation Software is vulnerable to Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF). An attacker can inject malicious code into the first name and last name fields of the ‘My Info’ page, as well as the security question field. Additionally, an attacker can craft a malicious HTML page to change customer information and security question answer.

Fly-High CMS Unrestricted File Upload Exploit

An attacker might write to arbitrary files or inject arbitrary code into a file with this vulnerability. User tainted data is used when creating the file name that will be opened or when creating the string that will be written to the file. An attcker can exploit this vulnerability to upload a malicious file to the server and execute arbitrary code.

Recent Exploits: