Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wp-pagenavi domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/u918112125/domains/exploit.company/public_html/wp-includes/functions.php on line 6114
Exploits 303 - exploit.company
header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Cross-Site Scripting Vulnerability in Moodle ‘help.php’ Script

Moodle is susceptible to a cross-site scripting vulnerability in the 'help.php' script. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamic web content. This issue may allow for theft of cookie-based authentication credentials. Other attacks are also possible.

Remote Heap Based Buffer Overflow in Sphiro HTTPD

Sphiro HTTPD is prone to a remote heap based buffer overflow vulnerability. This issue is due to a failure of the application to properly verify buffer boundaries before storing input in fixed buffers. Immediate consequences of this attack may cause the affected daemon to crash, denying service to legitimate users. Furthermore, due to the nature this issue, arbitrary code execution may be possible. This would occur in the context running daemon process.

DiGi WWW Server Remote Denial of Service Vulnerability

The DiGi WWW Server is vulnerable to a remote denial of service attack. This vulnerability can be exploited by sending a malformed HTTP GET request to the server, causing the web server process to consume excessive CPU resources. An example of a malicious request is: GET ///[660Kb of /]/// HTTP/1.1

SMS Confirmation Message Bypass Vulnerability in Siemens S55

Siemens S55 is affected by an SMS confirmation message bypass vulnerability. This issue is due to a race condition error that allows a malicious programmer to send SMS messages from unsuspecting cellular telephone user's telephones while obscuring the confirmation request. This issue may allow a malicious programmer to develop an application that can send SMS messages without the cellular telephone user's knowledge.

Veritas Netbackup hostname overflow

Multiple unspecified local buffer overrun and format string vulnerabilities have been reported to exist in various setuid Veritas NetBackup binaries. These issues may be exploited to execute arbitrary code with root privileges.

Veritas NetBackup Multiple Local Buffer Overrun and Format String Vulnerabilities

Multiple unspecified local buffer overrun and format string vulnerabilities have been reported to exist in various setuid Veritas NetBackup binaries. These issues may be exploited to execute arbitrary code with root privileges.

PHP-Nuke Video Gallery Module SQL Injection Vulnerabilities

The PHP-Nuke Video Gallery module is affected by multiple SQL injection vulnerabilities. These vulnerabilities arise due to the application's failure to properly sanitize user-supplied input before using it in an SQL query. An attacker can exploit these issues to manipulate query logic, potentially gaining unauthorized access to sensitive information like the administrator password hash or corrupting the database data. It may also be possible to exploit latent vulnerabilities in the underlying database implementation.

Recent Exploits: