header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Persistent Cross-Site Scripting in WordPress Activity Log plugin

A stored Cross-Site Scripting (XSS) vulnerability has been found in the WordPress Activity Log plugin. By using this vulnerability an attacker can inject malicious JavaScript code into the application, which will execute within the browser of any user who views the Activity Log, in general WP admin.

Persistent Cross-Site Scripting in All in One SEO Pack WordPress Plugin

A stored Cross-Site Scripting vulnerability was found in the Bot Blocker functionality of the All in One SEO Pack WordPress Plugin (1+ million active installs). This issue allows an attacker to perform a wide variety of actions, such as stealing Administrators' session tokens, or performing arbitrary actions on their behalf.

Belkin Router AC1200, Firmware: 1.00.27 – Authentication Bypass

The Belkin AC1200 is vulnerable to authentication bypass due to it performing client side authentication after you attempt to login after already having failed a login. That webpage, loginpserr.stm contains the md5 hash value of the administrators password. This can be exploited by extracting that hash value, and passing it in the pws field in a post request to login.cgi.

Streamo – Online Radio And Tv Streaming CMS

An SQL injection vulnerability exists in Streamo - Online Radio And Tv Streaming CMS, which allows an attacker to execute arbitrary SQL commands via the 'id' parameter in the 'programs.php' script. An attacker can exploit this vulnerability by sending a malicious HTTP request containing a crafted SQL statement to the vulnerable application. This can be done by appending a malicious payload to the 'id' parameter in the 'programs.php' script, such as '999999.9' union all select concat(0x7e,0x27,unhex(Hex(cast(database() as char))),0x27,0x7e),0x31303235343830303536 and 'x'='x'. An attacker can also exploit this vulnerability using the sqlmap tool by sending a malicious HTTP request containing a crafted SQL statement to the vulnerable application.

CyberPower Systems PowerPanel 3.1.2 XXE Out-Of-Band Data Retrieval

PowerPanel suffers from an unauthenticated XML External Entity (XXE) vulnerability using the DTD parameter entities technique resulting in disclosure and retrieval of arbitrary data on the affected node via out-of-band (OOB) attack. The vulnerability is triggered when input passed to the xmlservice servlet using the ppbe.xml script is not sanitized while parsing the xml inquiry payload returned by the JAXB element translation.

MS-WINDBG-LOGVIEWER-BUFFER-OVERFLOW

WinDbg logviewer.exe is prone to a buffer overflow vulnerability when opening corrupted .lgv files. The vulnerability is caused due to a boundary error when handling user-supplied input. A specially crafted .lgv file can cause a buffer overflow, overwriting MMX registers and crashing the application.

Microsoft Process Kill Utility Buffer Overflow

The Kill tool (kill.exe), a tool used to terminate a process, part of the WinDbg program, is vulnerable to a SEH Buffer Overflow vulnerability. An attacker can exploit this vulnerability by sending a specially crafted input of about 512 bytes to the kill.exe program, which will cause a buffer overflow and overwrite the SEH handler. This can be used to execute arbitrary code.

Recent Exploits: