header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Netis WF2419 2.2.36123 – Remote Code Execution

Netis WF2419 is vulnerable to remote code execution due to improper input validation. An attacker can send a specially crafted HTTP POST request to the vulnerable page '/cgi-bin-igd/netcore_set.cgi' with a malicious command in the 'tools_ip_url' parameter. This will allow the attacker to execute arbitrary commands on the vulnerable device.

Cacti v1.2.8 Unauthenticated Remote Code Execution

Cacti v1.2.8 is vulnerable to unauthenticated remote code execution. An attacker can send a malicious request with a payload to the graph_realtime.php file to execute arbitrary code on the server. The payload is sent as a cookie with the name 'Cacti' and the value is the malicious command encoded with the quote() function.

Tomcat-Ajp lfi

A vulnerability in Apache Tomcat's AJP protocol allows an attacker to read arbitrary files on the server. This is due to the lack of authentication and authorization checks in the AJP protocol. The vulnerability is present in all versions of Tomcat prior to 9.0.30, 8.5.50, and 7.0.99.

Comtrend VR-3033 – Authenticated Command Injection

The Comtrend VR-3033 is prone to Multiple Authenticated Command Injection vulnerability via ping and traceroute diagnostic page. Remote attackers are able to get full control and compromise the network managed by the router.

LPE and RCE in OpenSMTPD’s default install (CVE-2020-8794)

A vulnerability in OpenSMTPD's default install allows an attacker to execute arbitrary code with root privileges. The vulnerability is due to a lack of input validation in the SMTP protocol parser. An attacker can send a specially crafted SMTP command to the server, which will cause the parser to execute arbitrary code with root privileges. This can be used to gain access to the server and execute malicious code.

OpenSMTPD 6.6.3 – Arbitrary File Read

A vulnerability in OpenSMTPD allows an attacker to read arbitrary files on the system. This is due to a lack of proper input validation when handling the PATH_SPOOL PATH_OFFLINE directory. An attacker can exploit this vulnerability by creating a large number of files in the PATH_SPOOL PATH_OFFLINE directory, which will cause the program to crash when attempting to read the files.

PhpIX 2012 Professional – ‘id’ SQL Injection

PhpIX 2012 Professional is vulnerable to SQL Injection. An attacker can inject malicious SQL queries via the 'id' parameter in the product_detail.php page. This can be exploited to bypass authentication, access, modify and delete data in the back-end database.

Recent Exploits: