header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Multiple Cross-Site Scripting Vulnerabilities in IBM Tivoli Access Manager for e-business

IBM Tivoli Access Manager for e-business is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.

IBM Tivoli Access Manager for e-business Cross-Site Scripting Vulnerabilities

IBM Tivoli Access Manager for e-business is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.

OpenBSD ICMPv6 fragment remote execution PoC

The PoC executes the shellcode (int 3) and returns. It overwrites the ext_free() function pointer on the mbuf and forces a m_freem() on the overflowed packet. The Impacket library is used to craft and send packets. Currently, only systems supporting raw sockets and the PF_PACKET family can run the included proof-of-concept code.

IBM Tivoli Access Manager for e-business Multiple Cross-Site Scripting Vulnerabilities

IBM Tivoli Access Manager for e-business is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.

Cross-site scripting vulnerabilities in IBM Tivoli Access Manager for e-business

The IBM Tivoli Access Manager for e-business is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.

w-Agora Local File Inclusion and Cross-Site Scripting Vulnerabilities

w-Agora is prone to a local file-include vulnerability and a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input.An attacker can exploit the local file-include vulnerability using directory-traversal strings to view and execute local files within the context of the webserver process. Information harvested may aid in further attacks.The attacker may leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.

WBBlog (XSS/SQL) Multiple Remote Vulnerabilities

The WBBlog application is vulnerable to both XSS and SQL Injection attacks. The SQL Injection vulnerability can be exploited by sending a specially crafted request to the index.php file, allowing an attacker to execute arbitrary SQL commands. The XSS vulnerability can be exploited by injecting malicious code into the 'e_id' parameter of the viewentry page, potentially leading to session hijacking or defacement of the website.

Cross-Site Scripting Vulnerability in pecio cms

pecio cms is prone to a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and launch other attacks.

Recent Exploits: