header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Mitel Audio and Web Conferencing Remote Command Injection Vulnerability

Mitel Audio and Web Conferencing (AWC) is prone to a remote command-injection vulnerability because it fails to adequately sanitize user-supplied input data. Remote attackers can exploit this issue to execute arbitrary shell commands with the privileges of the user running the application.

Calibre Cross-Site Scripting and Directory Traversal Vulnerabilities

The Calibre software is prone to a cross-site scripting vulnerability and a directory-traversal vulnerability due to insufficient sanitization of user-supplied input. Exploiting these vulnerabilities allows an attacker to execute arbitrary script code in the browser of an unsuspecting user and view arbitrary local files and directories within the context of the webserver. This can lead to the theft of authentication credentials and other sensitive information, which can be used to launch further attacks.

Katalog Plyt Audio (pl) <= 1.0 Remote SQL Injection Exploit

This exploit allows an attacker to execute SQL injection attacks on the Katalog Plyt Audio script version 1.0. The vulnerability exists due to improper input validation, which allows an attacker to manipulate SQL queries and gain unauthorized access to the database.

Habari Multiple Cross-Site Scripting Vulnerabilities

Habari is prone to multiple cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input data. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.

Openfiler Cross-Site Scripting Vulnerability

Openfiler is vulnerable to a cross-site scripting (XSS) attack due to inadequate input sanitization. An attacker can exploit this vulnerability by injecting arbitrary script code through user-supplied data. This can lead to the execution of malicious scripts in the browser of a targeted user, potentially allowing the attacker to steal authentication credentials and carry out further attacks.

FreeNAS Multiple Cross-Site Scripting Vulnerabilities

FreeNAS is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.

Mafya Oyun Scrpti SQL Injection Vulnerability

The Mafya Oyun Scrpti application is prone to an SQL-injection vulnerability. This vulnerability occurs due to the application's failure to properly sanitize user-supplied input before using it in an SQL query. A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.

Cross-Site Scripting Vulnerabilities in Radius Manager

Radius Manager is prone to multiple cross-site-scripting vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.

Recent Exploits: