New pages
From PwnWiki
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)
- 09:25, 24 June 2021 JQuery 1.7.2 任意文件下載漏洞 (hist | edit) [235 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> <pre> JQuery 1.7.2 </pre> ==FOFA== <pre> body="webui/js/jquerylib/jquery-1.7.2.min.js" </pre> ==POC== <pre> /webui/?g...")
- 09:11, 24 June 2021 Simple CRM 3.0 SQL注入漏洞 (hist | edit) [1,532 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Simple CRM 3.0 - 'email' SQL injection (Authentication Bypass) # Date: 22/06/2021 # Exploit Author: Rinku Kumar (rinku191) # Vendor Homepage: https://p...")
- 09:11, 24 June 2021 Online Library Management System 1.0 任意文件上傳漏洞 (hist | edit) [4,712 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Online Library Management System 1.0 - Arbitrary File Upload Remote Code Execution (Unauthenticated) # Date: 23-06-2021 # Exploit Author: Berk Can Geyik...")
- 09:09, 24 June 2021 Online Library Management System 1.0 SQL注入漏洞 (hist | edit) [2,571 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Online Library Management System 1.0 - 'Search' SQL Injection # Date: 23-06-2021 # Exploit Author: Berk Can Geyikci # Vendor Homepage: https://www.sourc...")
- 09:07, 24 June 2021 WordPress Plugin Poll, Survey, Questionnaire and Voting system 1.5.2 SQL注入漏洞 (hist | edit) [8,001 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: WordPress Plugin Poll, Survey, Questionnaire and Voting system 1.5.2 - 'date_answers' Blind SQL Injection # Date: 09/06/2021 # Exploit Author: inspired...")
- 09:06, 24 June 2021 CVE-2021-24383 WordPress Plugin WP Google Maps 8.1.11 XSS漏洞 (hist | edit) [729 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: WordPress Plugin WP Google Maps 8.1.11 - Stored Cross-Site Scripting (XSS) # Date: 22/6/2021 # Exploit Author: Mohammed Adam # Vendor Homepage: https://...")
- 15:27, 23 June 2021 CVE-2021-24365 WordPress Admin Columns XSS漏洞 (hist | edit) [747 bytes] Pwnwiki (talk | contribs) (Created page with "==INFO== WordPress Admin Columns plugin versions below 5.5.2 Pro and 4.3.2 Pro suffers from a cross site scripting vulnerability. ==XSS== <pre> Proof of Concept (PoC): 1. Cr...")
- 15:22, 23 June 2021 SDWAN智能網關應用系統弱口令&後台任意文件上傳漏洞 (hist | edit) [336 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> <translate> SDWAN智能網關應用系統 </translate> ==FOFA== <pre> "”unierm_brand/logo.png”" </pre> <translat...")
- 08:09, 23 June 2021 Phone Shop Sales Managements System 1.0 不安全的直接對象引用(IDOR) (hist | edit) [689 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Phone Shop Sales Managements System 1.0 - Insecure Direct Object Reference (IDOR) # Date: 21/06/2021 # Exploit Author: Pratik Khalane # Vendor Homepage:...")
- 08:09, 23 June 2021 Responsive Tourism Website 3.1 遠程代碼執行漏洞/zh-cn (hist | edit) [3,434 bytes] Pwnwiki (talk | contribs) (Created page with "==影响版本==")
- 08:06, 23 June 2021 Responsive Tourism Website 3.1 遠程代碼執行漏洞 (hist | edit) [3,470 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==影響版本== </translate> Version: V 3.1 ==EXP== <pre> # Exploit Title: Responsive Tourism Website 3.1 - Remote Code Execution (RCE) (Unauthenti...")
- 08:05, 23 June 2021 ASUS DisplayWidget Software 3.4.0.036 - 'ASUSDisplayWidgetService' Unquoted Service Path (hist | edit) [1,814 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: ASUS DisplayWidget Software 3.4.0.036 - 'ASUSDisplayWidgetService' Unquoted Service Path # Date: 2021-06-21 # Exploit Author: Julio Aviña # Vendor Home...")
- 20:11, 22 June 2021 ThinkPHP借貸平臺0day (hist | edit) [870 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==特徵== </translate> <pre> <a class="fl" href="/index.php/index/jie.html" ><img src="/public/jie/images/jk.png" /></a> </pre> ==POC== <pre> POS...")
- 17:53, 22 June 2021 小額貸款系統0day (hist | edit) [443 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== 小額貸款系統0day </translate> ==FOFA== <pre> "/Public/Manage/js/cvphp.js" </pre> <translate> runtime日誌泄漏 後台...")
- 17:50, 22 June 2021 流量管控系統0day (hist | edit) [367 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== 流量管控系统 </translate> ==FOFA== <pre> "”unierm_brand/logo.png”" </pre> <translate> 登錄頁面可以看到默認口...")
- 17:28, 22 June 2021 Dedecms 帳號密碼泄漏漏洞 (hist | edit) [505 bytes] Pwnwiki (talk | contribs) (Created page with "{| style="margin: auto; width: 750px;color:green;" | style="text-align: left; margin: 1em 1em 1em 0; border: 1px solid #20A3C0; padding: .2em;" | {| cellspacing="2px" | valig...")
- 11:39, 22 June 2021 Sobey(索貝)Solar网络管理系统信息泄漏漏洞 (hist | edit) [1,072 bytes] Pwnwiki (talk | contribs) (Created page with "{| style="margin: auto; width: 750px;color:green;" | style="text-align: left; margin: 1em 1em 1em 0; border: 1px solid #20A3C0; padding: .2em;" | {| cellspacing="2px" | valig...")
- 10:57, 22 June 2021 NetSyS 用戶密碼泄漏漏洞/zh-cn (hist | edit) [87 bytes] Pwnwiki (talk | contribs) (Created page with "NetSyS 用户密码泄漏漏洞")
- 10:55, 22 June 2021 NetSyS 用戶密碼泄漏漏洞 (hist | edit) [123 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> NetSys ==POC== <pre> view-source:http://redacted </pre>")
- 21:56, 21 June 2021 Customer Relationship Management System (CRM) 1.0 遠程代碼執行漏洞 (hist | edit) [2,604 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==影響版本== </translate> Version: 1.x ==EXP== <pre> # Exploit Title: Customer Relationship Management System (CRM) 1.0 - Remote Code Execution...")
- 21:54, 21 June 2021 Remote Mouse GUI 3.008 本地權限提升漏洞 (hist | edit) [343 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==影響版本== </translate> Version: Remote Mouse 3.008 ==POC== <pre> Open remote mouse from the system tray Go to Settings Click "Change..." in t...")
- 21:53, 21 June 2021 Lexmark Printer Software G2 Installation Package 1.8.0.0 - 'LM bdsvc' Unquoted Service Path (hist | edit) [1,611 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Lexmark Printer Software G2 Installation Package 1.8.0.0 - 'LM__bdsvc' Unquoted Service Path # Date: 2021-06-20 # Exploit Author: Julio Aviña # Vendor...")
- 21:53, 21 June 2021 Simple CRM 3.0 XSS漏洞 (hist | edit) [1,737 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Simple CRM 3.0 - 'name' Stored Cross site scripting (XSS) # Date: 20/06/2021 # Exploit Author: Riadh Benlamine (rbn0x00) # Vendor Homepage: https://phpg...")
- 21:52, 21 June 2021 Simple CRM 3.0 CSRF漏洞 (hist | edit) [699 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> Version: 3.0 ==POC== <pre> <html> <body> <script>history.pushState('', '', '/')</script> <form action="http://...")
- 21:50, 21 June 2021 CVE-2021-32305 Websvn 2.6.0 遠程代碼執行漏洞 (hist | edit) [1,107 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> Version: 2.6.0 ==EXP== <pre> # Exploit Title: Websvn 2.6.0 - Remote Code Execution (Unauthenticated) # Date: 20/06/202...")
- 21:49, 21 June 2021 IFunbox 4.2 - 'Apple Mobile Device Service' Unquoted Service Path (hist | edit) [1,752 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: iFunbox 4.2 - 'Apple Mobile Device Service' Unquoted Service Path # Date: 2021-06-18 # Exploit Author: Julio Aviña # Vendor Homepage: https://www.i-fun...")
- 21:48, 21 June 2021 Wise Care 365 5.6.7.568 - 'WiseBootAssistant' Unquoted Service Path (hist | edit) [1,627 bytes] Pwnwiki (talk | contribs) (Created page with "<pre> # Exploit Title: Wise Care 365 5.6.7.568 - 'WiseBootAssistant' Unquoted Service Path # Date: 2021-06-18 # Exploit Author: Julio Aviña # Vendor Homepage: https://www.wis...")
- 21:46, 21 June 2021 CVE-2019-14530 OpenEMR 5.0.1.7 - 'fileName' 目錄遍歷漏洞 (hist | edit) [4,571 bytes] Pwnwiki (talk | contribs) (Created page with "{| style="margin: auto; width: 750px;color:green;" | style="text-align: left; margin: 1em 1em 1em 0; border: 1px solid #20A3C0; padding: .2em;" | {| cellspacing="2px" | valig...")
- 18:56, 21 June 2021 易如意網絡驗證系統 1.6.x上傳漏洞/zh-cn (hist | edit) [137 bytes] Pwnwiki (talk | contribs) (Created page with "==默认管理员信息==")
- 18:54, 21 June 2021 易如意網絡驗證系統 1.6.x上傳漏洞/zh-hant (hist | edit) [137 bytes] Pwnwiki (talk | contribs) (Created page with "==默认管理员信息==")
- 18:50, 21 June 2021 易如意網絡驗證系統 1.6.x上傳漏洞 (hist | edit) [209 bytes] Pwnwiki (talk | contribs) (Created page with " <languages /> <translate> ==漏洞影響== </translate> 1.6.4 <translate> ==默認管理員信息== </translate> <pre> admin 123456 </pre> ==EXP== https://github.com/atsud0/...")
- 10:10, 21 June 2021 FreeFTP1.0.8 - 'PASS' 遠程緩衝區溢出漏洞/zh-cn (hist | edit) [2,927 bytes] Pwnwiki (talk | contribs) (Created page with "FreeFTP1.0.8 - 'PASS' 远程缓冲区溢出漏洞")
- 10:07, 21 June 2021 H3C SecParh堡壘機 data provider.php 遠程命令執行漏洞/zh-cn (hist | edit) [926 bytes] Pwnwiki (talk | contribs) (Created page with "H3C SecParh堡垒机 data provider.php 远程命令执行漏洞")
- 10:04, 21 June 2021 H3C SecParh堡壘機 data provider.php 遠程命令執行漏洞 (hist | edit) [1,070 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> {| style="margin: auto; width: 750px;color:green;" | style="text-align: left; margin: 1em 1em 1em 0; border: 1px solid #20A3C0; padding: .2em;" | {| cellspacing=...")
- 09:00, 21 June 2021 FreeFTP1.0.8 - 'PASS' 遠程緩衝區溢出漏洞 (hist | edit) [2,963 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==影響版本== </translate> <pre> # Version: 1.0.8 </pre> ==POC== <pre> # Exploit Title: freeFTP 1.0.8 - Remote Buffer Overflow # Date: 2019-09-01...")
- 17:31, 20 June 2021 華為 HG659任意文件讀取漏洞/zh-hant (hist | edit) [188 bytes] Pwnwiki (talk | contribs) (Created page with "華為 HG659")
- 17:30, 20 June 2021 華為 HG659任意文件讀取漏洞/en (hist | edit) [196 bytes] Pwnwiki (talk | contribs) (Created page with "Huawei HG659")
- 17:29, 20 June 2021 IceWarp WebClient basic 遠程命令執行漏洞/zh-cn (hist | edit) [297 bytes] Pwnwiki (talk | contribs) (Created page with "IceWarp WebClient basic 远程命令执行漏洞")
- 17:24, 20 June 2021 IceWarp WebClient basic 遠程命令執行漏洞/zh-hant (hist | edit) [297 bytes] Pwnwiki (talk | contribs) (Created page with "==漏洞影響==")
- 17:23, 20 June 2021 IceWarp WebClient basic 遠程命令執行漏洞/en (hist | edit) [305 bytes] Pwnwiki (talk | contribs) (Created page with "IceWarp WebClient basic Remote Command Execution Vulnerability")
- 16:18, 20 June 2021 IceWarp WebClient basic 遠程命令執行漏洞 (hist | edit) [333 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> IceWarp WebClient ==FOFA== <pre> app="IceWarp-公司产品" </pre> ==POC== <pre> POST /webmail/basic/ HTTP/1.1 Host:...")
- 16:02, 20 June 2021 華為 HG659任意文件讀取漏洞/zh-cn (hist | edit) [187 bytes] Pwnwiki (talk | contribs) (Created page with "华为HG659")
- 15:48, 20 June 2021 華為 HG659任意文件讀取漏洞 (hist | edit) [235 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== 華為 HG659 </translate> ==FOFA== <pre> app="HUAWEI-Home-Gateway-HG659" </pre> ==POC== <pre> /lib///....//....//....//....//.......")
- 15:40, 20 June 2021 CVE-2021-22214 GitLab前台SSRF漏洞 (hist | edit) [337 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> <pre> GitLab CE/EE >=10.5 </pre> ==POC== <pre> curl -s --show-error -H 'Content-Type: application/json' https://exampl...")
- 10:11, 20 June 2021 CVE-2021-26414&CVE-2021-31962 Windows Kerberos AppContainer 企業身份驗證繞過漏洞/zh-cn (hist | edit) [213 bytes] Pwnwiki (talk | contribs) (Created page with "CVE-2021-26414&CVE-2021-31962 Windows Kerberos AppContainer 企业身份验证绕过漏洞")
- 10:10, 20 June 2021 CVE-2021-26414&CVE-2021-31962 Windows Kerberos AppContainer 企業身份驗證繞過漏洞 (hist | edit) [321 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞描述== </translate> <translate> Kerberos支持安全緩衝區來設置票證的目標SPN,繞過LSASS中的SPN檢查。 </translate> <tra...")
- 10:06, 20 June 2021 CVE-2021-31181 Microsoft SharePoint Unsafe Control And ViewState 遠程代碼執行漏洞/zh-cn (hist | edit) [9,861 bytes] Pwnwiki (talk | contribs) (Created page with "==影响版本==")
- 10:01, 20 June 2021 CVE-2021-1499 Cisco HyperFlex HX Data Platform 文件上傳&遠程代碼執行漏洞/zh-cn (hist | edit) [5,843 bytes] Pwnwiki (talk | contribs) (Created page with "==漏洞影响==")
- 10:01, 20 June 2021 CVE-2021-31181 Microsoft SharePoint Unsafe Control And ViewState 遠程代碼執行漏洞 (hist | edit) [9,897 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==影響版本== </translate> Tested against SharePoint 2019 and SharePoint 2016, both on Windows Server 2016. ==EXP== <pre> ## # This module requir...")
- 09:57, 20 June 2021 CVE-2021-1499 Cisco HyperFlex HX Data Platform 文件上傳&遠程代碼執行漏洞 (hist | edit) [5,879 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==漏洞影響== </translate> <pre> Cisco HyperFlex HX Data Platform </pre> ==EXP== <pre> ## # This module requires Metasploit: https://metasploit.c...")