CVE-2023-1000 to CVE-2023-1999
491 CVEs with public proof-of-concept exploits.
- CVE-2023-10021 PoCMuYuCMS index.php path traversal
- CVE-2023-10031 PoCTypora WSH JScript code injection
- CVE-2023-10041 PoCMarkText WSH JScript code injection
- CVE-2023-10051 PoCJP1016 Markdown-Electron code injection
- CVE-2023-10072 PoCsTwister Antivirus IoControlCode filmfd.sys 0x801120E4 access control
- CVE-2023-10082 PoCsTwister Antivirus IoControlCode filmfd.sys 0x801120E4 denial of service
- CVE-2023-10091 PoCDrayTek Vigor 2960 Web Management Interface mainfunction.cgi sub_1DF14 path traversal
- CVE-2023-10101 PoCvox2png vox2png.c heap-based overflow
- CVE-2023-10111 PoCChatBot < 4.4.5 - Stored XSS via CSRF
- CVE-2023-10191 PoCHelp Desk WP <= 1.2.0 - Editor+ Stored XSS
- CVE-2023-10202 PoCsSteveas WP Live Chat Shoutbox <= 1.4.2 - Unauthenticated SQLi
- CVE-2023-10211 PoCAmr Ical Events Lists <= 6.6 - Admin+ Stored XSS
- CVE-2023-10251 PoCSimple File List < 6.0.10 - Admin+ Stored XSS
- CVE-2023-10301 PoCSourceCodester/code-projects Online Boat Reservation System POST Parameter login.php cross site scripting
- CVE-2023-10311 PoCMonicaHQ version 4.0.0 allows an authenticated remote attacker to execute malicious code in the application via CSTI in the `settings`…
- CVE-2023-10331 PoCCross-Site Request Forgery (CSRF) in froxlor/froxlor
- CVE-2023-10341 PoCPath Traversal: '\..\filename' in salesagility/suitecrm
- CVE-2023-10351 PoCSourceCodester Clinics Patient Management System update_user.php sql injection
- CVE-2023-10361 PoCSourceCodester Dental Clinic Appointment Reservation System POST Parameter signup.php cross site scripting
- CVE-2023-10371 PoCSourceCodester Dental Clinic Appointment Reservation System POST Parameter login.php sql injection
- CVE-2023-10381 PoCSourceCodester Online Reviewer Management System questions-view.php sql injection
- CVE-2023-10391 PoCSourceCodester Class and Exam Timetabling System POST Parameter index3.php sql injection
- CVE-2023-10401 PoCSourceCodester Online Graduate Tracer System add_acc.php sql injection
- CVE-2023-10411 PoCSourceCodester Simple Responsive Tourism Website rate_review.php cross site scripting
- CVE-2023-10421 PoCSourceCodester Online Pet Shop We App update_status.php cross site scripting
- CVE-2023-10431 PoCMuYuCMS index.php path traversal
- CVE-2023-10441 PoCMuYuCMS index.php path traversal
- CVE-2023-10451 PoCMuYuCMS filesdel.html path traversal
- CVE-2023-10461 PoCMuYuCMS getFile.html server-side request forgery
- CVE-2023-10471 PoCTechPowerUp RealTemp WinRing0x64.sys initialization
- CVE-2023-10481 PoCTechPowerUp Ryzen DRAM Calculator WinRing0x64.sys initialization
- CVE-2023-10561 PoCSourceCodester Doctors Appointment System patient.php sql injection
- CVE-2023-10581 PoCSourceCodester Doctors Appointment System create-account.php sql injection
- CVE-2023-10591 PoCSourceCodester Doctors Appointment System Parameter doctors.php sql injection
- CVE-2023-10611 PoCSourceCodester Doctors Appointment System edit-doc.php sql injection
- CVE-2023-10621 PoCSourceCodester Doctors Appointment System Parameter add-new.php sql injection
- CVE-2023-10631 PoCSourceCodester Doctors Appointment System Parameter patient.php sql injection
- CVE-2023-10671 PoCCross-site Scripting (XSS) - Stored in pimcore/pimcore
- CVE-2023-10691 PoCComplianz - GDPR/CCPA Cookie Consent < 6.4.2 - Contributor+ Stored XSS
- CVE-2023-10701 PoCExternal Control of File Name or Path in nilsteampassnet/teampass
- CVE-2023-10771 PoCIn the Linux kernel, pick_next_rt_entity() may return a type confused entry, not detected by the BUG_ON condition, as the confused entry…
- CVE-2023-10801 PoCGN Publisher <= 1.5.5 - Reflected Cross-Site Scripting
- CVE-2023-10861 PoCPreview Link Generator < 1.0.4 - Arbitrary Plugin Activation via CSRF
- CVE-2023-10871 PoCWC Sales Notification < 1.2.3 - Arbitrary Plugin Activation via CSRF
- CVE-2023-10881 PoCWP Plugin Manager < 1.1.8 - Arbitrary Plugin Activation via CSRF
- CVE-2023-10891 PoCCoupon Zen < 1.0.6 - Arbitrary Plugin Activation via CSRF
- CVE-2023-10902 PoCsWP SMTP Mailing Queue < 2.0.1 - Admin+ Stored XSS
- CVE-2023-10924 PoCsOAuth Single Sign On - SSO (OAuth Client) - IdP Deletion via CSRF
- CVE-2023-10931 PoCOAuth Single Sign On - SSO (OAuth Client) < 6.24.2 - IdP Discard via CSRF
- CVE-2023-10941 PoCMonicaHQ version 4.0.0 allows an authenticated remote attacker to execute malicious code in the application via CSTI in the…
- CVE-2023-10991 PoCSourceCodester Online Student Management System edit-class-detail.php sql injection
- CVE-2023-11001 PoCSourceCodester Online Catering Reservation System POST Parameter add_message.php sql injection
- CVE-2023-11041 PoCCross-site Scripting (XSS) - Stored in flatpressblog/flatpress
- CVE-2023-11051 PoCExternal Control of File Name or Path in flatpressblog/flatpress
- CVE-2023-11061 PoCCross-site Scripting (XSS) - Reflected in flatpressblog/flatpress
- CVE-2023-11071 PoCCross-site Scripting (XSS) - Stored in flatpressblog/flatpress
- CVE-2023-11101 PoCYellow Yard < 2.8.12 - Contributor+ Stored XSS
- CVE-2023-11111 PoCFastCMS New Article Tab cross site scripting
- CVE-2023-11121 PoCDrag and Drop Multiple File Upload Contact Form 7 admin-ajax.php path traversal
- CVE-2023-11131 PoCSourceCodester Simple Payroll System POST Parameter cross site scripting
- CVE-2023-11151 PoCCross-site Scripting (XSS) - Stored in pimcore/pimcore
- CVE-2023-11161 PoCCross-site Scripting (XSS) - Stored in pimcore/pimcore
- CVE-2023-11192 PoCsMultiple Plugins - Cross-Site Scripting From Third-party Library
- CVE-2023-11201 PoCSimple Giveaways < 2.45.1 - Admin+ Stored XSS
- CVE-2023-11211 PoCSimple Giveaways < 2.45.1 - Admin+ Stored Cross-Site Scripting
- CVE-2023-11221 PoCSimple Giveaways < 2.45.1 - Editor+ Stored Cross-Site Scripting
- CVE-2023-11241 PoCShopping Cart & eCommerce Store < 5.4.3 - Admin+ LFI
- CVE-2023-11251 PoCRuby Help Desk < 1.3.4 - Subscriber+ Ticket Update via IDOR
- CVE-2023-11261 PoCWP FEvents Book <= 0.46 - Subscriber+ Stored XSS
- CVE-2023-11271 PoCDivide By Zero in vim/vim
- CVE-2023-11291 PoCWP FEvents Book <= 0.46 - Subscriber+ Arbitrary Booking Manipulation via IDOR
- CVE-2023-11301 PoCSourceCodester Computer Parts Sales and Inventory System processlogin sql injection
- CVE-2023-11311 PoCSourceCodester Computer Parts Sales and Inventory System customer.php cross site scripting
- CVE-2023-11331 PoCCVE-2023-1133
- CVE-2023-11461 PoCCross-site Scripting (XSS) - Generic in flatpressblog/flatpress
- CVE-2023-11471 PoCCross-site Scripting (XSS) - Stored in flatpressblog/flatpress
- CVE-2023-11481 PoCCross-site Scripting (XSS) - Stored in flatpressblog/flatpress
- CVE-2023-11491 PoCImproper Neutralization of Equivalent Special Elements in btcpayserver/btcpayserver
- CVE-2023-11511 PoCSourceCodester Electronic Medical Records System Cookie administrator.php sql injection
- CVE-2023-11561 PoCSourceCodester Health Center Patient Record Management System fecalysis_form.php cross site scripting
- CVE-2023-11571 PoCfinixbit elf-parser elf_parser.cpp get_segments denial of service
- CVE-2023-11601 PoCUse of Platform-Dependent Third Party Components in cockpit-hq/cockpit
- CVE-2023-11621 PoCDrayTek Vigor 2960 Web Management Interface mainfunction.cgi command injection
- CVE-2023-11631 PoCDrayTek Vigor 2960 Web Management Interface mainfunction.cgi getSyslogFile path traversal
- CVE-2023-11641 PoCKylinSoft kylin-activation File Import improper authorization
- CVE-2023-11651 PoCZhong Bang CRMEB Java list sql injection
- CVE-2023-11661 PoCUSM Premium < 16.3 - Admin+ Stored XSS
- CVE-2023-11701 PoCHeap-based Buffer Overflow in vim/vim
- CVE-2023-11751 PoCIncorrect Calculation of Buffer Size in vim/vim
- CVE-2023-11761 PoCAbsolute Path Traversal in mlflow/mlflow
- CVE-2023-117711 PoCsPath Traversal: '\..\filename' in mlflow/mlflow
- CVE-2023-11791 PoCSourceCodester Computer Parts Sales and Inventory System Add Supplier cross site scripting
- CVE-2023-11801 PoCSourceCodester Health Center Patient Record Management System hematology_print.php cross site scripting
- CVE-2023-11811 PoCCross-site Scripting (XSS) - Stored in icret/easyimages2.0
- CVE-2023-11841 PoCECshop Backup Database database.php unrestricted upload
- CVE-2023-11851 PoCECshop New Product unrestricted upload
- CVE-2023-11861 PoCFabulaTech Webcam for Remote Desktop IOCTL ftwebcam.sys 0x222018 null pointer dereference
- CVE-2023-11871 PoCFabulaTech Webcam for Remote Desktop Global Variable ftwebcam.sys denial of service
- CVE-2023-11882 PoCsFabulaTech Webcam for Remote Desktop IoControlCode ftwebcam.sys 0x222018 denial of service
- CVE-2023-11892 PoCsWiseCleaner Wise Folder Hider IoControlCode WiseFs64.sys 0x222410 denial of service
- CVE-2023-11902 PoCsxiaozhuai imageinfo imageinfo.hpp buffer overflow
- CVE-2023-11911 PoCfastcms ZIP File TemplateController.java path traversal
- CVE-2023-11962 PoCsAdvanced Custom Fields - Contributor+ PHP Object Injection
- CVE-2023-11971 PoCCross-site Scripting (XSS) - Stored in uvdesk/community-skeleton
- CVE-2023-12001 PoCehuacui bbs cross site scripting
- CVE-2023-12061 PoCA hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind…
- CVE-2023-12071 PoCHTTP Headers < 1.18.8 - Admin+ SQL Injection
- CVE-2023-12081 PoCHTTP Headers < 1.18.11 - Admin+ Remote Code Execution
- CVE-2023-12101 PoCGeneration of Error Message Containing Sensitive Information in GitLab
- CVE-2023-12112 PoCsSQL Injection in phpipam/phpipam
- CVE-2023-12121 PoCCross-site Scripting (XSS) - Stored in phpipam/phpipam
- CVE-2023-123411 PoCsInappropriate implementation in Intents in Google Chrome on Android prior to 111.0.5563.64 allowed a remote attacker to perform domain…
- CVE-2023-12381 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-12391 PoCCross-site Scripting (XSS) - Reflected in answerdev/answer
- CVE-2023-12411 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-12421 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-12431 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-12441 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-12451 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-12531 PoCSourceCodester Health Center Patient Record Management System login.php sql injection
- CVE-2023-12541 PoCSourceCodester Health Center Patient Record Management System birthing_print.php cross site scripting
- CVE-2023-12582 PoCsFlow-X disclosure of sensitive information to unauthenticated users
- CVE-2023-12631 PoCCMP – Coming Soon & Maintenance Plugin by NiteoThemes <= 4.1.6 - Information Exposure
- CVE-2023-12641 PoCNULL Pointer Dereference in vim/vim
- CVE-2023-12701 PoCCross-site Scripting in btcpayserver/btcpayserver
- CVE-2023-12731 PoCND Shortcodes < 7.0 - Subscriber+ LFI
- CVE-2023-12741 PoCPricing Tables For WPBakery Page Builder < 3.0 - Subscriber+ LFI
- CVE-2023-12751 PoCSourceCodester Phone Shop Sales Managements System CAPTCHA index.php cross site scripting
- CVE-2023-12761 PoCSUL1SS_shop Order.php sql injection
- CVE-2023-12771 PoCkylin-system-updater Update InstallSnap command injection
- CVE-2023-12791 PoCURL Redirection to Untrusted Site in GitLab
- CVE-2023-12822 PoCsDrag and Drop Multiple File Upload PRO - Reflected Cross-Site Scripting
- CVE-2023-12831 PoCCode Injection in builderio/qwik
- CVE-2023-12861 PoCCross-site Scripting (XSS) - Stored in pimcore/pimcore
- CVE-2023-12892 PoCsA vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw…
- CVE-2023-12901 PoCSourceCodester Sales Tracker Management System view_client.php sql injection
- CVE-2023-12911 PoCSourceCodester Sales Tracker Management System manage_client.php sql injection
- CVE-2023-12921 PoCSourceCodester Sales Tracker Management System Master.php delete_client sql injection
- CVE-2023-12931 PoCSourceCodester Online Graduate Tracer System admin_cs.php mysqli_query sql injection
- CVE-2023-12941 PoCSourceCodester File Tracker Manager System POST Parameter login.php sql injection
- CVE-2023-13001 PoCSourceCodester COVID 19 Testing Management System POST Parameter patient-report.php sql injection
- CVE-2023-13011 PoCSourceCodester Friendly Island Pizza Website and Ordering System GET Parameter deleteorder.php sql injection
- CVE-2023-13021 PoCSourceCodester File Tracker Manager System borrow1.php cross site scripting
- CVE-2023-13071 PoCAuthentication Bypass by Primary Weakness in froxlor/froxlor
- CVE-2023-13081 PoCSourceCodester Online Graduate Tracer System adminlog.php sql injection
- CVE-2023-13091 PoCSourceCodester Online Graduate Tracer System search_it.php sql injection
- CVE-2023-13101 PoCSourceCodester Online Graduate Tracer System prof.php sql injection
- CVE-2023-13111 PoCSourceCodester Friendly Island Pizza Website and Ordering System GET Parameter large.php sql injection
- CVE-2023-13121 PoCCross-site Scripting (XSS) - Reflected in pimcore/pimcore
- CVE-2023-13132 PoCsUnrestricted Upload of File with Dangerous Type in cockpit-hq/cockpit
- CVE-2023-13152 PoCsCross-site Scripting (XSS) - Reflected in osticket/osticket
- CVE-2023-13161 PoCCross-site Scripting (XSS) - Stored in osticket/osticket
- CVE-2023-13172 PoCsCross-site Scripting (XSS) - Reflected in osticket/osticket
- CVE-2023-13182 PoCsCross-site Scripting (XSS) - Generic in osticket/osticket
- CVE-2023-13191 PoCCross-site Scripting (XSS) - Stored in osticket/osticket
- CVE-2023-13201 PoCCross-site Scripting (XSS) - Stored in osticket/osticket
- CVE-2023-13231 PoCEasy Forms for MailChimp < 6.8.9 - Admin+ Stored XSS
- CVE-2023-13241 PoCEasy Forms for MailChimp < 6.8.8 - Reflected XSS
- CVE-2023-13251 PoCEasy Forms for MailChimp < 6.8.7 - Contributor+ Stored XSS
- CVE-2023-13269 PoCslocal privilege escalation in apport-cli
- CVE-2023-13281 PoCGuizhou 115cms index unrestricted upload
- CVE-2023-13301 PoCRedirection < 1.1.4 - Redirect Creation via CSRF
- CVE-2023-13311 PoCRedirection < 1.1.5 - Plugin Reset via CSRF
- CVE-2023-13471 PoCCustomizer Export/Import < 0.9.6 - Admin+ PHP Object Injection
- CVE-2023-13491 PoCHsycms Add Category Module cate.php cross site scripting
- CVE-2023-13511 PoCSourceCodester Computer Parts Sales and Inventory System cust_transac.php sql injection
- CVE-2023-13521 PoCSourceCodester Design and Implementation of Covid-19 Directory on Vaccination System login.php sql injection
- CVE-2023-13531 PoCSourceCodester Design and Implementation of Covid-19 Directory on Vaccination System verification.php cross site scripting
- CVE-2023-13541 PoCSourceCodester Design and Implementation of Covid-19 Directory on Vaccination System register.php cross site scripting
- CVE-2023-13551 PoCNULL Pointer Dereference in vim/vim
- CVE-2023-13581 PoCSourceCodester Gadget Works Online Ordering System POST Parameter login.php sql injection
- CVE-2023-13591 PoCSourceCodester Gadget Works Online Ordering System Add New User cross site scripting
- CVE-2023-13601 PoCSourceCodester Employee Payslip Generator with Sending Mail New User Creation sql injection
- CVE-2023-13611 PoCSQL Injection in unilogies/bumsys
- CVE-2023-13622 PoCsImproper Restriction of Rendered UI Layers or Frames in unilogies/bumsys
- CVE-2023-13631 PoCSourceCodester Computer Parts Sales and Inventory System Add User Account cross site scripting
- CVE-2023-13641 PoCSourceCodester Online Pizza Ordering System GET Parameter category.php sql injection
- CVE-2023-13651 PoCSourceCodester Online Pizza Ordering System ajax.php sql injection
- CVE-2023-13661 PoCSourceCodester Yoga Class Registration System manage_category.php query sql injection
- CVE-2023-13671 PoCCode Injection in alextselegidis/easyappointments
- CVE-2023-13681 PoCXHCMS POST Parameter login.php sql injection
- CVE-2023-13691 PoCTG Soft Vir.IT eXplorer IoControlCode VIRAGTLT.sys 0x82730088 denial of service
- CVE-2023-13701 PoCStack exhaustion in json-smart leads to denial of service when parsing malformed JSON
- CVE-2023-13711 PoCW4 Post List < 2.4.6 - Subscriber+ Password Protected Post Content Disclosure
- CVE-2023-13721 PoCWH Testimonials <= 3.0.0 - Unauthenticated Stored Cross-Site Scripting
- CVE-2023-13731 PoCW4 Post List < 2.4.6 - Reflected XSS
- CVE-2023-13741 PoCSolidres <= 0.9.4 - Authenticated (Admin+) Stored Cross-Site Scripting
- CVE-2023-13771 PoCSolidres <= 0.9.4 - Multiple Reflected XSS
- CVE-2023-13781 PoCSourceCodester Friendly Island Pizza Website and Ordering System POST Parameter paypalsuccess.php sql injection
- CVE-2023-13791 PoCSourceCodester Friendly Island Pizza Website and Ordering System POST Parameter addmem.php sql injection
- CVE-2023-13812 PoCsWP Meta SEO < 4.5.5 - Author+ PHAR Deserialization
- CVE-2023-13872 PoCsGrafana is an open-source platform for monitoring and observability. Starting with the 9.1 branch, Grafana introduced the ability to…
- CVE-2023-138911 PoCsKEVTP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability in the country form…
- CVE-2023-13911 PoCSourceCodester Online Tours & Travels Management System ab.php unrestricted upload
- CVE-2023-13921 PoCSourceCodester Online Pizza Ordering System save_menu unrestricted upload
- CVE-2023-13941 PoCSourceCodester Online Graduate Tracer System bsitemp.php mysqli_query sql injection
- CVE-2023-13951 PoCSourceCodester Yoga Class Registration System list.php query cross site scripting
- CVE-2023-13961 PoCSourceCodester Online Tours & Travels Management System traveller_details.php cross site scripting
- CVE-2023-13971 PoCSourceCodester Online Student Management System profile.php cross site scripting
- CVE-2023-13981 PoCXiaoBingBy TeaCMS upload path traversal
- CVE-2023-14001 PoCModern Events Calendar lite < 6.5.2 - Admin+ Stored XSS
- CVE-2023-14011 PoCInsertion of Sensitive Information Into Sent Data in GitLab
- CVE-2023-14052 PoCsFormidable Forms < 6.2 - Unauthenticated PHP Object Injection
- CVE-2023-14061 PoCJetEngine < 3.1.3.1 - Author+ Remote Code Execution
- CVE-2023-14071 PoCSourceCodester Student Study Center Desk Management System manage_user.php sql injection
- CVE-2023-14082 PoCsVideo List Manager <= 1.7 - Admin+ SQL Injection
- CVE-2023-14101 PoCStored XSS in Graphite FunctionDescription tooltip
- CVE-2023-14131 PoCWP VR < 8.2.9 - Reflected XSS
- CVE-2023-14141 PoCWP VR < 8.3.0 - Subscriber+ Arbitrary Tour Update
- CVE-2023-14161 PoCSimple Art Gallery adminHome.php sql injection
- CVE-2023-14181 PoCSourceCodester Friendly Island Pizza Website and Ordering System POST Parameter cashconfirm.php cross site scripting
- CVE-2023-14201 PoCAjax Search Lite < 4.11.1, Pro < 4.26.2 - Reflected Cross-Site Scripting
- CVE-2023-14251 PoCGroundhogg Contacts < 2.7.9.4 - Admin+ SQLi
- CVE-2023-14261 PoCWP Tiles <= 1.1.2 - Subscriber+ Draft/Private Post Title Disclosure
- CVE-2023-14271 PoCPhoto Gallery by 10Web < 1.8.15 - Admin+ Path Traversal
- CVE-2023-14291 PoCCross-site Scripting (XSS) - Reflected in pimcore/pimcore
- CVE-2023-14301 PoCFluentCRM - Marketing Automation For WordPress <= 2.8.01 - Insufficient Use of Hash as Authorization Control
- CVE-2023-14331 PoCSourceCodester Gadget Works Online Ordering System Products unrestricted upload
- CVE-2023-14351 PoCAjax Search Lite Pro < 4.26.2 - Multiple Reflected Cross-Site Scripting
- CVE-2023-14361 PoCInfinite recursion in Jettison leads to denial of service when creating a crafted JSONArray
- CVE-2023-14391 PoCSourceCodester Medicine Tracker System GET Parameter view_details.php sql injection
- CVE-2023-14401 PoCSourceCodester Automatic Question Paper Generator System GET Parameter manage_user.php sql injection
- CVE-2023-14411 PoCSourceCodester Automatic Question Paper Generator System GET Parameter view_course.php sql injection
- CVE-2023-14421 PoCMeizhou Qingyunke QYKCMS Update api.php unrestricted upload
- CVE-2023-14431 PoCFilseclab Twister Antivirus IoControlCode fildds.sys 0x80112053 denial of service
- CVE-2023-14441 PoCFilseclab Twister Antivirus IoControlCode fildds.sys 0x8011206B denial of service
- CVE-2023-14451 PoCFilseclab Twister Antivirus IoControlCode fildds.sys 0x80112053 denial of service
- CVE-2023-14461 PoCWatchdog Anti-Virus IoControlCode wsdk-driver.sys 0x80002008 denial of service
- CVE-2023-14482 PoCsGPAC mpegts.c gf_m2ts_process_sdt heap-based overflow
- CVE-2023-14492 PoCsGPAC av_parsers.c gf_av1_reset_state double free
- CVE-2023-14501 PoCMP4v2 mp4trackdump.cpp DumpTrack denial of service
- CVE-2023-14511 PoCMP4v2 mp4track.cpp GetSampleFileOffset denial of service
- CVE-2023-14522 PoCsGPAC load_text.c buffer overflow
- CVE-2023-14531 PoCWatchdog Anti-Virus IoControlCode wsdk-driver.sys 0x80002008 access control
- CVE-2023-145413 PoCsjeecg-boot qurestSql sql injection
- CVE-2023-14591 PoCSourceCodester Canteen Management System changeUsername.php sql injection
- CVE-2023-14631 PoCAuthorization Bypass Through User-Controlled Key in nilsteampassnet/teampass
- CVE-2023-14651 PoCWP EasyPay < 4.1 - Reflected Cross-Site Scripting
- CVE-2023-14731 PoCResponsive WordPress Slideshows 3.29.0 - Reflected XSS
- CVE-2023-14741 PoCSourceCodester Automatic Question Paper Generator System GET Parameter manage_question_paper.php sql injection
- CVE-2023-14751 PoCSourceCodester Canteen Management System createuser.php query sql injection
- CVE-2023-14781 PoCHummingbird < 3.4.2 - Unauthenticated Path Traversal
- CVE-2023-14791 PoCSourceCodester Simple Music Player save_music.php unrestricted upload
- CVE-2023-14801 PoCSourceCodester Monitoring of Students Cyber Accounts System POST Parameter login.php sql injection
- CVE-2023-14811 PoCSourceCodester Monitoring of Students Cyber Accounts System POST Parameter cross site scripting
- CVE-2023-14821 PoCHkCms External Plugin code injection
- CVE-2023-14851 PoCSourceCodester Young Entrepreneur E-Negosyo System GET Parameter index.php cross site scripting
- CVE-2023-14862 PoCsLespeed WiseCleaner Wise Force Deleter IoControlCode WiseUnlock64.sys 0x220004 access control
- CVE-2023-14872 PoCsLespeed WiseCleaner Wise System Monitor IoControlCode WiseHDInfo64.dll 0x9C40A0E0 denial of service
- CVE-2023-14882 PoCsLespeed WiseCleaner Wise System Monitor IoControlCode WiseHDInfo64.dll 0x9C40A0E0 denial of service
- CVE-2023-14892 PoCsLespeed WiseCleaner Wise System Monitor IoControlCode WiseHDInfo64.dll 0x9C402088 access control
- CVE-2023-14902 PoCsMax Secure Anti Virus Plus IoControlCode SDActMon.sys 0x220020 access control
- CVE-2023-14912 PoCsMax Secure Anti Virus Plus IoControlCode MaxCryptMon.sys 0x220020 access control
- CVE-2023-14922 PoCsMax Secure Anti Virus Plus IoControlCode MaxProc64.sys 0x220019 denial of service
- CVE-2023-14932 PoCsMax Secure Anti Virus Plus IoControlCode MaxProctetor64.sys 0x220019 denial of service
- CVE-2023-14941 PoCIBOS ApiController.php sql injection
- CVE-2023-14951 PoCRebuild list queryListOfConfig sql injection
- CVE-2023-14962 PoCsCross-site Scripting (XSS) - Reflected in imgproxy/imgproxy
- CVE-2023-14971 PoCSourceCodester Simple and Nice Shopping Cart Script uploaderm.php unrestricted upload
- CVE-2023-14981 PoCcode-projects Responsive Hotel Site Newsletter Log messages.php sql injection
- CVE-2023-14991 PoCcode-projects Simple Art Gallery adminHome.php sql injection
- CVE-2023-15001 PoCcode-projects Simple Art Gallery adminHome.php cross site scripting
- CVE-2023-15011 PoCRockOA acloudCosAction.php.SQL runAction unrestricted upload
- CVE-2023-15141 PoCA vulnerability exists in the component RTU500 Scripting interface. When a client connects to a server using TLS, the server presents a…
- CVE-2023-15151 PoCCross-site Scripting (XSS) - Stored in pimcore/pimcore
- CVE-2023-15171 PoCCross-site Scripting (XSS) - DOM in pimcore/pimcore
- CVE-2023-15211 PoCLocal Privilege Escalation in sccache
- CVE-2023-15241 PoCDownload Manager < 3.2.71 - Broken Access Controls
- CVE-2023-15251 PoCSite Reviews < 6.7.1 - Admin+ Stored XSS
- CVE-2023-15271 PoCCross-site Scripting (XSS) - Generic in tsolucio/corebos
- CVE-2023-15351 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-15361 PoCCross-site Scripting (XSS) - Stored in answerdev/answer
- CVE-2023-15371 PoCAuthentication Bypass by Capture-replay in answerdev/answer
- CVE-2023-15381 PoCObservable Timing Discrepancy in answerdev/answer
- CVE-2023-15391 PoCImproper Restriction of Excessive Authentication Attempts in answerdev/answer
- CVE-2023-15401 PoCObservable Response Discrepancy in answerdev/answer
- CVE-2023-15411 PoCBusiness Logic Errors in answerdev/answer
- CVE-2023-15421 PoCBusiness Logic Errors in answerdev/answer
- CVE-2023-15431 PoCInsufficient Session Expiration in answerdev/answer
- CVE-2023-15456 PoCsSQL Injection in nilsteampassnet/teampass
- CVE-2023-15462 PoCsMyCryptoCheckout < 2.124 - Reflected XSS
- CVE-2023-15491 PoCAd Inserter < 2.7.27 - Admin+ PHP Object Injection
- CVE-2023-15541 PoCQuick Paypal Payments < 5.7.26.4 - Admin+ Stored XSS
- CVE-2023-15551 PoCMissing Authorization in GitLab
- CVE-2023-15561 PoCSourceCodester Judging Management System summary_results.php sql injection
- CVE-2023-15581 PoCSimple and Beautiful Shopping Cart System uploadera.php unrestricted upload
- CVE-2023-15591 PoCSourceCodester Storage Unit Rental Management System unrestricted upload
- CVE-2023-15601 PoCTinyTIFF File tinytiffreader.c buffer overflow
- CVE-2023-15631 PoCSourceCodester Student Study Center Desk Management System assign.php sql injection
- CVE-2023-15641 PoCSourceCodester Air Cargo Management System GET Parameter update_status.php sql injection
- CVE-2023-15651 PoCFeiFeiCMS Extension Tool slide_add.html cross site scripting
- CVE-2023-15661 PoCSourceCodester Medical Certificate Generator App action.php sql injection
- CVE-2023-15671 PoCSourceCodester Student Study Center Desk Management System assign.php cross site scripting
- CVE-2023-15681 PoCSourceCodester Student Study Center Desk Management System GET Parameter index.php cross site scripting
- CVE-2023-15702 PoCssyoyo tinydng tiny_dng_loader.h __interceptor_memcpy heap-based overflow
- CVE-2023-15711 PoCDataGear pagingQueryData sql injection
- CVE-2023-15721 PoCDataGear Plugin cross site scripting
- CVE-2023-15731 PoCDataGear Graph Dataset cross site scripting
- CVE-2023-15781 PoCSQL Injection in pimcore/pimcore
- CVE-2023-15791 PoCHeap based buffer overflow in binutils-gdb/bfd/libbfd.c in bfd_getl64.
- CVE-2023-15891 PoCSourceCodester Online Tours & Travels Management System approve_delete.php exec sql injection
- CVE-2023-15901 PoCSourceCodester Online Tours & Travels Management System currency.php exec sql injection
- CVE-2023-15941 PoCnovel-plus list MenuService sql injection
- CVE-2023-15951 PoCnovel-plus list sql injection
- CVE-2023-15961 PoCtagDiv Composer < 4.0 - Reflected Cross-site Scripting
- CVE-2023-15971 PoCtagDiv Cloud Library < 2.7 - Unauthenticated Arbitrary User Metadata Update to Privilege Escalation
- CVE-2023-16051 PoCDenial of Service in radareorg/radare2
- CVE-2023-16061 PoCnovel-plus DictController.java sql injection
- CVE-2023-16071 PoCnovel-plus list sql injection
- CVE-2023-16081 PoCZhong Bang CRMEB Java list getAdminList sql injection
- CVE-2023-16091 PoCZhong Bang CRMEB Java save cross site scripting
- CVE-2023-16101 PoCRebuild list sql injection
- CVE-2023-16121 PoCRebuild list-file sql injection
- CVE-2023-16131 PoCRebuild publish cross site scripting
- CVE-2023-16141 PoCWP Custom Author URL < 1.0.5 - Admin+ Stored XSS
- CVE-2023-16161 PoCXiaoBingBy TeaCMS Article Title cross site scripting
- CVE-2023-16231 PoCCustom Post Type UI < 1.13.5 - Debug Info Sending via CSRF
- CVE-2023-16241 PoCWPCode Lite < 2.0.9 - Arbitrary Log File Deletion via CSRF
- CVE-2023-16261 PoCJianming Antivirus IoControlCode kvcore.sys memory corruption
- CVE-2023-16271 PoCJianming Antivirus IoControlCode kvcore.sys denial of service
- CVE-2023-16281 PoCJianming Antivirus IoControlCode kvcore.sys null pointer dereference
- CVE-2023-16291 PoCJiangMin Antivirus IOCTL kvcore.sys 0x222010 memory corruption
- CVE-2023-16301 PoCJiangMin Antivirus IOCTL kvcore.sys 0x222000 denial of service
- CVE-2023-16311 PoCJiangMin Antivirus IOCTL kvcore.sys 0x222010 null pointer dereference
- CVE-2023-16341 PoCOTCMS URL Parameter info_deal.php UseCurl server-side request forgery
- CVE-2023-16351 PoCOTCMS apiRun.php AutoRun cross site scripting
- CVE-2023-16382 PoCsIObit Malware Fighter IOCTL ImfRegistryFilter.sys 0x8001E040 denial of service
- CVE-2023-16392 PoCsIObit Malware Fighter IOCTL ImfRegistryFilter.sys 0x8001E04C denial of service
- CVE-2023-16402 PoCsIObit Malware Fighter IOCTL ObCallbackProcess.sys 0x222010 denial of service
- CVE-2023-16412 PoCsIObit Malware Fighter IOCTL ObCallbackProcess.sys 0x222018 denial of service
- CVE-2023-16422 PoCsIObit Malware Fighter IOCTL ObCallbackProcess.sys 0x222040 denial of service
- CVE-2023-16432 PoCsIObit Malware Fighter IOCTL ImfHpRegFilter.sys 0x8001E040 denial of service
- CVE-2023-16442 PoCsIObit Malware Fighter IOCTL IMFCameraProtect.sys 0x8018E010 denial of service
- CVE-2023-16452 PoCsIObit Malware Fighter IOCTL IMFCameraProtect.sys 0x8018E008 denial of service
- CVE-2023-16462 PoCsIObit Malware Fighter IOCTL IMFCameraProtect.sys 0x8018E004 stack-based overflow
- CVE-2023-16471 PoCImproper Access Control in calcom/cal.com
- CVE-2023-16491 PoCChatBot < 4.5.1 - Admin+ Stored XSS
- CVE-2023-16501 PoCChatBot < 4.4.7 - Unauthenticated PHP Object Injection
- CVE-2023-16511 PoCChatBot < 4.4.9 - Subscriber+ OpenAI Settings Update to Stored XSS
- CVE-2023-16551 PoCHeap-based Buffer Overflow in gpac/gpac
- CVE-2023-16601 PoCChatBot < 4.4.9 - Unauthenticated Stored XSS
- CVE-2023-16652 PoCsImproper Restriction of Excessive Authentication Attempts in linagora/twake
- CVE-2023-16661 PoCSourceCodester Automatic Question Paper Generator System GET Parameter view_class.php sql injection
- CVE-2023-16691 PoCSEOPress < 6.5.0.3 - Admin+ PHP Object Injection
- CVE-2023-167110 PoCsKEVA pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10.4 allows…
- CVE-2023-16741 PoCSourceCodester School Registration and Fee System POST Parameter login.php sql injection
- CVE-2023-16751 PoCSourceCodester School Registration and Fee System GET Parameter edit_stud.php sql injection
- CVE-2023-16761 PoCDriverGenius IOCTL mydrivers64.sys 0x9C402088 memory corruption
- CVE-2023-16771 PoCDriverGenius IOCTL mydrivers64.sys 0x9c402084 denial of service
- CVE-2023-16781 PoCDriverGenius IOCTL mydrivers64.sys 0x9C40A0E0 memory corruption
- CVE-2023-16791 PoCDriverGenius IOCTL mydrivers64.sys 0x9C40A108 memory corruption
- CVE-2023-16801 PoCXunrui CMS main.html information disclosure
- CVE-2023-16811 PoCXunrui CMS test.php information disclosure
- CVE-2023-16821 PoCXunrui CMS Install.txt direct request
- CVE-2023-16831 PoCXunrui CMS system_log.html information disclosure
- CVE-2023-16841 PoCHadSky unrestricted upload
- CVE-2023-16851 PoCHadSky Installation Interface index.php command injection
- CVE-2023-16861 PoCSourceCodester Young Entrepreneur E-Negosyo System GET Parameter index.php cross site scripting
- CVE-2023-16985 PoCsWAGO: WBM Command Injection in multiple products
- CVE-2023-17011 PoCCross-site Scripting (XSS) - Reflected in pimcore/pimcore
- CVE-2023-17021 PoCCross-site Scripting (XSS) - Generic in pimcore/pimcore
- CVE-2023-17041 PoCCross-site Scripting (XSS) - Stored in pimcore/pimcore
- CVE-2023-17121 PoCUse of Hard-coded, Security-relevant Constants in deepset-ai/haystack
- CVE-2023-17131 PoCBitrix24 Remote Command Execution (RCE) via Insecure Temporary File Creation
- CVE-2023-17141 PoCBitrix24 Remote Command Execution (RCE) via Unsafe Variable Extraction
- CVE-2023-17151 PoCBitrix24 Stored Cross-Site Scripting (XSS) via Improper Input Neutralization on Invoice Edit Page (1 of 2)
- CVE-2023-17171 PoCBitrix24 Cross-Site Scripting (XSS) via Client-side Prototype Pollution
- CVE-2023-17182 PoCsBitrix24 Denial-of-Service (DoS) via Improper File Stream Access
- CVE-2023-17192 PoCsBitrix24 Insecure Global Variable Extraction
- CVE-2023-17201 PoCBitrix24 Stored Cross-Site Scripting (XSS) via File Upload
- CVE-2023-17211 PoCYoga Class Registration System 1.0 - RCE
- CVE-2023-17221 PoCYoga Class Registration System 1.0 - ATO
- CVE-2023-17291 PoCA flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
- CVE-2023-17302 PoCsSupportCandy < 3.1.5 - Unauthenticated SQLi
- CVE-2023-17391 PoCSourceCodester Simple and Beautiful Shopping Cart System upload.php unrestricted upload
- CVE-2023-17401 PoCSourceCodester Air Cargo Management System GET Parameter manage_user.php sql injection
- CVE-2023-17411 PoCjeecg-boot Sleep Command SysDictMapper.java sql injection
- CVE-2023-17421 PoCIBOS Report Search getlist sql injection
- CVE-2023-17431 PoCSourceCodester Grade Point Average GPA Calculator index.php cross site scripting
- CVE-2023-17441 PoCIBOS htaccess unrestricted upload
- CVE-2023-17453 PoCsKMPlayer SHFOLDER.dll uncontrolled search path
- CVE-2023-17471 PoCIBOS mark&op=delFromSend sql injection
- CVE-2023-17541 PoCImproper Neutralization of Input During Web Page Generation in thorsten/phpmyfaq
- CVE-2023-17551 PoCCross-site Scripting (XSS) - Generic in thorsten/phpmyfaq
- CVE-2023-17561 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-17571 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-17581 PoCFailure to Sanitize Special Elements into a Different Plane (Special Element Injection) in thorsten/phpmyfaq
- CVE-2023-17591 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-17601 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-17621 PoCImproper Privilege Management in thorsten/phpmyfaq
- CVE-2023-17672 PoCsThe Snyk Advisor website (https://snyk.io/advisor/) was vulnerable to a stored XSS prior to 28th March 2023. A feature of Snyk Advisor is…
- CVE-2023-17691 PoCSourceCodester Grade Point Average GPA Calculator index.php information disclosure
- CVE-2023-17701 PoCSourceCodester Grade Point Average GPA Calculator Master.php get_scale sql injection
- CVE-2023-17711 PoCSourceCodester Grade Point Average GPA Calculator Master.php get_scale cross site scripting
- CVE-2023-17721 PoCDataGear Diagram Type cross site scripting
- CVE-2023-17732 PoCsRockoa Configuration File webmainConfig.php code injection
- CVE-2023-17802 PoCsCompanion Sitemap Generator < 4.5.3 - Reflected XSS
- CVE-2023-17831 PoCOrangeScrum 2.0.11 - AWS Credentials Leak via PDF Rendering
- CVE-2023-17841 PoCjeecg-boot API Documentation improper authentication
- CVE-2023-17901 PoCSourceCodester Simple Task Allocation System index.php information disclosure
- CVE-2023-17911 PoCSourceCodester Simple Task Allocation System manage_user.php sql injection
- CVE-2023-17921 PoCSourceCodester Simple Mobile Comparison Website GET Parameter manage_field.php sql injection
- CVE-2023-17931 PoCSourceCodester Police Crime Record Management System GET Parameter assigncase.php sql injection
- CVE-2023-17941 PoCSourceCodester Police Crime Record Management System GET Parameter casedetails.php cross site scripting
- CVE-2023-17951 PoCSourceCodester Gadget Works Online Ordering System GET Parameter index.php cross site scripting
- CVE-2023-17961 PoCSourceCodester Employee Payslip Generator Create News cross site scripting
- CVE-2023-17971 PoCOTCMS unrestricted upload
- CVE-2023-17981 PoCEyouCMS login.php cross site scripting
- CVE-2023-17991 PoCEyouCMS login.php cross site scripting
- CVE-2023-18002 PoCssjqzhang go-fastdfs File Upload uploa upload path traversal
- CVE-2023-18041 PoCProduct Catalog Feed by PixelYourSite < 2.1.1 - Reflected XSS
- CVE-2023-18051 PoCProduct Catalog Feed by PixelYourSite < 2.1.1 - Reflected XSS
- CVE-2023-18061 PoCWP Inventory Manager < 2.1.0.12 - Reflected XSS
- CVE-2023-18091 PoCDownload Manager Pro < 6.3.0 - Unauthenticated Sensitive Information Disclosure
- CVE-2023-18262 PoCsSourceCodester Online Computer and Laptop Store index.php unrestricted upload
- CVE-2023-18271 PoCSourceCodester Centralized Covid Vaccination Records System GET Parameter manage_location.php sql injection
- CVE-2023-18292 PoCsUse-after-free in tcindex (traffic control index filter) in the Linux Kernel
- CVE-2023-18352 PoCsNinja Forms < 3.6.22 - Reflected XSS
- CVE-2023-18391 PoCProduct Addons & Fields for WooCommerce < 32.0.6 - Admin+ Stored Cross-Site Scripting
- CVE-2023-18451 PoCSourceCodester Online Payroll System employee_row.php sql injection
- CVE-2023-18461 PoCSourceCodester Online Payroll System deduction_row.php sql injection
- CVE-2023-18471 PoCSourceCodester Online Payroll System attendance.php sql injection
- CVE-2023-18481 PoCSourceCodester Online Payroll System attendance_row.php sql injection
- CVE-2023-18491 PoCSourceCodester Online Payroll System cashadvance_row.php sql injection
- CVE-2023-18501 PoCSourceCodester Online Payroll System login.php sql injection
- CVE-2023-18511 PoCSourceCodester Online Payroll System employee_add.php cross site scripting
- CVE-2023-18531 PoCSourceCodester Online Payroll System employee_edit.php cross site scripting
- CVE-2023-18541 PoCSourceCodester Online Graduate Tracer System session expiration
- CVE-2023-18561 PoCSourceCodester Air Cargo Management System GET Parameter track_shipment.php sql injection
- CVE-2023-18571 PoCSourceCodester Online Computer and Laptop Store cross site scripting
- CVE-2023-18611 PoCLimit Login Attempts < 1.7.2 - Subscriber+ Stored XSS
- CVE-2023-18741 PoCWP Data Access <= 5.3.7 - Authenticated (Subscriber+) Privilege Escalation
- CVE-2023-18751 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-18771 PoCCommand Injection in microweber/microweber
- CVE-2023-18781 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-18791 PoCCross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
- CVE-2023-18802 PoCsCross-site Scripting (XSS) - Reflected in thorsten/phpmyfaq
- CVE-2023-18811 PoCCross-site Scripting (XSS) - Stored in microweber/microweber
- CVE-2023-18821 PoCCross-site Scripting (XSS) - DOM in thorsten/phpmyfaq
- CVE-2023-18831 PoCImproper Access Control in thorsten/phpmyfaq
- CVE-2023-18871 PoCBusiness Logic Errors in thorsten/phpmyfaq
- CVE-2023-18903 PoCsTablesome < 1.0.9 - Reflected XSS
- CVE-2023-18911 PoCAccordion & FAQ < 1.9.9 - Reflected XSS
- CVE-2023-18922 PoCsCross-site Scripting (XSS) - Reflected in sidekiq/sidekiq
- CVE-2023-18933 PoCsLogin Configurator <= 2.1 - Reflected Cross-Site Scripting
- CVE-2023-19051 PoCWP Popups < 2.1.5.1 - Contributor+ Stored XSS
- CVE-2023-19061 PoCA heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c.…
- CVE-2023-19081 PoCSourceCodester Simple Mobile Comparison Website GET Parameter view_category.php sql injection
- CVE-2023-19091 PoCPHPGurukul BP Monitoring Management System User Profile Update profile.php sql injection
- CVE-2023-19111 PoCBlocksy Companion < 1.8.82 - Subscriber+ Draft Post Access
- CVE-2023-19151 PoCThumbnail carousel slider < 1.1.10 - Reflected XSS
- CVE-2023-19161 PoCA flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds…
- CVE-2023-19341 PoCThe PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL Injection…
- CVE-2023-19361 PoCExposure of Private Personal Information to an Unauthorized Actor in GitLab
- CVE-2023-19371 PoCzhenfeng13 My-Blog userInfo cross-site request forgery
- CVE-2023-19381 PoCWP Fatest Cache < 1.1.5 - Blind SSRF via CSRF
- CVE-2023-19401 PoCSourceCodester Simple and Beautiful Shopping Cart System delete_user_query.php sql injection
- CVE-2023-19411 PoCSourceCodester Simple and Beautiful Shopping Cart System login.php sql injection
- CVE-2023-19421 PoCSourceCodester Online Computer and Laptop Store Avatar unrestricted upload
- CVE-2023-19471 PoCtaoCMS admin.php code injection
- CVE-2023-19481 PoCPHPGurukul BP Monitoring Management System Add New Family Member add-family-member.php cross site scripting
- CVE-2023-19491 PoCPHPGurukul BP Monitoring Management System Change Password change-password.php sql injection
- CVE-2023-19501 PoCPHPGurukul BP Monitoring Management System Password Recovery password-recovery.php sql injection
- CVE-2023-19511 PoCSourceCodester Online Computer and Laptop Store brand.php delete_brand sql injection
- CVE-2023-19521 PoCSourceCodester Online Computer and Laptop Store Product Search ?p=products sql injection
- CVE-2023-19531 PoCSourceCodester Online Computer and Laptop Store index.php sql injection
- CVE-2023-19541 PoCSourceCodester Online Computer and Laptop Store manage.php save_inventory sql injection
- CVE-2023-19551 PoCSourceCodester Online Computer and Laptop Store User Registration login.php sql injection
- CVE-2023-19561 PoCSourceCodester Online Computer and Laptop Store Image path traversal
- CVE-2023-19571 PoCSourceCodester Online Computer and Laptop Store Subcategory sql injection
- CVE-2023-19581 PoCSourceCodester Online Computer and Laptop Store sql injection
- CVE-2023-19591 PoCSourceCodester Online Computer and Laptop Store sql injection
- CVE-2023-19601 PoCSourceCodester Online Computer and Laptop Store sql injection
- CVE-2023-19611 PoCSourceCodester Online Computer and Laptop Store cross site scripting
- CVE-2023-19621 PoCSourceCodester Best Online News Portal POST Parameter forgot-password.php sql injection
- CVE-2023-19631 PoCPHPGurukul Bank Locker Management System Search index.php sql injection
- CVE-2023-19641 PoCPHPGurukul Bank Locker Management System Password Reset recovery.php sql injection
- CVE-2023-19691 PoCSourceCodester Online Eyewear Shop GET Parameter manage_stock.php sql injection
- CVE-2023-19701 PoCyuan1994 tpAdmin Upload.php Upload unrestricted upload
- CVE-2023-19711 PoCyuan1994 tpAdmin Upload.php remote server-side request forgery
- CVE-2023-19741 PoCExposure of Sensitive Information Through Metadata in answerdev/answer
- CVE-2023-19771 PoCBooking Manager < 2.0.29 - Subscriber+ SSRF
- CVE-2023-19821 PoCFront Editor <= 4.0.4 - Admin+ Stored XSS
- CVE-2023-19831 PoCSourceCodester Sales Tracker Management System GET Parameter manage_product.php sql injection
- CVE-2023-19841 PoCSourceCodester Complaint Management System POST Parameter check_availability.php sql injection
- CVE-2023-19851 PoCSourceCodester Online Computer and Laptop Store save_brand sql injection
- CVE-2023-19861 PoCSourceCodester Online Computer and Laptop Store delete_order sql injection
- CVE-2023-19871 PoCSourceCodester Online Computer and Laptop Store update_order_status sql injection
- CVE-2023-19881 PoCSourceCodester Online Computer and Laptop Store cross site scripting
- CVE-2023-19982 PoCsSpectre v2 SMT mitigations problem in Linux kernel
- CVE-2023-19991 PoCUse after free in libwebp