
CVE-2024-50475
Signup Page <= 1.0 - Unauthenticated Arbitrary Options Update

Signup Page <= 1.0 - Unauthenticated Arbitrary Options Update

An issue in MiniTool Partition Wizard ShadowMaker v.12.7 allows an attacker to execute arbitrary code and gain privileges via the…

WooODT Lite <= 2.4.6 - Missing Authorization to Arbitrary Options Update (Subscriber+)

Clario through 2024-04-11 for Windows Desktop has weak permissions for %PROGRAMDATA%\Clario and tries to load DLLs from there as SYSTEM.

CVE-2024-5326 Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX <= 4.1.2 - Missing Authorization to Arbitrary Options Update

mjml-app v3.0.4 & 3.1.0-beta RCE exploit

Proof-of-concept exploit for CVE-2025-25614, an incorrect access control vulnerability in Unifiedtransform v2.0 allowing teachers to modify fellow…

EaseUS MobiMover 6.0.5 Build 21620 - Insecure Files and Folders Permissions

School Fees Management System v1.0 - Incorrect Access Control - Privilege Escalation

Repository dedicated to CVE-2024-23774, an unquoted Windows service path vulnerability, providing information and potential exploitation details.

Proof-of-concept demonstrating incorrect access control in Unifiedtransform v2.0, allowing students to modify exam rules via the /exams/edit-rule…

nameko Arbitrary code execution due to YAML deserialization

Simple Dashboard <= 2.0 - Unauthenticated Privilege Escalation

Eyewear prescription form <= 4.0.18 - Missing Authorization to Unauthenticated Arbitrary Options Update

Insecure Folder permission that lead to privilege escalation

CVE-2021-42562: Improper Access Control in MITRE Caldera

Customer Support System 1.0 - Incorrect Access Control

Unquoted Service Path Asus GameSdk