
LetterPress-1.2.1-Open-Redirection-Via-Html-Injection-Vulnerability
In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

Repository for CVE-2023-4549 vulnerability.

ConcreteCMS v.9.2.1 is affected by Arbitrary File Upload vulnerability that allows Cross-Site Scriting (XSS) Stored.

RiteCMS 3.0 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will…

CMSmadesimple 2.2.18 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed…

WBCE 1.6.1 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will launch…

(DOM-based XSS) HTML Injection vulnerability in TOWeb v.12.05 and before allows an attacker to inject HTML/JS code via the _message.html component.

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

CVE Reproduction: cve-2024-43451-ntlm_hash_disclosure_reproduction

CVE-2024-42009 Proof of Concept

SignHere is implementation of CVE-2017-11882. SignHere is builder of malicious rtf document and VBScript payloads.

Proof of concept for CVE-2024-37383

VanillaForum 2.6.3 allows stored XSS.

Stored Cross-Site Scripting (XSS) in osTicket via Vulnerable Bootstrap Tooltip Component

Newscrunch <= 1.8.4 - Cross-Site Request Forgery to Arbitrary File Upload



Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure