
CVE-2020-3580
Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm

Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm

Horde IMP (through 6.2.27) vulnerability – obfuscation via HTML encoding – XSS payload

CVE-2021-46067 - In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.

This repository presents a proof-of-concept of CVE-2024-50677

If an authenticated user who is able to edit Wordpress PHP code in any kind, clicks a malicious link, PHP code can be edited through XSS in…

Persistent XSS on Comtrend AR-5387un router

Secure Web Gateway 10.2.11 - Cross-Site Scripting (XSS)

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

xll windows reverse shell

Read more at Medium

Repository for CVE-2023-4549 vulnerability.

CVE-2020-13965: Cross-Site Scripting via Malicious XML Attachment in Roundcube Webmail

Microweber version 2.0.4 vulnerable to "Uploading Malicious Files"

Survey XSS combined with CSRF leads to Admin Account Takeover in Concrete5 8.5.4

(DOM-based XSS) HTML Injection vulnerability in TOWeb v.12.05 and before allows an attacker to inject HTML/JS code via the _message.html component.

Advanced Phishing tool