[MAGAZINE][FORUM][GALLERY][BUG BOUNTY LIST][HACKTIVITY] | |
Account:[RegistrationRole:[Anonymous] Researcher: 1705 Advisories: 1128 Documents: 42 Videos: 241 Date: 01.12.2021 TZ: 20:21

[ Home ] [ Mobile ] [ Vendor ] [ Web-Application ] [ Remote ] [ Local ] [ Websites ] [ Documents ] [ Videos ] [ Search ] [ FAQ ]

DDateRAdvisory NameVSTypeViewsAuthor
D2021-10-20
 
PHP Melody v3.0 - (vid) SQL Injection Vulnerability7Remote1422Vulnerability-Lab
D2021-10-19
 
Simplephpscripts Simple CMS v2.1 - SQL Injection7.1Remote947Vulnerability-Lab
D2021-10-19
 
Simplephpscripts Simple CMS v2.1 - Persistent Vulnerability5.3Remote788Vulnerability-Lab
D2021-10-18
 
Simplephpscripts Simple CMS v2.1 - XSS Web Vulnerability5.1Remote1063Vulnerability-Lab
D2021-10-18
 
SPA Cart CMS - Multiple SQL Injection Vulnerabilities7.3Remote896Vulnerability-Lab
D2021-06-23
 
Kimai v1.13 - (textarea) Cross Site Scripting Vulnerability4Remote5096Vulnerability-Lab
D2021-06-22
 
WebMO Job Manager v20.0 - Cross Site Web Vulnerability4.1Remote4602Vulnerability-Lab
D2020-11-26
 
VestaCP v0.9.8-26 - (LoginAs) Token Session Vulnerability8.3Remote11428Vulnerability-Lab
D2020-11-25
 
VestaCP v0.9.8-26 - Session Validation Web Vulnerability7Remote9749Vulnerability-Lab
D2020-11-24
 
VestaCP v0.9.8-26 - (period) Cross Site Web Vulnerability4.1Remote9565Vulnerability-Lab
D2020-11-18
 
VTiger v7.0 CRM - (To) Persistent Email Vulnerability4.8Remote10818Vulnerability-Lab
D2020-11-16
 
SugarCRM v6.5.18 - Contacts Persistent XSS Vulnerability5.1Remote14854Vulnerability-Lab
Note: The web-application vulnerabilities section impact only web vulnerabilities in web-applications products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2020-04-21
 
Sky File v2.1.0 iOS - Multiple Web Vulnerabilities7.2Remote2631Vulnerability-Lab
D2020-04-20
 
Folder Lock v3.4.5 iOS - Multiple Web Vulnerabilities4.2Remote2499Vulnerability-Lab
D2020-04-17
 
Swift File Transfer Mobile - Multiple Web Vulnerabilities5Remote2484Vulnerability-Lab
D2020-04-16
 
Playable v9.18 iOS - Multiple Web Vulnerabilities7.3Remote2841Vulnerability-Lab
D2020-04-16
 
SMACom v1.2.0 - Insecure Session Validation Vulnerability7.1Remote2252Vulnerability-Lab
D2020-04-15
 
AirDisk Pro v5.5.3 iOS - Multiple Persistent Vulnerabilities4.5Remote4905Vulnerability-Lab
D2020-04-15
 
SuperBackup v2.0.5 iOS - VCF Persistent XSS Vulnerability4.6Remote1871Vulnerability-Lab
D2020-04-14
 
File Transfer iFamily 2.1 - Directory Traversal Vulnerability7.1Remote3730Vulnerability-Lab
D2018-01-16
 
Photo Vault 1.2 iOS - Insecure Authentication Vulnerability4.8Local23743Benjamin K.M.
D2018-01-04
 
Photos in Wifi 1.0.1 iOS - Path Traversal Web Vulnerability6.5Remote26119Benjamin K.M.
D2018-01-03
 
Wincor Nixdorf PC/E Mobile Cash TryOut - API Vulnerability3.1Remote18099Vulnerability-Lab
D2017-02-23
 
Super File Explorer 1.0.1 - File Upload Web Vulnerability7Remote31684Benjamin K.M.
Note: The mobile vulnerabilities section impact vulnerabilities in operating systems, applications, software & hardware.

DDateRAdvisory NameVSTypeViewsAuthor
D2016-11-18
 
Huawei Flybox B660 Router - Auth Bypass Vulnerability7.4Remote30777S.AbenMassaoud
D2016-10-04
 
Tesla (S&X) - (Interface Pair) Code Execution Vulnerability7.6Remote13751Benjamin K.M.
D2016-10-02
 
Volkswagen (GTE&E) - (Interface Pair) Code Execution7.6Remote13029Benjamin K.M.
D2016-10-01
 
Microsoft Office 365 Word - Code Execution Vulnerability9.1Remote15281Vulnerability-Lab
D2016-07-06
 
Teampass 2.1.26 - Authenticated File Upload Vulnerability7.2Remote31222Peter Kok
D2016-07-05
 
Teampass v2.1.26 - Privilege Escalate Vulnerability5.6Remote29120Peter Kok
D2016-05-18
 
Teampass v2.1.25 - Unauthenticated Access Vulnerability6.8Remote31857Peter Kok
D2016-05-17
 
Teampass v2.1.25 - Arbitrary File Download Vulnerability8.1Remote32878Peter Kok
D2016-03-07
 
Yahoo Bug Bounty #37 - Sender Spoofing Vulnerability 3Remote34853Lawrence Amer
D2016-02-10
 
Apache Sling Framework v2.3.6 - Information Disclosure6.4Remote49223Ateeq Khan
D2016-02-03
 
Compal ConnectBox - Wireless Passphrase Filter Bypass5.8Remote37857Marco Onorati
D2015-11-23
 
Vbulletin 5.x - Remote Code Execution Exploit (PL)8.3Remote41689Reza Espargham
Note: The remote vulnerabilities section impact only remote exploitable vulnerabilities in software products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-11-14
 
Intel Distribution Python (IDP) 2018 - Privilege Escalation6.3Local11936S.AbenMassaoud
D2018-11-13
 
Intel Extreme Tuning Utility 6.4.1.23 - DoS Vulnerability3.3Local12661S.AbenMassaoud
D2018-11-12
 
Intel OpenVINO 2018.1.x - Permissions Privilege Escalation5.3Local11555S.AbenMassaoud
D2018-10-25
 
Intel Quartus Family - Privilege Escalation Vulnerability7.8Local11986S.AbenMassaoud
D2018-10-15
 
EasyBoot v6.6.0.800 - (Function Key) Buffer Overflow6.7Local12640ZwX
D2018-10-12
 
EasyBoot v6.6.0.800 - (Title CD) Unicode Buffer Overflow6.5Local12620ZwX
D2018-10-05
 
Easy File Sharing WS v7.2 - (Domain Name) Buffer Overflow7.3Local12825ZwX
D2018-10-02
 
Easy File Sharing WS v7.2 - (UserId) Buffer Overflow6.4Local12873ZwX
D2018-08-27
 
R v3.4.4 Software - (SEH) Buffer Overflow Vulnerability6.5Local12967ZwX
D2018-07-30
 
Huawei Backup App v6.30.52.12.L - Session Vulnerability 5.9Local14381Vulnerability-Lab
D2018-07-23
 
SMPlayer 18.6.0 - Memory Corruption (DoS) Vulnerability4.4Local13382ZwX
D2018-07-18
 
Huawei SafeBox Manager 6.30.057.L - Bypass Vulnerability4.9Local26203Vulnerability-Lab
Note: The local vulnerabilities section impact only the local exploitable vulnerabilities in software products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-07-12
 
Barracuda ADC 5.x - Multiple Persistent Vulnerabilities4.4Remote16909Benjamin K.M.
D2018-07-10
 
Barracuda ADC 5.x - CS Cross Site Scripting Vulnerability4Remote16972Benjamin K.M.
D2018-07-09
 
Barracuda ADC 5.x - Filter Bypass & Persistent Vulnerability4.4Remote16752Benjamin K.M.
D2018-07-05
 
AT&T Bizcircle - Persistent Profile Cross Site Vulnerability4.6Remote16007Benjamin K.M.
D2018-06-27
 
ASUS WRT-AC66U 3.x - Cross Site Scripting Vulnerability3Local15905Lawrence Amer
D2018-06-26
 
PayPal Inc - Security Key Pin Approval & Expire Bypass4.3Remote16443Benjamin K.M.
D2018-06-22
 
PayPal (Notify) - Bypass & Persistent Web Vulnerability4.1Remote28628Benjamin K.M.
D2018-06-20
 
Magento Products T1 - Bypass & Persistent Vulnerability4.2Remote13860Vulnerability-Lab
D2018-06-18
 
Magento MarketPlace T1 - Bypass & Persistent Vulnerability4.2Remote13531Vulnerability-Lab
D2018-06-15
 
Shopify - (Applications) Privilege Escalation Vulnerability7.6Remote18779Vulnerability-Lab
D2018-06-14
 
Shopify - (Comments) Cross Site Scripting Vulnerability3.3Remote14938Vulnerability-Lab
D2018-06-13
 
Shopify - (Link Return) Client Side Web Vulnerability4Remote14087Vulnerability-Lab
Note: The vendor vulnerabilities section impact vulnerabilities in well-known or famous manufacturer products.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-01-20
 
Acadmic Microsoft - (API) Filter Cross Site Vulnerability4Remote24193Lawrence Amer
D2018-01-19
 
Magento Commerce - CSRLF Web UI Security Vulnerability4.1Remote25108Vulnerability-Lab
D2018-01-07
 
MS Sharepoint 2013 - Limited Access Permission Bypass4.8Local22207Marco Marsala
D2018-01-04
 
Adobe CreativeCloud (Webform) - Persistent Vulnerability3.7Remote23325Vulnerability-Lab
D2018-01-03
 
Salesforce Force (EventRSVP) - Multiple Web Vulnerabilities3Remote19333Vulnerability-Lab
D2017-09-06
 
Microsoft Info - Filter Bypass & Persistent Vulnerability3.8Remote21897Benjamin K.M.
D2017-09-05
 
Telekom Prepaid Shop - Multiple Persistent Vulnerabilities4.3Remote21670Benjamin K.M.
D2017-08-16
 
Microsoft Resnet - DNS Configuration Web Vulnerability6.4Remote23025S.AbenMassaoud
D2017-06-12
 
123ContactForm - Cross Site Scripting Web Vulnerability3.3Remote24250ZwX
D2017-05-23
 
Lufthansa AG - (Limbo) Open Redirect Web Vulnerability2.8Remote23685Benjamin K.M.
D2017-05-03
 
Stanford University (MBC) - SQL Injection Web Vulnerability 7.1Remote24865Ahsan Tahir
D2017-01-19
 
FullContact BB #2 - CSV Excel Macro Injection Vulnerability3.7Remote26620S.AbenMassaoud
Note: The website vulnerabilities section impact vulnerabilities in website services and well-known service applications.

DDateRAdvisory NameVSTypeViewsAuthor
D2015-01-30
 
Glibc Ghost Vulnerability (CVE-2015-0235) - How to SecureRReport50940Rajivarnan R.
D2014-07-29
 
Wickr Announcement - Bug Bounty Program 2014RReport51473Wickr Security
D2014-05-12
 
Vulnerable Workers in Uncertain Times - 4th Conference CFPRReport54148ADAPT IT
D2014-04-09
 
HeartBleed SSL CVE 20140160 - 10 Steps to Fix in UbuntuRReport52716Vulnerability-Lab
D2014-03-26
 
ES746 Support-Bulletin - EMS Vulnerability ResolvedRBulletins50974Vulnerability-Lab
D2014-03-13
 
RFP - External Network Vulnerability Assessment & PenTestRReport51251Ismail Kaleem
D2014-01-31
 
HackInTheBox Quartal Magazine - eZine Issue 10RMagazin51184HITB TEAM
D2013-05-28
 
Filter Evasion and Bypass Methods - Pentest MagazineRReport56819Vulnerability-Lab
D2012-11-30
 
HackInTheBox Quartal Magazine - eZine Issue 09RMagazin51462HITB TEAM
D2012-11-26
 
Security in a serious way [THN] - eZine Issue 014RMagazin51154THN TEAM
D2012-06-16
 
Malware Magazine [THN] - eZine Issue 012RMagazin50999THN TEAM
D2012-05-29
 
Ultimate Directory Traversal Attack Cheat SheetRSheets50989Vulnerability-Lab
Note: The documents section impact security reports, security analysis, vulnerability analysis or research reportages.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-11-07
 
Apple iOS v12.1 - Authentication Bypass Vulnerability6.3Local11873Vulnerability-Lab
D2018-10-26
 
Apple iOS 11.x & 12.x - Authentication Bypass Vulnerability6.3Local12188Vulnerability-Lab
D2018-10-25
 
Intel Quartus Family - Privilege Escalation Vulnerability7.8Local11289S.AbenMassaoud
D2018-10-02
 
Facebook - Instagram Business Access Token Vulnerability9.3Remote13017Vulnerability-Lab
D2018-10-02
 
Facebook - Instagram Business Access Token Demo PoC9.3Remote11938Vulnerability-Lab
D2018-09-19
 
Apple iOS 11.x - Webkit Filter Backdrop DoS Vulnerability4.1Remote12251Vulnerability-Lab
D2018-08-27
 
Anghami - Persistent Input Validation Vulnerability4.5Remote12458Vulnerability-Lab
D2018-08-21
 
GTA 5 Online Game - Timeout Sync Money Vulnerability4.7Remote12608Vulnerability-Lab
D2018-08-14
 
BMW ConnectedDrive - (Update) VIN Session Vulnerability6Remote13095Vulnerability-Lab
D2018-08-09
 
Facebook BB #71 - (API) UXSS via MS Internet Explorer 114.5Remote13105N/A - Anonymous
D2018-07-30
 
Huawei Backup App - Mobile Reset Session Vulnerability 5.9Local13055Vulnerability-Lab
D2018-07-23
 
Jira - Insufficient Session Validation Web Vulnerability6Remote13193Vulnerability-Lab
Note: The security video section demonstrates live hacks, proof of concepts, reproduce videos & exploitation videos.


[Statistics] [December] Critical: 0 High: 0 Medium: 0 Low: 0 Best Researcher: [Vulnerability-Lab] Threat Service:


© Evolution Security GmbH ™