[MAGAZINE][GALLERY][BUG BOUNTY LIST][HACKTIVITY] | |
Account:[RegistrationRole:[Anonymous] Researcher: 1848 Advisories: 1138 Documents: 42 Videos: 242 Date: 23.12.2025 TZ: 16:05

[ Home ] [ Mobile ] [ Vendor ] [ Web-Application ] [ Remote ] [ Local ] [ Websites ] [ Documents ] [ Videos ] [ Search ] [ FAQ ]

DDateRAdvisory NameVSTypeViewsAuthor
D2022-02-18
 
Priceel CMS - Multiple Persistent Web Vulnerabilities5.3Remote33461Vulnerability-Lab
D2022-02-17
 
MartFury Marketplace - Cross Site Scripting Vulnerability5.5Remote33444Vulnerability-Lab
D2022-02-17
 
Vicidial v2.14-783a - (DB) SQL Injection Web Vulnerability7.3Remote34108Vulnerability-Lab
D2022-02-09
 
Wordpress v5.9 - Reflected Cross Site Web Vulnerability4.2Remote38389TaurusOmar
D2022-02-08
 
Car Portal Template - (Search) Persistent Web Vulnerability5.6Remote33947Vulnerability-Lab
D2022-01-21
 
uBidAuction v2.0.1 - Multiple XSS Web Vulnerabilities5.4Remote35267Vulnerability-Lab
D2022-01-12
 
Ametys v4.4.1 CMS - Cross Site Scripting Vulnerability5.2Remote36033Vulnerability-Lab
D2022-01-05
 
Affiliate Pro v1.7 - Multiple Cross Site Vulnerabilities5.1Remote32529Vulnerability-Lab
D2021-12-29
 
Rocket LMS v1.1 - (History) Persistent XSS Vulnerability5.4Remote31066Vulnerability-Lab
D2021-12-15
 
uDoctorAppointment v2.1.1 - Multiple XSS Vulnerabilities5Remote30155Vulnerability-Lab
D2021-12-15
 
Easy Cart Shopping Cart - (Search) Persistent Vulnerability5.1Remote30081Vulnerability-Lab
D2021-11-05
 
Payment Terminal 2.x & v3.x - Multiple XSS Vulnerabilities5.2Remote38550Vulnerability-Lab
Note: The web-application vulnerabilities section impact only web vulnerabilities in web-applications products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2020-04-27
 
File Explorer v1.4 iOS - Information Disclosure Vulnerability7Local21782Vulnerability-Lab
D2020-04-26
 
File Sharing&Chat v1.0 iOS - Denial of Service Vulnerability4Remote21655Vulnerability-Lab
D2020-04-26
 
Easy Transfer v1.7 iOS - Multiple Web Vulnerabilities7.1Remote21783Vulnerability-Lab
D2020-04-23
 
Air Sender v1.0.2 iOS - Arbitrary File Upload Vulnerability7.4Remote25650Vulnerability-Lab
D2020-04-22
 
SuperBackup v2.0.5 - Multiple Site Scripting Vulnerabilities4.3Remote25085Vulnerability-Lab
D2020-04-21
 
Air Share v1.2 iOS - Multiple Cross Site Web Vulnerabilities4.4Remote28578Vulnerability-Lab
D2020-04-20
 
Sky File v2.1.0 iOS - Multiple Web Vulnerabilities7.2Remote28114Vulnerability-Lab
D2020-04-19
 
Folder Lock v3.4.5 iOS - Multiple Web Vulnerabilities4.2Remote25086Vulnerability-Lab
D2020-04-16
 
Swift File Transfer Mobile - Multiple Web Vulnerabilities5Remote31446Vulnerability-Lab
D2020-04-15
 
SMACom v1.2.0 - Insecure Session Validation Vulnerability7.1Remote24720Vulnerability-Lab
D2020-04-15
 
Playable v9.18 iOS - Multiple Web Vulnerabilities7.3Remote28259Vulnerability-Lab
D2020-04-14
 
AirDisk Pro v5.5.3 iOS - Multiple Persistent Vulnerabilities4.5Remote33856Vulnerability-Lab
Note: The mobile vulnerabilities section impact vulnerabilities in operating systems, applications, software & hardware.

DDateRAdvisory NameVSTypeViewsAuthor
D2017-01-12
 
Huawei Flybox B660 - (POST SMS) CSRF Web Vulnerability4.4Remote48981S.AbenMassaoud
D2017-01-10
 
Huawei Flybox B660 - (POST Reboot) CSRF Vulnerability4.4Remote47979S.AbenMassaoud
D2016-11-28
 
Tenda, Dlink & Tplink TD-W8961ND - DHCP XSS Vulnerability3.5Remote58268Lawrence Amer
D2016-11-18
 
Huawei Flybox B660 Router - Auth Bypass Vulnerability7.4Remote48979S.AbenMassaoud
D2016-10-03
 
Tesla (S&X) - (Interface Pair) Code Execution Vulnerability7.6Remote31722Benjamin K.M.
D2016-10-01
 
Volkswagen (GTE&E) - (Interface Pair) Code Execution7.6Remote30940Benjamin K.M.
D2016-09-30
 
Microsoft Office 365 Word - Code Execution Vulnerability9.1Remote33298Vulnerability-Lab
D2016-07-05
 
Teampass 2.1.26 - Authenticated File Upload Vulnerability7.2Remote49232Peter Kok
D2016-07-04
 
Teampass v2.1.26 - Privilege Escalate Vulnerability5.6Remote47014Peter Kok
D2016-05-17
 
Teampass v2.1.25 - Unauthenticated Access Vulnerability6.8Remote49821Peter Kok
D2016-05-16
 
Teampass v2.1.25 - Arbitrary File Download Vulnerability8.1Remote50834Peter Kok
D2016-03-07
 
Yahoo Bug Bounty #37 - Sender Spoofing Vulnerability 3Remote52881Lawrence Amer
Note: The remote vulnerabilities section impact only remote exploitable vulnerabilities in software products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-11-21
 
Intel Media Server Studio - Improper Directory Permissions5.1Local29857S.AbenMassaoud
D2018-11-14
 
Intel Distribution Python (IDP) 2018 - Privilege Escalation6.3Local29310S.AbenMassaoud
D2018-11-13
 
Intel Extreme Tuning Utility 6.4.1.23 - DoS Vulnerability3.3Local30041S.AbenMassaoud
D2018-11-12
 
Intel OpenVINO 2018.1.x - Permissions Privilege Escalation5.3Local28827S.AbenMassaoud
D2018-10-24
 
Intel Quartus Family - Privilege Escalation Vulnerability7.8Local29263S.AbenMassaoud
D2018-10-14
 
EasyBoot v6.6.0.800 - (Function Key) Buffer Overflow6.7Local29857ZwX
D2018-10-11
 
EasyBoot v6.6.0.800 - (Title CD) Unicode Buffer Overflow6.5Local29841ZwX
D2018-10-04
 
Easy File Sharing WS v7.2 - (Domain Name) Buffer Overflow7.3Local30035ZwX
D2018-10-01
 
Easy File Sharing WS v7.2 - (UserId) Buffer Overflow6.4Local30059ZwX
D2018-08-26
 
R v3.4.4 Software - (SEH) Buffer Overflow Vulnerability6.5Local30248ZwX
D2018-07-29
 
Huawei Backup App v6.30.52.12.L - Session Vulnerability 5.9Local31619Vulnerability-Lab
D2018-07-22
 
SMPlayer 18.6.0 - Memory Corruption (DoS) Vulnerability4.4Local30597ZwX
Note: The local vulnerabilities section impact only the local exploitable vulnerabilities in software products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-07-17
 
Barracuda Cloud Control v3.020 - CS XSS Web Vulnerability4Remote35980Vulnerability-Lab
D2018-07-16
 
Barracuda Cloud Control 7.1.1.003 - XSS Web Vulnerability4Remote34379Benjamin K.M.
D2018-07-11
 
Barracuda ADC 5.x - Multiple Persistent Vulnerabilities4.4Remote35570Benjamin K.M.
D2018-07-09
 
Barracuda ADC 5.x - CS Cross Site Scripting Vulnerability4Remote35563Benjamin K.M.
D2018-07-08
 
Barracuda ADC 5.x - Filter Bypass & Persistent Vulnerability4.4Remote35370Benjamin K.M.
D2018-07-04
 
AT&T Bizcircle - Persistent Profile Cross Site Vulnerability4.6Remote34622Benjamin K.M.
D2018-06-26
 
ASUS WRT-AC66U 3.x - Cross Site Scripting Vulnerability3Local34520Lawrence Amer
D2018-06-25
 
PayPal Inc - Security Key Pin Approval & Expire Bypass4.3Remote34914Benjamin K.M.
D2018-06-21
 
PayPal (Notify) - Bypass & Persistent Web Vulnerability4.1Remote47114Benjamin K.M.
D2018-06-19
 
Magento Products T1 - Bypass & Persistent Vulnerability4.2Remote32434Vulnerability-Lab
D2018-06-17
 
Magento MarketPlace T1 - Bypass & Persistent Vulnerability4.2Remote31957Vulnerability-Lab
D2018-06-14
 
Shopify - (Applications) Privilege Escalation Vulnerability7.6Remote37462Vulnerability-Lab
Note: The vendor vulnerabilities section impact vulnerabilities in well-known or famous manufacturer products.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-02-20
 
Geldkarte - transaktionsid Cross Site Scripting Vulnerability4.1Remote38598Marco Onorati
D2018-01-20
 
Acadmic Microsoft - (API) Filter Cross Site Vulnerability4Remote41391Lawrence Amer
D2018-01-19
 
Magento Commerce - CSRLF Web UI Security Vulnerability4.1Remote42541Vulnerability-Lab
D2018-01-07
 
MS Sharepoint 2013 - Limited Access Permission Bypass4.8Local39327Marco Marsala
D2018-01-04
 
Adobe CreativeCloud (Webform) - Persistent Vulnerability3.7Remote40349Vulnerability-Lab
D2018-01-03
 
Salesforce Force (EventRSVP) - Multiple Web Vulnerabilities3Remote36429Vulnerability-Lab
D2017-09-05
 
Microsoft Info - Filter Bypass & Persistent Vulnerability3.8Remote38948Benjamin K.M.
D2017-09-04
 
Telekom Prepaid Shop - Multiple Persistent Vulnerabilities4.3Remote38757Benjamin K.M.
D2017-08-15
 
Microsoft Resnet - DNS Configuration Web Vulnerability6.4Remote40233S.AbenMassaoud
D2017-06-11
 
123ContactForm - Cross Site Scripting Web Vulnerability3.3Remote41431ZwX
D2017-05-22
 
Lufthansa AG - (Limbo) Open Redirect Web Vulnerability2.8Remote40709Benjamin K.M.
D2017-05-02
 
Stanford University (MBC) - SQL Injection Web Vulnerability 7.1Remote41988Ahsan Tahir
Note: The website vulnerabilities section impact vulnerabilities in website services and well-known service applications.

DDateRAdvisory NameVSTypeViewsAuthor
D2015-01-30
 
Glibc Ghost Vulnerability (CVE-2015-0235) - How to SecureRReport67973Rajivarnan R.
D2014-07-29
 
Wickr Announcement - Bug Bounty Program 2014RReport68583Wickr Security
D2014-05-12
 
Vulnerable Workers in Uncertain Times - 4th Conference CFPRReport71094ADAPT IT
D2014-04-09
 
HeartBleed SSL CVE 20140160 - 10 Steps to Fix in UbuntuRReport69681Vulnerability-Lab
D2014-03-26
 
ES746 Support-Bulletin - EMS Vulnerability ResolvedRBulletins67934Vulnerability-Lab
D2014-03-13
 
RFP - External Network Vulnerability Assessment & PenTestRReport68193Ismail Kaleem
D2014-01-31
 
HackInTheBox Quartal Magazine - eZine Issue 10RMagazin68153HITB TEAM
D2013-05-28
 
Filter Evasion and Bypass Methods - Pentest MagazineRReport73925Vulnerability-Lab
D2012-11-30
 
HackInTheBox Quartal Magazine - eZine Issue 09RMagazin68378HITB TEAM
D2012-11-26
 
Security in a serious way [THN] - eZine Issue 014RMagazin68127THN TEAM
D2012-06-16
 
Malware Magazine [THN] - eZine Issue 012RMagazin67966THN TEAM
D2012-05-28
 
Ultimate Directory Traversal Attack Cheat SheetRSheets67987Vulnerability-Lab
Note: The documents section impact security reports, security analysis, vulnerability analysis or research reportages.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-12-17
 
NetChat v7.8 - Persistent Cross Site Scripting Vulnerability4.3Local28593Vulnerability-Lab
D2018-11-07
 
Apple iOS v12.1 - Authentication Bypass Vulnerability6.3Local28508Vulnerability-Lab
D2018-10-25
 
Apple iOS 11.x & 12.x - Authentication Bypass Vulnerability6.3Local28858Vulnerability-Lab
D2018-10-24
 
Intel Quartus Family - Privilege Escalation Vulnerability7.8Local27793S.AbenMassaoud
D2018-10-01
 
Facebook - Instagram Business Access Token Demo PoC9.3Remote28452Vulnerability-Lab
D2018-10-01
 
Facebook - Instagram Business Access Token Vulnerability9.3Remote29614Vulnerability-Lab
D2018-09-18
 
Apple iOS 11.x - Webkit Filter Backdrop DoS Vulnerability4.1Remote28860Vulnerability-Lab
D2018-08-26
 
Anghami - Persistent Input Validation Vulnerability4.5Remote28903Vulnerability-Lab
D2018-08-20
 
GTA 5 Online Game - Timeout Sync Money Vulnerability4.7Remote29048Vulnerability-Lab
D2018-08-13
 
BMW ConnectedDrive - (Update) VIN Session Vulnerability6Remote29515Vulnerability-Lab
D2018-08-08
 
Facebook BB #71 - (API) UXSS via MS Internet Explorer 114.5Remote29495N/A - Anonymous
D2018-07-29
 
Huawei Backup App - Mobile Reset Session Vulnerability 5.9Local29465Vulnerability-Lab
Note: The security video section demonstrates live hacks, proof of concepts, reproduce videos & exploitation videos.


[Statistics] [December] Critical: 0 High: 0 Medium: 0 Low: 0 Best Researcher: [Vulnerability-Lab] Threat Service:


© Evolution Security GmbH ™