[MAGAZINE][FORUM][GALLERY][BUG BOUNTY LIST][HACKTIVITY] | |
Account:[RegistrationRole:[Anonymous] Researcher: 1682 Advisories: 1089 Documents: 42 Videos: 241 Date: 20.01.2021 TZ: 23:05

[ Home ] [ Mobile ] [ Vendor ] [ Web-Application ] [ Remote ] [ Local ] [ Websites ] [ Documents ] [ Videos ] [ Search ] [ FAQ ]

DDateRAdvisory NameVSTypeViewsAuthor
D2020-05-09
 
cpCommerce v1.2.8 - (id_document) Blind SQL Injection7Remote7248Milad Karimi
D2020-05-08
 
Sellacious eCommerce - Multiple Persistent Vulnerabilities4.6Remote20046Vulnerability-Lab
D2020-05-07
 
Creative Zone - (id) Remote SQL Injection Vulnerability7.5Remote3067Bl4ck M4n
D2020-05-07
 
Wordpress Theme Dosimple v2.0 - XSS Web Vulnerability4Remote3156Milad Karimi
D2020-05-07
 
Tiny MySQL - Cross Site Scripting Vulnerability4Remote3005Milad Karimi
D2020-05-06
 
OpenZ v3.6.60 ERP - Employee Persistent XSS Vulnerability4.6Remote2264Vulnerability-Lab
D2020-05-06
 
KeeWeb v1.14.0 - (Notes) Html Inject Web Vulnerability4.2Remote1388Vulnerability-Lab
D2020-05-05
 
Sentrifugo v3.2 CMS - Persistent XSS Web Vulnerability4.6Remote1453Vulnerability-Lab
D2020-05-04
 
Fishing Reservation System - SQL Injection Vulnerabilities7.5Remote1718Vulnerability-Lab
D2020-05-03
 
Joomla com_content v1.5 - Blind SQL-Injection Vulnerability7.5Remote2077Milad Karimi
D2020-05-02
 
iJoomla com_adagency v6.0.9 - SQL Injection Vulnerabilities7.4Remote2507Milad Karimi
D2020-04-30
 
POS PHP v17.5 - (Employees) Persistent Web Vulnerability4.6Remote1053Vulnerability-Lab
Note: The web-application vulnerabilities section impact only web vulnerabilities in web-applications products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2020-04-20
 
Folder Lock v3.4.5 iOS - Multiple Web Vulnerabilities4.2Remote1734Vulnerability-Lab
D2020-04-17
 
Swift File Transfer Mobile - Multiple Web Vulnerabilities5Remote1421Vulnerability-Lab
D2020-04-16
 
Playable v9.18 iOS - Multiple Web Vulnerabilities7.3Remote1342Vulnerability-Lab
D2020-04-16
 
SMACom v1.2.0 - Insecure Session Validation Vulnerability7.1Remote1513Vulnerability-Lab
D2020-04-15
 
SuperBackup v2.0.5 iOS - (VCF) Persistent XSS Vulnerability4.6Remote1366Vulnerability-Lab
D2020-04-15
 
AirDisk Pro v5.5.3 iOS - Multiple Persistent Vulnerabilities4.5Remote4011Vulnerability-Lab
D2020-04-14
 
File Transfer iFamily v2.1 - Directory Traversal Vulnerability7.1Remote3034Vulnerability-Lab
D2018-01-16
 
Photo Vault v1.2 iOS - Insecure Authentication Vulnerability4.8Local23046Benjamin K.M.
D2018-01-04
 
Photos in Wifi 1.0.1 iOS - Path Traversal Web Vulnerability6.5Remote25413Benjamin K.M.
D2018-01-03
 
Wincor Nixdorf PC/E Mobile Cash TryOut - API Vulnerability3.1Remote17587Vulnerability-Lab
D2017-02-23
 
Super File Explorer 1.0.1 - Arbitrary File Upload Vulnerability7Remote31183Benjamin K.M.
D2017-02-22
 
Air Transfer 1.2.1 & 1.0.14 - Multiple XSS Vulnerabilities4Remote26853Vulnerability-Lab
Note: The mobile vulnerabilities section impact vulnerabilities in operating systems, applications, software & hardware.

DDateRAdvisory NameVSTypeViewsAuthor
D2016-11-18
 
Huawei Flybox B660 Router - Auth Bypass Vulnerability7.4Remote30122S.AbenMassaoud
D2016-10-04
 
Tesla (S&X) - (Interface Pair) Code Execution Vulnerability7.6Remote13201Benjamin K.M.
D2016-10-02
 
Volkswagen (GTE&E) - (Interface Pair) Code Execution7.6Remote12519Benjamin K.M.
D2016-10-01
 
Microsoft Office 365 Word - Code Execution Vulnerability9.1Remote14762Vulnerability-Lab
D2016-07-06
 
Teampass 2.1.26 - Authenticated File Upload Vulnerability7.2Remote30737Peter Kok
D2016-07-05
 
Teampass v2.1.26 - Privilege Escalate Vulnerability5.6Remote28619Peter Kok
D2016-05-18
 
Teampass v2.1.25 - Unauthenticated Access Vulnerability6.8Remote31370Peter Kok
D2016-05-17
 
Teampass v2.1.25 - Arbitrary File Download Vulnerability8.1Remote32325Peter Kok
D2016-03-07
 
Yahoo Bug Bounty #37 - Sender Spoofing Vulnerability 3Remote34351Lawrence Amer
D2016-02-10
 
Apache Sling Framework v2.3.6 - Information Disclosure6.4Remote48712Ateeq Khan
D2016-02-03
 
Compal ConnectBox - Wireless Passphrase Filter Bypass5.8Remote37285Marco Onorati
D2015-11-23
 
Vbulletin 5.x - Remote Code Execution Exploit (PL)8.3Remote41205Reza Espargham
Note: The remote vulnerabilities section impact only remote exploitable vulnerabilities in software products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-11-12
 
Intel OpenVINO 2018.1.x - Permissions Privilege Escalation5.3Local11073S.AbenMassaoud
D2018-10-25
 
Intel Quartus Family - Privilege Escalation Vulnerability7.8Local11511S.AbenMassaoud
D2018-10-15
 
EasyBoot v6.6.0.800 - (Function Key) Buffer Overflow6.7Local12166ZwX
D2018-10-12
 
EasyBoot v6.6.0.800 - (Title CD) Unicode Buffer Overflow6.5Local12132ZwX
D2018-10-05
 
Easy File Sharing WS v7.2 - (Domain Name) Buffer Overflow7.3Local12335ZwX
D2018-10-02
 
Easy File Sharing WS v7.2 - (UserId) Buffer Overflow6.4Local12385ZwX
D2018-08-27
 
R v3.4.4 Software - (SEH) Buffer Overflow Vulnerability6.5Local12450ZwX
D2018-07-30
 
Huawei Backup App v6.30.52.12.L - Session Vulnerability 5.9Local13817Vulnerability-Lab
D2018-07-23
 
SMPlayer 18.6.0 - Memory Corruption (DoS) Vulnerability4.4Local12906ZwX
D2018-07-18
 
Huawei SafeBox Manager 6.30.057.L - Bypass Vulnerability4.9Local24862Vulnerability-Lab
D2018-07-17
 
Binance v1.5.0 - Insecure File Permission Vulnerability2.5Local13188ZwX
D2018-07-13
 
Huawei eNSP v1 - Buffer Overflow (DoS) Vulnerability 3.3Local13627S.AbenMassaoud
Note: The local vulnerabilities section impact only the local exploitable vulnerabilities in software products or services.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-07-10
 
Barracuda ADC 5.x - CS Cross Site Scripting Vulnerability4Remote16496Benjamin K.M.
D2018-07-09
 
Barracuda ADC 5.x - Filter Bypass & Persistent Vulnerability4.4Remote16252Benjamin K.M.
D2018-07-05
 
AT&T Bizcircle - Persistent Profile Cross Site Vulnerability4.6Remote15516Benjamin K.M.
D2018-06-27
 
ASUS WRT-AC66U 3.x - Cross Site Scripting Vulnerability3Local15163Lawrence Amer
D2018-06-26
 
PayPal Inc - Security Key Pin Approval & Expire Bypass4.3Remote15985Benjamin K.M.
D2018-06-22
 
PayPal (Notify) - Bypass & Persistent Web Vulnerability4.1Remote28157Benjamin K.M.
D2018-06-20
 
Magento Products T1 - Bypass & Persistent Vulnerability4.2Remote13336Vulnerability-Lab
D2018-06-18
 
Magento MarketPlace T1 - Bypass & Persistent Vulnerability4.2Remote13087Vulnerability-Lab
D2018-06-15
 
Shopify - (Applications) Privilege Escalation Vulnerability7.6Remote18150Vulnerability-Lab
D2018-06-14
 
Shopify - (Comments) Cross Site Scripting Vulnerability3.3Remote14388Vulnerability-Lab
D2018-06-13
 
Shopify - (Link Return) Client Side Web Vulnerability4Remote13611Vulnerability-Lab
D2018-02-06
 
Magento Commerce T2 - (attr) Persistent Web Vulnerability4.3Remote24147Vulnerability-Lab
Note: The vendor vulnerabilities section impact vulnerabilities in well-known or famous manufacturer products.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-01-07
 
MS Sharepoint 2013 - Limited Access Permission Bypass4.8Local21675Marco Marsala
D2018-01-04
 
Adobe CreativeCloud (Webform) - Persistent Vulnerability3.7Remote22856Vulnerability-Lab
D2018-01-03
 
Salesforce Force (EventRSVP) - Multiple Web Vulnerabilities3Remote18842Vulnerability-Lab
D2017-09-06
 
Microsoft Info - Filter Bypass & Persistent Vulnerability3.8Remote21437Benjamin K.M.
D2017-09-05
 
Telekom Prepaid Shop - Multiple Persistent Vulnerabilities4.3Remote21195Benjamin K.M.
D2017-08-16
 
Microsoft Resnet - DNS Configuration Web Vulnerability6.4Remote22474S.AbenMassaoud
D2017-06-12
 
123ContactForm - Cross Site Scripting Web Vulnerability3.3Remote23772ZwX
D2017-05-23
 
Lufthansa AG - (Limbo) Open Redirect Web Vulnerability2.8Remote23208Benjamin K.M.
D2017-05-03
 
Stanford University (MBC) - SQL Injection Web Vulnerability 7.1Remote24401Ahsan Tahir
D2017-01-19
 
FullContact BB #2 - CSV Excel Macro Injection Vulnerability3.7Remote26137S.AbenMassaoud
D2016-12-14
 
Microsoft (MEPN EDU) - Client Side Cross Site Vulnerability3Remote25585MOHDAQEELAHMED
D2016-10-13
 
Facebook Ads Pixel - (sendcodebymail) CSRF Vulnerability3.1Remote11729Vulnerability-Lab
Note: The website vulnerabilities section impact vulnerabilities in website services and well-known service applications.

DDateRAdvisory NameVSTypeViewsAuthor
D2015-01-30
 
Glibc Ghost Vulnerability (CVE-2015-0235) - How to SecureRReport50461Rajivarnan R.
D2014-07-29
 
Wickr Announcement - Bug Bounty Program 2014RReport51010Wickr Security
D2014-05-12
 
Vulnerable Workers in Uncertain Times - 4th Conference CFPRReport53692ADAPT IT
D2014-04-09
 
HeartBleed SSL CVE 20140160 - 10 Steps to Fix in UbuntuRReport52256Vulnerability-Lab
D2014-03-26
 
ES746 Support-Bulletin - EMS Vulnerability ResolvedRBulletins50528Vulnerability-Lab
D2014-03-13
 
RFP - External Network Vulnerability Assessment & PenTestRReport50793Ismail Kaleem
D2014-01-31
 
HackInTheBox Quartal Magazine - eZine Issue 10RMagazin50741HITB TEAM
D2013-05-28
 
Filter Evasion and Bypass Methods - Pentest MagazineRReport56378Vulnerability-Lab
D2012-11-30
 
HackInTheBox Quartal Magazine - eZine Issue 09RMagazin51034HITB TEAM
D2012-11-26
 
Security in a serious way [THN] - eZine Issue 014RMagazin50731THN TEAM
D2012-06-16
 
Malware Magazine [THN] - eZine Issue 012RMagazin50578THN TEAM
D2012-05-29
 
Ultimate Directory Traversal Attack Cheat SheetRSheets50540Vulnerability-Lab
Note: The documents section impact security reports, security analysis, vulnerability analysis or research reportages.

DDateRAdvisory NameVSTypeViewsAuthor
D2018-11-07
 
Apple iOS v12.1 - Authentication Bypass Vulnerability6.3Local11441Vulnerability-Lab
D2018-10-26
 
Apple iOS 11.x & 12.x - Authentication Bypass Vulnerability6.3Local11759Vulnerability-Lab
D2018-10-25
 
Intel Quartus Family - Privilege Escalation Vulnerability7.8Local10861S.AbenMassaoud
D2018-10-02
 
Facebook - Instagram Business Access Token Vulnerability9.3Remote12608Vulnerability-Lab
D2018-10-02
 
Facebook - Instagram Business Access Token Demo PoC9.3Remote11542Vulnerability-Lab
D2018-09-19
 
Apple iOS 11.x - Webkit Filter Backdrop DoS Vulnerability4.1Remote11843Vulnerability-Lab
D2018-08-27
 
Anghami - Persistent Input Validation Vulnerability4.5Remote12040Vulnerability-Lab
D2018-08-21
 
GTA 5 Online Game - Timeout Sync Money Vulnerability4.7Remote12226Vulnerability-Lab
D2018-08-14
 
BMW ConnectedDrive - (Update) VIN Session Vulnerability6Remote12698Vulnerability-Lab
D2018-08-09
 
Facebook BB #71 - (API) UXSS via MS Internet Explorer 114.5Remote12728N/A - Anonymous
D2018-07-30
 
Huawei Backup App - Mobile Reset Session Vulnerability 5.9Local12680Vulnerability-Lab
D2018-07-23
 
Jira - Insufficient Session Validation Web Vulnerability6Remote12830Vulnerability-Lab
Note: The security video section demonstrates live hacks, proof of concepts, reproduce videos & exploitation videos.


[Statistics] [January] Critical: 0 High: 0 Medium: 0 Low: 0 Best Researcher: [S.AbenMassaoud] Threat Service:


© EVOLUTION SECURITY GmbH ™