Tag

#Public Exploit

50 published stories tagged with Public Exploit.

highApplication SecurityMay 8, 2026·4 min read

Brief: PicoTronica e-Clinic Healthcare System Information Disclosure Fixed in Version 5.7.1

PicoTronica e-Clinic Healthcare System ECHS 5.7 contains an information disclosure vulnerability in the /cdemos/echs/api/v2/ response header handling component.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: PicoTronica e-Clinic Healthcare System Information Disclosure Fixed in Version 5.7.1

PicoTronica e-Clinic Healthcare System ECHS 5.7 contains an information disclosure vulnerability in the /cdemos/echs/api/v2/ response header handling component.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: PicoTronica e-Clinic Healthcare System Information Disclosure Fixed in Version 5.7.1

PicoTronica e-Clinic Healthcare System ECHS 5.7 contains an information disclosure vulnerability in the /cdemos/echs/api/v2/ response header handling component.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: PicoTronica e-Clinic Healthcare System Information Disclosure Fixed in Version 5.7.1

PicoTronica e-Clinic Healthcare System ECHS 5.7 contains an information disclosure vulnerability in the /cdemos/echs/api/v2/ response header handling component.

highApplication SecurityMay 8, 2026·4 min read

Brief: CodeAstro Online Classroom SQL Injection Vulnerability Disclosed With Public Exploit

A SQL injection vulnerability in CodeAstro Online Classroom 1.0 affects the /askquery.php component through the squeryx argument, according to the NVD/VulDB record.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: CodeAstro Online Classroom SQL Injection Vulnerability Disclosed With Public Exploit

A SQL injection vulnerability in CodeAstro Online Classroom 1.0 affects the /askquery.php component through the squeryx argument, according to the NVD/VulDB record.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: CodeAstro Online Classroom SQL Injection Vulnerability Disclosed With Public Exploit

A SQL injection vulnerability in CodeAstro Online Classroom 1.0 affects the /askquery.php component through the squeryx argument, according to the NVD/VulDB record.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: CodeAstro Online Classroom SQL Injection Vulnerability Disclosed With Public Exploit

A SQL injection vulnerability in CodeAstro Online Classroom 1.0 affects the /askquery.php component through the squeryx argument, according to the NVD/VulDB record.

highNetwork SecurityMay 8, 2026·4 min read

Brief: Open5GS NSSF Denial-of-Service Vulnerability Disclosed With Public Exploit

Open5GS up to 2.7.7 contains a denial-of-service vulnerability in the NSSF component, according to VulDB.

highNetwork SecurityMay 8, 2026·4 min read

Defender Guidance: Open5GS NSSF Denial-of-Service Vulnerability Disclosed With Public Exploit

Open5GS up to 2.7.7 contains a denial-of-service vulnerability in the NSSF component, according to VulDB.

highNetwork SecurityMay 8, 2026·4 min read

Detection Notes: Open5GS NSSF Denial-of-Service Vulnerability Disclosed With Public Exploit

Open5GS up to 2.7.7 contains a denial-of-service vulnerability in the NSSF component, according to VulDB.

highNetwork SecurityMay 8, 2026·4 min read

Risk Brief: Open5GS NSSF Denial-of-Service Vulnerability Disclosed With Public Exploit

Open5GS up to 2.7.7 contains a denial-of-service vulnerability in the NSSF component, according to VulDB.

highApplication SecurityMay 8, 2026·4 min read

Brief: code-projects Simple Chat System SQL Injection Disclosed in sendMessage.php

A SQL injection vulnerability was disclosed in code-projects Simple Chat System 1.0 affecting sendMessage.php.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: code-projects Simple Chat System SQL Injection Disclosed in sendMessage.php

A SQL injection vulnerability was disclosed in code-projects Simple Chat System 1.0 affecting sendMessage.php.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: code-projects Simple Chat System SQL Injection Disclosed in sendMessage.php

A SQL injection vulnerability was disclosed in code-projects Simple Chat System 1.0 affecting sendMessage.php.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: code-projects Simple Chat System SQL Injection Disclosed in sendMessage.php

A SQL injection vulnerability was disclosed in code-projects Simple Chat System 1.0 affecting sendMessage.php.

highApplication SecurityMay 8, 2026·4 min read

Brief: SourceCodester SUP Online Shopping Wishlist SQL Injection Disclosed

A SQL injection issue was reported in SourceCodester SUP Online Shopping 1.0 affecting wishlist.php through the delwlistid argument.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: SourceCodester SUP Online Shopping Wishlist SQL Injection Disclosed

A SQL injection issue was reported in SourceCodester SUP Online Shopping 1.0 affecting wishlist.php through the delwlistid argument.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: SourceCodester SUP Online Shopping Wishlist SQL Injection Disclosed

A SQL injection issue was reported in SourceCodester SUP Online Shopping 1.0 affecting wishlist.php through the delwlistid argument.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: SourceCodester SUP Online Shopping Wishlist SQL Injection Disclosed

A SQL injection issue was reported in SourceCodester SUP Online Shopping 1.0 affecting wishlist.php through the delwlistid argument.

highApplication SecurityMay 8, 2026·4 min read

Brief: SourceCodester SUP Online Shopping Admin Message SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in SourceCodester SUP Online Shopping 1.0 affecting /admin/message.php through the seenid argument.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: SourceCodester SUP Online Shopping Admin Message SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in SourceCodester SUP Online Shopping 1.0 affecting /admin/message.php through the seenid argument.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: SourceCodester SUP Online Shopping Admin Message SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in SourceCodester SUP Online Shopping 1.0 affecting /admin/message.php through the seenid argument.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: SourceCodester SUP Online Shopping Admin Message SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in SourceCodester SUP Online Shopping 1.0 affecting /admin/message.php through the seenid argument.

highApplication SecurityMay 8, 2026·4 min read

Brief: SourceCodester SUP Online Shopping SQL Injection Found in Admin Reply Message Handler

NVD/VulDB reports a SQL injection issue in SourceCodester SUP Online Shopping 1.0 affecting /admin/replymsg.php through the msgid argument.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: SourceCodester SUP Online Shopping SQL Injection Found in Admin Reply Message Handler

NVD/VulDB reports a SQL injection issue in SourceCodester SUP Online Shopping 1.0 affecting /admin/replymsg.php through the msgid argument.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: SourceCodester SUP Online Shopping SQL Injection Found in Admin Reply Message Handler

NVD/VulDB reports a SQL injection issue in SourceCodester SUP Online Shopping 1.0 affecting /admin/replymsg.php through the msgid argument.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: SourceCodester SUP Online Shopping SQL Injection Found in Admin Reply Message Handler

NVD/VulDB reports a SQL injection issue in SourceCodester SUP Online Shopping 1.0 affecting /admin/replymsg.php through the msgid argument.

highApplication SecurityMay 8, 2026·4 min read

Brief: CodeAstro Leave Management System Login SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in CodeAstro Leave Management System 1.0 affecting /login.php through the txt_username argument.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: CodeAstro Leave Management System Login SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in CodeAstro Leave Management System 1.0 affecting /login.php through the txt_username argument.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: CodeAstro Leave Management System Login SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in CodeAstro Leave Management System 1.0 affecting /login.php through the txt_username argument.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: CodeAstro Leave Management System Login SQL Injection Published

NVD/VulDB reports a SQL injection vulnerability in CodeAstro Leave Management System 1.0 affecting /login.php through the txt_username argument.

highApplication SecurityMay 8, 2026·4 min read

Brief: zyx0814 FilePress Shares Filelist API SQL Injection Disclosed

A SQL injection vulnerability was reported in zyx0814 FilePress up to 2.2.0 affecting dzz/shares/admin.php in the Shares Filelist API.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: zyx0814 FilePress Shares Filelist API SQL Injection Disclosed

A SQL injection vulnerability was reported in zyx0814 FilePress up to 2.2.0 affecting dzz/shares/admin.php in the Shares Filelist API.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: zyx0814 FilePress Shares Filelist API SQL Injection Disclosed

A SQL injection vulnerability was reported in zyx0814 FilePress up to 2.2.0 affecting dzz/shares/admin.php in the Shares Filelist API.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: zyx0814 FilePress Shares Filelist API SQL Injection Disclosed

A SQL injection vulnerability was reported in zyx0814 FilePress up to 2.2.0 affecting dzz/shares/admin.php in the Shares Filelist API.

mediumApplication SecurityMay 8, 2026·4 min read

Brief: SourceCodester Pharmacy Sales and Inventory System XSS Vulnerability Published

NVD/VulDB reports a cross-site scripting vulnerability in SourceCodester Pharmacy Sales and Inventory System 1.0 affecting /index.php?page=users through the Name argument.

mediumApplication SecurityMay 8, 2026·4 min read

Defender Guidance: SourceCodester Pharmacy Sales and Inventory System XSS Vulnerability Published

NVD/VulDB reports a cross-site scripting vulnerability in SourceCodester Pharmacy Sales and Inventory System 1.0 affecting /index.php?page=users through the Name argument.

mediumApplication SecurityMay 8, 2026·4 min read

Detection Notes: SourceCodester Pharmacy Sales and Inventory System XSS Vulnerability Published

NVD/VulDB reports a cross-site scripting vulnerability in SourceCodester Pharmacy Sales and Inventory System 1.0 affecting /index.php?page=users through the Name argument.

mediumApplication SecurityMay 8, 2026·4 min read

Risk Brief: SourceCodester Pharmacy Sales and Inventory System XSS Vulnerability Published

NVD/VulDB reports a cross-site scripting vulnerability in SourceCodester Pharmacy Sales and Inventory System 1.0 affecting /index.php?page=users through the Name argument.

highNetwork SecurityMay 8, 2026·4 min read

Brief: Totolink X5000R DDNS Buffer Overflow Vulnerability Disclosed With Public Exploit

A buffer overflow vulnerability was disclosed in Totolink X5000R 9.1.0u.6369_B20230113 affecting DDNS form handling.

highNetwork SecurityMay 8, 2026·4 min read

Defender Guidance: Totolink X5000R DDNS Buffer Overflow Vulnerability Disclosed With Public Exploit

A buffer overflow vulnerability was disclosed in Totolink X5000R 9.1.0u.6369_B20230113 affecting DDNS form handling.

highNetwork SecurityMay 8, 2026·4 min read

Detection Notes: Totolink X5000R DDNS Buffer Overflow Vulnerability Disclosed With Public Exploit

A buffer overflow vulnerability was disclosed in Totolink X5000R 9.1.0u.6369_B20230113 affecting DDNS form handling.

highNetwork SecurityMay 8, 2026·4 min read

Risk Brief: Totolink X5000R DDNS Buffer Overflow Vulnerability Disclosed With Public Exploit

A buffer overflow vulnerability was disclosed in Totolink X5000R 9.1.0u.6369_B20230113 affecting DDNS form handling.

highNetwork SecurityMay 8, 2026·4 min read

Brief: Tenda CX12L Stack-Based Buffer Overflow Disclosed With Public Exploit Availability

A stack-based buffer overflow was reported in Tenda CX12L 16.03.53.12. The vulnerability affects the PPTP server configuration handling path, according to NVD/VulDB.

highNetwork SecurityMay 8, 2026·4 min read

Defender Guidance: Tenda CX12L Stack-Based Buffer Overflow Disclosed With Public Exploit Availability

A stack-based buffer overflow was reported in Tenda CX12L 16.03.53.12. The vulnerability affects the PPTP server configuration handling path, according to NVD/VulDB.

highNetwork SecurityMay 8, 2026·4 min read

Detection Notes: Tenda CX12L Stack-Based Buffer Overflow Disclosed With Public Exploit Availability

A stack-based buffer overflow was reported in Tenda CX12L 16.03.53.12. The vulnerability affects the PPTP server configuration handling path, according to NVD/VulDB.

highNetwork SecurityMay 8, 2026·4 min read

Risk Brief: Tenda CX12L Stack-Based Buffer Overflow Disclosed With Public Exploit Availability

A stack-based buffer overflow was reported in Tenda CX12L 16.03.53.12. The vulnerability affects the PPTP server configuration handling path, according to NVD/VulDB.

highApplication SecurityMay 8, 2026·4 min read

CodeAstro Online Classroom SQL Injection Vulnerability Disclosed With Public Exploit

A SQL injection vulnerability in CodeAstro Online Classroom 1.0 affects the /askquery.php component through the squeryx argument, according to the NVD/VulDB record.

highNetwork SecurityMay 8, 2026·4 min read

Totolink X5000R DDNS Buffer Overflow Vulnerability Disclosed With Public Exploit

A buffer overflow vulnerability was disclosed in Totolink X5000R 9.1.0u.6369_B20230113 affecting DDNS form handling.