@rapid7.com
-------------------
Description
This module exploits CVE-2023-41425, an authenticated file upload vulnerability affecting WonderCMS between 3.2.0 and 3.4.2.
--------------------
msutovsky-r7
Ex3ptionaL
www.rapid7.com/db/modules/e...
---
AnyDesk 7.0.15 and 9.0.1 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated SYSTEM privileges.
---
euvd.enisa.europa.eu/enisa/EUVD-2...
---
AnyDesk 7.0.15 and 9.0.1 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated SYSTEM privileges.
---
euvd.enisa.europa.eu/enisa/EUVD-2...
-------------------
Description
This module exploits CVE-2023-41425, an authenticated file upload vulnerability affecting WonderCMS between 3.2.0 and 3.4.2.
--------------------
msutovsky-r7
Ex3ptionaL
www.rapid7.com/db/modules/e...
-------------------
Description
This module exploits CVE-2023-41425, an authenticated file upload vulnerability affecting WonderCMS between 3.2.0 and 3.4.2.
--------------------
msutovsky-r7
Ex3ptionaL
www.rapid7.com/db/modules/e...
WPForms 1.7.8 - Cross-Site Scripting (XSS)
Summary
WPForms 1.7.8 contains a cross-site scripting vulnerability in the slider import search feature and tab parameter.
vulnerability.circl.lu/vuln/cve-202...
WPForms 1.7.8 - Cross-Site Scripting (XSS)
Summary
WPForms 1.7.8 contains a cross-site scripting vulnerability in the slider import search feature and tab parameter.
vulnerability.circl.lu/vuln/cve-202...
CVE ID : CVE-2025-34499
Published : Dec. 11, 2025, 10:15 p.m. | 52 minutes ago
Description : AnyDesk 7.0.15 and 9.0.1 contains an unquoted service path vulnerability that allows local...
CVE ID : CVE-2023-54331
Published : Jan. 13, 2026, 11:16 p.m. | 2 hours, 14 minutes ago
Description : Outline 1.6.0 contains an unquoted service path vulnerability that allows local attackers to potentially execute a...