<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Exploit-DB.com RSS Feed</title>
        <link>https://www.exploit-db.com</link>
        <atom:link href="https://www.exploit-db.com/rss.xml" rel="self" type="application/rss+xml" />
        <language>en-us</language>
        <description>The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.</description>
        <pubDate>Thu, 12 Mar 2026 19:00:02 +0000</pubDate>
        <lastBuildDate>Thu, 12 Mar 2026 19:00:02 +0000</lastBuildDate>
        <copyright></copyright>
         <item>
            <title>[webapps] WordPress Backup Migration 1.3.7 - Remote Command Execution</title>
            <link>https://www.exploit-db.com/exploits/52486</link>
            <description>WordPress Backup Migration 1.3.7 - Remote Command Execution</description>
            <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52486</guid>
        </item>
         <item>
            <title>[webapps] mailcow 2025-01a - Host Header Password Reset Poisoning</title>
            <link>https://www.exploit-db.com/exploits/52485</link>
            <description>mailcow 2025-01a - Host Header Password Reset Poisoning</description>
            <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52485</guid>
        </item>
         <item>
            <title>[webapps] Easy File Sharing Web Server v7.2 - Buffer Overflow</title>
            <link>https://www.exploit-db.com/exploits/52484</link>
            <description>Easy File Sharing Web Server v7.2 - Buffer Overflow</description>
            <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52484</guid>
        </item>
         <item>
            <title>[webapps] WeGIA 3.5.0 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52483</link>
            <description>WeGIA 3.5.0 - SQL Injection</description>
            <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52483</guid>
        </item>
         <item>
            <title>[webapps] Boss Mini v1.4.0 - Local File Inclusion (LFI)</title>
            <link>https://www.exploit-db.com/exploits/52482</link>
            <description>Boss Mini v1.4.0 - Local File Inclusion (LFI)</description>
            <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52482</guid>
        </item>
         <item>
            <title>[webapps] motionEye 0.43.1b4 - RCE</title>
            <link>https://www.exploit-db.com/exploits/52481</link>
            <description>motionEye 0.43.1b4 - RCE</description>
            <pubDate>Wed, 11 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52481</guid>
        </item>
         <item>
            <title>[remote] Windows 10.0.17763.7009 - spoofing vulnerability</title>
            <link>https://www.exploit-db.com/exploits/52480</link>
            <description>Windows 10.0.17763.7009 - spoofing vulnerability</description>
            <pubDate>Wed, 11 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52480</guid>
        </item>
         <item>
            <title>[local] glibc 2.38 - Buffer Overflow</title>
            <link>https://www.exploit-db.com/exploits/52479</link>
            <description>glibc 2.38 - Buffer Overflow</description>
            <pubDate>Wed, 11 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52479</guid>
        </item>
         <item>
            <title>[remote] windows 10/11 - NTLM Hash Disclosure Spoofing</title>
            <link>https://www.exploit-db.com/exploits/52478</link>
            <description>windows 10/11 - NTLM Hash Disclosure Spoofing</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52478</guid>
        </item>
         <item>
            <title>[remote] Redis 8.0.2 - RCE</title>
            <link>https://www.exploit-db.com/exploits/52477</link>
            <description>Redis 8.0.2 - RCE</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52477</guid>
        </item>
         <item>
            <title>[webapps] OctoPrint 1.11.2 - File Upload</title>
            <link>https://www.exploit-db.com/exploits/52476</link>
            <description>OctoPrint 1.11.2 - File Upload</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52476</guid>
        </item>
         <item>
            <title>[remote] Ingress-NGINX Admission Controller v1.11.1 - FD Injection to RCE</title>
            <link>https://www.exploit-db.com/exploits/52475</link>
            <description>Ingress-NGINX Admission Controller v1.11.1 - FD Injection to RCE</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52475</guid>
        </item>
         <item>
            <title>[webapps] aiohttp 3.9.1 - directory traversal PoC</title>
            <link>https://www.exploit-db.com/exploits/52474</link>
            <description>aiohttp 3.9.1 - directory traversal PoC</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52474</guid>
        </item>
         <item>
            <title>[webapps] FortiWeb Fabric Connector 7.6.x - SQL Injection to Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52473</link>
            <description>FortiWeb Fabric Connector 7.6.x - SQL Injection to Remote Code Execution</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52473</guid>
        </item>
         <item>
            <title>[local] Docker Desktop 4.44.3 - Unauthenticated  API Exposure</title>
            <link>https://www.exploit-db.com/exploits/52472</link>
            <description>Docker Desktop 4.44.3 - Unauthenticated  API Exposure</description>
            <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52472</guid>
        </item>
         <item>
            <title>[webapps] Piranha CMS 12.0 - Stored XSS in Text Block</title>
            <link>https://www.exploit-db.com/exploits/52471</link>
            <description>Piranha CMS 12.0 - Stored XSS in Text Block</description>
            <pubDate>Mon, 02 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52471</guid>
        </item>
         <item>
            <title>[webapps] RPi-Jukebox-RFID 2.8.0 - Stored Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52470</link>
            <description>RPi-Jukebox-RFID 2.8.0 - Stored Cross-Site Scripting (XSS)</description>
            <pubDate>Mon, 02 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52470</guid>
        </item>
         <item>
            <title>[hardware] D-Link DIR-825 Rev.B 2.10 - Stack Buffer Overflow (DoS)</title>
            <link>https://www.exploit-db.com/exploits/52469</link>
            <description>D-Link DIR-825 Rev.B 2.10 - Stack Buffer Overflow (DoS)</description>
            <pubDate>Mon, 02 Feb 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52469</guid>
        </item>
         <item>
            <title>[webapps] RPi-Jukebox-RFID 2.8.0 - Remote Command Execution</title>
            <link>https://www.exploit-db.com/exploits/52468</link>
            <description>RPi-Jukebox-RFID 2.8.0 - Remote Command Execution</description>
            <pubDate>Sat, 17 Jan 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52468</guid>
        </item>
         <item>
            <title>[webapps] Siklu EtherHaul Series EH-8010 - Arbitrary File Upload</title>
            <link>https://www.exploit-db.com/exploits/52467</link>
            <description>Siklu EtherHaul Series EH-8010 - Arbitrary File Upload</description>
            <pubDate>Sat, 17 Jan 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52467</guid>
        </item>
         <item>
            <title>[webapps] Siklu EtherHaul Series EH-8010 - Remote Command Execution</title>
            <link>https://www.exploit-db.com/exploits/52466</link>
            <description>Siklu EtherHaul Series EH-8010 - Remote Command Execution</description>
            <pubDate>Sat, 17 Jan 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52466</guid>
        </item>
         <item>
            <title>[webapps] WordPress Quiz Maker 6.7.0.56 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52465</link>
            <description>WordPress Quiz Maker 6.7.0.56 - SQL Injection</description>
            <pubDate>Thu, 25 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52465</guid>
        </item>
         <item>
            <title>[webapps] Chained Quiz  1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie</title>
            <link>https://www.exploit-db.com/exploits/52464</link>
            <description>Chained Quiz  1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie</description>
            <pubDate>Thu, 25 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52464</guid>
        </item>
         <item>
            <title>[webapps] FreeBSD rtsold 15.x - Remote Code Execution via DNSSL</title>
            <link>https://www.exploit-db.com/exploits/52463</link>
            <description>FreeBSD rtsold 15.x - Remote Code Execution via DNSSL</description>
            <pubDate>Thu, 25 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52463</guid>
        </item>
         <item>
            <title>[webapps] Summar Employee Portal  3.98.0 - Authenticated SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52462</link>
            <description>Summar Employee Portal  3.98.0 - Authenticated SQL Injection</description>
            <pubDate>Tue, 16 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52462</guid>
        </item>
         <item>
            <title>[webapps] esm-dev 136 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52461</link>
            <description>esm-dev 136 - Path Traversal</description>
            <pubDate>Tue, 16 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52461</guid>
        </item>
         <item>
            <title>[webapps] Pluck 4.7.7-dev2 -  PHP Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52460</link>
            <description>Pluck 4.7.7-dev2 -  PHP Code Execution</description>
            <pubDate>Mon, 08 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52460</guid>
        </item>
         <item>
            <title>[webapps] phpMyFAQ 2.9.8 - Cross-Site Request Forgery(CSRF)</title>
            <link>https://www.exploit-db.com/exploits/52459</link>
            <description>phpMyFAQ 2.9.8 - Cross-Site Request Forgery(CSRF)</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52459</guid>
        </item>
         <item>
            <title>[webapps] phpMyFAQ  2.9.8 - Cross-Site Request Forgery (CSRF)</title>
            <link>https://www.exploit-db.com/exploits/52458</link>
            <description>phpMyFAQ  2.9.8 - Cross-Site Request Forgery (CSRF)</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52458</guid>
        </item>
         <item>
            <title>[webapps] MaNGOSWebV4  4.0.6 - Reflected XSS</title>
            <link>https://www.exploit-db.com/exploits/52457</link>
            <description>MaNGOSWebV4  4.0.6 - Reflected XSS</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52457</guid>
        </item>
         <item>
            <title>[webapps] Django 5.1.13 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52456</link>
            <description>Django 5.1.13 - SQL Injection</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52456</guid>
        </item>
         <item>
            <title>[webapps] phpMyFaq 2.9.8 - Cross Site Request Forgery (CSRF)</title>
            <link>https://www.exploit-db.com/exploits/52455</link>
            <description>phpMyFaq 2.9.8 - Cross Site Request Forgery (CSRF)</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52455</guid>
        </item>
         <item>
            <title>[webapps] MobileDetect 2.8.31 - Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52454</link>
            <description>MobileDetect 2.8.31 - Cross-Site Scripting (XSS)</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52454</guid>
        </item>
         <item>
            <title>[webapps] phpIPAM 1.4 - SQL-Injection</title>
            <link>https://www.exploit-db.com/exploits/52453</link>
            <description>phpIPAM 1.4 - SQL-Injection</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52453</guid>
        </item>
         <item>
            <title>[webapps] OpenRepeater 2.1 - OS Command Injection</title>
            <link>https://www.exploit-db.com/exploits/52452</link>
            <description>OpenRepeater 2.1 - OS Command Injection</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52452</guid>
        </item>
         <item>
            <title>[webapps] phpMyAdmin 5.0.0 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52451</link>
            <description>phpMyAdmin 5.0.0 - SQL Injection</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52451</guid>
        </item>
         <item>
            <title>[webapps] RosarioSIS 6.7.2 - Cross Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52450</link>
            <description>RosarioSIS 6.7.2 - Cross Site Scripting (XSS)</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52450</guid>
        </item>
         <item>
            <title>[webapps] RosarioSIS 6.7.2 - Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52449</link>
            <description>RosarioSIS 6.7.2 - Cross-Site Scripting (XSS)</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52449</guid>
        </item>
         <item>
            <title>[webapps] PluckCMS 4.7.10 - Unrestricted File Upload</title>
            <link>https://www.exploit-db.com/exploits/52448</link>
            <description>PluckCMS 4.7.10 - Unrestricted File Upload</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52448</guid>
        </item>
         <item>
            <title>[webapps] openSIS Community Edition 8.0 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52447</link>
            <description>openSIS Community Edition 8.0 - SQL Injection</description>
            <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52447</guid>
        </item>
         <item>
            <title>[webapps] YOURLS 1.8.2 - Cross-Site Request Forgery (CSRF)</title>
            <link>https://www.exploit-db.com/exploits/52446</link>
            <description>YOURLS 1.8.2 - Cross-Site Request Forgery (CSRF)</description>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52446</guid>
        </item>
         <item>
            <title>[webapps] phpMyFAQ  3.1.7 - Reflected Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52445</link>
            <description>phpMyFAQ  3.1.7 - Reflected Cross-Site Scripting (XSS)</description>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52445</guid>
        </item>
         <item>
            <title>[webapps] phpIPAM 1.5.1 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52444</link>
            <description>phpIPAM 1.5.1 - SQL Injection</description>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52444</guid>
        </item>
         <item>
            <title>[webapps] Piwigo 13.6.0 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52443</link>
            <description>Piwigo 13.6.0 - SQL Injection</description>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52443</guid>
        </item>
         <item>
            <title>[webapps] phpIPAM 1.6 - Reflected-Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52442</link>
            <description>phpIPAM 1.6 - Reflected-Cross-Site Scripting (XSS)</description>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52442</guid>
        </item>
         <item>
            <title>[webapps] phpIPAM 1.6 - Reflected Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52441</link>
            <description>phpIPAM 1.6 - Reflected Cross-Site Scripting (XSS)</description>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52441</guid>
        </item>
         <item>
            <title>[webapps] Flowise 3.0.4 - Remote Code Execution (RCE)</title>
            <link>https://www.exploit-db.com/exploits/52440</link>
            <description>Flowise 3.0.4 - Remote Code Execution (RCE)</description>
            <pubDate>Fri, 31 Oct 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52440</guid>
        </item>
         <item>
            <title>[webapps] Casdoor 2.95.0 - Cross-Site Request Forgery (CSRF)</title>
            <link>https://www.exploit-db.com/exploits/52439</link>
            <description>Casdoor 2.95.0 - Cross-Site Request Forgery (CSRF)</description>
            <pubDate>Wed, 29 Oct 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52439</guid>
        </item>
         <item>
            <title>[remote] Ilevia EVE X1/X5 Server 4.7.18.0.eden - Reverse Rootshell</title>
            <link>https://www.exploit-db.com/exploits/52437</link>
            <description>Ilevia EVE X1/X5 Server 4.7.18.0.eden - Reverse Rootshell</description>
            <pubDate>Tue, 16 Sep 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52437</guid>
        </item>
         <item>
            <title>[local] Microsoft Windows Server 2025 Hyper-V NT Kernel Integration VSP - Elevation of Privilege</title>
            <link>https://www.exploit-db.com/exploits/52436</link>
            <description>Microsoft Windows Server 2025 Hyper-V NT Kernel Integration VSP - Elevation of Privilege</description>
            <pubDate>Tue, 16 Sep 2025 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52436</guid>
        </item>
    </channel>
</rss>