Visual Voicemail for iPhone – IMAP NAMESPACE Processing Use-After-Free
Visual Voicemail (VVM) is a feature of mobile devices that allows voicemail to be read in an email-like format. Carri...
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
Visual Voicemail (VVM) is a feature of mobile devices that allows voicemail to be read in an email-like format. Carri...
edit: Figure out how this works for yourself. I can't be bothered. It's a really hard race, doubt anyone will be able...
There is still a vuln in the code triggered by CVE-2019-0841
# -*- coding: utf-8 -*-
# Exploit Title: Zoho ManageEngine ServiceDesk Plus < 10.5 Incorrect Access Control
# Exploit Title: Zoho ManageEngine ServiceDesk Plus 9.3 Cross-Site Scripting
# Exploit Title: AUO Solar Data Recorder - Stored XSS
# Exploit Title: Carel pCOWeb - Stored XSS
# Exploit Title: Carel pCOWeb - Unprotected Storage of Credentials
#Exploit Title: RarmaRadio 2.72.3 - 'Server' Denial of Service (PoC)
#Exploit Title: RarmaRadio 2.72.3 - 'Username' Denial of Service (PoC)
#Exploit Title: TapinRadio 2.11.6 - 'Address' Denial of Service (PoC)
#Exploit Title: TapinRadio 2.11.6 - 'Uername' Denial of Service (PoC)
# Title: Horde Webmail - XSS + CSRF to SQLi, RCE, Stealing Emails
EDIT: Apparently this was patched earlier this month.. so whatever.
Task Scheduler .job import arbitrary DACL write
Inject into IE11.
# Exploit Title: Moodle filter_jmol multiple vulnerabilities (Directory Traversal and XSS)
# Exploit Title: TL-WR840N v5 00000005
#Exploit Title: Deluge 1.3.15 - 'URL' Denial of Service (PoC)
#Exploit Title: Deluge 1.3.15 - 'Webseeds' Denial of Service (PoC)
# Exploit Title: Oracle CTI Web Service XML Entity Exp.
#!/usr/bin/env python
Exploit Title: Brocade Network Advisor - Unauthenticated Remote Code Execution
See also https://bugs.chromium.org/p/project-zero/issues/detail?id=1699 for a similar issue.
While fuzzing JavaScriptCore, I encountered the following (modified and commented) JavaScript program which crashes j...
While fuzzing JavaScriptCore, I encountered the following JavaScript program which crashes jsc from current HEAD (git...
#!/usr/bin/env python
Huawei eSpace Desktop DLL Hijacking Vulnerability
Huawei eSpace Meeting Image File Format Handling Buffer Overflow Vulnerability
Huawei eSpace Meeting ContactsCtrl.dll and eSpaceStatusCtrl.dll ActiveX Heap Overflow
# Exploit Title : eLabFTW 1.8.5 'EntityController' Arbitrary File Upload / RCE
# -*- coding: utf-8 -*-
# -*- coding: utf-8 -*-
# -*- coding: utf-8 -*-
#Exploit Title: AbsoluteTelnet 10.16 - 'License name' Denial of Service (PoC)
#Exploit Title: BulletProof FTP Server 2019.0.0.50 - 'DNS Address' Denial of Service (PoC)
#Exploit Title: BulletProof FTP Server 2019.0.0.50 - 'Storage-Path' Denial of Service (PoC)
# -*- coding: utf-8 -*-
# -*- coding: utf-8 -*-
# -*- coding: utf-8 -*-
Exploit Author: bzyo