Google Chrome < M72 - RenderFrameHostImpl::CreateMediaStreamDispatcherHost Use-After-Free
There's a race-condition / object-lifetime issue in the browser process when the browser process shutdown races again...
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
There's a race-condition / object-lifetime issue in the browser process when the browser process shutdown races again...
There's an object-lifetime issue in the browser process in the handling of P2PSocketDispatcherHost binding in paralle...
There's a use-after-free in the implementation of the FileWriter component of the mojo bindings for the filesystem API.
Through fuzzing of network capture .pcap files, we have identified 16 crashes with unique stack traces in tcpdump. Th...
commit cc2d58634e0f ("netfilter: nf_nat_snmp_basic: use asn1 decoder library",
XNU has various interfaces that permit creating copy-on-write copies of data
SecureAuth - SecureAuth Labs Advisory
var wpnonce = '';
# Exploit Title: Simple Online Hotel Reservation System - SQL Injection / Authentication Bypass
# Exploit Title: Simple Online Hotel Reservation System - Cross-Site Request Forgery (Add Admin)
# Exploit Title: Simple Online Hotel Reservation System - Cross-Site Request Forgery (Delete Admin)
#!/usr/bin/env python
#Exploit Title: Buffer overflow
# Exploit Title: J2Store Plugin for Joomla! < 3.3.6 - SQL Injection
#!/usr/bin/python3
# -*- coding: utf-8 -*-
# Exploit Title: dynamic code evaluation of zzzphp cms 1.6.1
# Exploit Title: PHP Ecommerce Script 2.0.6 - Cross Site Scripting / SQL Injection
# Exploit Title: News Website Script 2.0.5 - SQL Injection
# Exploit Title: Advance Gift Shop Pro Script 2.0.3 - SQL Injection
# Exploit Title: Xlight 3.9.1 FTP Server SEH Overwrite
#!/usr/bin/env python3
Analyzing the patch
# Exploit Title: Quest NetVault Backup Server < 11.4.5 Process Manager Service SQL Injection Remote Code Execution Vu...
https://github.com/WebKit/webkit/blob/3fff8c40c665a09de5e3ede46fc35908f69353c3/Source/JavaScriptCore/runtime/Lookup.h...
SecureAuth - SecureAuth Labs Advisory
#!/usr/bin/env python3
# Exploit Title: Memu Play 6.0.7 - Privilege Escalation (PoC)
# Exploit Title: C4G Basic Laboratory Information System (BLIS) 3.4 - Multiples SQL Injection
# -*- coding: utf-8 -*-
# Exploit Title: PHP EI-Tube Script - Sql Injection
# Exploit Title: RealTerm: Serial Terminal 2.0.0.70 - 'Echo Port' Buffer Overflow - (SEH)
#!/usr/bin/python
#!/usr/bin/python
===========================================================================================
#Exploit Title: FTPShell Server 6.83 - Denial of Service (PoC)
# Exploit Title: WinRAR 5.61 - Denial of Service
There is a memory corruption issue that occurs when processing a malformed RTP video stream in FaceTime. It appears t...
The seccomp.2 manpage (http://man7.org/linux/man-pages/man2/seccomp.2.html) documents:
I happened to notice that a public X.509 certificate testcase for CVE-2014-1569 caused a stack buffer overflow in Mat...
# Exploit Title: MaxxAudio Drivers WavesSysSvc64.exe File Permissions SYSTEM Privilege Escalation