MyVideoConverter Pro 3.14 – Denial of Service
# Exploit Title: MyVideoConverter Pro 3.14 Denial of Service
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: MyVideoConverter Pro 3.14 Denial of Service
####################################################################
####################################################################
# Exploit Title: River Past Ringtone Converter v2.7.6.1601 - Denial of Service (PoC)
# Exploit Title: SpotAuditor v3.6.7 - Denial of Service (PoC)
# Exploit Title: TaskInfo v8.2.0.280 - Denial of Service (PoC)
#####################################################################################################################...
#####################################################################################################################...
# Exploit Title: PassFab Excel Password Recovery SEH Local Exploit
# Exploit Title: Remote Process Explorer v1.0.0.16 - Denial of Service (PoC) and SEH overwritten Crash PoC
# Exploit Title: SureMDM LFI/RFI (Prior to 2018-11 Patch)
#!/usr/bin/python
#!/usr/bin/python
#!/usr/bin/python
# Exploit Title: Advanced Host Monitor 11.90 Beta - 'Registration number' Denial of Service (PoC)
# Exploit Title: a-Mac Address Change v5.4 - Denial of Service (PoC)
# Exploit Title: ASPRunner Professional v6.0.766 - Denial of Service (PoC)
# Exploit Title: FlexHEX v2.46 - Denial of Service (PoC) and SEH overwritten Crash PoC
# Exploit Title: LanHelper v1.74 - Denial of Service (PoC)
XNU has various interfaces that permit creating copy-on-write copies of data
_xpc_serializer_unpack in libxpc parses mach messages which contain xpc messages.
It's possible that this should be two separate issues but I'm filing it as one as I'm still understanding
vm_map_copyin_internal in vm_map.c converts a region of a vm_map into "copied in" form, constructing a vm_map_copy
Inspired by Ned Williamsons's fuzzer I took a look at the netkey code.
#################################################################
# Exploit Title: Advanced File Manager v3.4.1 - Denial of Service (PoC)
macOS 10.13.4 introduced the file bsd/net/if_ports_used.c, which defines sysctls for inspecting
# Exploit Title: IP TOOLS v2.50 - Denial of Service (PoC) and SEH overwritten Crash PoC
# Exploit Title: Necrosoft DIG v0.4 - Denial of Service (PoC) SEH overwritten Crash PoC
# Exploit Title: PDF Signer v3.0 - SSTI to RCE via CSRF Cookie
#!/usr/bin/python3
#!/usr/bin/python
# Exploit Title: MySQL User-Defined (Linux) x32 / x86_64 sys_exec function local privilege escalation exploit
# Exploit Title: CloudMe Sync v1.11.2 Buffer Overflow - WoW64 - (DEP Bypass)
# Exploit Title: Rundeck Community Edition before 3.0.13 Multiple Stored
Exploit Title: WordPress Plugin ad manager wd v1.0.11 - Arbitrary File
# Exploit Title: AirTies Air5341 1.0.0.12 Modem CSRF Exploit & PoC
# Exploit Title: Access Manager Unauthenticated Insecure Direct Object Reference (IDOR)
# Exploit Title: Easy Video to iPod Converter - Local Buffer Overflow (SEH)
# Exploit Title: CMSsite 1.0 - SQL injection
# Exploit Title: CMSsite 1.0 - 'search' SQL injection
#!/bin/bash
# Exploit Title: 6coRV Exploit
# Exploit Title: Cisco Firepower Management Center Cross-Site Scripting (XSS) Vulnerability
#!/usr/bin/python
####################################################################
#!/usr/bin/env python
# Exploit Title: Care2x 2.7 (HIS) Hospital Information system - Multiples SQL Injection
#!/usr/bin/python