Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2018-10-29

PayPal-Credit Card-Debit Card Payment 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Curriculum Evaluation System 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    SaltOS Erp Crm 3.1 r8126 – SQL Injection (2)

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    School Attendance Monitoring System 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Modbus Slave PLC 7 – ‘.msw’ Buffer Overflow (PoC)

  • local
  • windows_x86
  • Kağan Çapar
    2018-10-29

    School Attendance Monitoring System 1.0 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Local Server 1.0.9 – Denial of Service (PoC)

  • dos
  • windows_x86-64
  • Ihsan Sencan
    2018-10-29

    School Attendance Monitoring System 1.0 – Cross-Site Request Forgery (Update Admin)

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    School Event Management System 1.0 – Cross-Site Request Forgery (Update Admin)

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Open Faculty Evaluation System 7 – ‘batch_name’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    SaltOS Erp Crm 3.1 r8126 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    School Event Management System 1.0 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    MTGAS MOGG Web Simulator Script – SQL Injection

  • webapps
  • php
  • Meisam Monsef
    2018-10-29

    Navicat 12.0.29 – ‘SSH’ Denial of Service (PoC)

  • dos
  • windows_x86-64
  • Rafael Alfaro
    2018-10-29

    Library Management System 1.0 – ‘frmListBooks’ SQL Injection

  • webapps
  • aspx
  • Ihsan Sencan
    2018-10-29

    School Event Management System 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Aplaya Beach Resort Online Reservation System 1.0 – SQL Injection / Cross-Site Request Forgery

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Point of Sales (POS) in VB.Net MySQL Database 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Bakeshop Inventory System in VB.Net and MS Access Database 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-29

    Open Faculty Evaluation System 5.6 – ‘batch_name’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-26

    Delta Sql 1.8.2 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-26

    MPS Box 0.1.8.0 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2018-10-26

    Quick Count 2.0 – ‘txtInstID’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-26

    Veterinary Clinic Management 00.02 – ‘editpetnum’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    Simple Chat System 1.0 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    phptpoint Pharmacy Management System 1.0 – ‘username’ SQL injection

  • webapps
  • php
  • Boumediene KADDOUR
    2018-10-25

    AiOPMSD Final 1.0.0 – ‘q’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    AjentiCP 1.2.23.13 – Cross-Site Scripting

  • webapps
  • php
  • Numan OZDEMIR
    2018-10-25

    BORGChat 1.0.0 build 438 – Denial of Service (PoC)

  • dos
  • windows_x86-64
  • Ihsan Sencan
    2018-10-25

    User Management 1.1 – Cross-Site Scripting

  • webapps
  • php
  • Ismail Tasdelen
    2018-10-25

    libtiff 4.0.9 – Decodes Arbitrarily Sized JBIG into a Target Buffer

  • dos
  • linux
  • Google Security Research
    2018-10-25

    Delta Sql 1.8.2 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    xorg-x11-server < 1.20.3 - Local Privilege Escalation

  • local
  • multiple
  • Hacker Fantastic
    2018-10-25

    phptpoint Hospital Management System 1.0 – ‘user’ SQL injection

  • webapps
  • php
  • Boumediene KADDOUR
    2018-10-25

    Oracle Weblogic Server – Deserialization Remote Command Execution (Patch Bypass)

  • remote
  • multiple
  • allyshka
    2018-10-25

    MPS Box 0.1.8.0 – ‘uuid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    ClipBucket 2.8 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    Simple POS and Inventory 1.0 – ‘cat’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    WebEx – Local Service Permissions Exploit (Metasploit)

  • local
  • windows
  • Metasploit
    2018-10-25

    Ekushey Project Manager CRM 3.1 – Cross-Site Scripting

  • webapps
  • php
  • Ismail Tasdelen
    2018-10-25

    Open STA Manager 2.3 – Arbitrary File Download

  • webapps
  • php
  • Ihsan Sencan
    2018-10-25

    Adult Filter 1.0 – Buffer Overflow (SEH)

  • local
  • windows_x86
  • AkkuS
    2018-10-25

    WebExec – (Authenticated) User Code Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2018-10-25

    ProjeQtOr Project Management Tool 7.2.5 – Remote Code Execution

  • webapps
  • php
  • AkkuS
    2018-10-24

    Axioscloud Sissiweb Registro Elettronico 7.0.0 – ‘Error_desc’ Cross-Site Scripting

  • webapps
  • aspx
  • Dino Barlattani
    2018-10-24

    Adult Filter 1.0 – Denial of Service (PoC)

  • dos
  • windows_x86
  • Beren Kuday GÖRÜN
    2018-10-24

    LANGO Codeigniter Multilingual Script 1.0 – Cross-Site Scripting

  • webapps
  • php
  • Ismail Tasdelen
    2018-10-24

    exim 4.90 – Remote Code Execution

  • remote
  • linux
  • hackk.gr
    2018-10-24

    Fifa Master XLS 2.3.2 – ‘usw’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2018-10-24

    SG ERP 1.0 – ‘info’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan