bludit Pages Editor 3.0.0 – Arbitrary File Upload
# Exploit Title: bludit Pages Editor 3.0.0 - Arbitrary File Upload
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: bludit Pages Editor 3.0.0 - Arbitrary File Upload
# Exploit Title: WordPress Plugin Baggage Freight Shipping Australia 0.1.0 - Arbitrary File Upload
# Exploit Title: NetShareWatcher 1.5.8 - Denial of Service (PoC)
# Exploit Title:ShareAlarmPro 2.1.4 - Denial of Service (PoC)
# Exploit Title: WSTMart 2.0.8 - Cross-Site Scripting
# Exploit Title: WSTMart 2.0.8 - Cross-Site Request Forgery (Add Admin)
# Exploit Title: FrontAccounting 2.4.5 - 'SubmitUser' SQL Injection
# Exploit Title: Angry IP Scanner for Linux 3.5.3 - Denial of Service (PoC)
Download: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/46051.zip
#!/usr/bin/env python
# Exploit Title: Microsoft Edge edgehtml.dll!Tree::ANode::DocumentLayout. Denial of Service (PoC)
# Exploit Title: ZeusCart 4.0 Deactivate Customer Accounts CSRF
The bug is in “MsiAdvertiseProduct”
# Exploit Title: McAfee Foundstone SQLScan - Denial of Service (PoC) and EIP record overwrite
import socket
# Exploit Title: LanSpy 2.0.1.159 - Local Buffer Overflow (SEH) (Egghunter)
#!/usr/bin/env python
#!/usr/bin/env python
There is an reference leak in Microsoft VBScript that can be turned into an use-after-free given sufficient time. The...
According to https://blogs.windows.com/msedgedev/2017/07/07/update-disabling-vbscript-internet-explorer-11/, Starting...
The bug is in “MsiAdvertiseProduct”
# Exploit Title: PassFab RAR Password Recovery SEH Local Exploit
#!/usr/bin/python
# Exploit Title: Admin Account take over Via CSRF
# Exploit Title: Integria IMS 5.0.83 - Cross-Site Scripting
# Exploit Title: Integria IMS 5.0.83 - Cross-Site Request Forgery
# Exploit Title: Bolt CMS [ https://github.com/rdincel1/Bolt-CMS-3.6.2---Cross-Site-Scripting/raw/master/bolt-v3.6.2...
# Exploit Title: SQL Injection in Yeswiki (Cercopitheque)
# Exploit Title: PDF Explorer SEH Local Exploit
# Exploit Title: [XML External Entity Injection (XXE)]
Not only the GET method is vulnerable to BOF (CVE-2004-2271). HEAD and POST
######################
# Exploit Title: AnyBurn
# Exploit Title: Excel Password Recovery Professional
# Exploit Title: MegaPing
# Exploit Title: Nsauditor Local SEH Buffer Overflow
#!/usr/bin/env python
#!/usr/bin/env python2
Responsive FileManager 9.13.4 - Multiple Vulnerabilities
#Exploit Title: Zortam MP3 Media Studio Version 24.15 Exploit (SEH)
#!/bin/python
# Exploit Title: Facebook And Google Reviews System For Businesses - Cross-Site Request Forgery