Microsoft Edge Chakra – OP_Memset Type Confusion
Since the patch for CVE-2018-8372, it checks all inputs to native arrays, and if any input equals to the MissingItem ...
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
Since the patch for CVE-2018-8372, it checks all inputs to native arrays, and if any input equals to the MissingItem ...
#!/bin/bash
# Exploit Title: Warranty Tracking System 11.06.3 - 'txtCustomerCode' SQL Injection
# Exploit Title: Helpdezk 1.1.1 - Arbitrary File Upload
# Exploit Title: DomainMOD 4.11.01 - Cross-Site Scripting
# Exploit Title: Mumsoft Easy Software 2.0 - Denial of Service (PoC)
# Exploit Title: Easy Outlook Express Recovery 2.0 - Denial of Service (PoC)
commit 6397fac4915a ("userns: bump idmap limits to 340") increases the number of
# Exploit Title: Precurio Intranet Portal 2.0 - Cross-Site Request Forgery (Add Admin)
# Exploit Title: PHP-Proxy 5.1.0 - Local File Inclusion
# Exploit Title: BitZoom 1.0 - 'rollno' SQL Injection
# Exploit Title: Net-Billetterie 2.9 - 'login' SQL Injection
# Exploit Title: Galaxy Forces MMORPG 0.5.8 - 'type' SQL Injection
# Exploit Title: EverSync 0.5 - Arbitrary File Download
# Exploit Title: Notepad3 1.0.2.350 - Denial of Service (PoC)
# Exploit Title: Meneame English Pligg 5.8 - 'search' SQL Injection
# Exploit Title: Kordil EDMS 2.2.60rc3 - Arbitrary File Upload
# Exploit Title: Simple E-Document 1.31 - 'username' SQL Injection
# Exploit Title: 2-Plan Team 1.0.4 - Arbitrary File Upload
# Exploit Title: PHP Mass Mail 1.0 - Arbitrary File Upload
# Exploit Title: Wordpress Plugin Ninja Forms 3.3.17 - Cross-Site Scripting
# Exploit Title: iServiceOnline 1.0 - 'r' SQL Injection
# Exploit Title: ntpd 4.2.8p10 - Out-of-Bounds Read (PoC)
# Exploit Title: Helpdezk 1.1.1 - 'query' SQL Injection
# Exploit Title: Electricks eCommerce 1.0 - Cross-Site Request Forgery (Change Admin Password)
# Exploit Title: EdTv 2 - 'id' SQL Injection
# Exploit Title: AMPPS 2.7 - Denial of Service (PoC)
# Exploit Title: SQL injection in Advanced comment system v1.0
=======================================================================
# Exploit Title: Rmedia SMS 1.0 - SQL Injection
# Exploit Title: Pedidos 1.0 - SQL Injection
# Exploit Title: Electricks eCommerce 1.0 - Cross-Site Scripting
# Exploit Title: DoceboLMS 1.2 - SQL Injection
# Exploit Title: Bosch Video Management System 8.0-Configuration Client-Denial of Service (Poc)
# Title: CentOS Web Panel Root Account Takeover + Remote Command Execution
# Exploit Title: CuteFTP Mac 3.1 Denial of Service (PoC)
# Exploit Title: evince command line injection
# Exploit Title: Surreal ToDo 0.6.1.2 - SQL Injection
# Exploit Title: Surreal ToDo 0.6.1.2 - Local File Inclusion
# Exploit Title: Alienor Web Libre 2.0 - SQL Injection
# Exploit Title: XAMPP Control Panel 3.2.2 - Buffer Overflow (SEH) (Unicode)
[+] Credits: John Page (aka hyp3rlinx)
# Exploit Title: Musicco 2.0.0 - Arbitrary Directory Download
# Exploit Title: Data Center Audit 2.6.2 - Cross-Site Request Forgery (Update Admin)
# Exploit Title: xorg-x11-server < 1.20.1 - Local Privilege Escalation (RHEL 7)
# Exploit Title: Tina4 Stack 1.0.3 - SQL Injection / Database File Download
# Exploit Title: Tina4 Stack 1.0.3 - Cross-Site Request Forgery (Update Admin)