Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2018-08-16

Pimcore 5.2.3 – SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery

  • webapps
  • php
  • SEC Consult
    2018-08-16

    Central Management Software 1.4.13 – Denial of Service (PoC)

  • dos
  • windows_x86-64
  • Gionathan Reale
    2018-08-16

    WordPress Plugin Export Users to CSV 1.1.1 – CSV Injection

  • webapps
  • php
  • Javier Olmedo
    2018-08-16

    WebkitGTK+ 2.20.3 – ‘ImageBufferCairo::getImageData()’ Buffer Overflow (PoC)

  • local
  • linux
  • PeregrineX
    2018-08-16

    OpenEMR 5.0.1.3 – (Authenticated) Arbitrary File Actions

  • webapps
  • linux
  • Joshua Fam
    2018-08-16

    TP-Link WR840N 0.9.1 3.16 – Denial of Service (PoC)

  • dos
  • hardware
  • Aniket Dinda
    2018-08-15

    ASUSTOR ADM 3.1.0.RFQ3 – Remote Command Execution / SQL Injection

  • webapps
  • cgi
  • Kyle Lovett
    2018-08-15

    ASUS-DSL N10 1.1.2.2_17 – Authentication Bypass

  • webapps
  • hardware
  • AmnBAN
    2018-08-15

    JioFi 4G M2S 1.0.2 – Denial of Service (PoC)

  • dos
  • hardware
  • Vikas Chaudhary
    2018-08-14

    Cloudme 1.9 – Buffer Overflow (DEP) (Metasploit)

  • remote
  • windows_x86-64
  • Raymond Wellnitz
    2018-08-14

    Oracle Glassfish OSE 4.1 – Path Traversal (Metasploit)

  • webapps
  • linux
  • Dhiraj Mishra
    2018-08-14

    Wansview 1.0.2 – Denial of Service (PoC)

  • dos
  • windows_x86-64
  • Gionathan Reale
    2018-08-14

    cgit 1.2.1 – Directory Traversal (Metasploit)

  • webapps
  • linux
  • Dhiraj Mishra
    2018-08-14

    Oracle GlassFish Server Open Source Edition 4.1 – Path Traversal (Metasploit)

  • webapps
  • windows
  • Metasploit
    2018-08-13

    PostgreSQL 9.4-0.5.3 – Privilege Escalation

  • local
  • linux
  • Johannes Segitz
    2018-08-13

    Oracle Weblogic Server – Deserialization Remote Code Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2018-08-13

    Acunetix WVS 10.0 Build 20150623 – Denial of Service (PoC)

  • dos
  • windows
  • Javier Enrique Rodriguez Gutierrez
    2018-08-13

    PLC Wireless Router GPN2.4P21-C-CN – Denial of Service

  • dos
  • hardware
  • Chris Rose
    2018-08-13

    Microsoft DirectX SDK – ‘Xact.exe’ Remote Code Execution

  • remote
  • windows
  • hyp3rlinx
    2018-08-13

    IBM Sterling B2B Integrator 5.2.0.1/5.2.6.3 – Cross-Site Scripting

  • webapps
  • multiple
  • Vikas Khanna
    2018-08-13

    Switch Port Mapping Tool 2.81.2 – ‘Name Field’ Denial of Service (PoC)

  • dos
  • windows_x86
  • Shubham Singh
    2018-08-13

    Android – Directory Traversal over USB via Injection in blkid Output

  • local
  • android
  • Google Security Research
    2018-08-13

    IP Finder 1.5 – Denial of Service (PoC)

  • dos
  • windows_x86
  • Shubham Singh
    2018-08-13

    Monitoring software iSmartViewPro 1.5 – ‘SavePath for ScreenShots’ Buffer Overflow

  • local
  • windows_x86
  • Shubham Singh
    2018-08-10

    Zimbra 8.6.0_GA_1153 – Cross-Site Scripting

  • webapps
  • php
  • Dino Barlattani
    2018-08-10

    iSmartViewPro 1.5 – ‘Password’ Buffer Overflow

  • local
  • windows_x86-64
  • Javier Enrique Rodriguez Gutierrez
    2018-08-10

    MyBB Thank You/Like Plugin 3.0.0 – Cross-Site Scripting

  • webapps
  • php
  • 0xB9
    2018-08-10

    MyBB Like Plugin 3.0.0 – Cross-Site Scripting

  • webapps
  • php
  • 0xB9
    2018-08-09

    Mikrotik WinBox 6.42 – Credential Disclosure (Metasploit)

  • remote
  • windows
  • Omid Shojaei
    2018-08-09

    Linux Kernel 4.14.7 (Ubuntu 16.04 / CentOS 7) – (KASLR & SMEP Bypass) Arbitrary File Read

  • local
  • linux
  • Andrey Konovalov
    2018-08-09

    reSIProcate 1.10.2 – Heap Overflow

  • dos
  • multiple
  • Joachim De Zutter
    2018-08-09

    TP-Link C50 Wireless Router 3 – Cross-Site Request Forgery (Information Disclosure)

  • webapps
  • hardware
  • Wadeek
    2018-08-09

    TP-Link C50 Wireless Router 3 – Cross-Site Request Forgery (Remote Reboot)

  • webapps
  • hardware
  • Wadeek
    2018-08-09

    Soroush IM Desktop App 0.17.0 – Authentication Bypass

  • local
  • windows
  • VortexNeoX64
    2018-08-08

    osTicket 1.10.1 – Arbitrary File Upload

  • webapps
  • windows
  • Rajwinder Singh
    2018-08-08

    TP-Link Wireless N Router WR840N – Denial of Service (PoC)

  • dos
  • hardware
  • Aniket Dinda
    2018-08-08

    LG-Ericsson iPECS NMS 30M – Directory Traversal

  • webapps
  • linux
  • Safak Aslan
    2018-08-08

    iSmartViewPro 1.5 – ‘Account’ Buffer Overflow

  • local
  • windows_x86-64
  • Alan Joaquín Baeza Meza
    2018-08-08

    iSmartViewPro 1.5 – ‘Device Alias’ Buffer Overflow

  • local
  • windows_x86-64
  • Rodrigo Eduardo Rodriguez
    2018-08-07

    Monstra-Dev 3.0.4 – Cross-Site Request Forgery (Account Hijacking)

  • webapps
  • php
  • Nainsi Gupta
    2018-08-07

    Foxit Reader 9.0.1.1049 – Buffer Overflow (ASLR & DEP Bypass)

  • local
  • windows
  • Manoj Ahuje
    2018-08-07

    QNap QVR Client 5.0.3.23100 – Denial of Service (PoC)

  • dos
  • windows_x86-64
  • Rodrigo Eduardo Rodriguez
    2018-08-07

    OpenEMR 5.0.1.3 – Remote Code Execution (Authenticated)

  • webapps
  • php
  • Cody Zacharias
    2018-08-06

    Open-AudIT Community 2.2.6 – Cross-Site Scripting

  • webapps
  • windows
  • Ranjeet Jaiswal
    2018-08-06

    CloudMe Sync 1.10.9 – Buffer Overflow (SEH)(DEP Bypass)

  • local
  • windows_x86-64
  • Manoj Ahuje
    2018-08-06

    Wavemaker Studio 6.6 – Server-Side Request Forgery

  • webapps
  • java
  • Gionathan Reale
    2018-08-06

    CMS ISWEB 3.5.3 – Directory Traversal

  • webapps
  • php
  • Thiago Sena
    2018-08-06

    onArcade 2.4.2 – Cross-Site Request Forgery (Add Admin)

  • webapps
  • php
  • r3m0t3nu11
    2018-08-06

    LAMS < 3.1 - Cross-Site Scripting

  • webapps
  • java
  • Nikola Kojic
    2018-08-06

    Sitecore.Net 8.1 – Directory Traversal

  • webapps
  • aspx
  • Chris