Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2023-05-23

Optoma 1080PSTX Firmware C02 – Authentication Bypass

  • remote
  • hardware
  • Anthony Cole
    2023-05-23

    GetSimple CMS v3.3.16 – Remote Code Execution (RCE)

  • webapps
  • php
  • Youssef Muhammad
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Reset Board Config

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    TinyWebGallery v2.5 – Remote Code Execution (RCE)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-23

    Quicklancer v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Admin Password Change

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    Stackposts Social Marketing Tool v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Erase Account

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    Smart School v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Password Change

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    LeadPro CRM v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Account Creation

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    Yank Note v3.52.1 (Electron) – Arbitrary Code Execution

  • local
  • multiple
  • 8bitsec
    2023-05-23

    PodcastGenerator 3.2.9 – Multiple Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-13

    RockMongo 1.1.7 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Rafael Pedrero
    2023-05-13

    TinyWebGallery v2.5 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-13

    Epson Stylus SX510W Printer Remote Power Off – Denial of Service

  • remote
  • hardware
  • Rafael Pedrero
    2023-05-13

    Job Portal 1.0 – File Upload Restriction Bypass

  • webapps
  • php
  • Rafael Pedrero
    2023-05-13

    Online Clinic Management System 2.2 – Multiple Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Rafael Pedrero
    2023-05-13

    FLEX 1080 < 1085 Web 1.6.0 - Denial of Service

  • dos
  • android
  • Mr Empy
    2023-05-05

    Wolf CMS 0.8.3.1 – Remote Code Execution (RCE)

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-05

    File Thingie 2.5.7 – Remote Code Execution (RCE)

  • webapps
  • php
  • Maurice Fielenbach
    2023-05-05

    pluck v4.7.18 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    Ulicms-2023.1 sniffing-vicuna – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    KodExplorer v4.51.03 – Pwned-Admin File-Inclusion – Remote Code Execution (RCE)

  • webapps
  • php
  • nu11secur1ty
    2023-05-05

    Ulicms-2023.1 sniffing-vicuna – Remote Code Execution (RCE)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    Ulicms-2023.1-sniffing-vicuna – Privilege escalation

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    Codigo Markdown Editor v1.0.1 (Electron) – Remote Code Execution

  • local
  • multiple
  • 8bitsec
    2023-05-05

    Online Pizza Ordering System v1.0 – Unauthenticated File Upload

  • webapps
  • php
  • URGAN
    2023-05-05

    EasyPHP Webserver 14.1 – Multiple Vulnerabilities (RCE and Path Traversal)

  • webapps
  • php
  • Rafael Pedrero
    2023-05-05

    Jedox 2022.4.2 – Disclosure of Database Credentials via Connection Checks

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Disclosure of Database Credentials via Improper Access Controls

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Remote Code Execution via Executable Groovy-Scripts

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Remote Code Execution via Configurable Storage Path

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Stored Cross-Site Scripting in Log-Module

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2022.4.2 – Remote Code Execution via Directory Traversal

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2022.4.2 – Code Execution via RPC Interfaces

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Cmaps v8.0 – SQL injection

  • webapps
  • php
  • Lucas Noki (0xPrototype)
    2023-05-02

    projectSend r1605 – Private file download

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-02

    phpMyFAQ v3.1.12 – CSV Injection

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-02

    PHP Restaurants 1.0 – SQLi Authentication Bypass & Cross Site Scripting

  • webapps
  • php
  • Or4nG.M4N
    2023-05-02

    GLPI 9.5.7 – Username Enumeration

  • webapps
  • php
  • Rafael B.
    2023-05-02

    Companymaps v8.0 – Stored Cross Site Scripting (XSS)

  • webapps
  • php
  • Lucas Noki (0xPrototype)
    2023-05-02

    PHPJabbers Simple CMS 5.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-02

    PHPJabbers Simple CMS V5.0 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-02

    FS-S3900-24T4S – Privilege Escalation

  • local
  • hardware
  • Daniele Linguaglossa
    2023-05-02

    OpenEMR v7.0.1 – Authentication credentials brute force

  • webapps
  • php
  • abhhi (Abhishek Birdawade)
    2023-05-02

    Advanced Host Monitor v12.56 – Unquoted Service Path

  • local
  • windows
  • Mr Empy
    2023-05-02

    PHPFusion 9.10.30 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-02

    MilleGPG5 5.9.2 (Gennaio 2023) – Local Privilege Escalation / Incorrect Access Control

  • local
  • windows
  • Andrea Intilangelo