Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2018-05-27

Werewolf Online 0.8.8 – Information Disclosure

  • local
  • android
  • ManhNho
    2018-05-27

    Baby Names Search Engine 1.0 – ‘a’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-27

    Ingenious School Management System – ‘id’ SQL Injection

  • webapps
  • php
  • Meisam Monsef
    2018-05-27

    Bitmain Antminer D3/L3+/S9 – Remote Command Execution

  • remote
  • hardware
  • CorryL
    2018-05-27

    WordPress Plugin Booking Calendar 3.0.0 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-27

    BookingWizz Booking System 5.5 – ‘id’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-27

    Lyrist – ‘id’ SQL Injection

  • webapps
  • php
  • Meisam Monsef
    2018-05-27

    Sharetronix CMS 3.6.2 – Cross-Site Request Forgery / Cross-Site Scripting

  • webapps
  • php
  • Hesam Bazvand
    2018-05-27

    Listing Hub CMS 1.0 – SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-27

    ClipperCMS 1.3.3 – Cross-Site Scripting

  • webapps
  • php
  • Nathu Nandwani
    2018-05-27

    My Directory 2.0 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-26

    Ajax Full Featured Calendar 2.0 – ‘search’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-26

    Employee Work Schedule 5.9 – ‘cal_id’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-26

    EasyService Billing 1.0 – Cross-Site Scripting

  • webapps
  • php
  • Divya Jain
    2018-05-26

    mySurvey 1.0 – ‘id’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-26

    EasyService Billing 1.0 – ‘q’ SQL Injection

  • webapps
  • php
  • Divya Jain
    2018-05-26

    easyLetters 1.0 – ‘id’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-26

    Symfony 2.7.0 < 4.0.10 - Denial of Service

  • dos
  • php
  • Federico Stange
    2018-05-26

    EasyService Billing 1.0 – Cross-Site Request Forgery

  • webapps
  • php
  • Divya Jain
    2018-05-25

    D-Link DSL-2750B – OS Command Injection (Metasploit)

  • remote
  • hardware
  • Metasploit
    2018-05-25

    Skia and Firefox – Integer Overflow in SkTDArray Leading to Out-of-Bounds Write

  • dos
  • multiple
  • Google Security Research
    2018-05-25

    Microsoft Edge Chakra – Cross Context Use-After-Free

  • dos
  • windows
  • Google Security Research
    2018-05-25

    Oracle WebCenter FatWire Content Server < 7 - Improper Access Control

  • webapps
  • linux
  • Sebastian Cornejo
    2018-05-25

    SAP Internet Transaction Server 6200.x – Session Fixation / Cross-Site Scripting

  • webapps
  • multiple
  • J. Carrillo Lencina
    2018-05-25

    MyBB Moderator Log Notes Plugin 1.1 – Cross-Site Scripting

  • webapps
  • php
  • 0xB9
    2018-05-25

    KomSeo Cart 1.3 – ‘my_item_search’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-25

    Oracle WebCenter Sites 11.1.1.8.0/12.2.1.x – Cross-Site Scripting

  • webapps
  • multiple
  • Richard Alviarez
    2018-05-24

    ASP.NET jVideo Kit – ‘query’ SQL Injection

  • webapps
  • asp
  • AkkuS
    2018-05-24

    Timber 1.1 – Cross-Site Request Forgery

  • webapps
  • php
  • L0RD
    2018-05-24

    Honeywell XL Web Controller – Cross-Site Scripting

  • webapps
  • linux
  • t4rkd3vilz
    2018-05-24

    EU MRV Regulatory Complete Solution 1 – Authentication Bypass

  • webapps
  • linux
  • Veyselxan
    2018-05-24

    PaulNews 1.0 – ‘keyword’ SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-23

    EasyService Billing 1.0 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-23

    Wecodex Store Paypal 1.0 – SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    EasyService Billing 1.0 – ‘p1’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    Samsung Galaxy S7 Edge – Overflow in OMACP WbXml String Extension Processing

  • dos
  • android
  • Google Security Research
    2018-05-23

    Siemens SCALANCE S613 – Remote Denial of Service

  • dos
  • linux
  • t4rkd3vilz
    2018-05-23

    GPSTracker 1.0 – ‘id’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    MySQL Smart Reports 1.0 – ‘id’ SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-23

    SAT CFDI 3.3 – SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    MySQL Blob Uploader 1.7 – ‘home-filet-edit.php’ SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-23

    FTPShell Server 6.80 – Denial of Service

  • dos
  • windows_x86
  • Hashim Jawad
    2018-05-23

    MySQL Blob Uploader 1.7 – ‘home-filet-edit.php’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    School Management System CMS 1.0 – ‘username’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    MySQL Blob Uploader 1.7 – ‘download.php’ SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-23

    Library CMS 1.0 – SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    MySQL Blob Uploader 1.7 – ‘home-file-edit.php’ SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • AkkuS
    2018-05-23

    Wecodex Restaurant CMS 1.0 – ‘Login’ SQL Injection

  • webapps
  • php
  • AkkuS
    2018-05-23

    FTPShell Server 6.80 – Buffer Overflow (SEH)

  • local
  • windows
  • Hashim Jawad
    2018-05-23

    Wecodex Hotel CMS 1.0 – ‘Admin Login’ SQL Injection

  • webapps
  • php
  • AkkuS