AgataSoft Auto PingMaster 1.5 – Buffer Overflow (SEH)
# Exploit Title: AgataSoft Auto PingMaster 1.5 - Buffer Overflow (SEH)
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: AgataSoft Auto PingMaster 1.5 - Buffer Overflow (SEH)
# Exploit Title: Sitecore.Net 8.1 - Directory Traversal
# Exploit Title: LAMS < 3.1 - Cross-Site Scripting
# Exploit Title: Cross-Site Request Forgery (Add Admin)
# Exploit Title: CMS ISWEB 3.5.3 - Directory Traversal
# Exploit Title: Wavemaker Studio 6.6 - Server-Side Request Forgery (SSRF).
# Exploit Title: CloudMe Sync 1.10.9 - Buffer Overflow (SEH)(DEP Bypass)
# Exploit Title: Open-AudIT Community 2.2.6 - Cross-Site Scripting
###########################################################################################
# Exploit Title: PHP Template Store Script- 3.0.6 - Stored XSS via Addres ,Bank Name,and A/c Holder Name
Issue: Out-of-Band XXE in Vuze Bittorrent Client's SSDP Processing
Issue: Out-of-Band XXE in Plex Media Server's SSDP Processing
There is a directory traversal vulnerability in cgit_clone_objects(), reachable when the configuration flag enable-ht...
# Exploit Title: Solaris/OpenSolaris AVS kernel code execution
# Exploit Title: TI Online Examination System v2 - Arbitrary File Download
# Exploit Title: FB Inboxer 1.2 - 'search_field' SQL Injection
# Title: Imperva SecureSphere >sys.stderr, 'Connecting to %s' % server_address
# Title : CoSoSys Endpoint Protector - Authenticated Remote Root Command Injection
Issue: Out-of-Band XXE in Universal Media Server's SSDP Processing
# Exploit Title: ASUS DSL-N12E_C1 1.1.2.3_345 - Remote Command Execution
# Exploit Title: Seq 4.2.476 - Authentication Bypass
# Exploit Title: AgataSoft Auto PingMaster 1.5 - 'Host name' Denial of Service (PoC)
# Exploit Title: Allok Fast AVI MPEG Splitter 1.2 SEH Overwrite POC
There is a use-after-free in VP8 block decoding in WebRTC. The contents of the freed block is then treated a pointer,...
There are several calls to memcpy that can overflow the destination buffer in webrtc::UlpfecReceiverImpl::AddReceived...
Type confusion can occur when processing a H264 packet. In the method PacketBuffer::FindFrames in modules/video_codin...
# Exploit Title: Craft CMS SEOmatic plugin 3.1.4 - Server-Side Template Injection
# LG NAS 3718.510.a0 - Remote Command Execution
# Exploit Title: ipPulse 1.92 - 'License Key' Denial of Service (PoC)
# Exploit Title: Switch Port Mapping Tool 2.81 - 'SNMP Community Name' Denial of Service (PoC)
# Exploit Title: Allok MOV Converter 4.6.1217 - Buffer Overflow (SEH)
# Exploit Title: ipPulse 1.92 - 'IP Address/HostName-Comment' Denial of Service (PoC)
# Exploit Title: Responsive filemanager 9.13.1 - Server-Side Request Forgery
# Exploit Title: Microsoft Windows Kernel - 'win32k!NtUserConsoleControl' Denial of Service (PoC)
# Exploit Title: H2 Database 1.4.197 - Information Disclosure
It is possible to bypass fusermount's restrictions on the use of the
Charles Proxy is a great mac application for debugging web services and
# Exploit Title: QNap QVR Client 5.1.1.30070 - 'Password' Denial of Service (PoC)
# Exploit Title: Online Trade 1 - Information Disclosure
# Exploit Title: NetScanTools Basic Edition 2.5 - 'Hostname' Denial of Service (PoC)
Core Security - Corelabs Advisory
There is a heap overflow in Skia when drawing paths with antialiasing turned off. This issue can be triggered in both...
# Exploit Title: Trivum Multiroom Setup Tool 8.76 - Corss-Site Request Forgery (Admin Bypass)