Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2018-04-17

Reaper 5.78 – Local Buffer Overflow

  • local
  • windows
  • bzyo
    2018-04-17

    Drupal < 8.3.9 / < 8.4.6 / < 8.5.1 - 'Drupalgeddon2' Remote Code Execution (Metasploit)

  • remote
  • php
  • José Ignacio Rojo
    2018-04-17

    D-Link DIR-615 Wireless Router – Persistent Cross Site Scripting

  • remote
  • hardware
  • Sayan Chatterjee
    2018-04-17

    Brave Browser < 0.13.0 - 'window.close(self)' Denial of Service

  • dos
  • windows
  • Sahil Tikoo
    2018-04-17

    Brave Browser < 0.13.0 - 'long alert() argument' Denial of Service

  • dos
  • windows
  • Sahil Tikoo
    2018-04-17

    Joomla! Component jDownloads 3.2.58 – Cross Site Scripting

  • webapps
  • php
  • Sureshbabu Narvaneni
    2018-04-17

    Ultra MiniHTTPd 1.2 – ‘GET’ Remote Stack Buffer Overflow (PoC)

  • local
  • windows_x86
  • jollymongrel
    2018-04-16

    Sophos Cyberoam UTM CR25iNG – 10.6.3 MR-5 – Direct Object Reference

  • webapps
  • jsp
  • Frogy
    2018-04-16

    CloudMe Sync 1.11.0 – Local Buffer Overflow

  • local
  • windows
  • Prasenjit Kanti Paul
    2018-04-16

    Cobub Razor 0.8.0 – SQL injection

  • webapps
  • php
  • Kyhvedn
    2018-04-16

    Barco ClickShare CSE-200 – Remote Denial of Service

  • dos
  • hardware
  • Florian Hauser
    2018-04-16

    SysGauge Pro 4.6.12 – Local Buffer Overflow (SEH)

  • local
  • windows
  • Hashim Jawad
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryFullAttributesFile’ Kernel Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryAttributesFile’ Kernel Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryVolumeInformationFile’ Kernel Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQuerySystemInformation (SystemPageFileInformation(Ex))’ Kernel 64-bit Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘CiSetFileCache’ TOCTOU Incomplete Fix

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Zortam MP3 Media Studio 23.45 – Local Buffer Overflow (SEH)

  • dos
  • windows
  • Kevin McGuigan
    2018-04-16

    Microsoft Edge – ‘OpenProcess()’ ACG Bypass

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryInformationProcess (ProcessImageFileName)’ Kernel 64-bit Pool/Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryVirtualMemory (Memory(Privileged)BasicInformation)’ Kernel 64-bit Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryInformationTransactionManager (TransactionManagerRecoveryInformation)’ Kernel Pool Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-16

    Microsoft Windows – ‘nt!NtQueryVirtualMemory (MemoryImageInformation)’ Kernel 64-bit Stack Memory Disclosure

  • dos
  • windows
  • Google Security Research
    2018-04-15

    AMD Plays.tv 1.27.5.0 – ‘plays_service.exe’ Arbitrary File Execution

  • local
  • windows
  • Securifera
    2018-04-13

    MikroTik 6.41.4 – FTP daemon Denial of Service (PoC)

  • dos
  • linux
  • FarazPajohan
    2018-04-13

    Drupal < 7.58 / < 8.3.9 / < 8.4.6 / < 8.5.1 - 'Drupalgeddon2' Remote Code Execution

  • webapps
  • php
  • Hans Topo & g0tmi1k
    2018-04-13

    Drupal < 8.3.9 / < 8.4.6 / < 8.5.1 - 'Drupalgeddon2' Remote Code Execution (PoC)

  • webapps
  • php
  • Vitalii Rudnykh
    2018-04-13

    Microsoft Credential Security Support Provider – Remote Code Execution

  • remote
  • windows
  • Preempt
    2018-04-12

    Joomla! Convert Forms version 2.0.3 – Formula Injection (CSV Injection)

  • webapps
  • php
  • Sairam Jetty
    2018-04-10

    WordPress Plugin File Upload 4.3.3 – Stored Cross-Site Scripting (PoC)

  • webapps
  • php
  • ManhNho
    2018-04-10

    WordPress Plugin File Upload 4.3.2 – Stored Cross-Site Scripting

  • webapps
  • php
  • ManhNho
    2018-04-10

    Google Chrome V8 JIT – ‘LoadElimination::ReduceTransitionElementsKind’ Type Confusion

  • dos
  • multiple
  • Google Security Research
    2018-04-10

    WUZHI CMS 4.1.0 – Cross-Site Request Forgery (Add Admin)

  • webapps
  • php
  • taoge
    2018-04-10

    WordPress Plugin Activity Log 2.4.0 – Stored Cross-Site Scripting

  • webapps
  • php
  • Stefan Broeder
    2018-04-10

    WUZHI CMS 4.1.0 – Cross-Site Request Forgery (Add User)

  • webapps
  • php
  • taoge
    2018-04-10

    DVD X Player Standard 5.5.3.9 – Buffer Overflow

  • local
  • windows_x86
  • Prasenjit Kanti Paul
    2018-04-10

    Dell EMC Avamar and Integrated Data Protection Appliance Installation Manager – Invalid Access Control

  • webapps
  • linux
  • SlidingWindow
    2018-04-10

    iScripts Easycreate 3.2.1 – Stored Cross-Site Scripting

  • webapps
  • php
  • ManhNho
    2018-04-09

    MyBB Plugin Recent Threads On Index – Cross-Site Scripting

  • webapps
  • php
  • Perileos
    2018-04-09

    WordPress Plugin Google Drive 2.2 – Remote Code Execution

  • webapps
  • php
  • Lenon Leite
    2018-04-09

    Cobub Razor 0.7.2 – Add New Superuser Account

  • webapps
  • php
  • ppb
    2018-04-09

    iScripts SonicBB 1.0 – Reflected Cross-Site Scripting (PoC)

  • webapps
  • php
  • ManhNho
    2018-04-09

    WolfCMS 0.8.3.1 – Cross-Site Request Forgery

  • webapps
  • php
  • Sureshbabu Narvaneni
    2018-04-09

    GoldWave 5.70 – Local Buffer Overflow (SEH Unicode)

  • local
  • windows
  • bzyo
    2018-04-09

    Yahei PHP Prober 0.4.7 – Cross-Site Scripting

  • webapps
  • php
  • ManhNho
    2018-04-09

    PMS 0.42 – Local Stack-Based Overflow (ROP)

  • local
  • linux
  • Juan Sacco
    2018-04-09

    WebKit – WebAssembly Parsing Does not Correctly Check Section Order

  • dos
  • multiple
  • Google Security Research
    2018-04-09

    WordPress Plugin Simple Fields 0.2 – 0.3.5 – Local/Remote File Inclusion / Remote Code Execution

  • webapps
  • php
  • Graeme Robinson
    2018-04-09

    CyberArk Password Vault Web Access < 9.9.5 / < 9.10 / 10.1 - Remote Code Execution

  • webapps
  • json
  • RedTeam Pentesting
    2018-04-09

    CyberArk Password Vault < 9.7 / < 10 - Memory Disclosure

  • dos
  • linux
  • RedTeam Pentesting