Kirby CMS 2.5.12 – Cross-Site Request Forgery (Delete Page)
# Exploit Title: Kirby CMS 2.5.12 - Cross-Site Request Forgery (Delete Page)
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Kirby CMS 2.5.12 - Cross-Site Request Forgery (Delete Page)
# Exploit Title: Core FTP 2.0 - 'XRMD' Denial of Service (PoC)
# Title: 10-Strike Bandwidth Monitor 3.7 - Local Buffer Overflow SEH
# Exploit Title: 10-Strike LANState 8.8 - Local Buffer Overflow (SEH)
# Exploit Title: GetGo Download Manager 6.2.1.3200 - Buffer Overflow (Denial of Service)
# Exploit Title: Nagios Core Multiple Local Denial of Service
# Exploit Title: D-Link DAP-1360 File path traversal and Cross site
# Exploit Title: Kirby CMS 2.5.12 - Cross-Site Scripting
# Exploit Title: NUUO NVR Unauthenticated Remote Code Execution
#!/usr/bin/python
# Exploit Title: Splinterware System Scheduler Pro 5.12 - Privilege Escalation
# Exploit Title: Synology DiskStation Manager 4.1 - Directory Traversal
# Exploit Title: Davolink DVW 3200 Router - Password Disclosure
# Title: Windows Speech Recognition- Buffer Overflow
# Exploit Title: Tenda Wireless N150 Router 5.07.50 - Cross-Site Request Forgery (Reboot Router)
[+] Credits: John Page (aka hyp3rlinx)
# Exploit Title: GeoVision GV-SNVR0811 Directory Traversal
#!/usr/bin/python
# Exploit Title: MSVOD V10 ¡V SQL Injection
# Exploit Title: Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 - Unauthorized Authentication Reset
# Exploit Title:- TP-Link Wireless N Router WR840N - Buffer Overflow
# Exploit Title: WordPress Plugin All In One Favicon
# Exploit Title: MyBB New Threads Plugin - Cross-Site Scripting
There's a remotely triggerable memory corruption issue in SwiftShader that's reachable from WebGL, resulting from an ...
# Exploit Title: Smart SMS & Email Manager v3.3 - SQL Injection
# Exploit Title: HomeMatic Zentrale CCU2 Unauthenticated RCE
#######################################
# Exploit Title: FTP2FTP 1.0 - Arbitrary File Download
# Exploit Title: Modx Revolution < 2.6.4 - Remote Code Execution
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway CSRF Vulnerabilities
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway Service Control DoS
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway Configuration Download
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway Arbitrary File Attacks
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway Remote Root Exploit
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway Default Credentials
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway Backdoor Jailbreak
[+] Credits: John Page (aka hyp3rlinx)
Title: Vulnerability in VelotiSmart Wifi - Directory Traversal
# Exploit Title: Wordpress Plugin Job Manager v4.1.0 Stored Cross Site
QuickLook is a widely used feature in macOS/iOS which allows you to preview various formats such as pdf, docx, pptx, ...
Note: I am both sending this bug report to security@kernel.org and filing it in
#!/usr/bin/env python3
#!/usr/bin/env python3