Enhanced Mitigation Experience Toolkit (EMET) – XML External Entity Injection
[+] Credits: John Page (aka hyp3rlinx)
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
[+] Credits: John Page (aka hyp3rlinx)
# Exploit Title: SIPp 3.6 - Local Buffer Overflow (PoC)
# Exploit Title: Unauthenticated Remote Code Evaluation in Dolibarr ERP CRM =
# Exploit Title: Delta Electronics Delta Industrial Automation COMMGR
# Exploit Title: A CSRF vulnerability exists in BEESCMS_V4.0: The administrator can be added arbitrarily.
# Exploit Title: HongCMS 3.0.0 - SQL Injection
# Exploit Title: hycus Content Management System v1.0.4 Login Page Bypass
# Exploit Title: DIGISOL DG-HR3400 Wireless Router - Cross-Site Scripting
# Exploit Title: Wordpress
1. ADVISORY INFORMATION
# Exploit Title: PoDoFo 0.9.5 - Stack-Based Buffer Overflow (PoC)
# Exploit Title: Wordpress Plugin Advanced Order Export For WooCommerce < 1.5.4 - CSV Injection
# Exploit Title: Ecessa Edge EV150 10.7.4 - Cross-Site Request Forgery (Add Superuser)
# Exploit Title: Intex Router N-150 - Cross-Site Request Forgery (Add Admin)
# Exploit Title: DIGISOL DG-BR4000NG - Buffer Overflow (PoC)
# Exploit Title: DIGISOL DG-BR4000NG - Cross-Site Scripting
# Exploit title: Ecessa WANWorx WVR-30 < 10.7.4 - Cross-Site Request Forgery (Add Superuser)
# Exploit Title: AsusWRT RT-AC750GF - Cross-Site Request Forgery (Change Admin Password)
# Exploit Title: Ecessa ShieldLink SL175EHQ 10.7.4 - Cross-Site Request Forgery (Add Superuser)
# Exploit Title: Intex Router N-150 - Arbitrary File Upload
# Exploit Title: Wordpress Plugin Comments Import & Export < 2.0.4 - CSV Injection
# Exploit Title: WordPress Plugin iThemes Security(better-wp-security)
When KVM (on Intel) virtualizes another hypervisor as L1 VM it does not verify that VMX instructions from the L1 VM (...
# Exploit Title: GreenCMS 2.3.0603 - remote obtain sensitive information
# Exploit Title: QEMU Guest Agent 2.12.50 - Denial of Service
# Exploit Title: phpLDAPadmin 1.2.2 - 'server_id' LDAP Injection (Username)
#!/usr/bin/perl -w
# Exploit Title: phpMyAdmin 4.8.1 - Local File Inclusion to Remote Code Execution
# Exploit Title: A CSRF vulnerability exists in LFCMS_3.7.0: users can be added arbitrarily.
# Exploit Title: A CSRF vulnerability exists in LFCMS_3.7.0: administrator account can be added arbitrarily.
# Exploit Title: Dell EMC RecoverPoint < 5.1.2 - Local Root Command Execution
# Exploit Title: Dell EMC RecoverPoint < 5.1.2 - Remote Root Command Execution
The latest version downloaded from the official website, the file name is phpMyAdmin-4.8.1-all-languages.zip
# Exploit Title: Path Traversal in Gateway in Mirasys DVMS Workstation
# Exploit Title: Redis 5.0 Denial of Service
# Exploit Title: ntpq and ntpdc 4.2.8p11 Local Buffer Overflow
# Exploit Title: MaDDash 2.0.2 - Directory Listing
# Exploit Title: NewMark CMS 2.1 - SQL Injection (sec_id)
#!/usr/bin/env python
# Title: Apache CouchDB < 2.1.0 - Remote Code Execution
Windows: Desktop Bridge Activation Arbitrary Directory Creation EoP
Windows: Windows: Desktop Bridge Virtual Registry CVE-2018-0880 Incomplete Fix EoP
# Title: VideoInsight WebClient 5 - SQL Injection