Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-12-13

GNU C Library Dynamic Loader glibc ld.so – Memory Leak / Buffer Overflow

  • local
  • linux
  • Qualys Corporation
    2017-12-13

    Joomla! Component JEXTN Video Gallery 3.0.5 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-13

    vBulletin 5.x – ‘cacheTemplates’ Remote Arbitrary File Deletion

  • webapps
  • multiple
  • SecuriTeam
    2017-12-13

    Joomla! Component JEXTN Question And Answer 3.1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-13

    vBulletin 5.x – ‘routestring’ Remote Code Execution

  • webapps
  • multiple
  • SecuriTeam
    2017-12-12

    Apple macOS/iOS – Multiple Kernel Use-After-Frees due to Incorrect IOKit Object Lifetime Management in IOTimeSyncClockManagerUserClient

  • dos
  • multiple
  • Google Security Research
    2017-12-12

    Apple XNU Kernel – Memory Corruption due to Integer Overflow in __offsetof Usage in posix_spawn on 32-bit Platforms

  • dos
  • multiple
  • Google Security Research
    2017-12-12

    Accesspress Anonymous Post Pro < 3.2.0 - Arbitrary File Upload

  • webapps
  • php
  • Colette Chamberland
    2017-12-12

    Joomla! Component JBuildozer 1.4.1 – ‘appid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-12

    Vivotek IP Cameras – Remote Stack Overflow (PoC)

  • remote
  • multiple
  • bashis
    2017-12-12

    Apple macOS/iOS – Kernel Double Free due to Incorrect API Usage in Flow Divert Socket Option Handling

  • dos
  • multiple
  • Google Security Research
    2017-12-12

    Apple macOS – Kernel Code Execution due to Lack of Bounds Checking in AppleIntelCapriController::GetLinkConfig

  • dos
  • macos
  • Google Security Research
    2017-12-11

    Groupon Clone Script 3.01 – ‘state_id’ / ‘search’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Online Exam Test Application Script 1.6 – ‘exams.php?sort’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Car Rental Script 2.0.4 – ‘val’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Multivendor Penny Auction Clone Script 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    MLM Forced Matrix 2.0.9 – ‘newid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Lawyer Search Script 1.1 – ‘lawyer-list?city’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    MLM Forex Market Plan Script 2.0.4 – ‘newid’ / ‘eventid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Laundry Booking Script 1.0 – ‘list?city’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    LibTIFF pal2rgb 4.0.9 – Heap Buffer Overflow

  • dos
  • linux
  • Jungun Baek
    2017-12-11

    Entrepreneur Bus Booking Script 3.0.4 – ‘sourcebus’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Secure E-commerce Script 2.0.1 – ‘searchcat’ / ‘searchmain’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Apple macOS XNU Kernel – Memory Disclosure due to bug in Kernel API for Detecting Kernel Memory Disclosures

  • dos
  • macos
  • Google Security Research
    2017-12-11

    Advanced Real Estate Script 4.0.7 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Kickstarter Clone Acript 2.0 – ‘projid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Apple macOS/iOS – Kernel Double Free due to IOSurfaceRootUserClient not Respecting MIG Ownership Rules

  • dos
  • multiple
  • Google Security Research
    2017-12-11

    Single Theater Booking Script 3.2.1 – ‘findcity.php?q’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Foodspotting Clone Script 1.0 – ‘quicksearch.php?q’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Linux Kernel – ‘The Huge Dirty Cow’ Overwriting The Huge Zero Page (2)

  • dos
  • linux
  • anonymous
    2017-12-11

    Apple macOS – ‘getrusage’ Stack Leak Through struct Padding

  • dos
  • macos
  • Google Security Research
    2017-12-11

    Multiplex Movie Theater Booking Script 3.1.5 – ‘moid’ / ‘eid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Hot Scripts Clone 3.1 – ‘subctid’ / ‘mctid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Linux Kernel – ‘mincore()’ Heap Page Disclosure (PoC)

  • dos
  • linux
  • anonymous
    2017-12-11

    Apple macOS – ‘necp_get_socket_attributes’ so_pcb Type Confusion

  • dos
  • macos
  • Google Security Research
    2017-12-11

    Responsive Events & Movie Ticket Booking Script 3.2.1 – ‘findcity.php?q’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Freelance Website Script 2.0.6 – ‘pr_id’ / ‘catid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Linux Kernel 4.13 (Debian 9) – Local Privilege Escalation

  • local
  • linux
  • anonymous
    2017-12-11

    MikroTik 6.40.5 ICMP – Denial of Service

  • dos
  • hardware
  • FarazPajohan
    2017-12-11

    Multireligion Responsive Matrimonial 4.7.2 – ‘succid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Yoga Class Script 1.0 – ‘list?city’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Vanguard 1.4 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Responsive Realestate Script 3.2 – ‘property-list?tbud’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Food Order Script 1.0 – ‘list?city’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Vanguard 1.4 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Readymade Video Sharing Script 3.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Facebook Clone Script 1.0 – ‘id’ / ‘send’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Basic Job Site Script 2.0.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Readymade PHP Classified Script 3.3 – ‘subctid’ / ‘mctid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-11

    Resume Clone Script 2.0.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan