Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-12-07

Polycom Shell HDX Series – Traceroute Command Execution (Metasploit)

  • remote
  • unix
  • Metasploit
    2017-12-07

    Microsoft Windows Defender – Controlled Folder Bypass Through UNC Path

  • dos
  • windows
  • Google Security Research
    2017-12-07

    Apple macOS High Sierra 10.13 – ‘ctl_ctloutput-leak’ Information Leak

  • local
  • macos
  • Brandon Azad
    2017-12-07

    FS Facebook Clone – ‘token’ SQL Injection

  • webapps
  • php
  • Dan°
    2017-12-07

    FS IMDB Clone – ‘id’ SQL Injection

  • webapps
  • php
  • Dan°
    2017-12-07

    LaCie 5big Network 2.2.8 – Command Injection

  • remote
  • cgi
  • Timo Sablowski
    2017-12-07

    Linux Kernel 4.10.5 / < 4.14.3 (Ubuntu) - DCCP Socket Use-After-Free

  • dos
  • linux
  • Mohamed Ghannam
    2017-12-07

    Wireshark 2.4.0 < 2.4.2 / 2.2.0 < 2.2.10 - CIP Safety Dissector Crash

  • dos
  • multiple
  • Wireshark
    2017-12-06

    Arq 5.9.7 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Apple macOS 10.13.1 (High Sierra) – Insecure Cron System Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    FS Shaadi Clone – ‘token’ SQL Injection

  • webapps
  • php
  • Dan°
    2017-12-06

    Dasan Networks GPON ONT WiFi Router H640X 12.02-01121 / 2.77p1-1124 / 3.03p2-1146 – Remote Code Execution

  • webapps
  • hardware
  • SecuriTeam
    2017-12-06

    WinduCMS 3.1 – Local File Disclosure

  • webapps
  • php
  • Maciek Krupa
    2017-12-06

    FS Makemytrip Clone – ‘id’ SQL Injection

  • webapps
  • php
  • Dan°
    2017-12-06

    Proxifier for Mac 2.19 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Hashicorp vagrant-vmware-fusion 4.0.23 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Hashicorp vagrant-vmware-fusion 4.0.24 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Hashicorp vagrant-vmware-fusion 5.0.0 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Sera 1.2 – Local Privilege Escalation / Password Disclosure

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Hashicorp vagrant-vmware-fusion 5.0.1 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Hashicorp vagrant-vmware-fusion 5.0.3 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Arq 5.9.6 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-06

    Murus 1.4.11 – Local Privilege Escalation

  • local
  • macos
  • Mark Wadham
    2017-12-05

    Readymade Classifieds Script 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-05

    Techno Portfolio Management Panel – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-12-05

    Perspective ICM Investigation & Case 5.1.1.16 – Privilege Escalation

  • webapps
  • windows
  • Konstantinos Alexiou
    2017-12-05

    VX Search 10.2.14 – ‘command_name’ Buffer Overflow

  • remote
  • windows
  • W01fier00t
    2017-12-04

    TeamViewer 11 < 13 (Windows 10 x86) - Inline Hooking / Direct Memory Modification Permission Change

  • local
  • windows_x86
  • gellin
    2017-12-02

    Ruby < 2.2.8 / < 2.3.5 / < 2.4.2 / < 2.5.0-preview1 - 'NET::Ftp' Command Injection

  • local
  • ruby
  • Etienne Stalmans
    2017-12-01

    Socusoft Photo 2 Video Converter 8.0.0 – Local Buffer Overflow

  • dos
  • windows
  • ret2eax
    2017-12-01

    Abyss Web Server < 2.11.6 - Heap Memory Corruption

  • dos
  • windows
  • hyp3rlinx
    2017-12-01

    Artica Web Proxy 3.06 – Remote Code Execution

  • webapps
  • php
  • hyp3rlinx
    2017-12-01

    MistServer 2.12 – Cross-Site Scripting

  • webapps
  • multiple
  • hyp3rlinx
    2017-11-30

    Linux Kernel – ‘The Huge Dirty Cow’ Overwriting The Huge Zero Page (1)

  • dos
  • linux
  • Bindecy
    2017-11-30

    Axis Communications MPQT/PACS – Heap Overflow / Information Leakage

  • remote
  • multiple
  • bashis
    2017-11-30

    Jobs2Careers / Coroflot Clone – SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-11-30

    Apple macOS 10.13.1 (High Sierra) – ‘Blank Root’ Local Privilege Escalation (Metasploit)

  • local
  • macos
  • Metasploit
    2017-11-29

    HP iMC Plat 7.2 – Remote Code Execution (2)

  • remote
  • windows
  • Chris Lyne
    2017-11-29

    QEMU – NBD Server Long Export Name Stack Buffer Overflow

  • dos
  • linux
  • Eric Blake
    2017-11-29

    pfSense – (Authenticated) Group Member Remote Command Execution (Metasploit)

  • remote
  • unix
  • Metasploit
    2017-11-29

    Dup Scout Enterprise 10.0.18 – ‘Input Directory’ Local Buffer Overflow (SEH)

  • remote
  • windows
  • Miguel Mendez Z
    2017-11-28

    Apple macOS 10.13.1 (High Sierra) – ‘Blank Root’ Local Privilege Escalation

  • local
  • macos
  • Lemiorhan
    2017-11-28

    WordPress Plugin WooCommerce 2.0/3.0 – Directory Traversal

  • webapps
  • php
  • Fu2x2000
    2017-11-28

    HP iMC Plat 7.2 – Remote Code Execution

  • remote
  • windows
  • Chris Lyne
    2017-11-28

    Synology StorageManager 5.2 – Root Remote Command Execution

  • webapps
  • cgi
  • SecuriTeam
    2017-11-28

    Android Gmail < 7.11.5.176568039 - Directory Traversal in Attachment Download

  • dos
  • android
  • Google Security Research
    2017-11-27

    Microsoft Edge Chakra JIT – ‘GlobOpt::OptTagChecks’ Must Consider IsLoopPrePass Properly

  • dos
  • windows
  • Google Security Research
    2017-11-27

    Microsoft Edge Chakra JIT – Incorrect Function Declaration Scope

  • dos
  • windows
  • Google Security Research
    2017-11-27

    ALLPlayer 7.5 – Denial of-Service (PoC)

  • dos
  • windows
  • Kiefer Bauer
    2017-11-27

    Microsoft Edge Chakra JIT – ‘Inline::InlineCallApplyTarget_Shared’ does not Return the return Instruction

  • dos
  • windows
  • Google Security Research