Exploits
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
- 类型
- 漏洞条目
- 总量
- 24,950
- 页码
- 154
Trend Micro Email Encryption Gateway 5.5 (Build 1111.00) – Multiple Vulnerabilities
Core Security - Corelabs Advisory
NoMachine < 6.0.80 (x86) - 'nxfuse' Privilege Escalation
#include “stdafx.h”
NoMachine < 6.0.80 (x64) - 'nxfuse' Privilege Escalation
from ctypes import *
Armadito Antivirus 0.12.7.2 – Detection Bypass
Title: Armadito Antivirus - Malware Detection Bypass
Parallels Remote Application Server 15.5 – Path Traversal
# Exploit Title: Parallels Remote Application Server (RAS) 15.5 Path Traversal
Wavpack 5.1.0 – Denial of Service
# Exploit title: Wavpack 5.1.0 - Denial of Service
EChat Server 3.1 – ‘CHAT.ghp’ Buffer Overflow
# Exploit Author: Juan Sacco
Disk Savvy Enterprise 10.4.18 – Buffer Overflow (SEH)
# Exploit Title: Disk Savvy Enterprise v10.4.18 Server - Unauthenticated Remote Buffer Overflow SEH
Disk Pulse Enterprise 10.4.18 – ‘Import Command’ Buffer Overflow (SEH)
#!/usr/bin/env python
Microsoft Windows Kernel – ‘nt!RtlpCopyLegacyContextX86’ Stack Memory Disclosure
We have discovered a new Windows kernel memory disclosure vulnerability in the creation and copying of a CONTEXT stru...
Microsoft Windows – Global Reparse Point Security Feature Bypass/Elevation of Privilege
Windows: Global Reparse Point Security Feature Bypass/Elevation of Privilege
Microsoft Windows – NPFS Symlink Security Feature Bypass/Elevation of Privilege/Dangerous Behavior
Windows: NPFS Symlink Security Feature Bypass/Elevation of Privilege/Dangerous Behavior
Microsoft Windows – Constrained Impersonation Capability Privilege Escalation
Windows: Constrained Impersonation Capability EoP
μTorrent (uTorrent) Classic/Web – JSON-RPC Remote Code Execution / Information Disclosure
By default, utorrent create an HTTP RPC server on port 10000 (uTorrent classic) or 19575 (uTorrent web). There are nu...
Microsoft Windows – StorSvc SvcMoveFileInheritSecurity Arbitrary File Creation Privilege Escalation
Windows: StorSvc SvcMoveFileInheritSecurity Arbitrary File Creation EoP
Aastra 6755i SIP SP4 – Denial of Service
# Exploit Title: Aastra 6755i SIP SP4 | Unauthorized Remote Reboot
October CMS < 1.0.431 - Cross-Site Scripting
# Exploit Title: October CMS Stored Code Injection
Microsoft Edge – ‘UnmapViewOfFile’ ACG Bypass
Background:
EPIC MyChart – X-Path Injection
# Exploit Title: Epic Systems Corporation MyChart X-Path Injection
JBoss Remoting 6.14.18 – Denial of Service
# Exploit Title: Exploit Denial of Service JBoss Remoting (4447/9999)
TV – Video Subscription – Authentication Bypass SQL Injection
# Exploit Title: TV - Video Subscription - Authentication Bypass
UserSpice 4.3 – Blind SQL Injection
#!/usr/env/python
Twig < 2.4.4 - Server Side Template Injection
Vulnerability details:
Siemens SIPROTEC 4 and SIPROTEC Compact EN100 Ethernet Module < 4.25 - Denial of Service
# Exploit Title: Siemens SIPROTEC 4 and SIPROTEC Compact EN100 Ethernet Module < V4.25 - Denial of Service
Joomla! Component Kubik-Rubik Simple Image Gallery Extended (SIGE) 3.2.3 – Cross-Site Scripting
# Exploit Title: Joomla! Component SIGE version