Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-10-30

D-Park Pro 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    tPanel 2009 – Authentication Bypass

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Vastal I-Tech Agent Zone – ‘searchCommercial.php’ / ‘searchResidential.php’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Adult Script Pro 2.2.4 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Vastal I-Tech Dating Zone 0.9.9 – ‘product_id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Website Broker Script – ‘status_id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Article Directory Script 3.0 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    ZeeBuddy 2x – ‘groupid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Zomato Clone Script – ‘resid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    iProject Management System 1.0 – ‘ID’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Protected Links – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    WordPress Plugin Ultimate Product Catalog 4.2.24 – PHP Object Injection

  • webapps
  • php
  • tomplixsee
    2017-10-30

    News 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    iStock Management System 1.0 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    AROX School ERP PHP Script – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    iTech Gigs Script 1.21 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-30

    Shareet – ‘photo’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-10-28

    PHP Melody 2.6.1 – SQL Injection

  • webapps
  • php
  • Venkat Rajgor
    2017-10-28

    MitraStar DSL-100HN-T1/GPT-2541GNAC – Privilege Escalation

  • remote
  • hardware
  • j0lama
    2017-10-28

    Uniview – Remote Command Execution / Export Config (PoC)

  • remote
  • multiple
  • bashis
    2017-10-28

    PHPMyFAQ 2.9.8 – Cross-Site Scripting (3)

  • webapps
  • php
  • Nikhil Mittal
    2017-10-27

    Tizen Studio 1.3 Smart Development Bridge < 2.3.2 - Buffer Overflow (PoC)

  • dos
  • windows
  • Marcin Kopec
    2017-10-27

    Sync Breeze Enterprise 10.0.28 – Remote Buffer Overflow (PoC)

  • dos
  • windows
  • Ivan Ivanovic
    2017-10-27

    phpMyFAQ 2.9.8 – Cross-Site Request Forgery

  • webapps
  • php
  • Nikhil Mittal
    2017-10-26

    Watchdog Development Anti-Malware / Online Security Pro – NULL Pointer Dereference

  • dos
  • windows
  • Parvez Anwar
    2017-10-26

    HitmanPro 3.7.15 Build 281 – Kernel Pool Overflow

  • local
  • windows
  • cbayet
    2017-10-25

    PHPMailer < 5.2.21 - Local File Disclosure

  • webapps
  • php
  • Maciek Krupa
    2017-10-25

    Netgear DGN1000 1.1.00.48 – ‘Setup.cgi’ Remote Code Execution (Metasploit)

  • remote
  • hardware
  • Metasploit
    2017-10-25

    KeystoneJS 4.0.0-beta.5 – Cross-Site Scripting

  • webapps
  • nodejs
  • Ishaq Mohammed
    2017-10-25

    KeystoneJS 4.0.0-beta.5 – CSV Excel Macro Injection

  • webapps
  • nodejs
  • Ishaq Mohammed
    2017-10-24

    FS Shutter Stock Clone – ‘keywords’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-24

    Mura CMS < 6.2 - Server-Side Request Forgery / XML External Entity Injection

  • webapps
  • cfm
  • Anthony Cole
    2017-10-24

    FS Realtor Clone – ‘id’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-24

    FS Crowdfunding Script – ‘id’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-24

    FS Care Clone – ‘sitterService’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-24

    FS Monster Clone – ‘id’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-24

    FS Trademe Clone – ‘id’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-24

    FS Thumbtack Clone – ‘ser’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    Unitrends UEB 9 – http api/storage Remote Root (Metasploit)

  • remote
  • linux_x86
  • Metasploit
    2017-10-23

    FS OLX Clone – ‘catg_id’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    Kaltura < 13.2.0 - Remote Code Execution

  • webapps
  • php
  • Robin Verton
    2017-10-23

    FS Lynda Clone – ‘category’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Indiamart Clone – ‘keywords’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Groupon Clone – ‘category’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Freelancer Clone – ‘sk’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Expedia Clone – ‘hid’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Food Delivery Script – ‘keywords’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Ebay Clone – ‘pd_maincat_id’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    FS Book Store Script – ‘category’ SQL Injection

  • webapps
  • php
  • 8bitsec
    2017-10-23

    K7 Total Security 15.1.0.305 – Device Driver Arbitrary Memory Read

  • dos
  • windows
  • SecuriTeam