Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-09-05

FiberHome ADSL AN1020-25 – Improper Access Restrictions

  • webapps
  • hardware
  • Ibad Shah
    2017-09-05

    A2billing 2.x – SQL Injection

  • webapps
  • php
  • 0x4148
    2017-09-05

    Ultimate HR System < 1.2 - Directory Traversal / Cross-Site Scripting

  • webapps
  • php
  • 8bitsec
    2017-09-05

    The Car Project 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-09-04

    A2billing 2.x – Backup File Download / Remote Code Execution

  • webapps
  • php
  • 0x4148
    2017-09-04

    Mongoose Web Server 6.5 – Cross-Site Request Forgery / Remote Code Execution

  • remote
  • windows
  • hyp3rlinx
    2017-09-04

    Dup Scout Enterprise 9.9.14 – ‘Input Directory’ Local Buffer Overflow

  • local
  • windows
  • Touhid M.Shaikh
    2017-09-04

    RubyGems < 2.6.13 - Arbitrary File Overwrite

  • local
  • linux
  • mame
    2017-09-04

    CodeMeter 6.50 – Cross-Site Scripting

  • webapps
  • multiple
  • Vulnerability-Lab
    2017-09-04

    Wireless Repeater BE126 – Remote Code Execution

  • webapps
  • hardware
  • Hay Mizrachi
    2017-09-04

    iGreeting Cards 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-09-03

    Joomla! Component CheckList 1.1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-09-03

    Joomla! Component Survey Force Deluxe 3.2.4 – ‘invite’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-09-02

    Lotus Notes Diagnostic Tool 8.5/9.0 – Local Privilege Escalation

  • local
  • windows
  • ParagonSec
    2017-09-02

    IBM Notes 8.5.x/9.0.x – Denial of Service

  • dos
  • multiple
  • Dhiraj Mishra
    2017-09-01

    WordPress Plugin Participants Database < 1.7.5.10 - Cross-Site Scripting

  • webapps
  • php
  • Benjamin Lim
    2017-09-01

    Motorola Bootloader – Kernel Cmdline Injection Secure Boot and Device Locking Bypass

  • local
  • android
  • Roee Hay
    2017-09-01

    OpenJPEG – ‘mqc.c’ Heap Buffer Overflow

  • dos
  • linux
  • Ke Liu
    2017-08-31

    Git < 2.7.5 - Command Injection (Metasploit)

  • remote
  • Python
  • Metasploit
    2017-08-31

    Joomla! Component Huge-IT Portfolio Gallery Plugin 1.0.7 – SQL Injection

  • webapps
  • php
  • Larry W. Cashdollar
    2017-08-31

    Joomla! Component Huge-IT Portfolio Gallery Plugin 1.0.6 – SQL Injection

  • webapps
  • php
  • Larry W. Cashdollar
    2017-08-31

    Joomla! Component Huge-IT Video Gallery 1.0.9 – SQL Injection

  • webapps
  • php
  • Larry W. Cashdollar
    2017-08-31

    Sitefinity CMS 9.2 – Cross-Site Scripting

  • webapps
  • asp
  • Pralhad Chaskar
    2017-08-31

    IBM Notes 8.5.x/9.0.x – Denial of Service (2)

  • dos
  • multiple
  • Dhiraj Mishra
    2017-08-31

    IBM Notes 8.5.x/9.0.x – Denial of Service (Metasploit)

  • dos
  • multiple
  • Dhiraj Mishra
    2017-08-30

    Oracle Java JDK/JRE < 1.8.0.131 / Apache Xerces 2.11.0 - 'PDF/Docx' Server Side Denial of Service

  • dos
  • php
  • SecuriTeam
    2017-08-30

    Metasploit Web UI < 4.14.1-20170828 - Cross-Site Request Forgery

  • webapps
  • ruby
  • Dhiraj Mishra
    2017-08-30

    PHP-SecureArea < 2.7 - Multiple Vulnerabilities

  • webapps
  • php
  • Cryo
    2017-08-30

    Invoice Manager 3.1 – Cross-Site Request Forgery (Add Admin)

  • webapps
  • php
  • Ali BawazeEer
    2017-08-30

    Joomla! Component Joomanager 2.0.0 – ‘com_Joomanager’ Arbitrary File Download (PoC)

  • webapps
  • php
  • Ihsan Sencan
    2017-08-30

    Joomla! Component Quiz Deluxe 3.7.4 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-29

    D-Link DIR-600 – Authentication Bypass

  • webapps
  • hardware
  • Jithin D Kurup
    2017-08-29

    Brickcom IP Camera – Credentials Disclosure

  • webapps
  • hardware
  • Emiliano Ipar
    2017-08-29

    QNAP Transcode Server – Command Execution (Metasploit)

  • remote
  • hardware
  • Metasploit
    2017-08-29

    FineCMS 1.0 – Multiple Vulnerabilities

  • webapps
  • php
  • sohaip-hackerDZ
    2017-08-29

    User Login and Management – Multiple Vulnerabilities

  • webapps
  • php
  • Ali BawazeEer
    2017-08-28

    NethServer 7.3.1611 – Cross-Site Request Forgery (Create User / Enable SSH Access)

  • webapps
  • json
  • LiquidWorm
    2017-08-28

    NethServer 7.3.1611 – Cross-Site Request Forgery / Cross-Site Scripting

  • webapps
  • json
  • LiquidWorm
    2017-08-28

    Schools Alert Management Script – Authentication Bypass

  • webapps
  • php
  • Ali BawazeEer
    2017-08-28

    Login-Reg Members Management PHP 1.0 – Arbitrary File Upload

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    Flash Poker 2.0 – ‘game’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    PHP Search Engine 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    Easy Web Search 4.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    WYSIWYG HTML Editor PRO 1.0 – Arbitrary File Download

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    FTP Made Easy PRO 1.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    Easy Vedio to PSP Converter 1.6.20 – Local Buffer Overflow (SEH)

  • local
  • windows
  • Kishan Sharma
    2017-08-28

    Smart Chat 1.0.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    PHP Video Battle Script 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-28

    Easy RM RMVB to DVD Burner 1.8.11 – Local Buffer Overflow (SEH)

  • local
  • windows
  • Touhid M.Shaikh
    2017-08-28

    Easy WMV/ASF/ASX to DVD Burner 2.3.11 – Local Buffer Overflow (SEH)

  • local
  • windows
  • Touhid M.Shaikh