Exploits
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
- 类型
- 漏洞条目
- 总量
- 24,950
- 页码
- 164
LaCie 5big Network 2.2.8 – Command Injection
#!/usr/bin/python
FS IMDB Clone – ‘id’ SQL Injection
# Exploit Title: FS IMDB Clone - 'id' SQL Injection
FS Facebook Clone – ‘token’ SQL Injection
# Exploit Title: FS Facebook Clone - 'token' SQL Injection
Microsoft Windows Defender – Controlled Folder Bypass Through UNC Path
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=1418
Claymore Dual ETH + DCR/SC/LBC/PASC GPU Miner – Stack Buffer Overflow / Path Traversal
#!/usr/bin/env python
OpenEMR 5.0.0 – OS Command Injection / Cross-Site Scripting
SEC Consult Vulnerability Lab Security Advisory < 20171130-1 >
Linux Kernel 4.10.5 / < 4.14.3 (Ubuntu) - DCCP Socket Use-After-Free
This is an announcement for CVE-2017-8824 which is a use-after-free
FS Makemytrip Clone – ‘id’ SQL Injection
# Exploit Title: FS Makemytrip Clone - SQL Injection
WinduCMS 3.1 – Local File Disclosure
#!/usr/bin/python
FS Shaadi Clone – ‘token’ SQL Injection
# Exploit Title: FS Shaadi Clone - SQL Injection
Murus 1.4.11 – Local Privilege Escalation
# I recently blogged about the prevalence of escalation hijack vulnerabilities amongst macOS applications. One exampl...
Arq 5.9.6 – Local Privilege Escalation
# Arq Backup from Haystack Software is a great application for backing up macs and
Hashicorp vagrant-vmware-fusion 5.0.3 – Local Privilege Escalation
# Another day, another root privesc bug in this plugin. Not quite so serious this
Hashicorp vagrant-vmware-fusion 5.0.1 – Local Privilege Escalation
# I recently blogged about how the installation process of version 5.0.0 of this
Sera 1.2 – Local Privilege Escalation / Password Disclosure
# Sera is a free app for mac and iOS that lets you unlock your mac automatically
Hashicorp vagrant-vmware-fusion 5.0.0 – Local Privilege Escalation
# After three CVEs and multiple exploits disclosed to Hashicorp they have finally upped their game with this plugin. ...
Hashicorp vagrant-vmware-fusion 4.0.24 – Local Privilege Escalation
# I have previously disclosed a couple of bugs in Hashicorp's vagrant-vmware-fusion plugin for vagrant.
Hashicorp vagrant-vmware-fusion 4.0.23 – Local Privilege Escalation
# A couple of weeks ago I disclosed a local root privesc in Hashicorp's
Proxifier for Mac 2.19 – Local Privilege Escalation
# With CVE-2017-7643 I disclosed a command injection vulnerablity in the KLoader
Apple macOS 10.13.1 (High Sierra) – Insecure Cron System Local Privilege Escalation
Recently I was working on an security issue in some other software that has yet to be disclosed which created a rathe...
VX Search 10.2.14 – ‘command_name’ Buffer Overflow
#!/usr/bin/python
Perspective ICM Investigation & Case 5.1.1.16 – Privilege Escalation
# # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # ## # # # # # # # # # # ...
TeamViewer 11 < 13 (Windows 10 x86) - Inline Hooking / Direct Memory Modification Permission Change
# TeamViewer Permissions Hook V1
Ruby < 2.2.8 / < 2.3.5 / < 2.4.2 / < 2.5.0-preview1 - 'NET::Ftp' Command Injection
While using NET::Ftp I realised you could get command execution through "malicious" file names.
MistServer 2.12 – Cross-Site Scripting
[+] Credits: John Page (aka Hyp3rlinX)
Artica Web Proxy 3.06 – Remote Code Execution
[+] Credits: John Page (aka Hyp3rlinX)
Abyss Web Server < 2.11.6 - Heap Memory Corruption
[+] Credits: John Page (aka HyP3rlinX)
Socusoft Photo 2 Video Converter 8.0.0 – Local Buffer Overflow
# Exploit Title: Socusoft Photo 2 Video Converter v8.0.0 Local Buffer Overflow (Free and Professional variants)
Linux Kernel – ‘The Huge Dirty Cow’ Overwriting The Huge Zero Page (1)
// EDB Note: Source ~ https://medium.com/bindecy/huge-dirty-cow-cve-2017-1000405-110eca132de0
Jobs2Careers / Coroflot Clone – SQL Injection
# Exploit Title: Jobs2Careers / Coroflot Clone - SQL Injection
QEMU – NBD Server Long Export Name Stack Buffer Overflow
Introduced in commit f37708f6b8 (2.10). The NBD spec says a client
HP iMC Plat 7.2 – Remote Code Execution (2)
#!/opt/local/bin/python2.7
HP iMC Plat 7.2 – Remote Code Execution
#!/opt/local/bin/python2.7