Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-08-17

Microsoft Edge – Out-of-Bounds Access when Fetching Source

  • dos
  • windows
  • Google Security Research
    2017-08-17

    Microsoft Edge Chakra – ‘chakra!Js::GlobalObject’ Integer overflow

  • dos
  • windows
  • Huang Anwen
    2017-08-17

    Adobe Flash – Invoke Accesses Trait Out-of-Bounds

  • dos
  • windows
  • Google Security Research
    2017-08-17

    Microsoft Edge Chakra – ‘PreVisitCatch’ Missing Call

  • dos
  • windows
  • Google Security Research
    2017-08-16

    Apple macOS Sierra 10.12.3 – ‘IOFireWireFamily-null-deref’ FireWire Port Denial of Service

  • dos
  • macos
  • Brandon Azad
    2017-08-16

    Microsoft Edge 38.14393.1066.0 – ‘CInputDateTimeScrollerElement::_SelectValueInternal’ Out-of-Bounds Read

  • dos
  • windows
  • Google Security Research
    2017-08-16

    RPi Cam Control < 6.3.14 - Multiple Vulnerabilities

  • webapps
  • php
  • Alexander Korznikov
    2017-08-15

    AdvanDate iCupid Dating Software 12.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-15

    ClipBucket 2.8.3 – Multiple Vulnerabilities

  • webapps
  • php
  • bRpsd
    2017-08-15

    Internet Download Manager 6.28 Build 17 – Local Buffer Overflow (SEH Unicode)

  • local
  • windows
  • f3ci
    2017-08-15

    ALLPlayer 7.4 – Local Buffer Overflow (SEH Unicode)

  • local
  • windows
  • f3ci
    2017-08-14

    Xamarin Studio for Mac 6.2.1 (build 3) / 6.3 (build 863) – Local Privilege Escalation

  • local
  • macos
  • Securify
    2017-08-14

    Quali CloudShell 7.1.0.6508 (Patch 6) – Persistent Cross-Site Scripting

  • webapps
  • windows
  • Benjamin Lee
    2017-08-14

    RPi Cam Control < 6.3.14 - Remote Command Execution

  • webapps
  • php
  • Alexander Korznikov
    2017-08-13

    Linux Kernel < 4.4.0-83 / < 4.8.0-58 (Ubuntu 14.04/16.04) - Local Privilege Escalation (KASLR / SMEP)

  • local
  • linux
  • Andrey Konovalov
    2017-08-13

    Tomabo MP4 Converter 3.19.15 – Denial of Service

  • dos
  • windows
  • Andy Bowden
    2017-08-12

    AirMaster 3000M – Multiple Vulnerabilities

  • webapps
  • hardware
  • Mr.8Th BiT
    2017-08-12

    RealTime RWR-3G-100 Router – Cross-Site Request Forgery (Change Admin Password)

  • webapps
  • hardware
  • Touhid M.Shaikh
    2017-08-11

    De-Journal 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-11

    DeWorkshop 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-11

    De-Tutor 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-10

    Microsoft Edge 38.14393.1066.0 – ‘textarea.defaultValue’ Memory Disclosure

  • dos
  • windows_x86-64
  • Google Security Research
    2017-08-10

    Red-Gate SQL Monitor < 3.10 / 4.2 - Authentication Bypass

  • webapps
  • windows
  • Paul Taylor
    2017-08-10

    Piwigo Plugin User Tag 0.9.0 – Cross-Site Scripting

  • webapps
  • php
  • Touhid M.Shaikh
    2017-08-10

    GIF Collection 2.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-10

    ImageBay 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-09

    NoMachine 5.3.9 – Local Privilege Escalation

  • local
  • osx
  • Daniele Linguaglossa
    2017-08-09

    Symantec Messaging Gateway < 10.6.3-267 - Cross-Site Request Forgery

  • webapps
  • multiple
  • Dhiraj Mishra
    2017-08-09

    WebFile Explorer 1.0 – Arbitrary File Download

  • webapps
  • php
  • Ihsan Sencan
    2017-08-09

    DALIM SOFTWARE ES Core 5.0 build 7184.1 – Server-Side Request Forgery

  • webapps
  • jsp
  • LiquidWorm
    2017-08-09

    DALIM SOFTWARE ES Core 5.0 build 7184.1 – Directory Traversal

  • webapps
  • jsp
  • LiquidWorm
    2017-08-09

    DALIM SOFTWARE ES Core 5.0 build 7184.1 – Cross-Site Scripting / Cross-Site Request Forgery

  • webapps
  • jsp
  • LiquidWorm
    2017-08-09

    DALIM SOFTWARE ES Core 5.0 build 7184.1 – User Enumeration

  • webapps
  • jsp
  • LiquidWorm
    2017-08-09

    Android Bluetooth – ‘Blueborne’ Information Leak (1)

  • remote
  • android
  • Kert Ojasoo
    2017-08-08

    VMware WorkStation 12.5.5 – Virtual Machine Escape

  • local
  • windows
  • unamer
    2017-08-08

    Unitrends UEB 9.1 – Privilege Escalation

  • webapps
  • php
  • Jared Arave
    2017-08-08

    Unitrends UEB 9.1 – Authentication Bypass / Remote Command Execution

  • remote
  • linux
  • Jared Arave
    2017-08-08

    Unitrends UEB 9.1 – ‘Unitrends bpserverd’ Remote Command Execution

  • remote
  • linux
  • Jared Arave
    2017-08-08

    Microsoft Windows 8.1 (x64) – RGNOBJ Integer Overflow (MS16-098) (2)

  • local
  • windows_x86-64
  • SensePost
    2017-08-08

    Synology Photo Station 6.7.3-3432 / 6.3-2967 – Remote Code Execution

  • webapps
  • hardware
  • Kacper Szurek
    2017-08-08

    WildMIDI 0.4.2 – Multiple Vulnerabilities

  • dos
  • linux
  • qflb.wu
    2017-08-07

    WordPress Plugin Easy Modal 2.0.17 – SQL Injection

  • webapps
  • php
  • defensecode
    2017-08-06

    Microsoft Windows – ‘.LNK’ Shortcut File Code Execution

  • local
  • windows
  • nixawk
    2017-08-03

    Technicolor TC7337 – ‘SSID’ Persistent Cross-Site Scripting

  • webapps
  • hardware
  • Geolado giolado
    2017-08-03

    VirtualBox 5.1.22 – Windows Process DLL UNC Path Signature Bypass Privilege Escalation

  • local
  • windows
  • Google Security Research
    2017-08-03

    VirtualBox 5.1.22 – Windows Process DLL Signature Bypass Privilege Escalation

  • local
  • windows
  • Google Security Research
    2017-08-03

    DNSTracer 1.9 – Local Buffer Overflow

  • local
  • linux
  • j0lama
    2017-08-03

    Horde Groupware 5.2.21 – Unauthorized File Download

  • webapps
  • php
  • SecuriTeam
    2017-08-03

    Joomla! Component StreetGuessr Game 1.1.8 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-08-03

    Tiandy IP Cameras 5.56.17.120 – Sensitive Information Disclosure

  • webapps
  • hardware
  • SecuriTeam