Exploits
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
- 类型
- 漏洞条目
- 总量
- 24,950
- 页码
- 167
Protected Links – SQL Injection
Username
ZeeBuddy 2x – ‘groupid’ SQL Injection
# # # # #
tPanel 2009 – Authentication Bypass
# # # # #
PHP CityPortal 2.0 – SQL Injection
# # # # #
PG All Share Video 1.0 – SQL Injection
# # # # #
iTech Gigs Script 1.21 – SQL Injection
# # # # #
Adult Script Pro 2.2.4 – SQL Injection
# # # # #
D-Park Pro 1.0 – SQL Injection
Username:
Ingenious 2.3.0 – Arbitrary File Upload
# # # # #
Oracle Java SE – Web Start jnlp XML External Entity Processing Information Disclosure
#!/usr/local/bin/python
MitraStar DSL-100HN-T1/GPT-2541GNAC – Privilege Escalation
# Exploit Title: Privilege escalation MitraStar routers
PHP Melody 2.6.1 – SQL Injection
###################################################
PHPMyFAQ 2.9.8 – Cross-Site Scripting (3)
# Exploit Title: phpMyFAQ 2.9.8 Stored XSS Vulnerability
Sync Breeze Enterprise 10.0.28 – Remote Buffer Overflow (PoC)
Sync Breeze Enterprise BOF - Ivan Ivanovic Ivanov Иван-дурак
Tizen Studio 1.3 Smart Development Bridge < 2.3.2 - Buffer Overflow (PoC)
# Exploit Title: Smart Development Bridge
phpMyFAQ 2.9.8 – Cross-Site Request Forgery
# Exploit Title: phpMyFAQ 2.9.8 CSRF Vulnerability
HitmanPro 3.7.15 Build 281 – Kernel Pool Overflow
Exploit-CVE-2017-6008
Watchdog Development Anti-Malware / Online Security Pro – NULL Pointer Dereference
Exploit Title - Watchdog Development Anti-Malware/Online Security Pro Null Pointer Dereference
KeystoneJS 4.0.0-beta.5 – CSV Excel Macro Injection
# Exploit Title: KeystoneJS 4.0.0-beta.5 Unauthenticated CSV Injection
KeystoneJS 4.0.0-beta.5 – Cross-Site Scripting
# Exploit Title: KeystoneJS 4.0.0-beta.5 Unauthenticated Stored XSS
PHPMailer < 5.2.21 - Local File Disclosure
# Exploit Title: PHPMailer
Mura CMS < 6.2 - Server-Side Request Forgery / XML External Entity Injection
# Exploit Title: Mura CMS before 6.2 SSRF + XXE
FS Shutter Stock Clone – ‘keywords’ SQL Injection
# Exploit Title: FS Shutter Stock Clone - 'keywords' SQL Injection
FS Thumbtack Clone – ‘ser’ SQL Injection
# Exploit Title: FS Thumbtack Clone - 'ser' SQL Injection
FS Trademe Clone – ‘id’ SQL Injection
# Exploit Title: FS Trademe Clone - 'id' SQL Injection
FS Monster Clone – ‘id’ SQL Injection
# Exploit Title: FS Monster Clone - 'id' SQL Injection
FS Care Clone – ‘sitterService’ SQL Injection
# Exploit Title: FS Care Clone - 'sitterService' SQL Injection
FS Crowdfunding Script – ‘id’ SQL Injection
# Exploit Title: FS Crowdfunding Script - 'id' SQL Injection
FS Realtor Clone – ‘id’ SQL Injection
# Exploit Title: FS Realtor Clone - 'id' SQL Injection
Kaltura < 13.2.0 - Remote Code Execution
#!/usr/bin/env python
Mikogo 5.4.1.160608 – Local Credentials Disclosure
#!/usr/bin/env python
FS Car Rental Script – ‘pickup_location’ SQL Injection
# Exploit Title: FS Car Rental Script - SQL Injection