Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-06-10

VMware vSphere Data Protection 5.x/6.x – Java Deserialization

  • remote
  • multiple
  • Kelly Correll
    2017-06-10

    eCom Cart 1.3 – SQL Injection

  • webapps
  • php
  • Alperen Eymen Ozcan
    2017-06-10

    Disk Sorter 9.7.14 – ‘Input Directory’ Local Buffer Overflow

  • local
  • windows
  • abatchy17
    2017-06-10

    PaulShop – SQL Injection

  • webapps
  • php
  • Se0pHpHack3r
    2017-06-09

    EFS Easy Chat Server 3.1 – Remote Buffer Overflow (SEH)

  • remote
  • windows
  • Aitezaz Mohsin
    2017-06-09

    EFS Easy Chat Server 3.1 – Password Reset

  • webapps
  • windows
  • Aitezaz Mohsin
    2017-06-09

    EFS Easy Chat Server 3.1 – Password Disclosure

  • webapps
  • windows
  • Aitezaz Mohsin
    2017-06-09

    Uniview NVR – Password Disclosure

  • webapps
  • hardware
  • B1t
    2017-06-09

    IPFire 2.19 – Remote Code Execution

  • webapps
  • linux
  • 0x09AL
    2017-06-09

    Nuevomailer < 6.0 - SQL Injection

  • webapps
  • php
  • Oleg Boytsev
    2017-06-09

    libquicktime 1.2.4 – Denial of Service

  • dos
  • linux
  • qflb.wu
    2017-06-09

    libcroco 0.6.12 – Denial of Service

  • dos
  • linux
  • qflb.wu
    2017-06-09

    Apple macOS – Disk Arbitration Daemon Race Condition

  • local
  • macos
  • phoenhex
    2017-06-09

    Apple macOS 10.12.3 / iOS < 10.3.2 - Userspace Entitlement Checking Race Condition

  • local
  • multiple
  • Google Security Research
    2017-06-09

    Mapscrn 2.03 – Local Buffer Overflow (PoC)

  • dos
  • linux
  • Juan Sacco
    2017-06-09

    nuevoMailer 6.0 – SQL Injection

  • webapps
  • php
  • Oleg Boytsev
    2017-06-08

    IDERA Uptime Monitor 7.8 – Multiple Vulnerabilities

  • webapps
  • windows
  • SecuriTeam
    2017-06-08

    Craft CMS 2.6 – Cross-Site Scripting

  • webapps
  • php
  • Ahsan Tahir
    2017-06-08

    Microsoft Windows – UAC Protection Bypass via FodHelper Registry Key (Metasploit)

  • local
  • windows
  • Metasploit
    2017-06-08

    Net Monitor for Employees Pro < 5.3.4 - Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Saeid Atabaki
    2017-06-08

    VMware Workstation 12 Pro – Denial of Service

  • dos
  • windows
  • Borja Merino
    2017-06-07

    Artifex MuPDF – Null Pointer Dereference

  • dos
  • linux
  • Kamil Frankowicz
    2017-06-07

    PuTTY < 0.68 - 'ssh_agent_channel_data' Integer Overflow Heap Corruption

  • dos
  • linux
  • Tim Kosse
    2017-06-07

    Linux Kernel < 4.10.13 - 'keyctl_set_reqkey_keyring' Local Denial of Service

  • dos
  • linux
  • Marcus Meissner
    2017-06-07

    Linux Kernel – ‘ping’ Local Denial of Service

  • dos
  • android
  • Daniel Jiang
    2017-06-07

    DC/OS Marathon UI – Docker (Metasploit)

  • remote
  • Python
  • Metasploit
    2017-06-07

    Robert 0.5 – Multiple Vulnerabilities

  • webapps
  • php
  • Cyril Vallicari
    2017-06-07

    Xavier 2.4 – SQL Injection

  • webapps
  • php
  • Vulnerability-Lab
    2017-06-07

    Grav CMS 1.4.2 Admin Plugin – Cross-Site Scripting

  • webapps
  • php
  • Ahsan Tahir
    2017-06-06

    Apache Struts – REST Plugin With Dynamic Method Invocation Remote Code Execution

  • remote
  • multiple
  • nixawk
    2017-06-06

    Peplink Balance Routers 7.0.0-build1904 – SQL Injection / Cross-Site Scripting / Information Disclosure

  • webapps
  • cgi
  • X41 D-Sec GmbH
    2017-06-06

    WordPress Plugin Tribulant Newsletters 4.6.4.2 – File Disclosure / Cross-Site Scripting

  • webapps
  • php
  • defensecode
    2017-06-06

    Apple Safari 10.1 – Spread Operator Integer Overflow Remote Code Execution

  • remote
  • macos
  • saelo
    2017-06-05

    BIND 9.10.5 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • hyp3rlinx
    2017-06-05

    Subsonic 6.1.1 – Cross-Site Request Forgery / Cross-Site Scripting

  • webapps
  • windows
  • hyp3rlinx
    2017-06-05

    Subsonic 6.1.1 – XML External Entity Injection

  • local
  • windows
  • hyp3rlinx
    2017-06-05

    Subsonic 6.1.1 – Server-Side Request Forgery

  • webapps
  • windows
  • hyp3rlinx
    2017-06-05

    Subsonic 6.1.1 – Cross-Site Request Forgery

  • webapps
  • windows
  • hyp3rlinx
    2017-06-05

    Parallels Desktop – Virtual Machine Escape

  • local
  • windows
  • Mohammad Reza Espargham
    2017-06-05

    DNSTracer 1.8.1 – Buffer Overflow (PoC)

  • dos
  • linux
  • FarazPajohan
    2017-06-05

    Kronos Telestaff < 2.92EU29 - SQL Injection

  • webapps
  • asp
  • Goran Tuzovic
    2017-06-05

    Wireshark 2.2.0 < 2.2.12 - ROS Dissector Denial of Service

  • dos
  • multiple
  • OSS-Fuzz
    2017-06-05

    Wireshark 2.2.6 – IPv6 Dissector Denial of Service

  • dos
  • multiple
  • OSS-Fuzz
    2017-06-04

    EnGenius EnShare IoT Gigabit Cloud Service 1.4.11 – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2017-06-04

    WordPress Plugin Event List < 0.7.8 - SQL Injection

  • webapps
  • php
  • Dimitrios Tsagkarakis
    2017-06-03

    WordPress Plugin WP-Testimonials < 3.4.1 - SQL Injection

  • webapps
  • php
  • Dimitrios Tsagkarakis
    2017-06-03

    Joomla! Component Payage 2.05 – ‘aid’ SQL Injection

  • webapps
  • php
  • Persian Hack Team
    2017-06-02

    Disk Sorter 9.7.14 – ‘Input Directory’ Local Buffer Overflow (PoC)

  • dos
  • windows
  • n3ckD_
    2017-06-02

    Sungard eTRAKiT3 <= 3.2.1.17 - SQL Injection

  • webapps
  • json
  • Goran Tuzovic
    2017-06-02

    reiserfstune 3.6.25 – Local Buffer Overflow

  • dos
  • linux
  • Nassim Asrir