Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-03-06

MLM Membership Plan Script 2.0.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    Entrepreneur Bus Booking Script 3.03 – ‘hid_Busid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    MLM Forex Market Plan Script 2.0.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    Advanced Bus Booking Script 2.04 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    MLM Forced Matrix 2.0.7 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    MLM Binary Plan Script 2.0.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    Deluge Web UI 1.3.13 – Cross-Site Request Forgery

  • webapps
  • json
  • Kyle Neideck
    2017-03-06

    PHP Matrimonial Script 3.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    Entrepreneur B2B Script 2.0.4 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    Website Broker Script 3.02 – ‘view’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-06

    PHP Classifieds Rental Script 3.6.0 – ‘scatid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-05

    MikroTik Router – ARP Table OverFlow Denial Of Service

  • dos
  • hardware
  • FarazPajohan
    2017-03-04

    Joomla! Component JUX EventOn 1.0.1 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-04

    FTPShell Client 6.53 – Remote Buffer Overflow

  • remote
  • windows
  • Peter Baris
    2017-03-04

    Joomla! Component AltaUserPoints 1.1 – ‘userid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-04

    Joomla! Component Content ConstructionKit 1.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-04

    Joomla! Component AYS Quiz 1.0 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-04

    Joomla! Component Monthly Archive 3.6.4 – ‘author_form’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-03

    EPSON TMNet WebConfig 1.00 – Cross-Site Scripting

  • webapps
  • hardware
  • Michael Benich
    2017-03-03

    pfSense 2.3.2 – Cross-Site Scripting / Cross-Site Request Forgery

  • webapps
  • php
  • Yann CAM
    2017-03-03

    Joomla! Component Coupon 3.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-03

    WordPress Core < 4.7.1 - Username Enumeration

  • webapps
  • php
  • Dctor
    2017-03-03

    Multiple WordPress Plugins – Arbitrary File Upload

  • webapps
  • php
  • The Martian
    2017-03-02

    Conext ComBox 865-1058 – Denial of Service

  • dos
  • hardware
  • Mark Liapustin & Arik Kublanov
    2017-03-02

    Joomla! Component Recipe Manager 2.2 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-02

    MDwiki < 0.6.2 - Cross-Site Scripting

  • webapps
  • multiple
  • evi1m0
    2017-03-02

    Joomla! Component Guesser 1.0.4 – ‘type’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-02

    Joomla! Component StreetGuessr Game 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-02

    Joomla! Component Abstract 2.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-02

    Php Classified OLX Clone Script – ‘category’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-01

    WordPress Plugin NewStatPress 1.2.4 – Cross-Site Scripting

  • webapps
  • php
  • Han Sahin
    2017-03-01

    WordPress Plugin Popup by Supsystic 1.7.6 – Cross-Site Request Forgery

  • webapps
  • php
  • Radjnies Bhansingh
    2017-03-01

    WordPress Plugin User Login Log 2.2.1 – Cross-Site Scripting

  • webapps
  • php
  • Axel Koolhaas
    2017-03-01

    WordPress Plugin Contact Form Manager – Cross-Site Request Forgery / Cross-Site Scripting

  • webapps
  • php
  • Edwin Molenaar
    2017-03-01

    Aruba AirWave 8.2.3 – XML External Entity Injection / Cross-Site Scripting

  • webapps
  • xml
  • SEC Consult
    2017-03-01

    D-Link DSL-2730U Wireless N 150 – Cross-Site Request Forgery

  • webapps
  • hardware
  • B GOVIND
    2017-03-01

    Meme Maker Script 2.1 – ‘user’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-01

    Rage Faces Script 1.3 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-01

    SchoolDir – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-03-01

    WordPress Plugin File Manager 3.0.1 – Cross-Site Request Forgery

  • webapps
  • php
  • David Vaartjes
    2017-03-01

    WordPress Plugin Global Content Blocks 2.1.5 – Cross-Site Request Forgery

  • webapps
  • php
  • Yorick Koster
    2017-02-28

    SysGauge 1.5.18 – Remote Buffer Overflow

  • remote
  • windows
  • Peter Baris
    2017-02-28

    SysGauge 1.5.18 – SMTP Validation Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2017-02-28

    Cisco AnyConnect Secure Mobility Client 4.3.04027 – Local Privilege Escalation

  • local
  • windows
  • Pcchillin
    2017-02-28

    Synchronet BBS 3.16c – Denial of Service

  • dos
  • windows
  • Peter Baris
    2017-02-28

    BlueIris 4.5.1.4 – Denial of Service

  • dos
  • windows
  • Peter Baris
    2017-02-28

    Netgear DGN2200v1/v2/v3/v4 – Cross-Site Request Forgery

  • webapps
  • hardware
  • SivertPL
    2017-02-28

    Sophos Web Appliance 4.3.1.1 – Session Fixation

  • webapps
  • php
  • SlidingWindow
    2017-02-27

    WePresent WiPG-1500 – Backdoor Account

  • remote
  • hardware
  • Quentin Olagne
    2017-02-27

    MVPower DVR TV-7104HE 1.8.4 115215B9 – Shell Command Execution (Metasploit)

  • remote
  • arm
  • Metasploit