Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2017-02-27

Joomla! Component OneVote! 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-26

    Linux Kernel 4.4.0 (Ubuntu) – DCCP Double-Free Privilege Escalation

  • local
  • linux
  • Andrey Konovalov
    2017-02-26

    Linux Kernel 4.4.0 (Ubuntu) – DCCP Double-Free (PoC)

  • dos
  • linux
  • Andrey Konovalov
    2017-02-25

    Netgear DGN2200v1/v2/v3/v4 – ‘dnslookup.cgi’ Remote Command Execution

  • webapps
  • hardware
  • SivertPL
    2017-02-25

    Joomla! Component Intranet Attendance Track 2.6.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component My MSG 3.2.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component JomSocial – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component Spinner 360 1.3.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component Appointments for JomSocial 3.8.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component Gnosis 1.1.2 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    memcache-viewer – Cross-Site Scripting

  • webapps
  • php
  • HaHwul
    2017-02-24

    Microsoft Edge / Internet Explorer – ‘HandleColumnBreakOnColumnSpanningElement’ Type Confusion

  • dos
  • windows
  • Google Security Research
    2017-02-24

    Apple WebKit 10.0.2 – ‘Frame::setDocument’ Universal Cross-Site Scripting

  • webapps
  • multiple
  • Google Security Research
    2017-02-24

    Joomla! Component Community Quiz 4.3.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Apple WebKit 10.0.2 – Cross-Origin or Sandboxed IFRAME Pop-up Blocker Bypass

  • webapps
  • multiple
  • Google Security Research
    2017-02-24

    Joomla! Component GPS Tools 4.0.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Apple WebKit 10.0.2 – ‘FrameLoader::clear’ Universal Cross-Site Scripting

  • webapps
  • macos
  • Google Security Research
    2017-02-24

    Joomla! Component Community Polls 4.5.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component Community Surveys 4.3 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component AJAX Search for K2 2.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component JO Facebook Gallery 4.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component JooDatabase 3.1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-23

    NetGain Enterprise Manager 7.2.562 – ‘Ping’ Command Injection

  • webapps
  • jsp
  • MrChaZ
    2017-02-23

    Apple macOS HelpViewer 10.12.1 – XSS Leads to Arbitrary File Execution / Arbitrary File Read

  • remote
  • macos
  • Google Security Research
    2017-02-23

    Joomla! Component MultiTier 3.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-23

    Joomla! Component UserExtranet 1.3.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-23

    Joomla! Component Store for K2 3.8.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    EasyCom For PHP 4.0.0 – Denial of Service

  • dos
  • windows
  • hyp3rlinx
    2017-02-22

    EasyCom For PHP 4.0.0 – Buffer Overflow (PoC)

  • dos
  • windows
  • hyp3rlinx
    2017-02-22

    Teradici Management Console 2.2.0 – Privilege Escalation

  • webapps
  • linux
  • hantwister
    2017-02-22

    Disk Savvy Enterprise 9.4.18 – Remote Buffer Overflow (SEH)

  • remote
  • windows
  • Peter Baris
    2017-02-22

    Google Chrome – ‘layout’ Out-of-Bounds Read

  • dos
  • multiple
  • Google Security Research
    2017-02-22

    Fibaro Home Center 2 – Remote Command Execution / Privilege Escalation

  • webapps
  • multiple
  • forsec
    2017-02-22

    Joomla! Component MediaLibrary Basic 3.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component BookLibrary 3.6.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component RealEstateManager 3.9 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component VehicleManager 3.9 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    D-Link DCS Series Cameras – Insecure Crossdomain

  • webapps
  • hardware
  • SlidingWindow
    2017-02-22

    Joomla! Component ContentMap 1.3.8 – ‘contentid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component Magic Deals Web 1.2.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component Directorix Directory Manager 1.1.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component J-MultipleHotelReservation Standard 6.0.2 – ‘review_id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Adobe Flash – YUVPlane Decoding Heap Overflow

  • dos
  • multiple
  • Google Security Research
    2017-02-21

    Joomla! Component Eventix Events Calendar 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Adobe Flash – Use-After-Free in Applying Bitmap Filter

  • dos
  • multiple
  • Google Security Research
    2017-02-21

    Joomla! Component J-CruiseReservation Standard 3.0 – ‘city’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Adobe Flash – SWF Stack Corruption

  • dos
  • multiple
  • Google Security Research
    2017-02-21

    Joomla! Component J-HotelPortal 6.0.2 – ‘review_id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Adobe Flash – MP4 AMF Parsing Overflow

  • dos
  • multiple
  • Google Security Research
    2017-02-21

    DIGISOL DG-HR1400 Wireless Router – Cross-Site Request Forgery

  • webapps
  • hardware
  • Indrajith.A.N