Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2023-05-23

Screen SFT DAB 600/C – Authentication Bypass Erase Account

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    Smart School v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Password Change

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    LeadPro CRM v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-23

    Screen SFT DAB 600/C – Authentication Bypass Account Creation

  • remote
  • hardware
  • LiquidWorm
    2023-05-23

    Yank Note v3.52.1 (Electron) – Arbitrary Code Execution

  • local
  • multiple
  • 8bitsec
    2023-05-23

    PodcastGenerator 3.2.9 – Multiple Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-23

    Gin Markdown Editor v0.7.4 (Electron) – Arbitrary Code Execution

  • local
  • multiple
  • 8bitsec
    2023-05-23

    Trend Micro OfficeScan Client 10.0 – ACL Service LPE

  • local
  • windows
  • msd0pe
    2023-05-23

    Affiliate Me Version 5.0.1 – SQL Injection

  • webapps
  • php
  • h4ck3r
    2023-05-23

    PaperCut NG/MG 22.0.4 – Remote Code Execution (RCE)

  • webapps
  • multiple
  • MaanVader
    2023-05-23

    eScan Management Console 14.0.1400.2281 – Cross Site Scripting

  • webapps
  • windows
  • Sahil Ojha
    2023-05-23

    WBiz Desk 1.2 – SQL Injection

  • webapps
  • php
  • h4ck3r
    2023-05-23

    eScan Management Console 14.0.1400.2281 – SQL Injection (Authenticated)

  • webapps
  • windows
  • Sahil Ojha
    2023-05-23

    thrsrossi Millhouse-Project 1.414 – Remote Code Execution

  • webapps
  • php
  • Chokri Hammedi
    2023-05-13

    TinyWebGallery v2.5 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-13

    Epson Stylus SX510W Printer Remote Power Off – Denial of Service

  • remote
  • hardware
  • Rafael Pedrero
    2023-05-13

    Job Portal 1.0 – File Upload Restriction Bypass

  • webapps
  • php
  • Rafael Pedrero
    2023-05-13

    Online Clinic Management System 2.2 – Multiple Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Rafael Pedrero
    2023-05-13

    FLEX 1080 < 1085 Web 1.6.0 - Denial of Service

  • dos
  • android
  • Mr Empy
    2023-05-13

    RockMongo 1.1.7 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Rafael Pedrero
    2023-05-05

    Ulicms-2023.1-sniffing-vicuna – Privilege escalation

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    Codigo Markdown Editor v1.0.1 (Electron) – Remote Code Execution

  • local
  • multiple
  • 8bitsec
    2023-05-05

    Online Pizza Ordering System v1.0 – Unauthenticated File Upload

  • webapps
  • php
  • URGAN
    2023-05-05

    EasyPHP Webserver 14.1 – Multiple Vulnerabilities (RCE and Path Traversal)

  • webapps
  • php
  • Rafael Pedrero
    2023-05-05

    Jedox 2022.4.2 – Disclosure of Database Credentials via Connection Checks

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Disclosure of Database Credentials via Improper Access Controls

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Remote Code Execution via Executable Groovy-Scripts

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Remote Code Execution via Configurable Storage Path

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2020.2.5 – Stored Cross-Site Scripting in Log-Module

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2022.4.2 – Remote Code Execution via Directory Traversal

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Jedox 2022.4.2 – Code Execution via RPC Interfaces

  • webapps
  • php
  • Team Syslifters
    2023-05-05

    Cmaps v8.0 – SQL injection

  • webapps
  • php
  • Lucas Noki (0xPrototype)
    2023-05-05

    Wolf CMS 0.8.3.1 – Remote Code Execution (RCE)

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-05

    File Thingie 2.5.7 – Remote Code Execution (RCE)

  • webapps
  • php
  • Maurice Fielenbach
    2023-05-05

    pluck v4.7.18 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    Ulicms-2023.1 sniffing-vicuna – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-05

    KodExplorer v4.51.03 – Pwned-Admin File-Inclusion – Remote Code Execution (RCE)

  • webapps
  • php
  • nu11secur1ty
    2023-05-05

    Ulicms-2023.1 sniffing-vicuna – Remote Code Execution (RCE)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-02

    Companymaps v8.0 – Stored Cross Site Scripting (XSS)

  • webapps
  • php
  • Lucas Noki (0xPrototype)
    2023-05-02

    PHPJabbers Simple CMS 5.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-02

    PHPJabbers Simple CMS V5.0 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-05-02

    FS-S3900-24T4S – Privilege Escalation

  • local
  • hardware
  • Daniele Linguaglossa
    2023-05-02

    OpenEMR v7.0.1 – Authentication credentials brute force

  • webapps
  • php
  • abhhi (Abhishek Birdawade)
    2023-05-02

    Advanced Host Monitor v12.56 – Unquoted Service Path

  • local
  • windows
  • Mr Empy
    2023-05-02

    PHPFusion 9.10.30 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-05-02

    MilleGPG5 5.9.2 (Gennaio 2023) – Local Privilege Escalation / Incorrect Access Control

  • local
  • windows
  • Andrea Intilangelo
    2023-05-02

    SoftExpert (SE) Suite v2.1.3 – Local File Inclusion

  • webapps
  • php
  • Felipe Alcantara
    2023-05-02

    Serendipity 2.4.0 – File Inclusion RCE

  • webapps
  • php
  • nu11secur1ty
    2023-05-02

    admidio v4.2.5 – CSV Injection

  • webapps
  • php
  • Mirabbas Ağalarov