Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2017-02-27

MVPower DVR TV-7104HE 1.8.4 115215B9 – Shell Command Execution (Metasploit)

  • remote
  • arm
  • Metasploit
    2017-02-27

    Joomla! Component OneVote! 1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-26

    Linux Kernel 4.4.0 (Ubuntu) – DCCP Double-Free Privilege Escalation

  • local
  • linux
  • Andrey Konovalov
    2017-02-26

    Linux Kernel 4.4.0 (Ubuntu) – DCCP Double-Free (PoC)

  • dos
  • linux
  • Andrey Konovalov
    2017-02-25

    Joomla! Component Intranet Attendance Track 2.6.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component My MSG 3.2.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component JomSocial – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component Spinner 360 1.3.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component Appointments for JomSocial 3.8.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Joomla! Component Gnosis 1.1.2 – ‘id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-25

    Netgear DGN2200v1/v2/v3/v4 – ‘dnslookup.cgi’ Remote Command Execution

  • webapps
  • hardware
  • SivertPL
    2017-02-24

    Microsoft Edge / Internet Explorer – ‘HandleColumnBreakOnColumnSpanningElement’ Type Confusion

  • dos
  • windows
  • Google Security Research
    2017-02-24

    Apple WebKit 10.0.2 – ‘Frame::setDocument’ Universal Cross-Site Scripting

  • webapps
  • multiple
  • Google Security Research
    2017-02-24

    Joomla! Component Community Quiz 4.3.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Apple WebKit 10.0.2 – Cross-Origin or Sandboxed IFRAME Pop-up Blocker Bypass

  • webapps
  • multiple
  • Google Security Research
    2017-02-24

    Joomla! Component GPS Tools 4.0.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Apple WebKit 10.0.2 – ‘FrameLoader::clear’ Universal Cross-Site Scripting

  • webapps
  • macos
  • Google Security Research
    2017-02-24

    Joomla! Component Community Polls 4.5.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component Community Surveys 4.3 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component AJAX Search for K2 2.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component JO Facebook Gallery 4.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    Joomla! Component JooDatabase 3.1.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-24

    memcache-viewer – Cross-Site Scripting

  • webapps
  • php
  • HaHwul
    2017-02-23

    NetGain Enterprise Manager 7.2.562 – ‘Ping’ Command Injection

  • webapps
  • jsp
  • MrChaZ
    2017-02-23

    Apple macOS HelpViewer 10.12.1 – XSS Leads to Arbitrary File Execution / Arbitrary File Read

  • remote
  • macos
  • Google Security Research
    2017-02-23

    Joomla! Component MultiTier 3.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-23

    Joomla! Component UserExtranet 1.3.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-23

    Joomla! Component Store for K2 3.8.2 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Teradici Management Console 2.2.0 – Privilege Escalation

  • webapps
  • linux
  • hantwister
    2017-02-22

    Disk Savvy Enterprise 9.4.18 – Remote Buffer Overflow (SEH)

  • remote
  • windows
  • Peter Baris
    2017-02-22

    Google Chrome – ‘layout’ Out-of-Bounds Read

  • dos
  • multiple
  • Google Security Research
    2017-02-22

    Joomla! Component MediaLibrary Basic 3.5 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component BookLibrary 3.6.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component RealEstateManager 3.9 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component VehicleManager 3.9 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    Joomla! Component ContentMap 1.3.8 – ‘contentid’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-22

    EasyCom For PHP 4.0.0 – Denial of Service

  • dos
  • windows
  • hyp3rlinx
    2017-02-22

    EasyCom For PHP 4.0.0 – Buffer Overflow (PoC)

  • dos
  • windows
  • hyp3rlinx
    2017-02-22

    Fibaro Home Center 2 – Remote Command Execution / Privilege Escalation

  • webapps
  • multiple
  • forsec
    2017-02-22

    D-Link DCS Series Cameras – Insecure Crossdomain

  • webapps
  • hardware
  • SlidingWindow
    2017-02-21

    Adobe Flash – SWF Stack Corruption

  • dos
  • multiple
  • Google Security Research
    2017-02-21

    Adobe Flash – MP4 AMF Parsing Overflow

  • dos
  • multiple
  • Google Security Research
    2017-02-21

    Microsoft Office PowerPoint 2010 – GDI ‘GDI32!ConvertDxArray’ Insufficient Bounds Check

  • dos
  • windows
  • Google Security Research
    2017-02-21

    Microsoft Office PowerPoint 2010 – MSO/OART Heap Out-of-Bounds Access

  • dos
  • windows
  • Google Security Research
    2017-02-21

    Microsoft Office PowerPoint 2010 – ‘MSO!Ordinal5429’ Missing Length Check Heap Corruption

  • dos
  • windows
  • Google Security Research
    2017-02-21

    Joomla! Component AppointmentBookingPro 4.0.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component J-BusinessDirectory 4.6.8 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component Magic Deals Web 1.2.0 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component Directorix Directory Manager 1.1.1 – SQL Injection

  • webapps
  • php
  • Ihsan Sencan
    2017-02-21

    Joomla! Component J-MultipleHotelReservation Standard 6.0.2 – ‘review_id’ SQL Injection

  • webapps
  • php
  • Ihsan Sencan