Exploits
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
- 类型
- 漏洞条目
- 总量
- 24,950
- 页码
- 193
FTP Voyager Scheduler 16.2.0 – Cross-Site Request Forgery
2) Persistent Denial Of Service uses call to WMIC
Kinsey Infor/Lawson / ESBUS – SQL Injection
##################################################################
dnaLIMS DNA Sequencing – Directory Traversal / Session Hijacking / Cross-Site Scripting
Title: Multiple vulnerabilities discovered in dnaLIMS DNA sequencing
Country on Sale Script – SQL Injection
# # # # #
Soundify 1.1 – ‘tid’ SQL Injection
# # # # #
BistroStays 3.0 – ‘guests’ SQL Injection
# # # # #
Nlance 2.2 – SQL Injection
# # # # #
Busewe 1.2 – SQL Injection
# # # # #
Fashmark 1.2 – ‘category’ SQL Injection
# # # # #
TradeMart 1.1 – SQL Injection
# # # # #
Drupal 7.x Module Services – Remote Code Execution
# Exploit Title: Drupal 7.x Services Module Remote Code Execution
Livebox 3 Sagemcom SG30_sip-fr-5.15.8.1 – Denial of Service
#!/usr/bin/python
e107 < 2.1.4 - 'keyword' Blind SQL Injection
#!/usr/bin/perl
Themeforest Clone Script – SQL Injection
# # # # #
Codecanyon Clone Script – SQL Injection
# # # # #
Audiojungle Clone Script – SQL Injection
# # # # #
Videohive Clone Script – SQL Injection
# # # # #
Envato Clone Script – SQL Injection
# # # # #
ASUSWRT RT-AC53 (3.0.0.4.380.6038) – Cross-Site Scripting
Cross-Site Scripting (XSS)
ASUSWRT RT-AC53 (3.0.0.4.380.6038) – Session Stealing
Session Stealing
ASUSWRT RT-AC53 (3.0.0.4.380.6038) – Remote Code Execution
Remote Code Execution
Wireless IP Camera (P2P) WIFICAM – Remote Code Execution
// Exploit-DB Note ~ Source: https://pierrekim.github.io/advisories/expl-goahead-camera.c
USBPcap 1.1.0.0 (WireShark 2.2.5) – Local Privilege Escalation
Exploit Title - USBPcap Null Pointer Dereference Privilege Escalation
Mini CMS 1.1 – ‘name’ SQL Injection
# # # # #
Azure Data Expert Ultimate 2.2.16 – Remote Buffer Overflow
# Exploit Title: Azure Data Expert Ultimate 2.2.16 – buffer overflow
Bull/IBM AIX Clusterwatch/Watchware – Multiple Vulnerabilities
Bull Clusterwatch/Watchware is a VERY VERY OLD tool used by sysadmins to manage their AIX clusters.
Evostream Media Server 1.7.1 (x64) – Denial of Service
# Exploit Title: Evostream Media Server 1.7.1 – Built-in Webserver DoS
Apache Struts 2.3.5 < 2.3.31 / 2.5 < 2.5.10 - Remote Code Execution
#!/usr/bin/python