Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2025-06-26

Sitecore 10.4 – Remote Code Execution (RCE)

  • webapps
  • multiple
  • Yesith Alvarez
    2025-06-26

    Microsoft Excel 2024 Use after free – Remote Code Execution (RCE)

  • remote
  • windows
  • nu11secur1ty
    2025-06-26

    Pterodactyl Panel 1.11.11 – Remote Code Execution (RCE)

  • webapps
  • multiple
  • Zen-kun04
    2025-06-26

    freeSSHd 1.0.9 – Denial of Service (DoS)

  • remote
  • windows
  • Fernando Mengali
    2025-06-26

    OneTrust SDK 6.33.0 – Denial Of Service (DoS)

  • remote
  • linux
  • Alameen Karim Merali
    2025-06-26

    PX4 Military UAV Autopilot 1.12.3 – Denial of Service (DoS)

  • remote
  • multiple
  • Mohammed Idrees Banyamer
    2025-06-20

    Ingress-NGINX 4.11.0 – Remote Code Execution (RCE)

  • remote
  • multiple
  • Likhith Appalaneni
    2025-06-20

    Microsoft Excel LTSC 2024 – Remote Code Execution (RCE)

  • local
  • windows
  • nu11secur1ty
    2025-06-20

    FortiOS SSL-VPN 7.4.4 – Insufficient Session Expiration & Cookie Reuse

  • remote
  • multiple
  • Shahid Hakim
    2025-06-15

    WebDAV Windows 10 – Remote Code Execution (RCE)

  • remote
  • windows
  • Dev Bui Hieu
    2025-06-15

    AirKeyboard iOS App 1.0.5 – Remote Input Injection

  • remote
  • ios
  • Chokri Hammedi
    2025-06-15

    Microsoft Excel Use After Free – Local Code Execution

  • local
  • windows
  • nu11secur1ty
    2025-06-15

    PHP CGI Module 8.3.4 – Remote Code Execution (RCE)

  • webapps
  • php
  • İbrahimsql
    2025-06-15

    Windows 11 SMB Client – Privilege Escalation & Remote Code Execution (RCE)

  • remote
  • windows
  • Mohammed Idrees Banyamer
    2025-06-15

    Parrot and DJI variants Drone OSes – Kernel Panic Exploit

  • local
  • multiple
  • Mohammed Idrees Banyamer
    2025-06-15

    Litespeed Cache WordPress Plugin 6.3.0.1 – Privilege Escalation

  • webapps
  • php
  • Milad karimi
    2025-06-15

    Anchor CMS 0.12.7 – Stored Cross Site Scripting (XSS)

  • webapps
  • php
  • /bin/neko
    2025-06-15

    PCMan FTP Server 2.0.7 – Buffer Overflow

  • remote
  • windows
  • Fernando Mengali
    2025-06-15

    Skyvern 0.1.85 – Remote Code Execution (RCE) via SSTI

  • webapps
  • multiple
  • Cristian Branet
    2025-06-13

    Windows File Explorer Windows 10 Pro x64 – TAR Extraction

  • remote
  • windows
  • Daniel Miranda
    2025-06-13

    Freefloat FTP Server 1.0 – Remote Buffer Overflow

  • remote
  • multiple
  • Fernando Mengali
    2025-06-13

    Roundcube 1.6.10 – Remote Code Execution (RCE)

  • webapps
  • multiple
  • Maksim Rogov
    2025-06-09

    TightVNC 2.8.83 – Control Pipe Manipulation

  • local
  • multiple
  • Ionut Zevedei
    2025-06-09

    ProSSHD 1.2 20090726 – Denial of Service (DoS)

  • remote
  • windows
  • Fernando Mengali
    2025-06-09

    Microsoft Windows 11 Version 24H2 Cross Device Service – Elevation of Privilege

  • local
  • windows
  • Mohammed Idrees Banyamer
    2025-06-09

    Laravel Pulse 1.3.1 – Arbitrary Code Injection

  • webapps
  • php
  • Mohammed Idrees Banyamer
    2025-06-05

    ABB Cylon Aspect 3.08.04 DeploySource – Remote Code Execution (RCE)

  • remote
  • multiple
  • LiquidWorm
    2025-06-05

    Microsoft Windows Server 2025 JScript Engine – Remote Code Execution (RCE)

  • remote
  • windows
  • Mohammed Idrees Banyamer
    2025-06-05

    Grandstream GSD3710 1.0.11.13 – Stack Overflow

  • remote
  • multiple
  • Pepelux
    2025-06-05

    macOS LaunchDaemon iOS 17.2 – Privilege Escalation

  • local
  • macos
  • Mohammed Idrees Banyamer
    2025-06-05

    CloudClassroom PHP Project 1.0 – SQL Injection

  • webapps
  • php
  • Sanjay Singh
    2025-06-05

    Apache Tomcat 10.1.39 – Denial of Service (DoS)

  • remote
  • multiple
  • Abdualhadi khalifa
    2025-05-29

    SolarWinds Serv-U 15.4.2 HF1 – Directory Traversal

  • remote
  • multiple
  • İbrahimsql
    2025-05-29

    Windows File Explorer Windows 11 (23H2) – NTLM Hash Disclosure

  • remote
  • windows
  • Mohammed Idrees Banyamer
    2025-05-29

    Automic Agent 24.3.0 HF4 – Privilege Escalation

  • remote
  • multiple
  • Flora Schäfer
    2025-05-29

    Fortra GoAnywhere MFT 7.4.1 – Authentication Bypass

  • remote
  • multiple
  • İbrahimsql
    2025-05-29

    WordPress Digits Plugin 8.4.6.1 – Authentication Bypass via OTP Bruteforcing

  • webapps
  • multiple
  • Saleh Tarawneh
    2025-05-29

    Campcodes Online Hospital Management System 1.0 – SQL Injection

  • webapps
  • multiple
  • Carine Constantino
    2025-05-25

    ABB Cylon Aspect Studio 3.08.03 – Binary Planting

  • local
  • multiple
  • LiquidWorm
    2025-05-25

    Java-springboot-codebase 1.1 – Arbitrary File Read

  • webapps
  • java
  • d3sca
    2025-05-25

    Grandstream GSD3710 1.0.11.13 – Stack Buffer Overflow

  • remote
  • multiple
  • Pepelux
    2025-05-25

    WordPress User Registration & Membership Plugin 4.1.2 – Authentication Bypass

  • webapps
  • multiple
  • Mohammed Idrees Banyamer
    2025-05-25

    Microsoft Windows Server 2016 – Win32k Elevation of Privilege

  • local
  • windows
  • Milad karimi
    2025-05-25

    Windows 2024.15 – Unauthenticated Desktop Screenshot Capture

  • remote
  • windows
  • Chokri Hammedi
    2025-05-25

    ABB Cylon Aspect 3.08.03 – Guest2Root Privilege Escalation

  • remote
  • multiple
  • LiquidWorm
    2025-05-21

    Remote Keyboard Desktop 1.0.1 – Remote Code Execution (RCE)

  • remote
  • windows
  • Chokri Hammedi
    2025-05-18

    Invision Community 5.0.6 – Remote Code Execution (RCE)

  • remote
  • multiple
  • Egidio Romano
    2025-05-18

    Zyxel USG FLEX H series uOS 1.31 – Privilege Escalation

  • local
  • multiple
  • Marco Ivaldi
    2025-05-18

    CrushFTP 11.3.1 – Authentication Bypass

  • remote
  • multiple
  • İbrahimsql
    2025-05-13

    TP-Link VN020 F3v(T) TT_V6.2.1021) – DHCP Stack Buffer Overflow

  • local
  • multiple
  • Mohamed Maatallah