Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2016-10-20

Microsoft Windows Kernel – Registry Hive Loading Negative RtlMoveMemory Size in nt!CmpCheckValueList (MS16-124)

  • dos
  • windows
  • Google Security Research
    2016-10-20

    Microsoft Windows – ‘win32k.sys’ TTF Processing win32k!sbit_Embolden / win32k!ttfdCloseFontContext Use-After-Free (MS16-120)

  • dos
  • windows
  • Google Security Research
    2016-10-19

    Vembu StoreGrid 4.0 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    Lenovo Slim USB Keyboard 1.09 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    Lenovo RapidBoot HDD Accelerator 1.00.0802 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' /proc/self/mem Race Condition (Write Access Method)

  • local
  • linux
  • Phil Oester
    2016-10-19

    Intel(R) Management Engine Components 8.0.1.1399 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    HikVision Security Systems – Activex Buffer Overflow

  • local
  • windows
  • Yuriy Gurkin
    2016-10-19

    IObit Advanced SystemCare 10.0.2 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Amir.ght
    2016-10-19

    XhP CMS 0.5.1 – Cross-Site Request Forgery / Persistent Cross-Site Scripting

  • webapps
  • php
  • Ahsan Tahir
    2016-10-19

    CNDSOFT 2.3 – Cross-Site Request Forgery / Arbitrary File Upload

  • webapps
  • php
  • Besim
    2016-10-19

    Realtek High Definition Audio Driver 6.0.1.6730 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    PDF Complete 4.1.12 Corporate Edition – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    Lenovo ThinkVantage Communications Utility 3.0.42.0 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-19

    Intel(R) PROSet/Wireless WiFi Software 15.01.1000.0927 – Unquoted Service Path Privilege Escalation

  • webapps
  • php
  • Joey Lane
    2016-10-19

    Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed 15.1.0.0096 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-18

    Microsoft Windows (x86) – ‘afd.sys’ Local Privilege Escalation (MS11-046)

  • local
  • windows_x86
  • Tomislav Paskalev
    2016-10-18

    Microsoft Windows – DeviceApi CMApi User Hive Impersonation Privilege Escalation (MS16-124)

  • local
  • windows
  • Google Security Research
    2016-10-18

    Microsoft Windows – DeviceApi CMApi PiCMOpenDeviceKey Arbitrary Registry Key Write Privilege Escalation (MS16-124)

  • local
  • windows
  • Google Security Research
    2016-10-18

    Microsoft Windows – DFS Client Driver Arbitrary Drive Mapping Privilege Escalation (MS16-123)

  • local
  • windows
  • Google Security Research
    2016-10-18

    Cgiemail 1.6 – Source Code Disclosure

  • webapps
  • cgi
  • Finbar Crago
    2016-10-18

    The Unarchiver 3.11.1 – ‘.tar.Z’ Crash (PoC)

  • dos
  • osx
  • Antonio Z.
    2016-10-18

    ManageEngine ServiceDesk Plus 9.2 Build 9207 – Unauthorized Information Disclosure

  • webapps
  • java
  • p0z
    2016-10-18

    LanSpy 2.0.0.155 – Local Buffer Overflow

  • local
  • windows
  • n30m1nd
    2016-10-18

    Pluck CMS 4.7.3 – Cross-Site Request Forgery (Add Page)

  • webapps
  • php
  • Ahsan Tahir
    2016-10-17

    Microsoft Windows Diagnostics Hub – DLL Load Privilege Escalation (MS16-125)

  • local
  • windows
  • Google Security Research
    2016-10-17

    Ruby on Rails – Dynamic Render File Upload / Remote Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2016-10-17

    PHP Business Directory – Multiple Vulnerabilities

  • webapps
  • php
  • larrycompress
    2016-10-17

    Subrion CMS 4.0.5 – Cross-Site Request Forgery Bypass / Persistent Cross-Site Scripting

  • webapps
  • php
  • Ahsan Tahir
    2016-10-17

    Spy Emergency 23.0.205 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Amir.ght
    2016-10-16

    PHP NEWS 1.3.0 – Cross-Site Request Forgery (Add Admin)

  • webapps
  • php
  • Meryem AKDOĞAN
    2016-10-16

    PHP Image Database – Multiple Vulnerabilities

  • webapps
  • php
  • larrycompress
    2016-10-16

    PHP Telephone Directory – Multiple Vulnerabilities

  • webapps
  • php
  • larrycompress
    2016-10-16

    Linux Kernel < 4.5.1 - Off-By-One (PoC)

  • dos
  • linux
  • Vitaly Nikolenko
    2016-10-15

    NETGATE Data Backup build 3.0.605 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Amir.ght
    2016-10-15

    NETGATE AMITI Antivirus 23.0.305 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Amir.ght
    2016-10-15

    NETGATE Registry Cleaner 16.0.205 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Amir.ght
    2016-10-14

    Student Information System (SIS) 0.1 – Authentication Bypass

  • webapps
  • php
  • lahilote
    2016-10-14

    School Full CBT 0.1 – SQL Injection

  • webapps
  • php
  • lahilote
    2016-10-14

    Graylog Collector 0.4.2 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Joey Lane
    2016-10-14

    Mozilla Firefox 49.0.1 – Denial of Service

  • dos
  • windows
  • sultan albalawi
    2016-10-14

    Simple Shopping Cart Application 0.1 – SQL Injection

  • webapps
  • php
  • lahilote
    2016-10-14

    Wondershare PDFelement 5.2.9 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Saeed Hasanzadeh
    2016-10-14

    YouTube Automated CMS 1.0.7 – Cross-Site Request Forgery / Persistent Cross-Site Scripting

  • webapps
  • php
  • Arbin Godar
    2016-10-14

    NO-IP DUC 4.1.1 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Ehsan Hosseini
    2016-10-14

    Simple Forum PHP 2.4 – Cross-Site Request Forgery (Edit Options)

  • webapps
  • php
  • Ehsan Hosseini
    2016-10-14

    Simple Forum PHP 2.4 – SQL Injection

  • webapps
  • php
  • Ehsan Hosseini
    2016-10-14

    Health Record System 0.1 – Authentication Bypass

  • webapps
  • php
  • lahilote
    2016-10-14

    Fashion Shopping Cart 0.1 – SQL Injection

  • webapps
  • php
  • lahilote
    2016-10-14

    Learning Management System 0.1 – Authentication Bypass

  • webapps
  • php
  • lahilote