Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2016-07-25

CoolPlayer+ Portable 2.19.6 – ‘.m3u’ File Stack Overflow (Egghunter + ASLR Bypass)

  • local
  • windows
  • Karn Ganeshen
    2016-07-25

    CodoForum 3.2.1 – SQL Injection

  • webapps
  • php
  • Yakir Wizman
    2016-07-25

    Drupal Module CODER 2.5 – Remote Command Execution (Metasploit)

  • webapps
  • php
  • Mehmet Ince
    2016-07-25

    Mediacoder 0.8.43.5852 – ‘.m3u’ (SEH)

  • local
  • windows
  • Karn Ganeshen
    2016-07-25

    Barracuda Spam & Virus Firewall 5.1.3.007 – Remote Command Execution (Metasploit)

  • remote
  • linux
  • xort
    2016-07-25

    Barracuda Web App Firewall 8.0.1.007/Load Balancer 5.4.0.004 – Remote Command Execution (Metasploit)

  • remote
  • linux
  • xort
    2016-07-25

    Rapid7 AppSpider 6.12 – Local Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2016-07-25

    Micro Focus Filr 2 2.0.0.421/1.2 1.2.0.846 – Multiple Vulnerabilities

  • webapps
  • java
  • SEC Consult
    2016-07-23

    Drupal Module Coder < 7.x-1.3/7.x-2.6 - Remote Code Execution

  • remote
  • php
  • Raz0r
    2016-07-21

    NetBSD – ‘mail.local(8)’ Local Privilege Escalation

  • local
  • bsd
  • akat1
    2016-07-21

    TeamPass Passwords Management System 2.1.26 – Arbitrary File Download

  • webapps
  • php
  • Hasan Emre Ozer
    2016-07-21

    TFTP Server 1.4 – ‘WRQ’ Remote Buffer Overflow (Egghunter)

  • remote
  • windows
  • Karn Ganeshen
    2016-07-20

    WordPress Plugin Video Player 1.5.16 – SQL Injection

  • webapps
  • php
  • David Vaartjes
    2016-07-20

    OpenSSH 7.2p2 – Username Enumeration

  • remote
  • linux
  • 0_o
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • multiple
  • LiquidWorm
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Cross-Site Request Forgery (Add Advanced Admin)

  • webapps
  • multiple
  • LiquidWorm
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Remote Privilege Escalation

  • webapps
  • multiple
  • LiquidWorm
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Local Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2016-07-20

    Drupal Module RESTWS 7.x – PHP Remote Code Execution (Metasploit)

  • remote
  • php
  • Mehmet Ince
    2016-07-20

    Django CMS 3.3.0 – Editor Snippet Persistent Cross-Site Scripting

  • webapps
  • Python
  • Vulnerability-Lab
    2016-07-20

    Websphere/JBoss/OpenNMS/Symantec Endpoint Protection Manager – Java Deserialization Remote Code Execution

  • remote
  • multiple
  • Nikhil Sreekumar
    2016-07-19

    newsp.eu PHP Calendar Script 1.0 – User Credentials Disclosure

  • webapps
  • php
  • Meisam Monsef
    2016-07-19

    NewsP Free News Script 1.4.7 – User Credentials Disclosure

  • webapps
  • php
  • Meisam Monsef
    2016-07-19

    Axis Communications MPQT/PACS 5.20.x – Server-Side Include Daemon Remote Format String

  • remote
  • multiple
  • bashis
    2016-07-18

    OpenSSHd 7.2p2 – Username Enumeration

  • remote
  • linux
  • Eddie Harari
    2016-07-17

    Meinberg NTP Time Server ELX800/GPS M4x V5.30p – Remote Command Execution / Escalate Privileges

  • remote
  • hardware
  • b0yd
    2016-07-15

    Clear Voyager Hotspot IMW-C910W – Arbitrary File Disclosure

  • webapps
  • cgi
  • Damaster
    2016-07-14

    Joomla! Component Guru Pro – ‘Itemid’ SQL Injection

  • webapps
  • php
  • s0nk3y
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (6)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (5)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (4)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (3)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (2)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (1)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Apache Archiva 1.3.9 – Multiple Cross-Site Request Forgery Vulnerabilities

  • webapps
  • xml
  • Julien Ahrens
    2016-07-13

    Riverbed SteelCentral NetProfiler/NetExpress – Remote Code Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2016-07-13

    Microsoft Windows 7 < 10 / 2008 < 2012 (x86/x64) - Secondary Logon Handle Privilege Escalation (MS16-032) (Metasploit)

  • local
  • windows
  • Metasploit
    2016-07-13

    GSX Analyzer 10.12/11 – ‘main.swf’ Hard-Coded Superadmin Credentials

  • webapps
  • windows
  • ndevnull
    2016-07-13

    Adobe Flash Player 22.0.0.192 – TAG Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Flash Player 22.0.0.192 – SceneAndFrameData Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Flash Player 22.0.0.192 – DefineSprite Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Flash Player 22.0.0.192 – DefineBitsJPEG2 Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (7)

  • dos
  • multiple
  • COSIG
    2016-07-11

    WordPress Plugin Activity Log 2.3.1 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Han Sahin
    2016-07-11

    WordPress Plugin All in One SEO Pack 2.3.6.1 – Persistent Cross-Site Scripting

  • webapps
  • php
  • David Vaartjes
    2016-07-11

    Belkin AC1200 Router Firmware 1.00.27 – Authentication Bypass

  • webapps
  • cgi
  • Gregory Smiley
    2016-07-11

    Tiki Wiki CMS 15.0 – Arbitrary File Download

  • webapps
  • php
  • Kacper Szurek
    2016-07-11

    Clinic Management System – Blind SQL Injection

  • webapps
  • php
  • Yakir Wizman
    2016-07-11

    Beauty Parlour & SPA Saloon Management System – Blind SQL Injection

  • webapps
  • php
  • Yakir Wizman
    2016-07-11

    Tiki Wiki 15.1 – File Upload (Metasploit)

  • webapps
  • php
  • Mehmet Ince