Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2016-07-11

Adobe Flash – ATF Processing Overflow

  • dos
  • multiple
  • Google Security Research
    2016-07-11

    Ruby on Rails ActionPack Inline ERB – Code Execution (Metasploit)

  • remote
  • ruby
  • Metasploit
    2016-07-11

    Microsoft Windows 7 SP1 – ‘mrxdav.sys’ WebDAV Privilege Escalation (MS16-016) (Metasploit)

  • local
  • windows
  • Metasploit
    2016-07-11

    IPS Community Suite 4.1.12.3 – PHP Code Injection

  • webapps
  • php
  • Egidio Romano
    2016-07-11

    WordPress Plugin Activity Log 2.3.1 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Han Sahin
    2016-07-11

    WordPress Plugin All in One SEO Pack 2.3.6.1 – Persistent Cross-Site Scripting

  • webapps
  • php
  • David Vaartjes
    2016-07-11

    Belkin AC1200 Router Firmware 1.00.27 – Authentication Bypass

  • webapps
  • cgi
  • Gregory Smiley
    2016-07-08

    Streamo Online Radio And TV Streaming CMS – SQL Injection

  • webapps
  • php
  • N4TuraL
    2016-07-08

    CyberPower Systems PowerPanel 3.1.2 – XML External Entity Out-Of-Band Data Retrieval

  • webapps
  • xml
  • LiquidWorm
    2016-07-08

    PHP Real Estate Script 3 – Arbitrary File Disclosure

  • webapps
  • php
  • Meisam Monsef
    2016-07-08

    Microsoft WinDbg – ‘logviewer.exe’ Crash (PoC)

  • dos
  • windows
  • hyp3rlinx
    2016-07-08

    Microsoft Process Kill Utility (kill.exe) 6.3.9600.17298 – Crash (PoC)

  • dos
  • windows
  • hyp3rlinx
    2016-07-08

    InstantHMI 6.1 – Local Privilege Escalation

  • local
  • windows
  • sh4d0wman
    2016-07-08

    Hide.Me VPN Client 1.2.4 – Local Privilege Escalation

  • local
  • windows
  • sh4d0wman
    2016-07-08

    WordPress Plugin Lazy Content Slider 3.4 – Cross-Site Request Forgery (Add Catetory)

  • webapps
  • php
  • Persian Hack Team
    2016-07-07

    Tiki Wiki 15.1 – File Upload

  • webapps
  • php
  • Ivan Ivanovic
    2016-07-07

    GE Proficy HMI/SCADA CIMPLICITY 8.2 – Local Privilege Escalation

  • local
  • windows
  • Zhou Yu
    2016-07-07

    OPAC KpwinSQL – Multiple Vulnerabilities

  • webapps
  • php
  • Yakir Wizman
    2016-07-06

    Advanced Webhost Billing System (AWBS) 2.9.6 – Multiple Vulnerabilities

  • webapps
  • php
  • Bikramaditya Guha
    2016-07-06

    24online SMS_2500i 8.3.6 build 9.0 – SQL Injection

  • webapps
  • jsp
  • Rahul Raz
    2016-07-06

    CIMA DocuClass ECM – Multiple Vulnerabilities

  • webapps
  • php
  • Karn Ganeshen
    2016-07-06

    Nagios XI Chained – Remote Code Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2016-07-06

    Samsung Android JACK – Local Privilege Escalation

  • local
  • android
  • Google Security Research
    2016-07-06

    OpenFire 3.10.2 < 4.0.1 - Multiple Vulnerabilities

  • webapps
  • jsp
  • Sysdream
    2016-07-06

    GNU Wget < 1.18 - Arbitrary File Upload / Remote Code Execution

  • remote
  • linux
  • Dawid Golunski
    2016-07-06

    PaKnPost Pro 1.14 – Multiple Vulnerabilities

  • webapps
  • cgi
  • Edvin Rustemagic, Grega Preseren
    2016-07-04

    eCardMAX 10.5 – Multiple Vulnerabilities

  • webapps
  • php
  • Bikramaditya Guha
    2016-07-04

    WebCalendar 1.2.7 – Multiple Vulnerabilities

  • webapps
  • php
  • hyp3rlinx
    2016-07-04

    Linux Kernel < 4.4.0-21 (Ubuntu 16.04 x64) - 'netfilter target_offset' Local Privilege Escalation

  • local
  • linux_x86-64
  • Vitaly Nikolenko
    2016-07-04

    WordPress Plugin Real3D FlipBook – Multiple Vulnerabilities

  • webapps
  • php
  • Mukarram Khalid
    2016-07-04

    Exim 4 (Debian 8 / Ubuntu 16.04) – Spool Privilege Escalation

  • local
  • linux
  • halfdog
    2016-07-04

    Ktools Photostore 4.7.5 – Multiple Vulnerabilities

  • webapps
  • php
  • Yakir Wizman
    2016-07-04

    XpoLog Center 6 – Remote Command Execution / Cross-Site Request Forgery

  • webapps
  • jsp
  • LiquidWorm
    2016-07-03

    Python smtplib 2.7.11 / 3.4.4 / 3.5.1 – Man In The Middle StartTLS Stripping

  • local
  • multiple
  • tintinweb
    2016-07-03

    Linux Kernel 4.4.0-21 (Ubuntu 16.04 x64) – Netfilter ‘target_offset’ Out-of-Bounds Privilege Escalation

  • local
  • linux_x86-64
  • vnik
    2016-07-01

    Phoenix Exploit Kit – Remote Code Execution

  • webapps
  • php
  • CrashBandicot
    2016-06-30

    Ktools Photostore 4.7.5 – Blind SQL Injection

  • webapps
  • php
  • Gal Goldshtein & Viktor Minin
    2016-06-29

    WordPress Plugin Ultimate Membership Pro 3.3 – SQL Injection

  • webapps
  • php
  • wp0Day.com
    2016-06-29

    Symantec Endpoint Protection Manager 12.1 – Multiple Vulnerabilities

  • webapps
  • php
  • hyp3rlinx
    2016-06-29

    Lenovo ThinkPad – System Management Mode Arbitrary Code Execution

  • local
  • windows
  • Cr4sh
    2016-06-29

    Microsoft Windows 7 SP1 (x86) – Local Privilege Escalation (MS16-014)

  • local
  • windows_x86
  • blomster81
    2016-06-29

    Core FTP LE 2.2 – Path Field Local Buffer Overflow (PoC)

  • dos
  • windows
  • Netfairy
    2016-06-29

    Symantec AntiVirus – PowerPoint Misaligned Stream-cache Remote Stack Buffer Overflow (PoC)

  • dos
  • multiple
  • Google Security Research
    2016-06-29

    Symantec AntiVirus – Missing Bounds Checks in dec2zip ALPkOldFormatDecompressor::UnShrink

  • dos
  • multiple
  • Google Security Research
    2016-06-29

    Symantec AntiVirus – TNEF Decoder Integer Overflow

  • dos
  • multiple
  • Google Security Research
    2016-06-29

    Symantec AntiVirus – Heap Overflow Modifying MIME Messages

  • dos
  • multiple
  • Google Security Research
    2016-06-29

    Symantec AntiVirus – ‘dec2lha Library’ Remote Stack Buffer Overflow (PoC)

  • dos
  • multiple
  • Google Security Research
    2016-06-29

    Symantec AntiVirus – Unpacking RAR Multiple Remote Memory Corruptions

  • dos
  • multiple
  • Google Security Research
    2016-06-29

    Concrete5 CMS 5.7.3.1 – ‘Application::dispatch’ Method Local File Inclusion

  • webapps
  • php
  • Egidio Romano
    2016-06-29

    Ubiquiti Administration Portal – Remote Command Execution (via Cross-Site Request Forgery)

  • webapps
  • cgi
  • KoreLogic