Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2016-06-17

WordPress Plugin Gravity Forms 1.8.19 – Arbitrary File Upload

  • webapps
  • php
  • Abk Khan
    2016-06-17

    op5 7.1.9 – Configuration Command Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2016-06-17

    phpATM 1.32 – Multiple Vulnerabilities

  • webapps
  • php
  • Paolo Massenio
    2016-06-17

    phpATM 1.32 (Windows) – Arbitrary File Upload / Remote Command Execution

  • webapps
  • php
  • Paolo Massenio
    2016-06-16

    Gemalto Sentinel License Manager 18.0.1.55505 – Directory Traversal

  • webapps
  • windows
  • LiquidWorm
    2016-06-16

    SolarWinds Virtualization Manager – Local Privilege Escalation

  • local
  • linux
  • Nate Kettlewell
    2016-06-16

    Blat 3.2.14 – Stack Overflow

  • dos
  • windows
  • Vishnu
    2016-06-16

    Tiki Wiki CMS Calendar 6.15/9.11 LTS/12.5 LTS/14.2 – Remote Code Execution

  • webapps
  • php
  • Dany Ouellet
    2016-06-16

    SlimCMS 0.1 – Cross-Site Request Forgery (Change Admin Password)

  • webapps
  • php
  • Avinash Thapa
    2016-06-16

    Roxy Fileman 1.4.4 – Arbitrary File Upload

  • webapps
  • php
  • Tyrell Sassen
    2016-06-16

    ATCOM PBX IP01 / IP08 / IP4 / IP2G4A – Authentication Bypass

  • webapps
  • hardware
  • i-Hmx
    2016-06-15

    AdobeUpdateService 3.6.0.248 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • Cyril Vallicari
    2016-06-15

    Joomla! Component com_enmasse 5.1 < 6.4 - SQL Injection

  • webapps
  • php
  • Hamed Izadi
    2016-06-15

    Dokeos 2.2.1 – Blind SQL Injection

  • webapps
  • php
  • Mormoroth
    2016-06-15

    Hyperoptic (Tilgin) Router HG23xx – Multiple Vulnerabilities

  • webapps
  • hardware
  • LiquidWorm
    2016-06-15

    w2wiki – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • HaHwul
    2016-06-15

    Ultrabenosaurus ChatBoard – Cross-Site Request Forgery (Send Message)

  • webapps
  • php
  • HaHwul
    2016-06-15

    Ultrabenosaurus ChatBoard – Persistent Cross-Site Scripting

  • webapps
  • php
  • HaHwul
    2016-06-15

    Google Chrome – GPU Process MailboxManagerImpl Double-Read

  • dos
  • linux
  • Google Security Research
    2016-06-15

    Microsoft Windows 7 – win32k Bitmap Use-After-Free (MS16-062) (2)

  • dos
  • windows
  • Nils Sommer
    2016-06-15

    Microsoft Windows 7 – win32k Bitmap Use-After-Free (MS16-062) (1)

  • dos
  • windows
  • Nils Sommer
    2016-06-15

    Bomgar Remote Support – Code Execution (Metasploit)

  • remote
  • linux
  • Markus Wulftange
    2016-06-15

    PHPLive 4.4.8 < 4.5.4 - Password Recovery SQL Injection

  • webapps
  • php
  • Tiago Carvalho
    2016-06-15

    jbFileManager – Directory Traversal

  • webapps
  • php
  • HaHwul
    2016-06-15

    BookingWizz Booking System < 5.5 - Multiple Vulnerabilities

  • webapps
  • php
  • Mehmet Ince
    2016-06-14

    Oracle Orakill.exe 11.2.0 – Buffer Overflow (PoC)

  • dos
  • windows
  • hyp3rlinx
    2016-06-14

    WordPress Plugin Social Stream 1.5.15 – wp_options Overwrite

  • webapps
  • php
  • wp0Day.com
    2016-06-14

    Apache Continuum – Arbitrary Command Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2016-06-13

    iSQL 1.0 – Command Injection

  • local
  • linux
  • HaHwul
    2016-06-13

    Zabbix 2.2 < 3.0.3 - API JSON-RPC Remote Code Execution

  • webapps
  • php
  • Alexander Gurin
    2016-06-13

    Joomla! Component com_payplans 3.3.6 – SQL Injection

  • webapps
  • php
  • Persian Hack Team
    2016-06-13

    Dream Gallery 2.0 – Admin Panel Authentication Bypass

  • webapps
  • php
  • Ali BawazeEer
    2016-06-13

    Easy RM to MP3 Converter 2.7.3.700 – ‘.m3u’ File (Universal ASLR + DEP Bypass)

  • local
  • windows
  • Fitzl Csaba
    2016-06-13

    Viart Shopping Cart 5.0 – Cross-Site Request Forgery / Arbitrary File Upload

  • webapps
  • php
  • Ali Ghanbari
    2016-06-13

    FRticket Ticket System – Persistent Cross-Site Scripting

  • webapps
  • php
  • Hamit Abis
    2016-06-13

    Foxit PDF Reader 1.0.1.0925 – CFX_BaseSegmentedArray::IterateIndex Memory Corruption

  • dos
  • linux
  • Google Security Research
    2016-06-13

    Foxit PDF Reader 1.0.1.0925 – kdu_core::kdu_codestream::get_subsampling Memory Corruption

  • dos
  • linux
  • Google Security Research
    2016-06-13

    Grid Gallery 1.0 – Admin Panel Authentication Bypass

  • webapps
  • php
  • Ali BawazeEer
    2016-06-13

    Foxit PDF Reader 1.0.1.0925 – CFX_WideString::operator= Invalid Read

  • dos
  • linux
  • Google Security Research
    2016-06-13

    Foxit PDF Reader 1.0.1.0925 – CPDF_DIBSource::TranslateScanline24bpp Out-of-Bounds Read

  • dos
  • linux
  • Google Security Research
    2016-06-13

    Foxit PDF Reader 1.0.1.0925 – CPDF_StreamContentParser::~CPDF_StreamContentParser Heap Memory Corruption

  • dos
  • linux
  • Google Security Research
    2016-06-13

    iSQL 1.0 – ‘isql_main.c’ Buffer Overflow (PoC)

  • dos
  • linux
  • HaHwul
    2016-06-10

    Google Android – ‘/system/bin/sdcard’ Stack Buffer Overflow (PoC)

  • dos
  • android
  • Google Security Research
    2016-06-10

    Apple Mac OSX Kernel – Null Pointer Dereference in nvCommandQueue::GetHandleIndex in GeForce.kext

  • dos
  • osx
  • Google Security Research
    2016-06-10

    Apache Struts – REST Plugin With Dynamic Method Invocation Remote Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2016-06-10

    IPFire – ‘Shellshock’ Bash Environment Variable Command Injection (Metasploit)

  • remote
  • cgi
  • Metasploit
    2016-06-10

    IPFire – ‘proxy.cgi’ Remote Code Execution (Metasploit)

  • remote
  • cgi
  • Metasploit
    2016-06-10

    Riot Games League of Legends – Insecure File Permissions Privilege Escalation

  • local
  • windows
  • Cyril Vallicari
    2016-06-10

    Armadito Antimalware – Backdoor Access/Bypass

  • dos
  • windows
  • Ax.
    2016-06-10

    Apple Mac OSX Kernel – GeForce GPU Driver Stack Buffer Overflow

  • dos
  • osx
  • Google Security Research