Student Information System (SIS) 0.1 – Authentication Bypass
# Exploit Title............... Student Information System (SIS) Auth Bypass
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title............... Student Information System (SIS) Auth Bypass
# Exploit Title.............. Web Based Alumni Tracking System Multiple Vulnerability
# Exploit Title.............. Simple Dynamic Web SQL Injection
# Exploit Title.............. Learning Management System Auth Bypass
# Exploit Title.............. Fashion Shopping Cart SQL Injection
# Exploit Title.............. Health Record System Auth Bypass
# Exploit Title.............. Simple Shopping Cart Application SQL Injection
# Exploit Title.............. School Full CBT SQL Injection
=====================================================
=====================================================
----------------------------------------------------------------------------------------------------------
# Exploit Title :----------------- : Thatware 0.4.6 - (friend.php) - SQL Injection
# Exploit Title: InsOnSrv Asus InstantOn- Privilege Escalation Unquoted Service Path vulnerability
# Exploit Title: ATKGFNEXSrv ATKGFNEX- Privilege Escalation Unquoted Service Path vulnerability
# Exploit Title: VOX Music Player 2.8.8 '.pls' Local Crash PoC
#########################################################################
# Exploit Title : ----------- : Colorful Blog - Stored Cross Site Scripting
# Exploit Title :----------- : Colorful Blog - Cross-Site Request Forgery (Change Admin Pass)
#########################################################################
# Exploit Title: RSS News AutoPilot Script - Admin Panel Authentication Bypass
# Exploit Title :----------------- : JonhCMS 4.5.1 - (go.php?id) - SQL Injection
# This is an exploit for the subversion vulnerability published as CVE-2013-2088.
#####################################################################################
#####################################################################################
#####################################################################################
# Exploit Title: Categorizator 0.3.1 | SQL Injection
# Exploit Title: NetBilletterie 2.8 | Multiple Vulnerabilities
# Exploit Title: OpenCimetiere v3.0.0-a5 | Blind SQL Injection
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=889
# Exploit Title :----------------- : ApPHP MicroCMS 3.9.5 - Stored Cross Site Scripting
# Exploit Title :----------------- : ApPHP MicroCMS 3.9.5 - Cross-Site Request Forgery (Add Admin (Main))
Minecraft Launcher: https://minecraft.net
#########################################################################
SEC Consult Vulnerability Lab Security Advisory < 20161011-0 >
# Exploit Title : ApPHP MicroBlog 1.0.2 - Stored Cross
# Exploit Title : ApPHP MicroBlog 1.0.2 - Cross-Site Request Forgery (Add New Author)
=============================================
# Exploit Title: Linux kernel
[+] Credits: John Page aka hyp3rlinx
# Exploit Title: [HP Client - Automation Command Injection]
# Exploit Title : Maian Weblog 4.0 - Cross-Site Request
# Exploit Title : Spacemarc News - Cross-Site Request
# Exploit Title : miniblog 1.0.1 - Cross-Site Request Forgery (Add New Post)
Fitbit Connect Service: https://www.fitbit.com/