Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2016-05-13

NRSS Reader 0.3.9 – Local Stack Overflow

  • local
  • linux
  • Juan Sacco
    2016-05-13

    Wireshark – ‘AirPDcapDecryptWPABroadcastKey’ Heap Out-of-Bounds Read (2)

  • dos
  • multiple
  • Google Security Research
    2016-05-13

    runAV mod_security – Arbitrary Command Execution

  • local
  • linux
  • R-73eN
    2016-05-12

    Trend Micro – ‘CoreServiceShell.exe’ Multiple HTTP s

  • webapps
  • windows
  • Google Security Research
    2016-05-12

    WordPress Plugin Huge-IT Image Gallery 1.8.9 – Multiple Vulnerabilities

  • webapps
  • php
  • Gwendal Le Coguic
    2016-05-12

    WordPress Plugin Q and A (Focus Plus) FAQ 1.3.9.7 – Multiple Vulnerabilities

  • webapps
  • php
  • Gwendal Le Coguic
    2016-05-12

    Microsoft Windows Media Center – ‘.MCL’ File Processing Remote Code Execution (MS16-059)

  • remote
  • windows
  • Eduardo Braun Prado
    2016-05-11

    Intuit QuickBooks Desktop 2007 < 2016 - Arbitrary Code Execution

  • local
  • windows
  • Maxim Tomashevich
    2016-05-11

    FileZilla FTP Client 3.17.0.0 – Unquoted Path Privilege Escalation

  • local
  • windows
  • Cyril Vallicari
    2016-05-11

    CIScan 1.00 – Hostname/IP Field Overwrite (SEH) (PoC)

  • dos
  • windows
  • Nipun Jaswal
    2016-05-11

    Google Android Broadcom Wi-Fi Driver – Memory Corruption

  • dos
  • android
  • AbdSec
    2016-05-10

    Nfdump Nfcapd 1.6.14 – Multiple Vulnerabilities

  • dos
  • linux
  • Security-Assessment.com
    2016-05-10

    Adobe Reader DC 15.010.20060 – Memory Corruption

  • dos
  • multiple
  • Pier-Luc Maltais
    2016-05-10

    JVC HDRs / Net (Multiple Cameras) – Multiple Vulnerabilities

  • webapps
  • hardware
  • Orwelllabs
    2016-05-10

    Core FTP Server 32-bit Build 587 – Heap Overflow

  • dos
  • windows_x86
  • Paul Purcell
    2016-05-10

    Ipswitch WS_FTP LE 12.3 – Search field Overwrite (SEH) (PoC)

  • dos
  • windows
  • Zahid Adeel
    2016-05-10

    MediaInfo 0.7.61 – Crash (PoC)

  • dos
  • windows
  • Mohammad Reza Espargham
    2016-05-09

    Ruby on Rails – Development Web Console (v2) Code Execution (Metasploit)

  • remote
  • ruby
  • Metasploit
    2016-05-09

    ImageMagick 6.9.3-9 / 7.0.1-0 – ‘ImageTragick’ Delegate Arbitrary Command Execution (Metasploit)

  • local
  • multiple
  • Metasploit
    2016-05-09

    RPCScan 2.03 – Hostname/IP Field Overwrite (SEH) (PoC)

  • dos
  • windows
  • Nipun Jaswal
    2016-05-09

    Microsoft Windows 7 – ‘WebDAV’ Local Privilege Escalation (MS16-016) (2)

  • local
  • windows
  • hex0r
    2016-05-09

    Certec EDV atvise SCADA Server 2.5.9 – Local Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2016-05-09

    ASUS Memory Mapping Driver (ASMMAP/ASMMAP64) – Physical Memory Read/Write

  • dos
  • windows
  • slipstream
    2016-05-09

    ZeewaysCMS – Multiple Vulnerabilities

  • webapps
  • php
  • Bikramaditya Guha
    2016-05-09

    Dell SonicWALL Scrutinizer 11.0.1 – setUserSkin/deleteTab SQL Injection Remote Code Execution

  • remote
  • windows
  • mr_me
    2016-05-09

    i.FTP 2.21 – Host Address / URL Field (SEH)

  • dos
  • windows
  • Tantaryu MING
    2016-05-09

    Ajaxel CMS 8.0 – Multiple Vulnerabilities

  • webapps
  • php
  • DizzyDuck
    2016-05-06

    ManageEngine Applications Manager Build 12700 – Multiple Vulnerabilities

  • webapps
  • jsp
  • Saif El-Sherei
    2016-05-06

    Adobe Flash – MovieClip.duplicateMovieClip Use-After-Free

  • dos
  • windows
  • Google Security Research
    2016-05-06

    Adobe Flash (Multiple Scripts) – Use-After-Free When Rendering Displays (2)

  • dos
  • windows
  • Google Security Research
    2016-05-06

    DotNetNuke 07.04.00 – Administration Authentication Bypass

  • webapps
  • asp
  • Marios Nicolaides
    2016-05-06

    CIScan 1.00 – Hostname/IP Field Crash (PoC)

  • dos
  • windows
  • Irving Aguilar
    2016-05-06

    RPCScan 2.03 – Hostname/IP Field Crash (PoC)

  • dos
  • windows
  • Irving Aguilar
    2016-05-05

    Baidu Spark Browser 43.23.1000.476 – Address Bar URL Spoofing

  • dos
  • windows
  • liu zhu
    2016-05-04

    Linux Kernel (Ubuntu 16.04) – Reference Count Overflow Using BPF Maps

  • dos
  • linux
  • Google Security Research
    2016-05-04

    Linux Kernel 4.4.x (Ubuntu 16.04) – ‘double-fdput()’ bpf(BPF_PROG_LOAD) Privilege Escalation

  • local
  • linux
  • Google Security Research
    2016-05-04

    Linux Kernel (Ubuntu 14.04.3) – ‘perf_event_open()’ Can Race with execve() (Access /etc/shadow)

  • local
  • linux
  • Google Security Research
    2016-05-04

    WordPress Plugin Ninja Forms 2.9.36 < 2.9.42 - File Upload (Metasploit)

  • webapps
  • multiple
  • Metasploit
    2016-05-04

    McAfee LiveSafe 14.0 – Relocations Processing Memory Corruption

  • dos
  • windows
  • Google Security Research
    2016-05-04

    Zabbix Agent 3.0.1 – ‘mysql.size’ Shell Command Injection

  • local
  • linux
  • Timo Lindfors
    2016-05-04

    OpenSSL – Padding Oracle in AES-NI CBC MAC Check

  • dos
  • multiple
  • Juraj Somorovsky
    2016-05-04

    ImageMagick 7.0.1-0 / 6.9.3-9 – ‘ImageTragick ‘ Multiple Vulnerabilities

  • dos
  • multiple
  • Nikolay Ermishkin
    2016-05-04

    Imagick 3.3.0 (PHP 5.4) – disable_functions Bypass

  • webapps
  • php
  • RicterZ
    2016-05-04

    IPFire < 2.19 Core Update 101 - Remote Command Execution

  • webapps
  • cgi
  • Yann CAM
    2016-05-04

    TRN Threaded USENET News Reader 3.6-23 – Local Stack Overflow

  • local
  • linux
  • Juan Sacco
    2016-05-04

    NetCommWireless HSPA 3G10WVE Wireless Router – Multiple Vulnerabilities

  • webapps
  • cgi
  • Bhadresh Patel
    2016-05-04

    WordPress Plugin Acunetix WP Security Plugin 3.0.3 – Cross-Site Scripting

  • webapps
  • php
  • Johto Robbie
    2016-05-04

    CMS Made Simple < 1.12.1 / < 2.1.3 - Web Server Cache Poisoning

  • webapps
  • php
  • Mickaël Walter
    2016-05-04

    Alibaba Clone B2B Script – Admin Authentication Bypass

  • webapps
  • php
  • Meisam Monsef
    2016-05-02

    Apache Struts – Dynamic Method Invocation Remote Code Execution (Metasploit)

  • remote
  • linux
  • Metasploit