Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2016-07-25

Ubee EVW3226 Modem/Router 1.0.20 – Multiple Vulnerabilities

  • webapps
  • cgi
  • Gergely Eberhardt
    2016-07-25

    PHP 5.5.37/5.6.23/7.0.8 – ‘bzread()’ Out-of-Bounds Write

  • dos
  • php
  • Hans Jerry Illikainen
    2016-07-25

    PHP gettext 1.0.12 – ‘gettext.php’ Code Execution

  • webapps
  • php
  • kmkz
    2016-07-25

    GRR Système de Gestion et de Réservations de Ressources 3.0.0-RC1 – Arbitrary File Upload

  • webapps
  • php
  • kmkz
    2016-07-25

    CoolPlayer+ Portable 2.19.6 – ‘.m3u’ File Stack Overflow (Egghunter + ASLR Bypass)

  • local
  • windows
  • Karn Ganeshen
    2016-07-25

    CodoForum 3.2.1 – SQL Injection

  • webapps
  • php
  • Yakir Wizman
    2016-07-25

    Drupal Module CODER 2.5 – Remote Command Execution (Metasploit)

  • webapps
  • php
  • Mehmet Ince
    2016-07-25

    Mediacoder 0.8.43.5852 – ‘.m3u’ (SEH)

  • local
  • windows
  • Karn Ganeshen
    2016-07-25

    Barracuda Spam & Virus Firewall 5.1.3.007 – Remote Command Execution (Metasploit)

  • remote
  • linux
  • xort
    2016-07-23

    Drupal Module Coder < 7.x-1.3/7.x-2.6 - Remote Code Execution

  • remote
  • php
  • Raz0r
    2016-07-21

    TFTP Server 1.4 – ‘WRQ’ Remote Buffer Overflow (Egghunter)

  • remote
  • windows
  • Karn Ganeshen
    2016-07-21

    NetBSD – ‘mail.local(8)’ Local Privilege Escalation

  • local
  • bsd
  • akat1
    2016-07-21

    TeamPass Passwords Management System 2.1.26 – Arbitrary File Download

  • webapps
  • php
  • Hasan Emre Ozer
    2016-07-20

    Websphere/JBoss/OpenNMS/Symantec Endpoint Protection Manager – Java Deserialization Remote Code Execution

  • remote
  • multiple
  • Nikhil Sreekumar
    2016-07-20

    WordPress Plugin Video Player 1.5.16 – SQL Injection

  • webapps
  • php
  • David Vaartjes
    2016-07-20

    OpenSSH 7.2p2 – Username Enumeration

  • remote
  • linux
  • 0_o
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • multiple
  • LiquidWorm
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Cross-Site Request Forgery (Add Advanced Admin)

  • webapps
  • multiple
  • LiquidWorm
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Remote Privilege Escalation

  • webapps
  • multiple
  • LiquidWorm
    2016-07-20

    Wowza Streaming Engine 4.5.0 – Local Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2016-07-20

    Drupal Module RESTWS 7.x – PHP Remote Code Execution (Metasploit)

  • remote
  • php
  • Mehmet Ince
    2016-07-20

    Django CMS 3.3.0 – Editor Snippet Persistent Cross-Site Scripting

  • webapps
  • Python
  • Vulnerability-Lab
    2016-07-19

    newsp.eu PHP Calendar Script 1.0 – User Credentials Disclosure

  • webapps
  • php
  • Meisam Monsef
    2016-07-19

    NewsP Free News Script 1.4.7 – User Credentials Disclosure

  • webapps
  • php
  • Meisam Monsef
    2016-07-19

    Axis Communications MPQT/PACS 5.20.x – Server-Side Include Daemon Remote Format String

  • remote
  • multiple
  • bashis
    2016-07-18

    OpenSSHd 7.2p2 – Username Enumeration

  • remote
  • linux
  • Eddie Harari
    2016-07-17

    Meinberg NTP Time Server ELX800/GPS M4x V5.30p – Remote Command Execution / Escalate Privileges

  • remote
  • hardware
  • b0yd
    2016-07-15

    Clear Voyager Hotspot IMW-C910W – Arbitrary File Disclosure

  • webapps
  • cgi
  • Damaster
    2016-07-14

    Joomla! Component Guru Pro – ‘Itemid’ SQL Injection

  • webapps
  • php
  • s0nk3y
    2016-07-13

    Riverbed SteelCentral NetProfiler/NetExpress – Remote Code Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2016-07-13

    Microsoft Windows 7 < 10 / 2008 < 2012 (x86/x64) - Secondary Logon Handle Privilege Escalation (MS16-032) (Metasploit)

  • local
  • windows
  • Metasploit
    2016-07-13

    GSX Analyzer 10.12/11 – ‘main.swf’ Hard-Coded Superadmin Credentials

  • webapps
  • windows
  • ndevnull
    2016-07-13

    Adobe Flash Player 22.0.0.192 – TAG Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Flash Player 22.0.0.192 – SceneAndFrameData Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Flash Player 22.0.0.192 – DefineSprite Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Flash Player 22.0.0.192 – DefineBitsJPEG2 Memory Corruption

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (7)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (6)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (5)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (4)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (3)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (2)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Adobe Acrobat Reader DC 15.016.20045 – Invalid Font ‘.ttf’ Memory Corruption (1)

  • dos
  • multiple
  • COSIG
    2016-07-13

    Apache Archiva 1.3.9 – Multiple Cross-Site Request Forgery Vulnerabilities

  • webapps
  • xml
  • Julien Ahrens
    2016-07-11

    Clinic Management System – Blind SQL Injection

  • webapps
  • php
  • Yakir Wizman
    2016-07-11

    Beauty Parlour & SPA Saloon Management System – Blind SQL Injection

  • webapps
  • php
  • Yakir Wizman
    2016-07-11

    Tiki Wiki 15.1 – File Upload (Metasploit)

  • webapps
  • php
  • Mehmet Ince
    2016-07-11

    Adobe Flash – ATF Image Packing Overflow

  • dos
  • multiple
  • Google Security Research
    2016-07-11

    Adobe Flash – LMZA Property Decoding Heap Corruption

  • dos
  • multiple
  • Google Security Research
    2016-07-11

    Adobe Flash – JXR Processing Double-Free

  • dos
  • multiple
  • Google Security Research