Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2023-04-06

Auto Dealer Management System 1.0 – Broken Access Control Exploit

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    Purchase Order Management-1.0 – Local File Inclusion

  • webapps
  • php
  • nu11secur1ty
    2023-04-06

    ChurchCRM v4.5.3-121fcc1 – SQL Injection

  • webapps
  • php
  • nu11secur1ty
    2023-04-06

    Best pos Management System v1.0 – Remote Code Execution (RCE) on File Upload

  • webapps
  • php
  • Ahmed Ismail
    2023-04-06

    WIMAX SWC-5100W Firmware V(1.11.0.1 :1.9.9.4) – Authenticated RCE

  • remote
  • hardware
  • Momen Eldawakhly
    2023-04-06

    flatnux 2021-03.25 – Remote Code Execution (Authenticated)

  • webapps
  • php
  • Ömer Hasan Durmuş
    2023-04-06

    Best pos Management System v1.0 – SQL Injection

  • webapps
  • php
  • Ahmed Ismail
    2023-04-06

    HospitalRun 1.0.0-beta – Local Root Exploit for macOS

  • local
  • macos
  • Jean Pereira
    2023-04-06

    ABUS Security Camera TVIP 20000-21150 – LFI, RCE and SSH Root Access

  • remote
  • hardware
  • d1g@segfault.net
    2023-04-06

    Kimai-1.30.10 – SameSite Cookie-Vulnerability session hijacking

  • webapps
  • php
  • nu11secur1ty
    2023-04-06

    Unified Remote 3.13.0 – Remote Code Execution (RCE)

  • remote
  • windows
  • H4rk3nz0
    2023-04-06

    pdfkit v0.8.7.2 – Command Injection

  • local
  • ruby
  • UNICORD
    2023-04-06

    POLR URL 2.3.0 – Shortener Admin Takeover

  • webapps
  • php
  • p4kl0nc4t
    2023-04-06

    Mitel MiCollab AWV 8.1.2.4 and 9.1.3 – Directory Traversal and LFI

  • webapps
  • cgi
  • Kahvi-0
    2023-04-06

    Simple Food Ordering System v1.0 – Cross-Site Scripting (XSS)

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    modoboa 2.0.4 – Admin TakeOver

  • webapps
  • Python
  • 7h3h4ckv157
    2023-04-06

    Agilebio Lab Collector Electronic Lab Notebook v4.234 – Remote Code Execution (RCE)

  • webapps
  • php
  • Anthony Cole
    2023-04-06

    Music Gallery Site v1.0 – SQL Injection on page Master.php

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    LDAP Tool Box Self Service Password v1.5.2 – Account takeover

  • webapps
  • php
  • Tahar BENNACEF
    2023-04-06

    Osprey Pump Controller 1.0.1 – (eventFileSelected) Command Injection

  • remote
  • hardware
  • LiquidWorm
    2023-04-06

    Music Gallery Site v1.0 – SQL Injection on page view_music_details.php

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    Intern Record System v1.0 – SQL Injection (Unauthenticated)

  • webapps
  • php
  • Hamdi Sevben
    2023-04-06

    Osprey Pump Controller 1.0.1 – Unauthenticated Remote Code Execution Exploit

  • remote
  • hardware
  • LiquidWorm
    2023-04-06

    Music Gallery Site v1.0 – Broken Access Control

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    Simple Task Managing System v1.0 – SQL Injection (Unauthenticated)

  • webapps
  • php
  • Hamdi Sevben
    2023-04-06

    Osprey Pump Controller 1.0.1 – Cross-Site Request Forgery

  • remote
  • hardware
  • LiquidWorm
    2023-04-06

    Music Gallery Site v1.0 – SQL Injection on music_list.php

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    Art Gallery Management System Project in PHP v 1.0 – SQL injection

  • webapps
  • php
  • Yogesh Verma
    2023-04-06

    Osprey Pump Controller 1.0.1 – Authentication Bypass Credentials Modification

  • remote
  • hardware
  • LiquidWorm
    2023-04-06

    Employee Task Management System v1.0 – SQL Injection on edit-task.php

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    atrocore 1.5.25 User interaction – Unauthenticated File upload – RCE

  • webapps
  • php
  • nu11secur1ty
    2023-04-06

    Osprey Pump Controller v1.0.1 – Unauthenticated Reflected XSS

  • remote
  • hardware
  • LiquidWorm
    2023-04-06

    Employee Task Management System v1.0 – SQL Injection on (task-details.php?task_id=?)

  • webapps
  • php
  • Muhammad Navaid Zafar Ansari
    2023-04-06

    Dompdf 1.2.1 – Remote Code Execution (RCE)

  • webapps
  • php
  • Ravindu Wickramasinghe
    2023-04-05

    ERPNext 12.29 – Cross-Site Scripting (XSS)

  • webapps
  • java
  • Patrick Dean Ramos / Nathu Nandwani / Junnair Manla
    2023-04-05

    Kardex Mlog MCC 5.7.12 – RCE (Remote Code Execution)

  • remote
  • windows
  • Patrick Hener
    2023-04-05

    BTCPay Server v1.7.4 – HTML Injection

  • webapps
  • multiple
  • Manojkumar J
    2023-04-05

    projectSend r1605 – Remote Code Exectution RCE

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-04-05

    itech TrainSmart r1044 – SQL injection

  • webapps
  • php
  • Adrian Bondocea
    2023-04-05

    Secure Web Gateway 10.2.11 – Cross-Site Scripting (XSS)

  • webapps
  • multiple
  • RedTeam Pentesting GmbH
    2023-04-05

    GNU screen v4.9.0 – Privilege Escalation

  • local
  • linux
  • Manuel Andreas
    2023-04-05

    PhotoShow 3.0 – Remote Code Execution

  • webapps
  • php
  • LSCP Responsible Disclosure Lab
    2023-04-05

    Responsive FileManager 9.9.5 – Remote Code Execution (RCE)

  • webapps
  • php
  • Galoget Latorre
    2023-04-05

    Control Web Panel 7 (CWP7) v0.9.8.1147 – Remote Code Execution (RCE)

  • webapps
  • php
  • Mayank Deshmukh
    2023-04-05

    Binwalk v2.3.2 – Remote Command Execution (RCE)

  • remote
  • Python
  • Etienne Lacoche
    2023-04-05

    XWorm Trojan 2.1 – Null Pointer Derefernce DoS

  • dos
  • windows
  • TOUHAMI Kasbaoui
    2023-04-05

    Dell EMC Networking PC5500 firmware versions 4.1.0.22 and Cisco Sx / SMB – Information Disclosure

  • remote
  • hardware
  • Ken Pyle
    2023-04-05

    Provide Server v.14.4 XSS – CSRF & Remote Code Execution (RCE)

  • webapps
  • multiple
  • Andreas Finstad
    2023-04-05

    PostgreSQL 9.6.1 – Remote Code Execution (RCE) (Authenticated)

  • remote
  • multiple
  • Paulo Trindade
    2023-04-05

    Froxlor 2.0.3 Stable – Remote Code Execution (RCE)

  • webapps
  • php
  • Askar