Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2015-11-04

FreeType 2.6.1 – TrueType tt_cmap14_validate Parsing Heap Out-of-Bounds Reads

  • dos
  • linux
  • Google Security Research
    2015-11-03

    Samsung Galaxy S6 – android.media.process Face Recognition Memory Corruption

  • dos
  • android
  • Google Security Research
    2015-11-03

    Samsung Galaxy S6 Samsung Gallery – GIF Parsing Crash

  • dos
  • android
  • Google Security Research
    2015-11-03

    Gold MP4 Player – ‘.swf’ Local Overflow

  • local
  • windows
  • Vivek Mahajan
    2015-11-03

    Python 3.3 < 3.5 - 'product_setstate()' Out-of-Bounds Read

  • dos
  • windows
  • John Leitch
    2015-11-03

    Python 2.7 – ‘strop.replace()’ Method Integer Overflow

  • dos
  • windows
  • John Leitch
    2015-11-03

    Python 2.7 – ‘array.fromstring’ Method Use-After-Free

  • dos
  • multiple
  • John Leitch
    2015-11-03

    Python 2.7 hotshot Module – ‘pack_string’ Heap Buffer Overflow (PoC)

  • dos
  • windows
  • John Leitch
    2015-11-03

    Samsung – libQjpeg Image Decoding Memory Corruption

  • dos
  • android
  • Google Security Research
    2015-11-03

    Samsung Galaxy S6 Samsung Gallery – Bitmap Decoding Crash

  • dos
  • android
  • Google Security Research
    2015-11-03

    Samsung Galaxy S6 – libQjpeg DoIntegralUpsample Crash

  • dos
  • android
  • Google Security Research
    2015-11-02

    TCPing 2.1.0 – Local Buffer Overflow

  • local
  • windows
  • hyp3rlinx
    2015-11-02

    actiTIME 2015.2 – Multiple Vulnerabilities

  • webapps
  • windows
  • LiquidWorm
    2015-11-02

    Sam Spade 1.14 – Scan Addresses Buffer Overflow

  • local
  • windows
  • VIKRAMADITYA
    2015-11-02

    Sam Spade 1.14 – Crawl Website Buffer Overflow

  • local
  • windows
  • MandawCoder
    2015-11-02

    Symantec pcAnywhere 12.5.0 (Windows x86) – Remote Code Execution

  • remote
  • windows_x86
  • Tomislav Paskalev
    2015-10-30

    Pligg CMS 2.0.2 – Cross-Site Request Forgery / Code Execution

  • webapps
  • php
  • Curesec Research Team
    2015-10-30

    Pligg CMS 2.0.2 – Directory Traversal

  • webapps
  • php
  • Curesec Research Team
    2015-10-30

    Pligg CMS 2.0.2 – Multiple SQL Injections

  • webapps
  • php
  • Curesec Research Team
    2015-10-30

    AIX 7.1 – ‘lquerylv’ Local Privilege Escalation

  • local
  • aix
  • S2 Crew
    2015-10-30

    Hitron Router CGN3ACSMR 4.5.8.16 – Arbitrary Code Execution

  • webapps
  • hardware
  • Dolev Farhi
    2015-10-30

    PHP Server Monitor 3.1.1 – Cross-Site Request Forgery / Privilege Escalation

  • webapps
  • php
  • hyp3rlinx
    2015-10-30

    eBay Magento 1.9.2.1 – PHP FPM XML eXternal Entity Injection

  • webapps
  • php
  • Dawid Golunski
    2015-10-30

    PHP Server Monitor 3.1.1 – Multiple Cross-Site Request Forgery Vulnerabilities

  • webapps
  • php
  • hyp3rlinx
    2015-10-30

    Oxwall 1.7.4 – Cross-Site Request Forgery

  • webapps
  • php
  • High-Tech Bridge SA
    2015-10-30

    Microsoft Windows – NtCreateLowBoxToken Handle Capture Local Denial of Service / Privilege Escalation (MS15-111)

  • dos
  • windows
  • Google Security Research
    2015-10-29

    NetUSB – Kernel Stack Buffer Overflow

  • dos
  • hardware
  • Adrián Ruiz Bermudo
    2015-10-29

    Joomla! Component com_jnews 8.5.1 – SQL Injection

  • webapps
  • php
  • Omer Ramić
    2015-10-29

    Sam Spade 1.14 – Scan From IP Address Field Overflow Crash (SEH) (PoC)

  • dos
  • windows
  • Luis Martínez
    2015-10-28

    Samsung – SecEmailComposer QUICK_REPLY_BACKGROUND Permissions

  • dos
  • android
  • Google Security Research
    2015-10-28

    Samsung fimg2d – FIMG2D_BITBLT_BLIT ioctl Concurrency Flaw

  • dos
  • android
  • Google Security Research
    2015-10-28

    Samsung – ‘seiren’ Kernel Driver Buffer Overflow

  • dos
  • android
  • Google Security Research
    2015-10-28

    Samsung – ‘m2m1shot’ Kernel Driver Buffer Overflow

  • dos
  • android
  • Google Security Research
    2015-10-28

    Samsung SecEmailUI – Script Injection

  • remote
  • android
  • Google Security Research
    2015-10-28

    Sagem FAST3304-V2 – Authentication Bypass (2)

  • webapps
  • hardware
  • Soufiane Alami Hassani
    2015-10-28

    JIRA and HipChat for JIRA Plugin – Velocity Template Injection

  • webapps
  • java
  • Chris Wood
    2015-10-27

    Th3 MMA – ‘mma.php’ Backdoor Arbitrary File Upload (Metasploit)

  • remote
  • php
  • Metasploit
    2015-10-27

    Apple Mac OSX 10.9.5/10.10.5 – ‘rsh/libmalloc’ Local Privilege Escalation (Metasploit)

  • local
  • osx
  • Metasploit
    2015-10-26

    Apple Safari – User-Assisted Applescript Exec Attack (Metasploit)

  • remote
  • osx
  • Metasploit
    2015-10-26

    Joomla! 3.2.x < 3.4.4 - SQL Injection

  • webapps
  • php
  • Manish Tanwar
    2015-10-26

    Microsoft Windows 10 – ‘pcap’ Driver Privilege Escalation

  • local
  • windows
  • Rootkitsmm
    2015-10-25

    Alreader 2.5 .fb2 – Based Stack Overflow (SEH) (ASLR + DEP Bypass)

  • local
  • windows
  • g00dv1n
    2015-10-23

    Subrion 3.x – Multiple Vulnerabilities

  • webapps
  • php
  • bRpsd
    2015-10-23

    Joomla! Component Realtyna RPL 8.9.2 – Persistent Cross-Site Scripting / Cross-Site Request Forgery

  • webapps
  • php
  • Bikramaditya Guha
    2015-10-23

    Joomla! Component Realtyna RPL 8.9.2 – Multiple SQL Injections

  • webapps
  • php
  • Bikramaditya Guha
    2015-10-23

    Easy File Sharing Web Server 7.2 – Remote Overflow (SEH)

  • remote
  • windows
  • Audit0r
    2015-10-22

    Beckhoff CX9020 CPU Module – Remote Code Execution

  • webapps
  • hardware
  • Photubias
    2015-10-22

    TeamSpeak Client 3.0.18.1 – Remote File Inclusion / Remote Code Execution

  • remote
  • windows
  • Scurippio
    2015-10-22

    The World Browser 3.0 Final – Remote Code Execution

  • remote
  • windows
  • Ehsan Noreddini
    2015-10-21

    Zpanel – Remote Code Execution (Metasploit)

  • remote
  • php
  • Metasploit