libquicktime 1.2.4 – Integer Overflow
#!/usr/bin/env python
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
#!/usr/bin/env python
RCE Security Advisory
Document Title:
#-*- coding: utf-8 -*-
Source: https://code.google.com/p/google-security-research/issues/detail?id=656
Source: https://code.google.com/p/google-security-research/issues/detail?id=654
Source: https://code.google.com/p/google-security-research/issues/detail?id=648
-----BEGIN PGP SIGNED MESSAGE-----
Source: http://www.halfdog.net/Security/2015/PtChownArbitraryPtsAccessViaUserNamespace/
Source: https://xairy.github.io/blog/2016/cve-2016-2384
PEAR LiveUser Arbitrary File Access
Title: SOLIDserver
#!/usr/bin/python
# Exploit Title: STIMS BUFFER OVERFLOW SEH OVERWRITE
# Exploit Title: STIMS CUTTER OVERFLOW SEH OVERWRITE
Document Title:
Document Title:
# Exploit Title: QuickHeal webssx.sys driver DOS vulnerability
Source: https://code.google.com/p/google-security-research/issues/detail?id=640
================================================================
Source: http://www.halfdog.net/Security/2016/AufsPrivilegeEscalationInUserNamespaces/
Geeklog Multiple Vulnerabilities
# Exploit Title :Vesta Control Panel
=============================================================================
ADOdb Cross Site Scripting
Inductive Automation Ignition 7.8.1 Remote Leakage Of Shared Buffers
# Exploit Title: JMX2 Email Tester - Web Shell Upload(save_email.php)
# Exploit Title: OCS Inventory NG
=== LSE Leading Security Experts GmbH - Security Advisory 2016-01-18 ===
Source: https://code.google.com/p/google-security-research/issues/detail?id=630
Source: https://code.google.com/p/google-security-research/issues/detail?id=701
Source: https://code.google.com/p/google-security-research/issues/detail?id=698
Source: https://code.google.com/p/google-security-research/issues/detail?id=667
Source: https://code.google.com/p/google-security-research/issues/detail?id=632
Source: https://code.google.com/p/google-security-research/issues/detail?id=635
Source: https://code.google.com/p/google-security-research/issues/detail?id=633
Source: https://code.google.com/p/google-security-research/issues/detail?id=609
===================================================================================
===================================================================================
# Exploit Title: Wordpress ALO EasyMail Newsletter plugin cross-site request forgery vulnerability
[+] Credits: hyp3rlinx
[+] Credits: hyp3rlinx
## CVE-2018-4878 (flash exploit)
# Exploit Title: Windows Kerberos Security Feature Bypass
#!/usr/bin/env python
# Exploit Title: Alternate Pic View 2.150 PGM CRASH POC
Ntpd buf, ctx->in);
# Exploit Title: MS14-040 - AFD.SYS Dangling Pointer