Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2015-10-02

FTGate 7 – Cross-Site Request Forgery

  • webapps
  • windows
  • hyp3rlinx
    2015-10-02

    FTGate 2009 Build 6.4.00 – Multiple Vulnerabilities

  • webapps
  • windows
  • hyp3rlinx
    2015-10-01

    Apple Mac OSX 10.9.5/10.10.5 – ‘rsh/libmalloc’ Local Privilege Escalation

  • local
  • osx
  • rebel
    2015-10-01

    PIXORD Vehicle 3G Wi-Fi Router 3GR-431P – Multiple Vulnerabilities

  • remote
  • hardware
  • Karn Ganeshen
    2015-10-01

    Bosch Security Systems Dinion NBN-498 – Web Interface XML Injection

  • webapps
  • hardware
  • neom22
    2015-09-30

    MakeSFX.exe 1.44 – Local Stack Buffer Overflow

  • local
  • windows
  • hyp3rlinx
    2015-09-30

    Dropbox < 3.3.x - OSX FinderLoadBundle Privilege Escalation

  • local
  • osx
  • cenobyte
    2015-09-29

    Western Digital My Cloud 04.01.03-421/04.01.04-422 – Command Injection

  • webapps
  • hardware
  • absane
    2015-09-29

    IconLover 5.42 – Local Buffer Overflow

  • local
  • windows
  • cor3sm4sh3r
    2015-09-29

    Apport 2.19 (Ubuntu 15.04) – Local Privilege Escalation

  • local
  • linux
  • halfdog
    2015-09-29

    ManageEngine EventLog Analyzer – Remote Code Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-09-29

    Kaseya Virtual System Administrator (VSA) – Multiple Vulnerabilities (2)

  • webapps
  • asp
  • Pedro Ribeiro
    2015-09-28

    Adobe Flash – ‘uint’ Capacity Field

  • dos
  • windows
  • Google Security Research
    2015-09-28

    Watchguard XCS – FixCorruptMail Privilege Escalation (Metasploit)

  • local
  • bsd
  • Metasploit
    2015-09-28

    Watchguard XCS – Remote Command Execution (Metasploit)

  • remote
  • bsd
  • Metasploit
    2015-09-28

    vTiger CRM 6.3.0 – (Authenticated) Remote Code Execution

  • webapps
  • php
  • Benjamin Daniel Mussler
    2015-09-28

    BMC Track-It! 11.4 – Multiple Vulnerabilities

  • webapps
  • windows
  • Pedro Ribeiro
    2015-09-28

    Adobe Acrobat Reader – AFParseDate JavaScript API Restrictions Bypass

  • dos
  • windows
  • Reigning Shells
    2015-09-28

    Kaseya Virtual System Administrator (VSA) 7.0 < 9.1 - (Authenticated) Arbitrary File Upload

  • webapps
  • asp
  • Pedro Ribeiro
    2015-09-28

    Photos in Wifi 1.0.1 iOS – Arbitrary File Upload

  • webapps
  • ios
  • Vulnerability-Lab
    2015-09-28

    My.WiFi USB Drive 1.0 iOS – Local File Inclusion

  • webapps
  • ios
  • Vulnerability-Lab
    2015-09-28

    BisonWare BisonFTP Server 3.5 – Directory Traversal

  • remote
  • windows
  • Jay Turla
    2015-09-28

    PCMan FTP Server 2.0.7 – Directory Traversal

  • remote
  • windows
  • Jay Turla
    2015-09-28

    Centreon 2.6.1 – Multiple Vulnerabilities

  • webapps
  • php
  • LiquidWorm
    2015-09-28

    Mango Automation 2.6.0 – Multiple Vulnerabilities

  • webapps
  • jsp
  • LiquidWorm
    2015-09-28

    Telegram 3.2 – Input Length Handling Crash (PoC)

  • dos
  • ios
  • Mohammad Reza Espargham
    2015-09-28

    Git 1.9.5 – ‘ssh-agent.exe’ Buffer Overflow (PoC)

  • dos
  • windows
  • hyp3rlinx
    2015-09-25

    FreshFTP 5.52 – ‘.qfl’ Crash (PoC)

  • dos
  • windows
  • Un_N0n
    2015-09-25

    FortiManager 5.2.2 – Persistent Cross-Site Scripting

  • webapps
  • cgi
  • hyp3rlinx
    2015-09-25

    X2Engine 4.2 – Arbitrary File Upload

  • webapps
  • php
  • Portcullis
    2015-09-25

    X2Engine 4.2 – Cross-Site Request Forgery

  • webapps
  • php
  • Portcullis
    2015-09-25

    WinRar 5.21 – SFX OLE Command Execution

  • local
  • windows
  • R-73eN
    2015-09-24

    Microsoft Windows Kernel – ‘NtGdiBitBlt’ Buffer Overflow (MS15-097)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-24

    SMF (Simple Machine Forum) 2.0.10 – Remote Memory Exfiltration

  • webapps
  • php
  • Filippo Roncari
    2015-09-23

    refbase 0.9.6 – Multiple Vulnerabilities

  • webapps
  • php
  • Mohab Ali
    2015-09-23

    Cisco AnyConnect 3.1.08009 – Local Privilege Escalation (via DMG Install Script)

  • local
  • osx
  • Yorick Koster
    2015-09-23

    w3tw0rk / Pitbul IRC Bot – Remote Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2015-09-22

    Kaspersky AntiVirus – ExeCryptor Parsing Memory Corruption

  • dos
  • windows
  • Google Security Research
    2015-09-22

    Microsoft Windows Kernel – ‘DeferWindowPos’ Use-After-Free (MS15-073)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-22

    Kaspersky AntiVirus – VB6 Parsing Integer Overflow

  • dos
  • windows
  • Google Security Research
    2015-09-22

    Microsoft Windows Kernel – Bitmap Handling Use-After-Free (MS15-061) (2)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-22

    Microsoft Windows Kernel – ‘NtGdiStretchBlt’ Pool Buffer Overflow (MS15-097)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-22

    Apple qlmanage – SceneKit::daeElement::setElementName Heap Overflow

  • dos
  • osx
  • Google Security Research
    2015-09-22

    Kirby CMS 2.1.0 – Cross-Site Request Forgery / Content Upload / PHP Script Execution

  • webapps
  • php
  • Dawid Golunski
    2015-09-22

    Microsoft Windows Kernel – Use-After-Free with Printer Device Contexts (MS15-097)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-22

    Apple Mac OSX Regex Engine (TRE) – Stack Buffer Overflow (PoC)

  • dos
  • osx
  • Google Security Research
    2015-09-22

    Microsoft Windows Kernel – Use-After-Free with Cursor Object (MS15-097)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-22

    Apple Mac OSX Regex Engine (TRE) – Integer Signedness / Overflow

  • dos
  • osx
  • Google Security Research
    2015-09-22

    Microsoft Windows Kernel – ‘bGetRealizedBrush’ Use-After-Free (MS15-097)

  • dos
  • windows_x86
  • Nils Sommer
    2015-09-22

    SAP NetWeaver < 7.01 - XML External Entity Injection

  • webapps
  • xml
  • Lukasz Miedzinski