Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2015-09-15

Microsoft Windows – CreateObjectTask TileUserBroker Privilege Escalation

  • local
  • windows
  • Google Security Research
    2015-09-15

    Microsoft Windows Task Scheduler – ‘DeleteExpiredTaskAfter’ File Deletion Privilege Escalation

  • local
  • windows
  • Google Security Research
    2015-09-15

    Microsoft Windows – NtUserGetClipboardAccessToken Token Leak (MS15-023)

  • local
  • windows
  • Google Security Research
    2015-09-15

    Microsoft Windows 10 (Build 10130) – User Mode Font Driver Thread Permissions Privilege Escalation

  • local
  • windows
  • Google Security Research
    2015-09-15

    Silver Peak VXOA < 6.2.11 - Multiple Vulnerabilities

  • webapps
  • php
  • Security-Assessment.com
    2015-09-15

    CMS Bolt – Arbitrary File Upload (Metasploit)

  • remote
  • php
  • Metasploit
    2015-09-15

    Microsoft Windows Media Center – MCL (MS15-100) (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-09-15

    Openfire 3.10.2 – Cross-Site Request Forgery

  • webapps
  • jsp
  • hyp3rlinx
    2015-09-15

    Openfire 3.10.2 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • jsp
  • hyp3rlinx
    2015-09-15

    Openfire 3.10.2 – Privilege Escalation

  • webapps
  • jsp
  • hyp3rlinx
    2015-09-14

    IKEView.exe R60 – Stack Buffer Overflow (PoC)

  • dos
  • windows
  • hyp3rlinx
    2015-09-14

    WordPress Plugin EZ SQL Reports < 4.11.37 - Multiple Vulnerabilities

  • webapps
  • php
  • Felipe Molina
    2015-09-14

    ManageEngine OpManager 11.5 – Multiple Vulnerabilities

  • webapps
  • multiple
  • xistence
    2015-09-14

    ManageEngine EventLog Analyzer < 10.6 build 10060 - SQL Execution

  • webapps
  • multiple
  • xistence
    2015-09-13

    IKEView.exe Fox Beta 1 – Stack Buffer Overflow (PoC)

  • dos
  • windows
  • hyp3rlinx
    2015-09-11

    Microsoft Windows Media Center – Command Execution (MS15-100)

  • remote
  • windows
  • R-73eN
    2015-09-11

    Monsta FTP 1.6.2 – Multiple Vulnerabilities

  • webapps
  • php
  • hyp3rlinx
    2015-09-11

    Logitech Webcam Software 1.1 – ‘eReg.exe’ Local Buffer Overflow (SEH Unicode)

  • local
  • windows
  • Robbie Corley
    2015-09-11

    Microsoft Internet Explorer 11 – Stack Underflow Crash (PoC)

  • dos
  • windows
  • Mjx
    2015-09-11

    OpenLDAP 2.4.42 – ber_get_next Denial of Service

  • dos
  • linux
  • Denis Andzakovic
    2015-09-10

    Octogate UTM 3.0.12 – Admin Interface Directory Traversal

  • webapps
  • php
  • Oliver Karow
    2015-09-10

    Synology Video Station 1.5-0757 – Multiple Vulnerabilities

  • webapps
  • cgi
  • Han Sahin
    2015-09-10

    PHP 5.5.9 – ‘zend_executor_globals’ ‘CGIMode FPM WriteProcMemFile’ disable_functions Bypass / Load Dynamic Library

  • webapps
  • php
  • ylbhz
    2015-09-10

    Apple Mac OSX – Install.framework suid Helper Privilege Escalation

  • local
  • osx
  • Google Security Research
    2015-09-10

    Apple Mac OSX Install.Framework – Arbitrary mkdir / unlink and chown to Admin Group

  • local
  • osx
  • Google Security Research
    2015-09-10

    Apple Mac OSX Install.Framework – SUID Root Runner Binary Privilege Escalation

  • local
  • osx
  • Google Security Research
    2015-09-09

    Qlikview 11.20 SR11 – Blind XML External Entity Injection

  • webapps
  • xml
  • Alex Haynes
    2015-09-09

    PHP 5.4/5.5/5.6 – ‘Unserialize()’ Use-After-Free

  • dos
  • php
  • Taoguang Chen
    2015-09-09

    Google Android – ‘Stagefright’ Remote Code Execution

  • remote
  • android
  • Joshua J. Drake
    2015-09-09

    PHP Session Deserializer – Use-After-Free

  • dos
  • php
  • Taoguang Chen
    2015-09-09

    PHP 5.4/5.5/5.6 – SplObjectStorage ‘Unserialize()’ Use-After-Free

  • dos
  • php
  • Taoguang Chen
    2015-09-09

    PHP GMP – ‘unserialize()’ Use-After-Free

  • dos
  • php
  • Taoguang Chen
    2015-09-09

    PHP 5.4/5.5/5.6 – SplDoublyLinkedList ‘Unserialize()’ Use-After-Free

  • dos
  • php
  • Taoguang Chen
    2015-09-09

    Auto-Exchanger 5.1.0 – Cross-Site Request Forgery

  • webapps
  • php
  • Aryan Bayaninejad
    2015-09-08

    DirectAdmin Web Control Panel 1.483 – Multiple Vulnerabilities

  • webapps
  • php
  • Ashiyane Digital Security Team
    2015-09-08

    Advantech Webaccess 8.0 / 3.4.3 – ActiveX Multiple Vulnerabilities

  • dos
  • windows
  • Praveen Darshanam
    2015-09-08

    Cisco Sourcefire User Agent 2.2 – Insecure File Permissions

  • local
  • windows
  • Glafkos Charalambous
    2015-09-08

    IBM AIX High Availability Cluster Multiprocessing (HACMP) – Local Privilege Escalation

  • local
  • aix
  • Kristian Erik Hermansen
    2015-09-08

    WordPress Theme White-Label Framework 2.0.6 – Cross-Site Scripting

  • webapps
  • php
  • Outlasted
    2015-09-07

    JSPMySQL Administrador – Multiple Vulnerabilities

  • webapps
  • jsp
  • hyp3rlinx
    2015-09-07

    Netgear Wireless Management System 2.1.4.15 (Build 1236) – Privilege Escalation

  • webapps
  • hardware
  • Elliott Lewis
    2015-09-07

    Endian Firewall – Password Change Command Injection (Metasploit)

  • remote
  • linux
  • Metasploit
    2015-09-07

    VeryPDF HTML Converter 2.0 – Local Buffer Overflow (SEH/ToLower() Bypass)

  • local
  • windows
  • Robbie Corley
    2015-09-06

    Elastix < 2.5 - PHP Code Injection

  • webapps
  • php
  • i-Hmx
    2015-09-06

    FireEye Appliance – Unauthorized File Disclosure

  • webapps
  • php
  • Kristian Erik Hermansen
    2015-09-06

    Disconnect.me Mac OSX Client 2.0 – Local Privilege Escalation

  • local
  • osx
  • Kristian Erik Hermansen
    2015-09-06

    AutoCAD DWG and DXF To PDF Converter 2.2 – Local Buffer Overflow

  • local
  • windows
  • Robbie Corley
    2015-09-06

    WordPress Plugin Contact Form Generator 2.0.1 – Multiple Cross-Site Request Forgery Vulnerabilities

  • webapps
  • php
  • i0akiN SEC-LABORATORY
    2015-09-06

    ActiveState Perl.exe x64 Client 5.20.2 – Crash (PoC)

  • dos
  • windows_x86-64
  • Robbie Corley
    2015-09-04

    HooToo Tripmate HT-TM01 2.000.022 – Cross-Site Request Forgery

  • webapps
  • hardware
  • Ken Smith