Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2015-08-18

WordPress Plugin WP Symposium 15.1 – Blind SQL Injection

  • webapps
  • php
  • dxw
    2015-08-18

    BigTree CMS 4.2.3 – (Authenticated) SQL Injection

  • webapps
  • php
  • Curesec Research Team
    2015-08-18

    CodoForum 3.3.1 – Multiple SQL Injections

  • webapps
  • php
  • Curesec Research Team
    2015-08-18

    PHPfileNavigator 2.3.3 – Privilege Escalation

  • webapps
  • php
  • hyp3rlinx
    2015-08-18

    PHPfileNavigator 2.3.3 – Cross-Site Request Forgery

  • webapps
  • php
  • hyp3rlinx
    2015-08-18

    PHPfileNavigator 2.3.3 – Cross-Site Scripting

  • webapps
  • php
  • hyp3rlinx
    2015-08-17

    Apache ActiveMQ 5.11.1/5.13.2 – Directory Traversal / Command Execution

  • remote
  • windows
  • David Jorm
    2015-08-17

    Nuts CMS – PHP Remote Code Injection / Execution

  • webapps
  • php
  • Yakir Wizman
    2015-08-17

    Sagemcom F@ST 3864 V2 – Get Admin Password

  • webapps
  • hardware
  • Cade Bull
    2015-08-17

    Microsoft Windows HTA (HTML Application) – Remote Code Execution (MS14-064)

  • remote
  • windows
  • Mohammad Reza Espargham
    2015-08-17

    MASM321 11 Quick Editor ‘.qeditor’ 4.0g – ‘.qse’ File Buffer Overflow (SEH) (ASLR + SafeSEH Bypass)

  • local
  • windows
  • St0rn
    2015-08-17

    XMPlay 3.8.1.12 – ‘.pls’ Local Crash (PoC)

  • dos
  • windows
  • St0rn
    2015-08-15

    TOTOLINK Routers – Backdoor / Remote Code Execution

  • webapps
  • hardware
  • MadMouse
    2015-08-15

    Gkplugins Picasaweb – Download File

  • webapps
  • php
  • TMT zno
    2015-08-15

    Security IP Camera Star Vision DVR – Authentication Bypass

  • webapps
  • hardware
  • Meisam Monsef
    2015-08-15

    NetKit FTP Client (Ubuntu 14.04) – Crash/Denial of Service (PoC)

  • dos
  • linux
  • TUNISIAN CYBER
    2015-08-15

    Ability FTP Server 2.1.4 – Admin Panel ‘AUTHCODE’ Remote Denial of Service

  • dos
  • windows
  • St0rn
    2015-08-15

    Ability FTP Server 2.1.4 – ‘afsmain.exe’ ‘USER’ Remote Denial of Service

  • dos
  • windows
  • St0rn
    2015-08-15

    Joomla! Component com_informations – SQL Injection

  • webapps
  • php
  • Omar
    2015-08-15

    Joomla! Component com_memorix – SQL Injection

  • webapps
  • php
  • Omar
    2015-08-15

    Mozilla Firefox < 39.03 - 'pdf.js' Same Origin Policy

  • local
  • multiple
  • Tantaryu MING
    2015-08-15

    Microsoft HTML Help Compiler 4.74.8702.0 – Local Overflow (SEH)

  • local
  • windows
  • St0rn
    2015-08-13

    Microsoft Windows 8.1 – DCOM DCE/RPC Local NTLM Reflection Privilege Escalation (MS15-076)

  • local
  • windows
  • monoxgas
    2015-08-13

    Joomla! Component com_jem 2.1.4 – Multiple Vulnerabilities

  • webapps
  • multiple
  • Martino Sani
    2015-08-13

    Google Chrome 43.0 – Certificate MIME Handling Integer Overflow

  • dos
  • multiple
  • Paulos Yibelo
    2015-08-13

    Zend Framework 2.4.2 – PHP FPM XML eXternal Entity Injection

  • webapps
  • multiple
  • Dawid Golunski
    2015-08-12

    PDF Shaper 3.5 – Local Buffer Overflow (Metasploit)

  • local
  • windows
  • metacom
    2015-08-12

    NeuroServer 0.7.4 – EEG TCP/IP Transceiver Remote Denial of Service

  • dos
  • linux
  • nitr0us
    2015-08-12

    Geoserver < 2.7.1.1 / < 2.6.4 / < 2.5.5.1 - XML External Entity

  • webapps
  • multiple
  • David Bloom
    2015-08-12

    Microsoft Windows Server 2003 SP2 – TCP/IP IOCTL Privilege Escalation (MS14-070)

  • local
  • windows
  • Tomislav Paskalev
    2015-08-12

    Microsoft Internet Explorer – CTreeNode::GetCascadedLang Use-After-Free (MS15-079)

  • dos
  • windows
  • Blue Frost Security GmbH
    2015-08-12

    NetServe FTP Client 1.0 – Local Denial of Service

  • dos
  • windows
  • Un_N0n
    2015-08-12

    Printer Pro 5.4.3 IOS – Persistent Cross-Site Scripting

  • webapps
  • ios
  • Taurus Omar
    2015-08-10

    WordPress Plugin Candidate Application Form 1.0 – Arbitrary File Download

  • webapps
  • php
  • Larry W. Cashdollar
    2015-08-10

    WordPress Plugin Simple Image Manipulator 1.0 – Arbitrary File Download

  • webapps
  • php
  • Larry W. Cashdollar
    2015-08-10

    WordPress Plugin Recent Backups 0.7 – Arbitrary File Download

  • webapps
  • php
  • Larry W. Cashdollar
    2015-08-10

    WordPress Plugin WPTF Image Gallery 1.03 – Arbitrary File Download

  • webapps
  • php
  • Larry W. Cashdollar
    2015-08-10

    WDS CMS – SQL Injection

  • webapps
  • php
  • Ismail Marzouk
    2015-08-10

    Havij Pro – Crash (PoC)

  • dos
  • windows
  • i_7e1
    2015-08-09

    Netsparker 2.3.x – Remote Code Execution

  • remote
  • windows
  • Hesam Bazvand
    2015-08-09

    WordPress Plugin Video Gallery 2.7 – SQL Injection

  • webapps
  • php
  • Kacper Szurek
    2015-08-08

    Brasero – Crash (PoC)

  • dos
  • linux
  • Mohammad Reza Espargham
    2015-08-08

    Apple Mac OSX Keychain – EXC_BAD_ACCESS Denial of Service

  • dos
  • osx
  • Juan Sacco
    2015-08-07

    PHP News Script 4.0.0 – SQL Injection

  • webapps
  • php
  • Meisam Monsef
    2015-08-07

    Froxlor Server Management Panel 0.9.33.1 – MySQL Login Information Disclosure

  • webapps
  • php
  • Dustin Dörr
    2015-08-07

    Linux Kernel (x86) – Memory Sinkhole Privilege Escalation

  • local
  • linux_x86
  • Christopher Domas
    2015-08-07

    Dell Netvault Backup 10.0.1.24 – Denial of Service

  • dos
  • windows
  • Josep Pi Rodriguez
    2015-08-07

    WordPress Plugin Job Manager 0.7.22 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Owais Mehtab
    2015-08-07

    Heroes of Might and Magic III – ‘.h3m’ Map file Buffer Overflow (Metasploit)

  • local
  • windows
  • Metasploit
    2015-08-07

    Microweber 1.0.3 – Arbitrary File Upload / Filter Bypass / PHP Remote Code Execution

  • webapps
  • php
  • LiquidWorm