Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2015-04-21

GoAutoDial CE 3.3-1406088000 – Authentication Bypass / Arbitrary File Upload / Command Injection

  • webapps
  • php
  • Chris McCurley
    2015-04-21

    WordPress Plugin Community Events 1.3.5 – SQL Injection

  • webapps
  • php
  • Hannes Trunde
    2015-04-21

    MediaSuite CMS – Artibary File Disclosure

  • webapps
  • php
  • KnocKout inj3ct0r
    2015-04-21

    ProFTPd 1.3.5 – ‘mod_copy’ Remote Command Execution

  • remote
  • linux
  • R-73eN
    2015-04-21

    WordPress Plugin Tune Library 1.5.4 – SQL Injection

  • webapps
  • php
  • Hannes Trunde
    2015-04-19

    AZBB < 1.0.07d - Multiple Vulnerabilities

  • webapps
  • php
  • GulfTech Security
    2015-04-17

    Oracle Hyperion Smart View for Office 11.1.2.3.000 – Crash (PoC)

  • dos
  • windows
  • sajith
    2015-04-17

    Apport 2.14.1 (Ubuntu 14.04.2) – Local Privilege Escalation

  • local
  • linux
  • Ricardo F. Teixeira
    2015-04-17

    Oracle – Outside-In ‘.DOCX’ File Parsing Memory Corruption

  • dos
  • windows
  • Francis Provencher
    2015-04-16

    WordPress Plugin Ajax Store Locator 1.2 – SQL Injection

  • webapps
  • php
  • Claudio Viviani
    2015-04-16

    Microsoft Windows – ‘HTTP.sys’ HTTP Request Parsing Denial of Service (MS15-034)

  • dos
  • windows
  • laurent gaffie
    2015-04-15

    WordPress Plugin MiwoFTP 1.0.5 – Arbitrary File Download (1)

  • webapps
  • php
  • Necmettin COSKUN
    2015-04-15

    Microsoft Windows – ‘HTTP.sys’ (PoC) (MS15-034)

  • dos
  • windows
  • rhcp011235
    2015-04-14

    WordPress Plugin MiwoFTP 1.0.5 – Cross-Site Request Forgery / Arbitrary File Creation / Remote Code Execution

  • webapps
  • php
  • LiquidWorm
    2015-04-14

    WordPress Plugin MiwoFTP 1.0.5 – Multiple Cross-Site Request Forgery / Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • LiquidWorm
    2015-04-14

    WordPress Plugin MiwoFTP 1.0.5 – Cross-Site Request Forgery / Arbitrary File Deletion

  • webapps
  • php
  • LiquidWorm
    2015-04-14

    Samsung iPOLiS – ReadConfigValue Remote Code Execution

  • remote
  • windows
  • Praveen Darshanam
    2015-04-14

    WordPress Plugin Video Gallery 2.8 – SQL Injection

  • webapps
  • php
  • Claudio Viviani
    2015-04-14

    Abrt (Fedora 21) – Race Condition

  • local
  • linux
  • Tavis Ormandy
    2015-04-14

    Apport/Abrt (Ubuntu / Fedora) – Local Privilege Escalation

  • local
  • linux
  • Tavis Ormandy
    2015-04-13

    Apple Mac OSX – ‘Rootpipe’ Local Privilege Escalation (Metasploit)

  • local
  • osx
  • Metasploit
    2015-04-13

    Adobe Flash Player – casi32 Integer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-04-13

    Linux Kernel 3.13/3.14 (Ubuntu) – ‘splice()’ System Call Local Denial of Service

  • dos
  • linux
  • Emeric Nasi
    2015-04-13

    ProFTPd 1.3.5 – File Copy

  • remote
  • linux
  • anonymous
    2015-04-13

    Samba < 3.6.2 (x86) - Denial of Service (PoC)

  • dos
  • linux_x86
  • sleepya
    2015-04-13

    Apple Mac OSX < 10.9/10 - Local Privilege Escalation

  • local
  • osx
  • mu-b
    2015-04-13

    WordPress Plugin N-Media Website Contact Form with File Upload 1.3.4 – Arbitrary File Upload (1)

  • webapps
  • php
  • Claudio Viviani
    2015-04-13

    Traidnt Up 3.0 – SQL Injection

  • webapps
  • php
  • Ali Trixx
    2015-04-13

    WordPress Plugin Duplicator 0.5.14 – SQL Injection / Cross-Site Request Forgery

  • webapps
  • php
  • Claudio Viviani
    2015-04-13

    WordPress Plugin WP Mobile Edition 2.7 – Remote File Disclosure

  • webapps
  • php
  • Khwanchai Kaewyos
    2015-04-12

    Lenovo System Update – Local Privilege Escalation (Metasploit)

  • local
  • windows
  • Metasploit
    2015-04-09

    Apple Mac OSX < 10.7.5/10.8.2/10.9.5/10.10.2 - 'Rootpipe' Local Privilege Escalation

  • local
  • osx
  • Emil Kvarnhammar
    2015-04-09

    WordPress Plugin Windows Desktop and iPhone Photo Uploader – Arbitrary File Upload

  • webapps
  • php
  • Manish Tanwar
    2015-04-09

    Barracuda Firmware 5.0.0.012 – (Authenticated) Remote Command Execution (Metasploit)

  • remote
  • linux
  • xort
    2015-04-08

    Balero CMS 0.7.2 – Multiple Blind SQL Injections

  • webapps
  • php
  • LiquidWorm
    2015-04-08

    WordPress Plugin Shareaholic 7.6.0.3 – Cross-Site Scripting

  • webapps
  • php
  • Kacper Szurek
    2015-04-08

    WordPress Plugin All In One WP Security & Firewall 3.9.0 – SQL Injection

  • webapps
  • php
  • Claudio Viviani
    2015-04-08

    SolarWinds Firewall Security Manager 6.6.5 – Client Session Handling (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-04-08

    Novell ZENworks Configuration Management 11.3.1 – Remote Code Execution

  • webapps
  • jsp
  • Pedro Ribeiro
    2015-04-08

    WordPress Plugin Traffic Analyzer 3.4.2 – Blind SQL Injection

  • webapps
  • php
  • Dan King
    2015-04-08

    Balero CMS 0.7.2 – Multiple JS/HTML Injection Vulnerabilities

  • webapps
  • php
  • LiquidWorm
    2015-04-06

    JBoss Seam 2 – Arbitrary File Upload / Execution (Metasploit)

  • remote
  • jsp
  • Metasploit
    2015-04-06

    w3tw0rk / Pitbull Perl IRC Bot – Remote Code Execution

  • remote
  • multiple
  • Jay Turla
    2015-04-05

    u-Auctions – Multiple Vulnerabilities

  • webapps
  • php
  • *Don*
    2015-04-05

    WordPress Plugin Work The Flow File Upload 2.5.2 – Arbitrary File Upload

  • webapps
  • php
  • Claudio Viviani
    2015-04-02

    WebGate eDVR Manager 2.6.4 – SiteChannel Property Stack Buffer Overflow

  • remote
  • windows
  • Praveen Darshanam
    2015-04-02

    WebGate WinRDS 2.0.8 – PlaySiteAllChannel Stack Buffer Overflow

  • remote
  • windows
  • Praveen Darshanam
    2015-04-02

    WebGate eDVR Manager 2.6.4 – AudioOnlySiteChannel Stack Buffer Overflow

  • remote
  • windows
  • Praveen Darshanam
    2015-04-02

    WebGate WESP SDK 1.2 – ChangePassword Stack Overflow

  • remote
  • windows
  • Praveen Darshanam
    2015-04-02

    Ericsson Drutt MSDP (Instance Monitor) – Directory Traversal

  • webapps
  • linux
  • Anastasios Monachos