Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2015-03-19

FastStone Image Viewer 5.3 – ‘.tga’ Crash (PoC)

  • dos
  • windows
  • ITDefensor Vulnerability Research Team
    2015-03-19

    Citrix Nitro SDK – Command Injection

  • webapps
  • linux
  • Han Sahin
    2015-03-19

    Citrix Command Center – Credential Disclosure

  • webapps
  • xml
  • Han Sahin
    2015-03-19

    EMC M&R (Watch4net) – Directory Traversal

  • webapps
  • java
  • Han Sahin
    2015-03-19

    Microsoft Windows 8.1 – Local WebDAV NTLM Reflection Privilege Escalation

  • local
  • windows
  • Google Security Research
    2015-03-19

    Joomla! Component ECommerce-WD 1.2.5 – SQL Injection

  • webapps
  • php
  • Brandon Perry
    2015-03-19

    TWiki Debugenableplugins – Remote Code Execution (Metasploit)

  • remote
  • php
  • Metasploit
    2015-03-19

    Publish-It – ‘.PUI’ Local Buffer Overflow (SEH) (Metasploit)

  • local
  • windows
  • Metasploit
    2015-03-18

    Websense Appliance Manager – Command Injection

  • webapps
  • java
  • Han Sahin
    2015-03-18

    Fortinet Single Sign On – Stack Overflow

  • dos
  • windows
  • Core Security
    2015-03-18

    Exim – ‘GHOST’ glibc gethostbyname Buffer Overflow (Metasploit)

  • remote
  • linux
  • Qualys Corporation
    2015-03-17

    Adobe Flash Player – PCRE Regex (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-03-17

    Metasploit Project < 4.11.1 - Initial User Creation Cross-Site Request Forgery (Metasploit)

  • webapps
  • multiple
  • Mohamed Abdelbaset Elnoby
    2015-03-17

    Moodle 2.5.9/2.6.8/2.7.5/2.8.3 – Block Title Handler Cross-Site Scripting

  • webapps
  • php
  • LiquidWorm
    2015-03-17

    Spybot Search & Destroy 1.6.2 Security Center Service – Local Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2015-03-16

    Foxit Reader 7.0.6.1126 – Unquoted Service Path Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2015-03-16

    Brasero CD/DVD Burner 3.4.1 – ‘.m3u’ Buffer Overflow Crash (PoC)

  • dos
  • linux
  • Avinash Thapa
    2015-03-16

    Smart PHP Poll – Authentication Bypass

  • webapps
  • php
  • Mr.tro0oqy yemen
    2015-03-16

    ElasticSearch – Search Groovy Sandbox Bypass (Metasploit)

  • remote
  • java
  • Metasploit
    2015-03-16

    Joomla! Component com_simplephotogallery 1.0 – SQL Injection

  • webapps
  • php
  • Moneer Masoud
    2015-03-16

    WordPress Plugin WPML 3.1.9 – Multiple Vulnerabilities

  • webapps
  • php
  • Jouko Pynnonen
    2015-03-16

    WordPress Plugin SEO by Yoast 1.7.3.3 – Blind SQL Injection

  • webapps
  • php
  • Ryan Dewhurst
    2015-03-16

    IPass Control Pipe – Remote Command Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-03-14

    Intel Network Adapter Diagnostic Driver – IOCTL Handling

  • dos
  • windows
  • Glafkos Charalambous
    2015-03-13

    ArcSight Logger – Arbitrary File Upload / Code Execution

  • remote
  • linux
  • Horoszkiewicz Julian ISP_
    2015-03-13

    WoltLab Community Gallery – Persistent Cross-Site Scripting

  • webapps
  • php
  • ITAS Team
    2015-03-12

    Codiad 2.5.3 – Local File Inclusion

  • webapps
  • php
  • TUNISIAN CYBER
    2015-03-12

    Citrix Netscaler NS10.5 – WAF Bypass (Via HTTP Header Pollution)

  • webapps
  • xml
  • BGA Security
    2015-03-12

    Ubuntu 15.04 (Development) – ‘Upstart’ Logrotation Privilege Escalation

  • local
  • linux
  • halfdog
    2015-03-12

    Adobe Flash Player – ByteArray UncompressViaZlibVariant Use-After-Free (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-03-11

    ElasticSearch – Remote Code Execution

  • remote
  • linux
  • Xiphos Research Ltd
    2015-03-11

    Microsoft Windows – Text Services Memory Corruption (MS15-020)

  • dos
  • windows
  • Francis Provencher
    2015-03-11

    Foxit Products GIF Conversion – ‘DataSubBlock’ Memory Corruption

  • dos
  • windows
  • Francis Provencher
    2015-03-11

    Foxit Products GIF Conversion – ‘LZWMinimumCodeSize’ Memory Corruption

  • dos
  • windows
  • Francis Provencher
    2015-03-11

    CS-Cart 4.2.4 – Cross-Site Request Forgery

  • webapps
  • php
  • Luis Santana
    2015-03-10

    Joomla! Component com_simplephotogallery 1.0 – Arbitrary File Upload

  • webapps
  • php
  • CrashBandicot
    2015-03-10

    GeniXCMS 0.0.1 – Multiple Vulnerabilities

  • webapps
  • php
  • LiquidWorm
    2015-03-10

    CodoForum 2.5.1 – Arbitrary File Download

  • webapps
  • php
  • Kacper Szurek
    2015-03-09

    Rowhammer – NaCl Sandbox Escape

  • local
  • linux_x86-64
  • Google Security Research
    2015-03-09

    Linux Kernel (x86-64) – Rowhammer Privilege Escalation

  • local
  • linux_x86-64
  • Google Security Research
    2015-03-08

    Sagem F@st 3304-V2 – Telnet Crash (PoC)

  • dos
  • hardware
  • Loudiyi Mohamed
    2015-03-08

    WordPress Plugin Reflex Gallery 3.1.3 – Arbitrary File Upload

  • webapps
  • php
  • CrashBandicot
    2015-03-07

    Elastix 2.x – Blind SQL Injection

  • webapps
  • php
  • Ahmed Aboul-Ela
    2015-03-06

    PHP Betoffice (Betster) 1.0.4 – Authentication Bypass / SQL Injection

  • webapps
  • php
  • ZeQ3uL
    2015-03-06

    HP Data Protector 8.10 – Remote Command Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2015-03-06

    ProjectSend r561 – SQL Injection

  • webapps
  • php
  • ITAS Team
    2015-03-04

    WordPress Theme DesignFolio Plus 1.2 – Arbitrary File Upload

  • webapps
  • php
  • CrashBandicot
    2015-03-04

    Linux Kernel 3.16.3 – Associative Array Garbage Collection Crash (PoC)

  • dos
  • linux
  • Emeric Nasi
    2015-03-04

    Linux Kernel 3.15.6 – PPP-over-L2TP Socket Level Handling Crash (PoC)

  • dos
  • linux
  • Emeric Nasi
    2015-03-04

    Linux Kernel 3.17.5 – IRET Instruction #SS Fault Handling Crash (PoC)

  • dos
  • linux_x86-64
  • Emeric Nasi