Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2014-10-06

Ultra Electronics 7.2.0.19/7.4.0.7 – Multiple Vulnerabilities

  • webapps
  • cgi
  • OSI Security
    2014-10-06

    Apache mod_cgi – ‘Shellshock’ Remote Command Injection

  • remote
  • linux
  • Federico Galatolo
    2014-10-06

    Postfix SMTP 4.2.x < 4.2.48 - 'Shellshock' Remote Command Injection

  • remote
  • linux
  • Phil Blank
    2014-10-06

    Bash CGI – ‘Shellshock’ Remote Command Injection (Metasploit)

  • webapps
  • cgi
  • Fady Mohammed Osman
    2014-10-04

    OpenVPN 2.2.29 – ‘Shellshock’ Remote Command Injection

  • remote
  • linux
  • hobbily plunt
    2014-10-02

    ManageEngine OpManager / Social IT – Arbitrary File Upload (Metasploit)

  • remote
  • java
  • Pedro Ribeiro
    2014-10-02

    HP Network Node Manager I – PMD Buffer Overflow (Metasploit)

  • remote
  • linux
  • Metasploit
    2014-10-02

    Moab < 7.2.9 - Authentication Bypass

  • webapps
  • multiple
  • MWR InfoSecurity
    2014-10-02

    Epicor Enterprise 7.4 – Multiple Vulnerabilities

  • webapps
  • asp
  • Fara Rustein
    2014-10-02

    TestLink 1.9.11 – Multiple SQL Injections

  • webapps
  • php
  • Portcullis
    2014-10-02

    Pure-FTPd – External Authentication Bash Environment Variable Code Injection (Metasploit)

  • remote
  • linux
  • Metasploit
    2014-10-02

    PHPCompta/NOALYSS 6.7.1 5638 – Remote Command Execution

  • webapps
  • php
  • Portcullis
    2014-10-02

    GNU bash 4.3.11 – Environment Variable dhclient

  • remote
  • linux
  • @0x00string
    2014-10-02

    RBS Change Complet Open Source 3.6.8 – Cross-Site Request Forgery

  • webapps
  • php
  • Krusty Hack
    2014-10-02

    TeamSpeak Client 3.0.14 – Buffer Overflow

  • dos
  • windows
  • SpyEye & Christian Galeon
    2014-10-02

    Kolibri WebServer 2.0 – Remote Buffer Overflow (EMET 5.0 / EMET 4.1 Partial Bypass)

  • remote
  • windows
  • tekwizz123
    2014-10-02

    WordPress Plugin All In One WP Security & Firewall 3.8.3 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Vulnerability-Lab
    2014-10-02

    Rejetto HTTP File Server (HFS) 2.3a/2.3b/2.3c – Remote Command Execution

  • webapps
  • windows
  • Daniele Linguaglossa
    2014-10-02

    Bacula-Web 5.2.10 – ‘joblogs.php?jobid’ SQL Injection

  • webapps
  • php
  • wishnusakti
    2014-10-01

    IPFire – CGI Web Interface (Authenticated) Bash Environment Variable Code Injection

  • webapps
  • cgi
  • Claudio Viviani
    2014-09-29

    dhclient 4.1 – Bash Environment Variable Command Injection (Shellshock)

  • remote
  • linux
  • fdiskyou
    2014-09-29

    OpenFiler 2.99.1 – Cross-Site Request Forgery

  • webapps
  • php
  • Dolev Farhi
    2014-09-29

    Microsoft Exchange – IIS HTTP Internal IP Address Disclosure (Metasploit)

  • webapps
  • windows
  • Nate Power
    2014-09-29

    GS Foto Uebertraeger 3.0 iOS – Local File Inclusion

  • webapps
  • ios
  • Vulnerability-Lab
    2014-09-29

    Microsoft Internet Explorer 8 – Fixed Col Span ID (Full ASLR + DEP + EMET 5.0 Bypass) (MS12-037)

  • remote
  • windows
  • ryujin & sickness
    2014-09-27

    dbPowerAmp < 2.0/10.0 - Local Buffer Overflow

  • local
  • windows
  • GulfTech Security
    2014-09-27

    Typo3 Extension JobControl 2.14.0 – Cross-Site Scripting / SQL Injection

  • webapps
  • php
  • Adler Freiheit
    2014-09-25

    WordPress Plugin All In One WP Security 3.8.2 – SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2014-09-25

    Nucom ADSL ADSLR5000UN – ISP Credentials Disclosure

  • webapps
  • hardware
  • Sebastián Magof
    2014-09-25

    GNU Bash – Environment Variable Command Injection (Metasploit)

  • remote
  • cgi
  • Shaun Colley
    2014-09-25

    Bash – ‘Shellshock’ Environment Variables Command Injection

  • remote
  • linux
  • Prakhar Prasad & Subho Halder
    2014-09-25

    GNU Bash – ‘Shellshock’ Environment Variable Command Injection

  • remote
  • linux
  • Stephane Chazelas
    2014-09-25

    Cart Engine 3.0 – Multiple Vulnerabilities

  • webapps
  • php
  • Quantum Leap
    2014-09-25

    OSClass 3.4.1 – ‘index.php’ Local File Inclusion

  • webapps
  • php
  • Netsparker
    2014-09-25

    WordPress Plugin Login Widget With ShortCode 3.1.1 – Multiple Vulnerabilities

  • webapps
  • php
  • dxw
    2014-09-24

    ZYXEL Prestig P-660HNU-T1 – ISP Credentials Disclosure

  • webapps
  • hardware
  • Sebastián Magof
    2014-09-24

    webEdition 6.3.8.0 (SVN-Revision: 6985) – Directory Traversal

  • webapps
  • php
  • High-Tech Bridge SA
    2014-09-24

    Restaurant Script (PizzaInn Project) – Persistent Cross-Site Scripting

  • webapps
  • php
  • Kenneth F. Belva
    2014-09-24

    Glype 1.4.9 – Local Address Filter Bypass

  • webapps
  • php
  • Securify
    2014-09-24

    Glype 1.4.9 – Cookie Injection Directory Traversal Local File Inclusion

  • webapps
  • php
  • Securify
    2014-09-24

    Advantech Webaccess – dvs.ocx GetColor Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2014-09-24

    EMC AlphaStor Device Manager Opcode 0x75 – Command Injection (Metasploit)

  • remote
  • windows
  • Metasploit
    2014-09-24

    Joomla! Component com_macgallery 1.5 – Arbitrary File Download

  • webapps
  • php
  • Claudio Viviani
    2014-09-24

    Joomla! Component com_facegallery 1.0 – Multiple Vulnerabilities

  • webapps
  • php
  • Claudio Viviani
    2014-09-24

    Onlineon E-Ticaret – Database Disclosure

  • webapps
  • asp
  • ZoRLu
    2014-09-24

    WS10 Data Server – SCADA Overflow (PoC)

  • dos
  • windows
  • Pedro Sánchez
    2014-09-23

    LittleSite 0.1 – ‘index.php’ Local File Inclusion

  • webapps
  • php
  • Eolas_Gadai
    2014-09-20

    ClassApps SelectSurvey.net – Multiple SQL Injections

  • webapps
  • php
  • BillV-Lists
    2014-09-20

    Livefyre LiveComments Plugin – Persistent Cross-Site Scripting

  • webapps
  • php
  • Brij Kishore Mishra
    2014-09-20

    Fast Image Resizer 098 – Local Crash (PoC)

  • dos
  • windows
  • niko sec