Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2014-06-01

Easy File Management Web Server 5.3 – ‘UserID’ Remote Buffer Overflow (ROP)

  • remote
  • windows
  • Julien Ahrens
    2014-05-31

    Linux Kernel 3.2.0-23/3.5.0-23 (Ubuntu 12.04/12.04.1/12.04.2 x64) – ‘perf_swevent_init’ Local Privilege Escalation (3)

  • local
  • linux_x86-64
  • Vitaly Nikolenko
    2014-05-30

    Huawei E303 Router – Cross-Site Request Forgery

  • remote
  • hardware
  • Benjamin Daniel Mussler
    2014-05-30

    ElasticSearch Dynamic Script – Arbitrary Java Execution (Metasploit)

  • remote
  • java
  • Metasploit
    2014-05-30

    Microsoft Internet Explorer 11 – WeakMap Integer Divide-by-Zero

  • dos
  • windows
  • Pawel Wylecial
    2014-05-28

    Linux Kernel 3.3.5 – ‘/drivers/media/media-device.c’ Local Information Disclosure

  • local
  • linux
  • Salva Peiro
    2014-05-28

    webEdition CMS – ‘we_fs.php’ SQL Injection

  • webapps
  • php
  • RedTeam Pentesting GmbH
    2014-05-28

    Sharetronix 3.3 – Multiple Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2014-05-28

    Wireshark CAPWAP Dissector – Denial of Service (Metasploit)

  • dos
  • multiple
  • j0sm1
    2014-05-28

    AuraCMS 3.0 – Multiple Vulnerabilities

  • webapps
  • php
  • Mustafa ALTINKAYNAK
    2014-05-28

    TORQUE Resource Manager 2.5.x < 2.5.13 - Stack Buffer Overflow Stub

  • remote
  • linux
  • bwall
    2014-05-28

    WordPress Plugin HDW Player – ‘/wp-admin/admin.php’ SQL Injection

  • webapps
  • php
  • Anant Shrivastava
    2014-05-28

    WordPress Plugin Tera Charts (tera-charts) – ‘/charts/zoomabletreemap.php?fn’ Directory Traversal

  • webapps
  • php
  • Anant Shrivastava
    2014-05-28

    WordPress Plugin Tera Charts (tera-charts) – ‘/charts/treemap.php?fn’ Directory Traversal

  • webapps
  • php
  • Anant Shrivastava
    2014-05-28

    WordPress Plugin ENL NewsLetter – ‘/wp-admin/admin.php’ SQL Injection

  • webapps
  • php
  • Anant Shrivastava
    2014-05-28

    WordPress Plugin WP Rss Poster – ‘/wp-admin/admin.php’ SQL Injection

  • webapps
  • php
  • Anant Shrivastava
    2014-05-28

    WordPress Plugin BookX 1.7 – ‘bookx_export.php’ Local File Inclusion

  • webapps
  • php
  • Anant Shrivastava
    2014-05-27

    Castor Library – XML External Entity Information Disclosure

  • remote
  • multiple
  • Ron Gutierrez
    2014-05-27

    Easy File Sharing FTP Server 3.5 – Remote Stack Buffer Overflow

  • remote
  • windows
  • superkojiman
    2014-05-26

    Symantec Workspace Streaming – Arbitrary File Upload (Metasploit)

  • remote
  • multiple
  • Metasploit
    2014-05-26

    D-Link Routers – Multiple Vulnerabilities

  • webapps
  • hardware
  • Kyle Lovett
    2014-05-26

    ZYXEL P-660HW-T1 3 Wireless Router – Cross-Site Request Forgery

  • webapps
  • hardware
  • Mustafa ALTINKAYNAK
    2014-05-26

    Linux Kernel 3.14-rc1 < 3.15-rc4 (x64) - Raw Mode PTY Echo Race Condition Privilege Escalation

  • local
  • linux_x86-64
  • Matthew Daley
    2014-05-26

    Videos Tube 1.0 – Multiple SQL Injections

  • webapps
  • php
  • Mustafa ALTINKAYNAK
    2014-05-25

    InfraRecorder – ‘.m3u’ File Buffer Overflow (PoC)

  • dos
  • windows
  • Osanda Malith Jayathissa
    2014-05-25

    dpkg Source Package – Index: pseudo-header Processing Multiple Local Directory Traversals

  • local
  • linux
  • Raphael Geissert
    2014-05-25

    User Cake – Cross-Site Request Forgery

  • webapps
  • php
  • Dolev Farhi
    2014-05-24

    PHP-Nuke ‘Submit_News’ Component – SQL Injection

  • webapps
  • php
  • ali ahmady
    2014-05-24

    Core FTP Server 1.2 build 535 (32-bi)t – Crash (PoC)

  • dos
  • windows
  • Kaczinski Ramirez
    2014-05-24

    Web Terra 1.1 – ‘books.cgi’ Remote Command Execution

  • webapps
  • cgi
  • felipe andrian
    2014-05-24

    Mayan-EDms Web-Based Document Management OS System – Multiple Persistent Cross-Site Scripting Vulnerabilities

  • webapps
  • multiple
  • Dolev Farhi
    2014-05-23

    Pyplate – ‘addScript.py’ Cross-Site Request Forgery

  • webapps
  • Python
  • Henri Salo
    2014-05-22

    Microsoft Windows – Touch Injection API Local Denial of Service

  • dos
  • windows
  • Tavis Ormandy
    2014-05-21

    WordPress Plugin Booking System (Booking Calendar) – ‘booking_form_id’ SQL Injection

  • webapps
  • php
  • maodun
    2014-05-21

    Apache mod_wsgi – Information Disclosure

  • remote
  • linux
  • Buck Golemon
    2014-05-21

    Binatone DT 850W Wireless Router – Multiple Cross-Site Request Forgery Vulnerabilities

  • webapps
  • hardware
  • Samandeep Singh
    2014-05-21

    Easy Address Book Web Server 1.6 – Remote Stack Buffer Overflow

  • remote
  • windows
  • superkojiman
    2014-05-21

    Easy File Management Web Server 5.3 – Remote Stack Buffer Overflow

  • remote
  • windows
  • superkojiman
    2014-05-20

    Clipperz Password Manager – ‘/backend/PHP/src/setup/rpc.php’ Remote Code Execution

  • webapps
  • php
  • Manish Tanwar
    2014-05-19

    AoA Audio Extractor Basic 2.3.7 – ActiveX

  • remote
  • windows
  • metacom
    2014-05-19

    SafeNet Sentinel Protection Server 7.0 < 7.4 / Sentinel Keys Server 1.0.3 < 1.0.4 - Directory Traversal

  • webapps
  • windows
  • Matt Schmidt
    2014-05-19

    CyberLink Power2Go Essential 9.0.1002.0 – Registry Buffer Overflow (SEH Unicode)

  • local
  • windows
  • Mike Czumak
    2014-05-19

    SPIP CMS < 2.0.23/ 2.1.22/3.0.9 - Privilege Escalation

  • webapps
  • php
  • Gregory Draperi
    2014-05-19

    Wiser Backup – Information Disclosure

  • webapps
  • php
  • AtT4CKxT3rR0r1ST
    2014-05-19

    WordPress Plugin NextGEN Gallery 1.9.1 – ‘photocrati_ajax’ Arbitrary File Upload

  • webapps
  • php
  • SANTHO
    2014-05-19

    Softmatica SMART iPBX – Multiple SQL Injections

  • webapps
  • php
  • AtT4CKxT3rR0r1ST
    2014-05-19

    XOOPS Glossaire Module – ‘/modules/glossaire/glossaire-aff.php’ SQL Injection

  • webapps
  • php
  • AtT4CKxT3rR0r1ST
    2014-05-19

    HP Release Control – (Authenticated) XML External Entity (Metasploit)

  • webapps
  • windows
  • Brandon Perry
    2014-05-19

    AoA MP4 Converter 4.1.2 – ActiveX

  • remote
  • windows
  • metacom
    2014-05-19

    AoA DVD Creator 2.6.2 – ActiveX

  • remote
  • windows
  • metacom