Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2014-05-01

Netgear DGN2200 1.0.0.29_1.7.29_HotS – Persistent Cross-Site Scripting

  • webapps
  • hardware
  • Dolev Farhi
    2014-05-01

    Fritz!Box – Remote Command Execution

  • webapps
  • hardware
  • 0x4148
    2014-04-30

    Beetel 450TC2 Router – Cross-Site Request Forgery (Admin Password)

  • webapps
  • hardware
  • shyamkumar somana
    2014-04-29

    Adobe Flash Player – Type Confusion Remote Code Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2014-04-29

    NULL NUKE CMS 2.2 – Multiple Vulnerabilities

  • webapps
  • php
  • LiquidWorm
    2014-04-29

    TRENDnet TEW-634GRU 1.00.23 – Multiple Vulnerabilities

  • webapps
  • hardware
  • SirGod
    2014-04-28

    McAfee ePolicy Orchestrator 4.6.0 < 4.6.5 - 'ePowner' Multiple Vulnerabilities

  • remote
  • windows
  • st3n
    2014-04-28

    ApPHP MicroBlog 1.0.1 – Remote Command Execution

  • webapps
  • php
  • LOTFREE
    2014-04-28

    Wireshark 1.8.12/1.10.5 – wiretap/mpeg.c Stack Buffer Overflow (Metasploit)

  • local
  • windows
  • Metasploit
    2014-04-28

    WordPress Plugin iMember360 3.8.012 < 3.9.001 - Multiple Vulnerabilities

  • webapps
  • php
  • Everett Griffiths
    2014-04-28

    GeoCore MAX DB Ver. 7.3.3 – Blind SQL Injection

  • webapps
  • php
  • Esac
    2014-04-28

    NTP ntpd monlist Query Reflection – Denial of Service

  • dos
  • linux
  • Danilo PC
    2014-04-28

    Adem 0.5.1 – Local File Inclusion

  • webapps
  • php
  • JIKO
    2014-04-27

    Symantec Endpoint Protection Manager 12.1.x – Overflow (SEH) (PoC)

  • dos
  • windows
  • st3n
    2014-04-26

    ApPHP MicroBlog 1.0.1 – Multiple Vulnerabilities

  • webapps
  • php
  • JIKO
    2014-04-25

    JRuby Sandbox 0.2.2 – Sandbox Escape

  • local
  • linux
  • joernchen
    2014-04-25

    Kolibri Web Server 2.0 – GET Stack Buffer Overflow

  • remote
  • windows
  • Polunchis
    2014-04-25

    Depot WiFi 1.0.0 iOS – Multiple Vulnerabilities

  • webapps
  • ios
  • Vulnerability-Lab
    2014-04-25

    miSecureMessages 4.0.1 – Session Management / Authentication Bypass

  • webapps
  • multiple
  • Jared Bird
    2014-04-25

    cFos Personal Net 3.09 – Remote Heap Memory Corruption (Denial of Service)

  • dos
  • windows
  • LiquidWorm
    2014-04-24

    dompdf 0.6.0 – ‘dompdf.php?read’ Arbitrary File Read

  • webapps
  • php
  • Portcullis
    2014-04-24

    WordPress Plugin Work-The-Flow 1.2.1 – Arbitrary File Upload

  • webapps
  • php
  • nopesled
    2014-04-24

    Bonefire 0.7.1 – Reinstall Admin Account

  • webapps
  • php
  • Mehmet Ince
    2014-04-24

    OpenSSL TLS Heartbeat Extension – ‘Heartbleed’ Information Leak (2) (DTLS Support)

  • remote
  • multiple
  • Ayman Sagy
    2014-04-24

    Acunetix 8 build 20120704 – Remote Stack Overflow

  • remote
  • windows
  • An7i
    2014-04-24

    Alienvault 4.3.1 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • Sasha Zivojinovic
    2014-04-24

    WD Arkeia Virtual Appliance 10.2.9 – Local File Inclusion

  • webapps
  • php
  • SEC Consult
    2014-04-23

    HP Laser Jet – JavaScript Persistent Cross-Site Scripting via PJL Directory Traversal

  • webapps
  • hardware
  • @0x00string
    2014-04-22

    iDevAffiliate – ‘idevads.php’ SQL Injection

  • webapps
  • php
  • Robert Cooper
    2014-04-22

    Apple Mac OSX – Local Security Bypass

  • local
  • osx
  • Ian Beer
    2014-04-22

    kitForm CRM Extension 0.43 – ‘sorter.ph?sorter_value’ SQL Injection

  • webapps
  • php
  • chapp
    2014-04-22

    No-CMS 0.6.6 rev 1 – Admin Account Hijacking / Remote Code Execution via Static Encryption Key

  • webapps
  • php
  • Mehmet Ince
    2014-04-22

    Sixnet Sixview 2.4.1 – Web Console Directory Traversal

  • webapps
  • hardware
  • daniel svartman
    2014-04-21

    COMTREND CT-5361T Router – ‘Password.cgi’ Cross-Site Request Forgery (Admin Password Manipulation)

  • remote
  • hardware
  • TUNISIAN CYBER
    2014-04-21

    Adobe Flash Player – Regular Expression Heap Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2014-04-20

    Teracom Modem T2-B-Gawv1.4U10Y-BI – Cross-Site Request Forgery

  • webapps
  • hardware
  • Rakesh S
    2014-04-19

    PTCeffect 4.6 – Local File Inclusion / SQL Injection

  • webapps
  • php
  • walid naceri
    2014-04-18

    Sercomm TCP/32674 – Backdoor Reactivation

  • remote
  • hardware
  • Synacktiv
    2014-04-18

    CMSimple 4.4/4.4.2 – Remote File Inclusion

  • webapps
  • php
  • NoGe
    2014-04-18

    Linux Kernel – ‘group_info’ refcounter Overflow Memory Corruption

  • dos
  • linux
  • Thomas Pollet
    2014-04-18

    NRPE 2.15 – Remote Command Execution

  • remote
  • multiple
  • Dawid Golunski
    2014-04-17

    SAP Router – Timing Attack Password Disclosure

  • remote
  • hardware
  • Core Security
    2014-04-16

    Microsoft Internet Explorer – CMarkup Use-After-Free (MS14-012) (Metasploit)

  • remote
  • windows
  • Metasploit
    2014-04-16

    Jzip – Buffer Overflow (PoC) (SEH Unicode)

  • dos
  • windows
  • motaz reda
    2014-04-15

    lxml – ‘clean_html’ Security Bypass

  • remote
  • linux
  • Maksim Kochkin
    2014-04-15

    Xerox DocuShare – SQL Injection

  • webapps
  • hardware
  • Brandon Perry
    2014-04-15

    Unitrends Enterprise Backup 7.3.0 – Root Remote Code Execution (Metasploit)

  • remote
  • unix
  • Brandon Perry
    2014-04-15

    Adobe Reader for Android 11.1.3 – Arbitrary JavaScript Execution

  • local
  • android
  • Yorick Koster
    2014-04-15

    Netgear WNDR3400 N600 Wireless Dual Band – Multiple Vulnerabilities

  • webapps
  • hardware
  • Santhosh Kumar
    2014-04-14

    eScan Web Management Console – Command Injection (Metasploit)

  • webapps
  • linux
  • Metasploit