Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2013-12-16

iScripts MultiCart 2.4 – Persistent Cross-Site Scripting / Cross-Site Request Forgery / Cross-Site Scripting / Cross-Site Request Forgery / Mass Accounts Takeover

  • webapps
  • php
  • Saadi Siddiqui
    2013-12-16

    Wallpaper Script 3.5.0082 – Persistent Cross-Site Scripting

  • webapps
  • php
  • null pointer
    2013-12-15

    iScripts AutoHoster – ‘checktransferstatusbck.php’ SQL Injection

  • webapps
  • php
  • i-Hmx
    2013-12-15

    iScripts AutoHoster – ‘checktransferstatus.php’ SQL Injection

  • webapps
  • php
  • i-Hmx
    2013-12-15

    Phone Drive Eightythree 4.1.1 iOS – Multiple Vulnerabilities

  • webapps
  • ios
  • Vulnerability-Lab
    2013-12-15

    PotPlayer 1.5.42509 Beta – Integer Division by Zero Denial of Service

  • dos
  • windows
  • sajith
    2013-12-15

    Piwigo CMS 2.5.3 – Multiple Web Vulnerabilities

  • webapps
  • php
  • sajith
    2013-12-15

    iScripts AutoHoster – ‘id’ Local File Inclusion

  • webapps
  • php
  • i-Hmx
    2013-12-15

    iScripts AutoHoster – ‘fname’ Local File Inclusion

  • webapps
  • php
  • i-Hmx
    2013-12-15

    iScripts AutoHoster – ‘tmpid’ Local File Inclusion

  • webapps
  • php
  • i-Hmx
    2013-12-15

    iScripts AutoHoster – ‘main_smtp.php’ Traversal

  • webapps
  • php
  • i-Hmx
    2013-12-15

    iScripts AutoHoster – ‘invno’ SQL Injection

  • webapps
  • php
  • i-Hmx
    2013-12-15

    iScripts AutoHoster – ‘additionalsettings.php’ SQL Injection

  • webapps
  • php
  • i-Hmx
    2013-12-14

    Osclass – Multiple Input Validation Vulnerabilities

  • webapps
  • php
  • R3d-D3V!L
    2013-12-14

    Etoshop B2B Vertical Marketplace Creator – Multiple SQL Injections

  • webapps
  • asp
  • R3d-D3V!L
    2013-12-13

    Joomla! Component Projoom NovaSFH 3.0.2 – ‘upload.php’ Arbitrary File Upload

  • webapps
  • php
  • Yuri Kramarz
    2013-12-13

    Dynamic Biz Website Builder ‘QuickWeb’ 1.0 – ‘/login.asp’ Multiple Field SQL Injections / Authentication Bypass

  • webapps
  • asp
  • R3d-D3V!L
    2013-12-13

    Dynamic Biz Website Builder (QuickWeb) 1.0 – ‘/apps/news-events/newdetail.asp?id’ SQL Injection

  • webapps
  • asp
  • R3d-D3V!L
    2013-12-13

    BoastMachine – ‘blog’ SQL Injection

  • webapps
  • php
  • Omar Kurt
    2013-12-13

    Nagios XI – ‘tfPassword’ SQL Injection

  • remote
  • php
  • Denis Andzakovic
    2013-12-12

    Cythosia 2.x Botnet (C2 Web Panel) – SQL Injection

  • webapps
  • php
  • GalaxyAndroid
    2013-12-12

    Cisco Unified Communications Manager – TFTP Service

  • local
  • hardware
  • daniel svartman
    2013-12-12

    KikChat – Local File Inclusion / Remote Code Execution

  • webapps
  • php
  • cr4wl3r
    2013-12-12

    Pentagram Cerberus P 6363 DSL Router – Multiple Vulnerabilities

  • webapps
  • hardware
  • condis
    2013-12-12

    WHMCompleteSolution (WHMCS) 4.x/5.x – Multiple Web Vulnerabilities

  • webapps
  • php
  • AhwAk20o0 --
    2013-12-12

    Castripper 2.50.70 – ‘.pls’ DEP Bypass

  • local
  • windows
  • Morteza Hashemi
    2013-12-11

    RedHat Piranha – Remote Security Bypass

  • remote
  • linux
  • Andreas Schiermeier
    2013-12-11

    Veno File Manager – ‘q’ Arbitrary File Download

  • webapps
  • php
  • Daniel Godoy
    2013-12-11

    eduTrac – ‘showmask’ Directory Traversal

  • webapps
  • php
  • High-Tech Bridge
    2013-12-11

    Photo Video Album Transfer 1.0 iOS – Multiple Vulnerabilities

  • webapps
  • ios
  • Vulnerability-Lab
    2013-12-11

    eFront 3.6.14 (build 18012) – Multiple Persistent Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • sajith
    2013-12-11

    vBulletin 5 – ‘index.php/ajax/api/reputation/vote?nodeid’ SQL Injection (Metasploit)

  • remote
  • php
  • Metasploit
    2013-12-11

    EMC Data Protection Advisor DPA Illuminator – EJBInvokerServlet Remote Code Execution

  • remote
  • windows
  • rgod
    2013-12-11

    Adobe ColdFusion 9 – Administrative Authentication Bypass (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-12-11

    HP LoadRunner EmulationAdmin – Web Service Directory Traversal (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-12-11

    IcoFX 2.5.0.0 – ‘.ico’ Buffer Overflow (PoC)

  • dos
  • windows
  • Core Security
    2013-12-10

    Linux Kernel 3.0.5 – ‘ath9k_htc_set_bssid_mask()’ Information Disclosure

  • remote
  • linux
  • Mathy Vanhoef
    2013-12-10

    Air Gallery 1.0 Air Photo Browser – Multiple Vulnerabilities

  • local
  • multiple
  • Vulnerability-Lab
    2013-12-10

    PlaySms 0.9.9.2 – Cross-Site Request Forgery

  • webapps
  • php
  • Saadi Siddiqui
    2013-12-09

    osCMax – Arbitrary File Upload / Full Path Information Disclosure

  • webapps
  • php
  • KedAns-Dz
    2013-12-09

    CGILua 3.0 – SQL Injection

  • webapps
  • cgi
  • aceeeeeeeer .
    2013-12-09

    GOM Player 2.2.53.5169 – ‘.reg’ Local Buffer Overflow (SEH)

  • local
  • windows
  • Mike Czumak
    2013-12-08

    WordPress Plugin PhotoSmash Galleries – ‘bwbps-uploader.php’ Arbitrary File Upload

  • webapps
  • php
  • Ashiyane Digital Security Team
    2013-12-08

    Print n Share 5.5 iOS – Multiple Web Vulnerabilities

  • webapps
  • ios
  • Vulnerability-Lab
    2013-12-08

    Feetan Inc WireShare 1.9.1 iOS – Persistent

  • webapps
  • ios
  • Vulnerability-Lab
    2013-12-08

    Ovidentia 7.9.6 – Multiple Vulnerabilities

  • webapps
  • php
  • sajith
    2013-12-08

    WordPress Plugin Download Manager Free & Pro 2.5.8 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Jeroen - IT Nerdbox
    2013-12-07

    Apple Safari For Windows – PhishingAlert Security Bypass

  • remote
  • windows
  • Jackmasa
    2013-12-06

    Enorth Webpublisher CMS – ‘thisday’ SQL Injection

  • webapps
  • php
  • xin.wang
    2013-12-06

    Zimbra 2009-2013 – Local File Inclusion

  • webapps
  • linux
  • rubina119