Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2013-09-25

X2CRM 3.4.1 – Multiple Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2013-09-25

    Good for Enterprise 2.2.2.1611 – Cross-Site Scripting

  • webapps
  • hardware
  • Mario
    2013-09-24

    Raidsonic NAS Devices – Remote Command Execution (Metasploit)

  • remote
  • hardware
  • Metasploit
    2013-09-24

    IBM AIX 6.1/7.1 – Local Privilege Escalation

  • local
  • aix
  • Kristian Erik Hermansen
    2013-09-23

    SilverStripe CMS – Multiple HTML Injection Vulnerabilities

  • webapps
  • php
  • Benjamin Kunz Mejri
    2013-09-23

    Blue Coat ProxySG 5.x and Security Gateway OS – Denial of Service

  • dos
  • linux
  • anonymous
    2013-09-23

    WordPress Plugin NOSpamPTI – Blind SQL Injection

  • webapps
  • php
  • Alexandro Silva
    2013-09-23

    Linksys WRT110 – Remote Command Execution (Metasploit)

  • remote
  • hardware
  • Metasploit
    2013-09-23

    Microsoft Windows Theme File Handling – Arbitrary Code Execution (MS13-071) (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-09-23

    GLPI – ‘install.php’ Remote Command Execution (Metasploit)

  • remote
  • php
  • Metasploit
    2013-09-23

    Microsoft Internet Explorer – CCaret Use-After-Free (MS13-069) (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-09-22

    SolarWinds Server and Application Monitor – ActiveX ‘Pepco32c’ Buffer Overflow

  • dos
  • windows
  • blake
    2013-09-22

    WordPress Plugin Lazy SEO 1.1.9 – Arbitrary File Upload

  • webapps
  • php
  • Ashiyane Digital Security Team
    2013-09-22

    Share KM 1.0.19 – Remote Denial of Service

  • dos
  • windows
  • Yuda Prawira
    2013-09-22

    FiberHome Modem Router HG-110 – Authentication Bypass To Remote Change DNS Servers

  • remote
  • hardware
  • Javier Perez
    2013-09-22

    ShareKM – Remote Denial of Service

  • dos
  • windows
  • Yuda Prawira
    2013-09-21

    Joomla! Component JVideoClip 1.5.1 – ‘uid’ SQL Injection

  • webapps
  • php
  • SixP4ck3r
    2013-09-20

    MentalJS – Sandbox Security Bypass

  • webapps
  • php
  • Rafay Baloch
    2013-09-20

    Monstra CMS 1.2.0 – ‘login’ SQL Injection

  • webapps
  • php
  • linc0ln.dll
    2013-09-20

    vTiger CRM 5.4.0 – ‘index.php?onlyforuser’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2013-09-20

    OpenEMR 4.1.1 Patch 14 – SQL Injection / Privilege Escalation / Remote Code Execution (Metasploit)

  • remote
  • php
  • xistence
    2013-09-20

    Western Digital Arkeia < 10.0.10 - Remote Code Execution (Metasploit)

  • remote
  • php
  • xistence
    2013-09-19

    WordPress Plugin RokMicroNews – ‘thumb.php’ Multiple Vulnerabilities

  • webapps
  • php
  • MustLive
    2013-09-19

    WordPress Plugin RokIntroScroller – ‘thumb.php’ Multiple Vulnerabilities

  • webapps
  • php
  • MustLive
    2013-09-19

    AspxCommerce 2.0 – Arbitrary File Upload

  • webapps
  • asp
  • SANTHO
    2013-09-18

    WordPress Plugin RokNewsPager – ‘thumb.php’ Multiple Vulnerabilities

  • webapps
  • php
  • MustLive
    2013-09-18

    WordPress Plugin Complete Gallery Manager 3.3.3 – Arbitrary File Upload

  • webapps
  • php
  • Vulnerability-Lab
    2013-09-18

    McKesson – ActiveX File/Environmental Variable Enumeration

  • remote
  • windows
  • blake
    2013-09-18

    TeraCopy 2.3 – ‘default.mo’ Language File Integer Overflow

  • dos
  • windows
  • LiquidWorm
    2013-09-17

    OpenEMR 4.1.1 Patch 14 – Multiple Vulnerabilities

  • webapps
  • php
  • xistence
    2013-09-17

    PCMan FTP Server 2.07 – ‘STOR’ Remote Stack Overflow (Metasploit)

  • remote
  • windows
  • Rick Flores
    2013-09-17

    Mozilla Firefox 9.0.1 – Same Origin Policy Security Bypass

  • remote
  • multiple
  • Takeshi Terada
    2013-09-17

    WordPress Plugin RokStories – ‘thumb.php’ Multiple Vulnerabilities

  • webapps
  • php
  • MustLive
    2013-09-17

    Vino VNC Server 3.7.3 – Persistent Denial of Service

  • dos
  • linux
  • Trustwave's SpiderLabs
    2013-09-17

    Vino VNC Server 3.7.3 – Persistent Denial of Service

  • dos
  • linux
  • Trustwave's SpiderLabs
    2013-09-17

    HP ProCurve Manager SNAC – UpdateCertificatesServlet Arbitrary File Upload (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-09-17

    HP ProCurve Manager – SNAC UpdateDomainControllerServlet Arbitrary File Upload (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-09-17

    Agnitum Outpost Internet Security – Local Privilege Escalation (Metasploit)

  • local
  • windows
  • Metasploit
    2013-09-17

    Sophos Web Protection Appliance – ‘sblistpack’ Arbitrary Command Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2013-09-17

    D-Link Devices – UPnP SOAP TelnetD Command Execution (Metasploit)

  • remote
  • unix
  • Metasploit
    2013-09-17

    Sophos Web Protection Appliance – clear_keys.pl Privilege Escalation (Metasploit)

  • local
  • linux
  • Metasploit
    2013-09-17

    Western Digital Arkeia Appliance 10.0.10 – Multiple Vulnerabilities

  • webapps
  • php
  • xistence
    2013-09-17

    Oracle Java – ‘ShortComponentRaster.verify()’ Memory Corruption

  • remote
  • windows
  • Packet Storm
    2013-09-15

    Mitsubishi MC-WorkX 8.02 – ActiveX Control ‘IcoLaunch’ File Execution

  • remote
  • windows
  • blake
    2013-09-14

    Router ONO Hitron CDE-30364 – Cross-Site Request Forgery

  • webapps
  • hardware
  • Matias Mingorance Svensson
    2013-09-13

    Vestel TV 42pf9322 – Denial of Service

  • dos
  • hardware
  • HackerSofi
    2013-09-13

    Zimplit CMS 3.0 – Multiple Vulnerabilities

  • webapps
  • php
  • Yashar shahinzadeh
    2013-09-13

    WordPress Plugin mukioplayer4wp – ‘cid’ SQL Injection

  • webapps
  • php
  • Ashiyane Digital Security Team
    2013-09-12

    Synology DiskStation Manager (DSM) 4.3-3776 – Multiple Vulnerabilities

  • webapps
  • linux
  • Andrea Fabrizi
    2013-09-12

    D-Link DSL-2740B – Multiple Cross-Site Request Forgery Vulnerabilities

  • webapps
  • hardware
  • Ivano Binetti