Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2013-04-04

Google Chrome 26.0.1410.43 (Webkit) – OBJECT Element Use-After-Free (PoC)

  • dos
  • osx
  • Google Security Research
    2013-04-04

    Google Chrome – Cookie Verification Denial of Service

  • dos
  • multiple
  • anonymous
    2013-04-03

    C2 WebResource – ‘File’ Cross-Site Scripting

  • webapps
  • asp
  • anonymous
    2013-04-03

    SmallFTPd – Denial of Service

  • dos
  • windows
  • AkaStep
    2013-04-03

    FUDforum – Multiple Remote PHP Code Injection Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge
    2013-04-03

    Symphony – ‘sort’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge
    2013-04-03

    e107 – ‘content_preset.php’ Cross-Site Scripting

  • webapps
  • php
  • Simon Bieber
    2013-04-02

    Netgear WNR1000 – Authentication Bypass

  • webapps
  • hardware
  • Roberto Paleari
    2013-04-02

    Aspen 0.8 – Directory Traversal

  • webapps
  • multiple
  • Daniel Ricardo dos Santos
    2013-04-02

    WordPress Plugin FuneralPress 1.1.6 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Rob Armstrong
    2013-04-02

    Network Weathermap 0.97a – ‘editor.php’ Persistent Cross-Site Scripting

  • webapps
  • php
  • Daniel Ricardo dos Santos
    2013-04-02

    Pollen CMS 0.6 – ‘index.php?p’ Paramete’ Local File Disclosure

  • webapps
  • php
  • MizoZ
    2013-04-02

    VirtualDJ Pro/Home 7.3 – Local Buffer Overflow

  • local
  • windows
  • Alexandro Sánchez Bach
    2013-03-30

    WordPress Plugin Feedweb – ‘wp_post_id’ Cross-Site Scripting

  • webapps
  • php
  • Stefan Schurtz
    2013-03-29

    KNet Web Server 1.04b – Remote Buffer Overflow (SEH)

  • remote
  • windows
  • Myo Soe
    2013-03-29

    Konftel 300IP SIP-based Conference Phone 2.1.2 – Remote Bypass Reboot

  • dos
  • hardware
  • Todor Donev
    2013-03-29

    jPlayer – ‘Jplayer.swf’ Script Cross-Site Scripting

  • webapps
  • jsp
  • Malte Batram
    2013-03-29

    McAfee Virtual Technician (MVT) 6.5.0.2101 – Insecure ActiveX Method

  • remote
  • windows
  • High-Tech Bridge SA
    2013-03-29

    AWS Xms 2.5 – ‘importer.php?what’ Directory Traversal

  • webapps
  • php
  • High-Tech Bridge SA
    2013-03-29

    v0pCr3w (Web Shell) – Remote Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-03-29

    Java CMM – Remote Code Execution (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-03-29

    STUNSHELL (Web Shell) – Remote Code Execution (Metasploit)

  • remote
  • php
  • Metasploit
    2013-03-29

    STUNSHELL (Web Shell) – PHP Remote Code Execution (Metasploit)

  • remote
  • php
  • Metasploit
    2013-03-29

    MailOrderWorks 5.907 – Multiple Vulnerabilities

  • webapps
  • windows
  • Vulnerability-Lab
    2013-03-29

    Draytek Vigor 3900 1.06 – Local Privilege Escalation

  • local
  • hardware
  • Mohammad abou hayt
    2013-03-29

    SynConnect Pms – ‘index.php?loginid’ SQL Injection

  • webapps
  • php
  • Bhadresh Patel
    2013-03-27

    OrionDB Web Directory – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • 3spi0n
    2013-03-27

    ClipShare 4.1.1 – Multiples Vulnerabilities

  • webapps
  • php
  • Esac
    2013-03-27

    PsychoStats 3.2.2b – ‘awards.php’ Blind SQL Injection

  • webapps
  • php
  • Mohamed from ALG
    2013-03-27

    MyBB 1.6.6 – ‘index.php?conditions[usergroup][]’ Cross-Site Scripting

  • webapps
  • php
  • Aditya Modha
    2013-03-27

    MyBB 1.6.6 – ‘index.php?conditions[usergroup][]’ SQL Injection

  • webapps
  • php
  • Aditya Modha
    2013-03-26

    IBM Lotus Domino 8.5.x – ‘x.nsf’ Multiple Cross-Site Scripting Vulnerabilities

  • remote
  • multiple
  • MustLive
    2013-03-26

    Rosewill RSVA11001 – Remote Command Injection

  • remote
  • hardware
  • Eric Urban
    2013-03-26

    HP Intelligent Management Center – Arbitrary File Upload (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-03-26

    ActFax 5.01 – RAW Server Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-03-26

    WordPress Plugin Mathjax Latex 1.1 – Cross-Site Request Forgery

  • webapps
  • php
  • Junaid Hussain
    2013-03-25

    Atmail WebMail – ‘INBOX.Trash?mailId’ Reflected Cross-Site Scripting

  • webapps
  • php
  • Vicente Aguilera Diaz
    2013-03-25

    IconCool MP3 WAV Converter 3.00 Build 120518 – Stack Buffer Overflow

  • dos
  • windows
  • G0li47h
    2013-03-25

    Atmail WebMail – ‘searchResultsTab5?filter’ Reflected Cross-Site Scripting

  • webapps
  • php
  • Vicente Aguilera Diaz
    2013-03-25

    Free Hosting Manager 2.0.2 – Multiple SQL Injections

  • webapps
  • php
  • Saadi Siddiqui
    2013-03-25

    Atmail WebMail – Message Attachment File Name Reflected Cross-Site Scripting

  • webapps
  • php
  • Vicente Aguilera Diaz
    2013-03-25

    WordPress Plugin Banners Lite – ‘wpbanners_show.php’ HTML Injection

  • webapps
  • php
  • Fernando A. Lagos B
    2013-03-25

    Mutiny – Remote Command Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2013-03-25

    KingView – Log File Parsing Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2013-03-25

    Mitsubishi MX ActiveX Component 3 – ‘ActUWzd.dll’ ‘WzTitle’ Remote Heap Spray

  • remote
  • windows
  • Dr_IDE
    2013-03-25

    LiquidXML Studio 2010 – ActiveX Code Execution

  • local
  • windows
  • Dr_IDE
    2013-03-25

    LiquidXML Studio 2012 – ActiveX Insecure Method Executable File Creation

  • local
  • windows
  • Dr_IDE
    2013-03-25

    Ra1NX PHP Bot – pubcall Authentication Bypass Remote Code Execution (Metasploit)

  • webapps
  • php
  • bwall
    2013-03-25

    vBulletin 5.0.0 Beta 11 < 5.0.0 Beta 28 - SQL Injection

  • webapps
  • php
  • Orestis Kourides
    2013-03-25

    ClipShare 4.1.1 – ‘gid’ Blind SQL Injection

  • webapps
  • php
  • Esac