Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24745Exploits
日期 标题 类型 平台 作者
2013-02-04

Simple Machine Forum 2.0.x < 2.0.4 - File Disclosure / Directory Traversal

  • webapps
  • php
  • NightlyDev
    2013-02-04

    EasyITSP – ‘voicemail.php’ Directory Traversal

  • webapps
  • php
  • Michal Blaszczak
    2013-02-02

    WordPress Theme flashnews – Multiple Input Validation Vulnerabilities

  • webapps
  • php
  • MustLive
    2013-02-02

    CADA 3S CoDeSys Gateway Server – Directory Traversal (Metasploit)

  • local
  • windows
  • Metasploit
    2013-02-01

    DataLife Engine – ‘preview.php’ PHP Code Injection (Metasploit)

  • remote
  • php
  • Metasploit
    2013-01-31

    Novell Groupwise Client 8.0 – Multiple Remote Code Execution Vulnerabilities

  • remote
  • multiple
  • High-Tech Bridge
    2013-01-31

    WordPress Plugin Audio Player – ‘playerID’ Cross-Site Scripting

  • webapps
  • php
  • hiphop
    2013-01-31

    Buffalo TeraStation TS-Series – Multiple Vulnerabilities

  • webapps
  • hardware
  • Andrea Fabrizi
    2013-01-31

    D-Link DCS Cameras – Multiple Vulnerabilities

  • webapps
  • hardware
  • Roberto Paleari
    2013-01-31

    Netgear SPH200D – Multiple Vulnerabilities

  • webapps
  • hardware
  • m-1-k-3
    2013-01-31

    Firebird – Relational Database CNCT Group Number Buffer Overflow (Metasploit)

  • local
  • windows
  • Metasploit
    2013-01-29

    Multiple Hunt CCTV – Information Disclosure

  • remote
  • multiple
  • Alejandro Ramos
    2013-01-29

    pfSense UTM Platform 2.0.1 – Cross-Site Scripting

  • webapps
  • freebsd
  • Dimitris Strevinas
    2013-01-29

    Apple Quick Time Player (Windows) 7.7.3 – Out of Bound Read

  • dos
  • windows
  • Debasish Mandal
    2013-01-29

    Kohana Framework 2.3.3 – Directory Traversal

  • webapps
  • php
  • Vulnerability-Lab
    2013-01-29

    Fortinet FortiMail 400 IBE – Multiple Vulnerabilities

  • webapps
  • hardware
  • Vulnerability-Lab
    2013-01-29

    Ruby on Rails – JSON Processor YAML Deserialization Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-01-28

    PHP weby directory software 1.2 – Multiple Vulnerabilities

  • webapps
  • php
  • AkaStep
    2013-01-28

    Microsoft Internet Explorer 8/9 – Steal Any Cookie

  • webapps
  • windows
  • Christian Haider
    2013-01-28

    DataLife Engine 9.7 – ‘preview.php’ PHP Code Injection

  • webapps
  • php
  • EgiX
    2013-01-25

    Microsoft Windows – Manage Memory Payload Injection (Metasploit)

  • local
  • windows
  • Metasploit
    2013-01-25

    ImageCMS 4.0.0b – Multiple Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2013-01-25

    iCart Pro – ‘section’ SQL Injection

  • webapps
  • php
  • n3tw0rk
    2013-01-25

    WordPress Plugin SolveMedia 1.1.0 – Cross-Site Request Forgery

  • webapps
  • php
  • Junaid Hussain
    2013-01-25

    PHPWeby Free Directory Script – ‘contact.php’ Multiple SQL Injections

  • webapps
  • php
  • AkaStep
    2013-01-24

    WordPress Plugin WP-Table Reloaded – ‘id’ Cross-Site Scripting

  • webapps
  • php
  • hiphop
    2013-01-24

    Novell eDirectory 8 – Remote Buffer Overflow (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-01-24

    SonicWALL Gms 6 – Arbitrary File Upload (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-01-24

    SQLiteManager 1.2.4 – Remote PHP Code Injection

  • webapps
  • multiple
  • RealGame
    2013-01-24

    Aloaha PDF Crypter (3.5.0.1164) – ActiveX Arbitrary File Overwrite

  • dos
  • windows
  • shinnai
    2013-01-24

    ZoneMinder Video Server – packageControl Command Execution (Metasploit)

  • remote
  • unix
  • Metasploit
    2013-01-24

    Java Applet – AverageRangeStatisticImpl Remote Code Execution (Metasploit)

  • remote
  • java
  • Metasploit
    2013-01-24

    Java Applet – Method Handle Remote Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-01-23

    WordPress Theme Chocolate WP – Multiple Vulnerabilities

  • webapps
  • php
  • Eugene Dokukin
    2013-01-23

    gpEasy CMS – ‘section’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2013-01-22

    Adult WebMaster Script – Password Disclosure

  • webapps
  • php
  • Dshellnoi Unix
    2013-01-22

    Perforce P4Web – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • jsp
  • Christy Philip Mathew
    2013-01-22

    WordPress Plugin Developer Formatter – Cross-Site Request Forgery

  • webapps
  • php
  • Junaid Hussain
    2013-01-22

    DigiLIBE – Execution-After-Redirect Information Disclosure

  • webapps
  • php
  • Robert Gilbert
    2013-01-21

    F5 Networks BIG-IP – XML External Entity Injection

  • remote
  • hardware
  • anonymous
    2013-01-21

    NConf 1.3 – Arbitrary File Creation

  • webapps
  • php
  • haidao
    2013-01-21

    GNU Coreutils ‘sort’ Text Utility – Local Buffer Overflow

  • local
  • linux
  • anonymous
    2013-01-21

    Jenkins – Script-Console Java Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2013-01-21

    NConf 1.3 – ‘/detail.php/detail_admin_items.php?id’ SQL Injection

  • webapps
  • php
  • haidao
    2013-01-21

    PHP-Charts 1.0 – PHP Code Execution (Metasploit)

  • remote
  • php
  • Metasploit
    2013-01-20

    Scripts Genie Classified Ultra – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • 3spi0n
    2013-01-20

    Aloaha Credential Provider Monitor 5.0.226 – Local Privilege Escalation

  • local
  • windows
  • LiquidWorm
    2013-01-19

    WordPress Plugin Ripe HD FLV Player – SQL Injection

  • webapps
  • php
  • Zikou-16
    2013-01-19

    Joomla! Component com_collector – Arbitrary File Upload

  • webapps
  • php
  • Red Dragon_al
    2013-01-18

    Apache OFBiz 10.4.x – Multiple Cross-Site Scripting Vulnerabilities

  • remote
  • multiple
  • Juan Caillava