Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2012-05-20

AZ Photo Album – Cross-Site Scripting / Arbitrary File Upload

  • webapps
  • php
  • Eyup CELIK
    2012-05-20

    Concrete5 CMS FlashUploader – Arbitrary ‘.SWF’ File Upload

  • webapps
  • php
  • AkaStep
    2012-05-20

    Concrete CMS < 5.5.21 - Multiple Vulnerabilities

  • webapps
  • php
  • AkaStep
    2012-05-19

    FreeNAC 3.02 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • blake
    2012-05-19

    PHP Address Book 7.0.0 – Multiple Vulnerabilities

  • webapps
  • php
  • Stefan Schurtz
    2012-05-19

    Active Collab ‘chat module’ < 2.3.8 - Remote PHP Code Injection (Metasploit)

  • remote
  • php
  • Metasploit
    2012-05-19

    Oracle Weblogic Apache Connector – POST Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2012-05-19

    Squiggle 1.7 – SVG Browser Java Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2012-05-18

    Microsoft Windows XP – Keyboard Layouts Pool Corruption (PoC) (MS12-034)

  • dos
  • windows
  • Cr4sh
    2012-05-18

    Vanilla Forums LatestComment 1.1 Plugin – Persistent Cross-Site Scripting

  • webapps
  • php
  • Henry Hoggard
    2012-05-17

    SkinCrafter ActiveX Control 3.0 – Local Buffer Overflow

  • local
  • windows
  • saurabh sharma
    2012-05-17

    Atlassian JIRA FishEye 2.5.7 / Crucible 2.5.7 Plugins – XML Parsing Security

  • webapps
  • jsp
  • anonymous
    2012-05-17

    PHP Address Book 7.0 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Stefan Schurtz
    2012-05-17

    Atlassian Tempo 6.4.3 / JIRA 5.0.0 / Gliffy 3.7.0 – XML Parsing Denial of Service

  • dos
  • jsp
  • anonymous
    2012-05-17

    ArtiPHP 5.5.0 Neo – ‘index.php’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Gjoko Krstic
    2012-05-16

    backupDB() 1.2.7a – ‘onlyDB’ Cross-Site Scripting

  • webapps
  • php
  • LiquidWorm
    2012-05-16

    SiliSoftware PHPThumb() 1.7.11-201108081537 – ‘/demo/PHPThumb.demo.random.php?dir’ Cross-Site Scripting

  • webapps
  • php
  • Gjoko Krstic
    2012-05-16

    SiliSoftware PHPThumb() 1.7.11-201108081537 – ‘/demo/PHPThumb.demo.showpic.php?title’ Cross-Site Scripting

  • webapps
  • php
  • Gjoko Krstic
    2012-05-16

    LongTail JW Player – ‘debug’ Cross-Site Scripting

  • webapps
  • php
  • gainover
    2012-05-16

    Java – Trigerring Java Code from a .SVG Image

  • dos
  • multiple
  • Nicolas Gregoire
    2012-05-16

    Artiphp CMS 5.5.0 – Database Backup Disclosure

  • webapps
  • php
  • LiquidWorm
    2012-05-16

    Axous 1.1.1 – Cross-Site Request Forgery / Persistent Cross-Site Scripting

  • webapps
  • php
  • Ivano Binetti
    2012-05-16

    Unijimpe Captcha – ‘captchademo.php’ Cross-Site Scripting

  • webapps
  • php
  • Daniel Godoy
    2012-05-15

    WordPress Plugin NewsLetter Manager 1.0 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin GRAND Flash Album Gallery 1.71 – ‘admin.php’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    MultiMedia Builder 4.9.8 – ‘.mef’ Denial of Service

  • dos
  • windows
  • Ahmed Elhady Mohamed
    2012-05-15

    WordPress Plugin Pretty Link Lite 1.5.2 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin iFrame Admin Pages 0.1 – ‘main_page.php’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin WP Forum Server 1.7.3 – ‘/fs-admin/fs-admin.php’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin 2 Click Social Media Buttons 0.32.2 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Mingle Forum 1.0.33 – ‘admin.php’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin CataBlog 1.6 – ‘admin.php’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin GD Star Rating 1.9.16 – ‘tpl_section’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin PDF & Print Button Joliprint 1.3.0 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Leaflet Maps Marker 0.0.1 – ‘leaflet_marker.php?id’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Network Publisher 5.0.1 – ‘networkpub_key’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Leaflet Maps Marker 0.0.1 – ‘leaflet_layer.php?id’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin LeagueManager 3.7 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Media Library Categories – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Track That Stat 1.0.8 – Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Soundcloud Is Gold 2.1 – ‘width’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Share and Follow 1.80.3 – ‘admin.php’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    WordPress Plugin Sharebar 1.2.1 – SQL Injection / Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-15

    b2ePms 1.0 – Authentication Bypass

  • webapps
  • php
  • Jean Pascal Pereira
    2012-05-15

    WordPress Plugin Dynamic Widgets 1.5.1 – ‘themes.php’ Cross-Site Scripting

  • webapps
  • php
  • Heine Pedersen
    2012-05-14

    Universal Reader 1.16.740.0 – ‘uread.exe’ Denial of Service

  • dos
  • windows
  • demonalex
    2012-05-14

    Pro-face Pro-Server EX WinGP PC Runtime – Multiple Vulnerabilities

  • dos
  • windows
  • Luigi Auriemma
    2012-05-14

    FlexNet License Server Manager – Stack Overflow In lmgrd

  • dos
  • multiple
  • Luigi Auriemma
    2012-05-13

    WordPress Plugin WP-FaceThumb 0.1 – ‘pagination_wp_facethum’ Cross-Site Scripting

  • webapps
  • php
  • d3v1l
    2012-05-13

    Galette – ‘picture.php’ SQL Injection

  • webapps
  • php
  • sbz