Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2012-04-04

osCMax 2.5 – ‘/admin/login.php?Username’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    Hotel Booking Portal – SQL Injection

  • webapps
  • php
  • Mark Stanislav
    2012-04-04

    vBulletin 4.1.10 – ‘announcementid’ SQL Injection

  • webapps
  • php
  • Am!r
    2012-04-04

    osCMax 2.5 – ‘/admin/new_attributes_include.php’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    phpPaleo – Local File Inclusion

  • webapps
  • php
  • Mark Stanislav
    2012-04-04

    osCMax 2.5 – ‘/admin/geo_zones.php?zID’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    e-ticketing – SQL Injection

  • webapps
  • php
  • Mark Stanislav
    2012-04-04

    osCMax 2.5 – ‘/admin/information_manager.php?information_id’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    Plume CMS 1.2.4 – Multiple Persistent Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Ivano Binetti
    2012-04-04

    osCMax 2.5 – ‘/admin/stats_customers.php?sorted’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    Xion Audio Player 1.0.127 – ‘.aiff’ Denial of Service

  • dos
  • windows
  • condis
    2012-04-04

    osCMax 2.5 – ‘/admin/stats_monthly_sales.php?status’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    NetOp Remote Control Client 9.5 – Remote Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2012-04-04

    osCMax 2.5 – ‘/admin/stats_products_purchased.php’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    osCMax 2.5 – ‘/admin/xsell.php?search’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    osCMax 2.5 – ‘/admin/htaccess.php’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-04

    osCMax 2.5 – ‘/admin/login.php?Username’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2012-04-03

    Sysax 5.57 – Directory Traversal

  • remote
  • windows
  • Craig Freyman
    2012-04-03

    Simple PHP Agenda 2.2.8 – Cross-Site Request Forgery (Add Admin / Add Event)

  • webapps
  • php
  • Ivano Binetti
    2012-04-03

    BlazeVideo HDTV Player 6.6 Professional – Local Overflow (SEH + ASLR + DEP Bypass)

  • local
  • windows
  • b33f
    2012-04-03

    Arbor Networks Peakflow SP 3.6.1 – ‘index/’ Cross-Site Scripting

  • remote
  • hardware
  • b.saleh
    2012-04-02

    JBMC Software DirectAdmin 1.403 – ‘domain’ Cross-Site Scripting

  • webapps
  • java
  • Dawid Golak
    2012-04-01

    ManageEngine Firewall Analyzer 7.2 – ‘fw/syslogViewer.do?port’ Cross-Site Scripting

  • webapps
  • java
  • Vulnerability Research Laboratory
    2012-04-01

    ManageEngine Firewall Analyzer 7.2 – ‘fw/mindex.do?url’ Cross-Site Scripting

  • webapps
  • java
  • Vulnerability Research Laboratory
    2012-04-01

    ManageEngine Firewall Analyzer 7.2 – ‘fw/createAnomaly.do?subTab’ Cross-Site Scripting

  • webapps
  • java
  • Vulnerability Research Laboratory
    2012-04-01

    ManageEngine Firewall Analyzer 7.2 – ‘/fw/index2.do’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • java
  • Vulnerability Research Laboratory
    2012-04-01

    SnackAmp 3.1.3 – ‘.aiff’ Denial of Service

  • dos
  • linux
  • Ahmed Elhady Mohamed
    2012-04-01

    FoxPlayer 2.6.0 – Denial of Service

  • dos
  • windows
  • Ahmed Elhady Mohamed
    2012-04-01

    FlatnuX CMS – Cross-Site Request Forgery (Add Admin)

  • webapps
  • php
  • Vulnerability Laboratory
    2012-04-01

    FlatnuX CMS – Traversal Arbitrary File Access

  • webapps
  • php
  • Vulnerability Laboratory
    2012-03-31

    Landshop 0.9.2 – Multiple Web Vulnerabilities

  • webapps
  • php
  • Vulnerability-Lab
    2012-03-31

    Flock 2.6.1 – Denial of Service

  • dos
  • linux
  • r45c4l
    2012-03-31

    WordPress Plugin BuddyPress Plugin 1.5.x < 1.5.5 - SQL Injection

  • webapps
  • php
  • Ivan Terkin
    2012-03-31

    Woltlab Burning Board 2.2/2.3 [WN]KT KickTipp 3.1 – SQL Injection

  • webapps
  • php
  • Easy Laster
    2012-03-31

    EMC Data Protection Advisor 5.8.1 – Denial of Service

  • dos
  • hardware
  • Luigi Auriemma
    2012-03-30

    SyndeoCMS 3.0.01 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Ivano Binetti
    2012-03-30

    dalbum 144 build 174 – Cross-Site Request Forgery

  • webapps
  • php
  • Ahmed Elhady Mohamed
    2012-03-30

    MailMax 4.6 – POP3 ‘USER’ Remote Buffer Overflow

  • remote
  • windows
  • localh0t
    2012-03-30

    ArticleSetup – Multiple Persistence Cross-Site Scripting / SQL Injections

  • webapps
  • php
  • SecPod Research
    2012-03-30

    JamWiki 1.1.5 – ‘num’ Cross-Site Scripting

  • webapps
  • php
  • Sooraj K.S
    2012-03-30

    Bitsmith PS Knowbase 3.2.3 – Local Buffer Overflow

  • local
  • windows
  • Vulnerability-Lab
    2012-03-30

    coppermine 1.5.18 – Multiple Vulnerabilities

  • webapps
  • php
  • waraxe
    2012-03-30

    e107 1.0 – ‘view’ SQL Injection

  • webapps
  • php
  • Am!r
    2012-03-30

    Java – AtomicReferenceArray Type Violation (Metasploit)

  • remote
  • multiple
  • Metasploit
    2012-03-30

    PHP Designer 2007 Personal – Multiple SQL Injections

  • webapps
  • php
  • MR.XpR
    2012-03-29

    Simple Machines Forum (SMF) 2.0.2 – ‘scheduled’ Cross-Site Scripting

  • webapps
  • php
  • Am!r
    2012-03-29

    EZ Publish 4.x ‘ezjscore’ Module – Cross-Site Scripting

  • webapps
  • php
  • Yann MICHARD
    2012-03-29

    EasyPHP – ‘main.php’ SQL Injection

  • webapps
  • php
  • Skote Vahshat
    2012-03-28

    Invision Power Board (IP.Board) 4.2.1 – ‘searchText’ Cross-Site Scripting

  • webapps
  • php
  • sonyy
    2012-03-28

    WordPress Plugin Integrator 1.32 – ‘redirect_to’ Cross-Site Scripting

  • webapps
  • php
  • Stefan Schurtz