Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2012-01-31

Joomla! Component com_crhotels – ‘catid’ SQL Injection

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-31

    Apache – httpOnly Cookie Disclosure

  • remote
  • multiple
  • pilate
    2012-01-31

    Vastal I-Tech Agent Zone – ‘search.php’ Blind SQL Injection

  • webapps
  • php
  • Cagri Tepebasili
    2012-01-31

    EdrawSoft Office Viewer Component ActiveX 5.6 – ‘officeviewermme.ocx’ Buffer Overflow (PoC)

  • dos
  • windows
  • LiquidWorm
    2012-01-31

    PragmaMX 1.2.10 – Persistent Cross-Site Scripting

  • webapps
  • php
  • HauntIT
    2012-01-30

    phux Download Manager – Blind SQL Injection

  • webapps
  • php
  • Red Security TEAM
    2012-01-30

    Joomla! Component com_bbs – Multiple SQL Injections

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-30

    Ajax Upload – Arbitrary File Upload

  • webapps
  • multiple
  • Daniel Godoy
    2012-01-30

    Campaign Enterprise 11.0.421 – SQL Injection

  • webapps
  • multiple
  • Craig Freyman
    2012-01-30

    4Images 1.7.6-9 – Cross-Site Request Forgery / PHP Code Injection

  • webapps
  • php
  • Or4nG.M4N
    2012-01-30

    Joomla! Component com_propertylab – ‘id’ SQL Injection

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-30

    HostBill App 2.3 – Remote Code Injection

  • webapps
  • php
  • Dr.DaShEr
    2012-01-30

    Joomla! Component com_firmy – ‘Id’ SQL Injection

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-29

    Tracker Software pdfSaver ActiveX 3.60 – ‘pdfxctrl.dll’ Stack Buffer Overflow (SEH) (PoC)

  • dos
  • windows
  • LiquidWorm
    2012-01-28

    Joomla! Component com_cmotour – ‘id’ SQL Injection

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-28

    MiniUPnP 1.4 – Multiple Denial of Service Vulnerabilities

  • dos
  • multiple
  • Rapid7
    2012-01-28

    Microsoft Windows – midiOutPlayNextPolyEvent Heap Overflow (MS12-004) (Metasploit)

  • remote
  • windows
  • Metasploit
    2012-01-28

    Joomla! Component com_visa – Local File Inclusion / SQL Injection

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-27

    vBSEO 3.6.0 – ‘proc_deutf()’ Remote PHP Code Injection (Metasploit)

  • webapps
  • php
  • EgiX
    2012-01-27

    HP Diagnostics Server – ‘magentservice.exe’ Remote Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2012-01-26

    Joomla! Component com_products – Multiple SQL Injections

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-26

    phpList 2.10.9 – Cross-Site Request Forgery / Cross-Site Scripting

  • webapps
  • php
  • Cyber-Crystal
    2012-01-26

    Joomla! Component com_motor – ‘cid’ SQL Injection

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-26

    VR GPub 4.0 – Cross-Site Request Forgery

  • webapps
  • php
  • Cyber-Crystal
    2012-01-26

    xClick Cart 1.0.x – ‘shopping_url’ Cross-Site Scripting

  • webapps
  • php
  • sonyy
    2012-01-26

    Peel Shopping 2.8/ 2.9 – Cross-Site Scripting / SQL Injections

  • webapps
  • php
  • Cyber-Crystal
    2012-01-26

    WordPress Plugin Slideshow Gallery 1.1.x – ‘border’ Cross-Site Scripting

  • webapps
  • php
  • Bret Hawk
    2012-01-26

    Sysax Multi Server 5.50 – Create Folder Remote Code Execution Buffer Overflow (Metasploit)

  • remote
  • windows
  • Craig Freyman
    2012-01-25

    vBadvanced CMPS 3.2.2 – ‘vba_cmps_include_bottom.php’ Remote File Inclusion

  • webapps
  • php
  • PacketiK
    2012-01-25

    WordPress Core 3.3.1 – Multiple Vulnerabilities

  • webapps
  • php
  • Trustwave's SpiderLabs
    2012-01-25

    DClassifieds 0.1 final – Cross-Site Request Forgery

  • webapps
  • php
  • High-Tech Bridge SA
    2012-01-25

    OSClass 2.3.3 – ‘index.php?getParam()’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2012-01-25

    OSClass 2.3.3 – ‘index.php?sCategory’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2012-01-24

    stoneware webnetwork6 – Multiple Vulnerabilities

  • webapps
  • jsp
  • Jacob Holcomb
    2012-01-24

    Joomla! Component JE Story Submit – ‘index.php’ Arbitrary File Upload

  • webapps
  • php
  • Robert Cooper
    2012-01-24

    Ultimate Locator – ‘radius’ SQL Injection

  • webapps
  • php
  • Robert Cooper
    2012-01-24

    UltraPlayer 2.112 – ‘.avi’ File Denial of Service

  • dos
  • windows
  • KedAns-Dz
    2012-01-24

    glFusion 1.x – SQL Injection

  • webapps
  • php
  • KedAns-Dz
    2012-01-24

    WordPress Plugin YouSayToo auto-publishing 1.0 – ‘submit’ Cross-Site Scripting

  • webapps
  • php
  • H4ckCity Security Team
    2012-01-23

    Joomla! Component com_xball – ‘team_id’ SQL Injection

  • webapps
  • php
  • CoBRa_21
    2012-01-23

    SpamTitan Application 5.08x – SQL Injection

  • webapps
  • php
  • Vulnerability-Lab
    2012-01-23

    WordPress Plugin Kish Guest Posting 1.0 – Arbitrary File Upload

  • webapps
  • php
  • EgiX
    2012-01-23

    Linux Kernel 2.6.39 < 3.2.2 (Gentoo / Ubuntu x86/x64) - 'Mempodipper' Local Privilege Escalation (1)

  • local
  • linux
  • zx2c4
    2012-01-23

    Joomla! Component com_br – ‘Controller’ Local File Inclusion

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-22

    MiniCMS 1.0/2.0 – PHP Code Injection

  • webapps
  • php
  • Or4nG.M4N
    2012-01-22

    WordPress Plugin AllWebMenus < 1.1.9 Menu Plugin - Arbitrary File Upload

  • webapps
  • php
  • 6Scan
    2012-01-22

    Savant Web Server 3.1 – Denial of-Service (PoC)

  • dos
  • windows
  • DDD004
    2012-01-21

    Joomla! Component com_some – ‘Controller’ Local File Inclusion

  • webapps
  • php
  • the_cyber_nuxbie
    2012-01-21

    Lead Capture – ‘login.php’ Script Cross-Site Scripting

  • webapps
  • php
  • HashoR
    2012-01-21

    Joomla! Component com_car – Multiple SQL Injections

  • webapps
  • php
  • the_cyber_nuxbie