Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2011-11-23

WordPress Plugin NewsLetter Meenews 5.1 – ‘idnews’ Cross-Site Scripting

  • webapps
  • php
  • Amir
    2011-11-23

    WordPress Plugin Featurific For WordPress 1.6.2 – ‘snum’ Cross-Site Scripting

  • webapps
  • php
  • Amir
    2011-11-22

    Hastymail2 – ‘rs’ Cross-Site Scripting

  • webapps
  • php
  • HTrovao
    2011-11-22

    TA.CMS (TeachArabia) – ‘lang’ Traversal Local File Inclusion

  • webapps
  • php
  • CoBRa_21
    2011-11-22

    TA.CMS (TeachArabia) – ‘index.php?id’ SQL Injection

  • webapps
  • php
  • CoBRa_21
    2011-11-22

    Microsoft Windows XP/7 Kernel – ‘win32k.sys’ Keyboard Layout Privilege Escalation (MS10-073)

  • local
  • windows
  • instruder
    2011-11-22

    Wireshark 1.4.4 – DECT Dissector Remote Buffer Overflow

  • remote
  • linux
  • ipv
    2011-11-22

    Microsoft Excel – Malformed OBJ Record Handling Overflow (MS11-038) (Metasploit)

  • local
  • windows
  • Metasploit
    2011-11-22

    Free MP3 CD Ripper 1.1 – ‘.wav’ Local Stack Buffer Overflow (Metasploit)

  • local
  • windows
  • Metasploit
    2011-11-21

    QQPLAYER Player 3.2 – PICT PnSize Buffer Overflow Windows (ASLR + DEP Bypass) (Metasploit)

  • local
  • windows_x86
  • hellok
    2011-11-21

    WordPress Plugin Lanoba Social 1.0 – ‘action’ Cross-Site Scripting

  • webapps
  • php
  • Amir
    2011-11-21

    WordPress Plugin Adminimize 1.7.21 – ‘page’ Cross-Site Scripting

  • webapps
  • php
  • Am!r
    2011-11-21

    WordPress Plugin Advanced Text Widget 2.0 – ‘page’ Cross-Site Scripting

  • webapps
  • php
  • Amir
    2011-11-21

    Microsoft Winows 7 – Keyboard Layout Blue Screen of Death (MS10-073)

  • dos
  • windows
  • instruder
    2011-11-21

    WordPress Plugin Alert Before Your Post – ‘name’ Cross-Site Scripting

  • webapps
  • php
  • Am!r
    2011-11-21

    VMware – Update Manager Directory Traversal

  • remote
  • windows
  • Alexey Sintsov
    2011-11-20

    Digital Attic Foundation CMS – ‘id’ SQL Injection

  • webapps
  • php
  • tempe_mendoan
    2011-11-20

    Viscom Software Movie Player Pro SDK ActiveX 6.8 – Stack Buffer Overflow (Metasploit)

  • remote
  • windows
  • Metasploit
    2011-11-19

    Support Incident Tracker 3.65 – ‘translate.php’ Remote Code Execution

  • webapps
  • php
  • EgiX
    2011-11-19

    ARASTAR – SQL Injection

  • webapps
  • php
  • TH3_N3RD
    2011-11-19

    Blogs manager 1.101 – SQL Injection

  • webapps
  • php
  • muuratsalo
    2011-11-19

    Valid tiny-erp 1.6 – SQL Injection

  • webapps
  • php
  • muuratsalo
    2011-11-19

    Freelancer Calendar 1.01 – SQL Injection

  • webapps
  • php
  • muuratsalo
    2011-11-19

    WordPress Plugin jetpack – ‘sharedaddy.php’ ID SQL Injection

  • webapps
  • php
  • longrifle0x
    2011-11-19

    Wireshark – console.lua pre-loading (Metasploit)

  • remote
  • windows
  • Metasploit
    2011-11-18

    GoAhead Web Server 2.5 – ‘goform/formTest’ Multiple Cross-Site Scripting Vulnerabilities

  • remote
  • windows
  • Prabhu S Angadi
    2011-11-18

    Jetty Web Server – Directory Traversal

  • remote
  • windows
  • Alexey Sintsov
    2011-11-18

    Thunder Kankan Player 4.8.3.840 – Stack Overflow / Denial of Service

  • dos
  • windows
  • hellok
    2011-11-17

    WordPress Plugin Flexible Custom Post Type – ‘id’ Cross-Site Scripting

  • webapps
  • php
  • Am!r
    2011-11-17

    ZOHO ManageEngine ADSelfService Plus 4.5 Build 4521 – Cross-Site Scripting

  • webapps
  • php
  • James webb
    2011-11-17

    webERP 4.3.8 – ‘/reportwriter/FormMaker.php?ReportID’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2011-11-17

    webERP 4.3.8 – ‘/reportwriter/ReportMaker.php?reportid’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2011-11-17

    webERP 4.3.8 – Multiple Script URI Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • High-Tech Bridge SA
    2011-11-17

    Viscom Image Viewer CP Pro 8.0/Gold 6.0 – ActiveX Control (Metasploit)

  • remote
  • windows
  • Metasploit
    2011-11-16

    SonicWALL Aventail SSL-VPN – SQL Injection

  • webapps
  • hardware
  • Asheesh kumar
    2011-11-16

    FreeWebShop 2.2.9 R2 – ‘ajax_save_name.php’ Remote Code Execution

  • webapps
  • php
  • EgiX
    2011-11-16

    Webistry 1.6 – ‘pid’ SQL Injection

  • webapps
  • php
  • CoBRa_21
    2011-11-16

    FleaHttpd – Remote Denial of Service

  • dos
  • linux
  • condis
    2011-11-16

    Attachmate Reflection FTP Client – Heap Overflow

  • dos
  • windows
  • Francis Provencher
    2011-11-15

    Authenex A-Key/ASAS Web Management Control 3.1.0.2 – Blind SQL Injection

  • webapps
  • multiple
  • Jose Carlos de Arriba
    2011-11-15

    QuiXplorer 2.3 – Bugtraq Arbitrary File Upload

  • webapps
  • php
  • PCA
    2011-11-14

    Mozilla Firefox 8.0 – Null Pointer Dereference (PoC)

  • dos
  • multiple
  • 0in
    2011-11-14

    Pixie CMS 1.01 < 1.04 - Blind SQL Injections

  • webapps
  • php
  • Piranha
    2011-11-14

    Joomla! Component Content – ‘year’ SQL Injection

  • webapps
  • php
  • E.Shahmohamadi
    2011-11-14

    WordPress Plugin AdRotate 3.6.6 – SQL Injection

  • webapps
  • php
  • Miroslav Stampar
    2011-11-14

    Mini-stream RM-MP3 Converter 3.1.2.1 – ‘.pls’ Local Stack Buffer Overflow (Metasploit)

  • local
  • windows
  • Metasploit
    2011-11-14

    optima apiftp server 1.5.2.13 – Multiple Vulnerabilities

  • dos
  • windows
  • Luigi Auriemma
    2011-11-13

    WordPress Plugin Zingiri 2.2.3 – ‘ajax_save_name.php’ Remote Code Execution

  • webapps
  • php
  • EgiX
    2011-11-13

    Mambo 4.x – ‘Zorder’ SQL Injection

  • webapps
  • php
  • KraL BeNiM
    2011-11-13

    Aviosoft Digital TV Player Professional 1.0 – Local Stack Buffer Overflow (Metasploit)

  • local
  • windows
  • Metasploit