Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2011-01-24

WordPress Plugin oQey-Gallery 0.2 – ‘tbpv_domain’ Cross-Site Scripting

  • webapps
  • php
  • AutoSec Tools
    2011-01-24

    Joomla! Component com_b2portfolio 1.0.0 – Multiple SQL Injections

  • webapps
  • php
  • Salvatore Fresta
    2011-01-24

    WordPress Plugin Powerhouse Museum Collection Image Grid 0.9.1.1 – ‘tbpv_username’ Cross-Site Scripting

  • webapps
  • php
  • AutoSec Tools
    2011-01-24

    Inetserv 3.23 POP3 – Denial of Service

  • dos
  • windows
  • dmnt
    2011-01-24

    WordPress Plugin Feature Slideshow 1.0.6 – ‘src’ Cross-Site Scripting

  • webapps
  • php
  • AutoSec Tools
    2011-01-24

    Microsoft SQL Server – sp_replwritetovarbin Memory Corruption (MS09-004) (Metasploit)

  • remote
  • windows
  • Metasploit
    2011-01-23

    WordPress Plugin Audio 0.5.1 – ‘showfile’ Cross-Site Scripting

  • webapps
  • php
  • AutoSec Tools
    2011-01-23

    PHP Link Directory 4.1.0 – Cross-Site Request Forgery (Add Admin)

  • webapps
  • php
  • AtT4CKxT3rR0r1ST
    2011-01-23

    Golden FTP Server 4.70 – ‘PASS’ Buffer Overflow

  • remote
  • windows
  • cd1zz & iglesiasgg
    2011-01-23

    WordPress Plugin WP Publication Archive 2.0.1 – ‘file’ Information Disclosure

  • webapps
  • php
  • AutoSec Tools
    2011-01-23

    Inetserv 3.23 – SMTP Denial of Service

  • dos
  • windows
  • G13
    2011-01-23

    WordPress Plugin WP Featured Post with Thumbnail 3.0 – ‘src’ Cross-Site Scripting

  • webapps
  • php
  • AutoSec Tools
    2011-01-23

    PHP Coupon Script 6.0 – ‘bus’ Blind SQL Injection

  • webapps
  • php
  • h4ck3r
    2011-01-23

    WordPress Plugin RSS Feed Reader 0.1 – ‘rss_url’ Cross-Site Scripting

  • webapps
  • php
  • AutoSec Tools
    2011-01-22

    Sun Java Web Start BasicServiceImpl – Remote Code Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2011-01-22

    cultbooking 2.0.4 – Multiple Vulnerabilities

  • webapps
  • php
  • LiquidWorm
    2011-01-22

    phpCMS 9.0 – Blind SQL Injection

  • webapps
  • php
  • eidelweiss
    2011-01-21

    Panda Global Protection 2010 – Local Denial of Service (unfiltered wcscpy())

  • dos
  • windows
  • Heurs
    2011-01-21

    Panda Global Protection 2010 – Local Denial of Service

  • dos
  • windows
  • Heurs
    2011-01-21

    Look n stop – Local Denial of Service

  • dos
  • windows
  • Heurs
    2011-01-21

    Microsoft Windows Server – Service Relative Path Stack Corruption (MS08-067) (Metasploit)

  • remote
  • windows
  • Metasploit
    2011-01-20

    Microsoft Internet Explorer – CSS SetUserClip Memory Corruption (MS10-090) (Metasploit)

  • remote
  • windows
  • Metasploit
    2011-01-20

    PHP Lowbids – ‘viewfaqs.php’ Blind SQL Injection

  • webapps
  • php
  • h4ck3r
    2011-01-20

    phpCMS 2008 – SQL Injection

  • webapps
  • php
  • R3d-D3V!L
    2011-01-20

    Pixie CMS 1.0.4 – ‘/admin/index.php’ SQL Injection

  • webapps
  • php
  • High-Tech Bridge SA
    2011-01-19

    PHP auctions – ‘viewfaqs.php’ Blind SQL Injection

  • webapps
  • php
  • h4ck3r
    2011-01-19

    Simploo CMS 1.7.1 – PHP Code Execution

  • webapps
  • php
  • David Vieira-Kurz
    2011-01-19

    Novell iPrint 5.52 – ActiveX ‘GetDriverSettings()’ Command Execution

  • remote
  • windows
  • Dr_IDE
    2011-01-19

    PHPAuctions – ‘viewfaqs.php’ SQL Injection

  • webapps
  • php
  • h4ck3r
    2011-01-19

    Golden FTP Server 4.70 – Malformed Message Denial of Service

  • dos
  • windows
  • Craig Freyman
    2011-01-19

    ESTsoft ALZip 8.12.0.3 – ‘.zip’ Remote Buffer Overflow

  • remote
  • windows
  • C4SS!0 G0M3S
    2011-01-19

    acpid 1.0.x – Multiple Local Denial of Service Vulnerabilities

  • dos
  • linux
  • Vasiliy Kulikov
    2011-01-18

    B-Cumulus – ‘tagcloud’ Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • multiple
  • MustLive
    2011-01-18

    Pango Font Parsing – ‘pangoft2-render.c’ Heap Corruption

  • remote
  • linux
  • Dan Rosenberg
    2011-01-18

    N-13 News 3.4 – Cross-Site Request Forgery (Admin Add)

  • webapps
  • php
  • anT!-Tr0J4n
    2011-01-18

    Google Chrome 8.0.552.237 – address Overflow Denial of Service

  • dos
  • windows
  • Vuk Ivanovic
    2011-01-18

    CakePHP 1.3.5/1.2.8 – ‘Unserialize()’ File Inclusion

  • webapps
  • php
  • felix
    2011-01-18

    Joomla! Component allCineVid 1.0.0 – Blind SQL Injection

  • webapps
  • php
  • Salvatore Fresta
    2011-01-18

    A-PDF All to MP3 Converter 2.0.0 – ‘.wav’ Local Buffer Overflow

  • local
  • windows
  • h1ch4m
    2011-01-17

    PHP-Fusion Teams Structure Infusion Addon – SQL Injection

  • webapps
  • php
  • Saif
    2011-01-17

    Linux Kernel 2.6.32 (Ubuntu 10.04) – ‘/proc’ Handling SUID Privilege Escalation

  • local
  • linux
  • halfdog
    2011-01-17

    AneCMS 1.3 – Persistent Cross-Site Scripting

  • webapps
  • php
  • Penguin
    2011-01-17

    phpCMS 2008 V2 – ‘data.php’ SQL Injection

  • webapps
  • php
  • R3d-D3V!L
    2011-01-17

    SmoothWall Express 3.0 – Multiple Vulnerabilities

  • webapps
  • cgi
  • dave b
    2011-01-16

    AWBS 2.9.2 – ‘cart.php’ Blind SQL Injection

  • webapps
  • php
  • ShivX
    2011-01-16

    ActiveX UserManager 2.03 – Buffer Overflow

  • dos
  • windows
  • blake
    2011-01-16

    Joomla! Component com_people 1.0.0 – Local File Inclusion

  • webapps
  • php
  • ALTBTA
    2011-01-16

    Seo Panel 2.2.0 – Cookie-Rendered Persistent Cross-Site Scripting

  • webapps
  • php
  • Mark Stanislav
    2011-01-16

    BetMore Site Suite 4 – ‘bid’ Blind SQL Injection

  • webapps
  • php
  • h4ck3r
    2011-01-16

    Kingsoft AntiVirus 2011 SP5.2 ‘KisKrnl.sys’ 2011.1.13.89 – Local Kernel Mode Denial of Service

  • dos
  • windows
  • MJ0011