Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2010-12-10

Litespeed Web Server 4.0.17 with PHP (FreeBSD) – Remote Overflow

  • remote
  • freebsd
  • kingcope
    2010-12-10

    PHP 5.3.3 – NumberFormatter::getSymbol Integer Overflow

  • dos
  • multiple
  • Maksymilian Arciemowicz
    2010-12-10

    slickMsg 0.7-alpha – ‘top.php’ Cross-Site Scripting

  • webapps
  • php
  • Aliaksandr Hartsuyeu
    2010-12-10

    Joomla! Component com_billyportfolio 1.1.2 – Blind SQL Injection

  • webapps
  • php
  • jdc
    2010-12-10

    BizDir 05.10 – ‘f_srch’ Cross-Site Scripting

  • webapps
  • cgi
  • Aliaksandr Hartsuyeu
    2010-12-10

    Sulata iSoft – ‘stream.php’ Local File Disclosure

  • webapps
  • php
  • Sudden_death
    2010-12-10

    Helix Server 14.0.1.571 – Administration Interface Cross-Site Request Forgery

  • remote
  • multiple
  • John Leitch
    2010-12-10

    ManageEngine EventLog Analyzer 6.1 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • php
  • Rob Kraus
    2010-12-10

    Joomla! Component JExtensions Property Finder – ‘sf_id’ SQL Injection

  • webapps
  • php
  • FL0RiX
    2010-12-10

    Social Share – ‘vote.php’ HTTP Response Splitting

  • webapps
  • php
  • Aliaksandr Hartsuyeu
    2010-12-09

    Apache Archiva 1.0 < 1.3.1 - Cross-Site Request Forgery

  • webapps
  • multiple
  • Anatolia Security
    2010-12-09

    WWWThread 5.0.8 Pro – ‘showflat.pl’ Cross-Site Scripting

  • webapps
  • cgi
  • Aliaksandr Hartsuyeu
    2010-12-09

    Mozilla Firefox/Thunderbird/SeaMonkey – Multiple HTML Injection Vulnerabilities

  • remote
  • linux
  • Yosuke Hasegawa
    2010-12-09

    Joomla! Component JE Messenger 1.0 – Arbitrary File Upload

  • webapps
  • php
  • Salvatore Fresta
    2010-12-09

    AJ Matrix DNA – SQL Injection

  • webapps
  • php
  • Br0ly
    2010-12-09

    VMware Tools – Update OS Command Injection

  • remote
  • multiple
  • Nahuel Grisolia
    2010-12-09

    Joomla! Component Jeformcr – ‘id’ SQL Injection

  • webapps
  • php
  • FL0RiX
    2010-12-09

    CMScout 2.09 – Cross-Site Request Forgery

  • webapps
  • php
  • High-Tech Bridge SA
    2010-12-09

    PHP State – ‘id’ SQL Injection

  • webapps
  • php
  • jos_ali_joe
    2010-12-09

    Joomla! Component JE Auto 1.0 – SQL Injection

  • webapps
  • php
  • Salvatore Fresta
    2010-12-09

    net2ftp 0.98 (stable) – ‘/admin1.template.php’ Local/Remote File Inclusion

  • webapps
  • php
  • Marcin Ressel
    2010-12-09

    Abtp Portal Project 0.1.0 – Local File Inclusion

  • webapps
  • php
  • Br0ly
    2010-12-08

    Microsoft Internet Explorer 8 – CSS Parser Denial of Service

  • dos
  • windows
  • WooYun
    2010-12-08

    WonderWare InBatch 9.0sp1 – Buffer Overflow

  • dos
  • multiple
  • Luigi Auriemma
    2010-12-08

    WordPress Plugin Safe Search – ‘v1’ Cross-Site Scripting

  • webapps
  • php
  • John Leitch
    2010-12-08

    Winamp 5.6 – ‘MIDI Parser’ Arbitrary Code Execution

  • local
  • windows
  • Kryptos Logic
    2010-12-08

    WordPress Plugin Processing Embed 0.5 – ‘pluginurl’ Cross-Site Scripting

  • webapps
  • php
  • John Leitch
    2010-12-08

    Drupal Module Embedded Media Field/Media 6.x : Video Flotsam/Media: Audio Flotsam – Multiple Vulnerabilities

  • webapps
  • php
  • Justin Klein Keane
    2010-12-08

    Allegro RomPager 4.07 – UPnP HTTP Request Remote Denial of Service

  • dos
  • multiple
  • Ricky-Lee Birtles
    2010-12-07

    WordPress Plugin Twitter Feed – ‘url’ Cross-Site Scripting

  • webapps
  • php
  • John Leitch
    2010-12-07

    GNU InetUtils 1.8-1 – FTP Client Heap Overflow

  • dos
  • linux
  • Rew
    2010-12-07

    SolarWinds Orion Network Performance Monitor (NPM) 10.1 – Multiple Cross-Site Scripting Vulnerabilities

  • webapps
  • asp
  • x0skel
    2010-12-07

    Linux Kernel 2.6.37 (RedHat / Ubuntu 10.04) – ‘Full-Nelson.c’ Local Privilege Escalation

  • local
  • linux
  • Dan Rosenberg
    2010-12-07

    Zimplit CMS – ‘English_manual_version_2.php?client’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2010-12-07

    SOOP Portal Raven 1.0b – Arbitrary File Upload

  • webapps
  • asp
  • Sun Army
    2010-12-07

    Zimplit CMS – ‘zimplit.php?File’ Cross-Site Scripting

  • webapps
  • php
  • High-Tech Bridge SA
    2010-12-07

    RDM Embedded Lock Manager < 9.x - 'lm_tcp' Service Buffer Overflow

  • remote
  • multiple
  • Luigi Auriemma
    2010-12-07

    GNU glibc – ‘regcomp()’ Stack Exhaustion Denial of Service

  • dos
  • linux
  • Maksymilian Arciemowicz
    2010-12-07

    Aigaion 1.3.4 – ‘ID’ SQL Injection

  • webapps
  • php
  • KnocKout
    2010-12-06

    Alguest 1.1 – ‘start’ SQL Injection

  • webapps
  • php
  • Aliaksandr Hartsuyeu
    2010-12-06

    MODx REvolution CMS 2.0.4-pl2 – POST injection Cross-Site Scripting

  • webapps
  • php
  • LiquidWorm
    2010-12-06

    phpMyAdmin – Client-Side Code Injection / Redirect Link Falsification

  • webapps
  • php
  • emgent white_sheep & scox
    2010-12-06

    Flash Player – ‘Flash6.ocx’ AllowScriptAccess Denial of Service (PoC)

  • dos
  • windows
  • Dr_IDE
    2010-12-06

    AVG Internet Security 2011 – Safe Search for IE Denial of Service

  • dos
  • windows
  • Dr_IDE
    2010-12-06

    Alice 2.2 – Arbitrary Code Execution

  • local
  • windows
  • Rew
    2010-12-06

    WinZip 15.0 – WZFLDVW.OCX IconIndex Property Denial of Service

  • dos
  • windows
  • Fady Mohammed Osman
    2010-12-06

    WinZip 15.0 – WZFLDVW.OCX Text Property Denial of Service

  • dos
  • windows
  • Fady Mohammed Osman
    2010-12-06

    Viscom VideoEdit Gold ActiveX 8.0 – Code Execution

  • local
  • windows
  • Rew
    2010-12-06

    Video Charge Studio 2.9.5.643 – ‘.vsc’ Local Buffer Overflow (SEH)

  • local
  • windows
  • xsploited security
    2010-12-06

    Freefloat FTP Server – Directory Traversal

  • remote
  • windows
  • Pr0T3cT10n