Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2019-11-13

ScanGuard Antivirus 2020 – Insecure Folder Permissions

  • local
  • windows
  • hyp3rlinx
    2019-11-13

    Technicolor TC7300.B0 – ‘hostname’ Persistent Cross-Site Scripting

  • webapps
  • hardware
  • Luis Santana
    2019-11-13

    Fastweb Fastgate 0.00.81 – Remote Code Execution

  • webapps
  • hardware
  • Riccardo Gasparini
    2019-11-12

    Computrols CBAS-Web 19.0.0 – ‘username’ Reflected Cross-Site Scripting

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    FlexAir Access Control 2.4.9api3 – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Adrenalin Core HCM 5.4.0 – ‘prntDDLCntrlName’ Reflected Cross-Site Scripting

  • webapps
  • aspx
  • Cy83rl0gger
    2019-11-12

    Alps Pointing-device Controller 8.1202.1711.04 – ‘ApHidMonitorService’ Unquoted Service Path

  • local
  • windows
  • Mario Rodriguez
    2019-11-12

    Prima FlexAir Access Control 2.3.38 – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Bematech Printer MP-4200 – Denial of Service

  • dos
  • hardware
  • Jonatas Fil
    2019-11-12

    Optergy 2.3.0a – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    eMerge E3 1.00-06 – Unauthenticated Directory Traversal

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Optergy 2.3.0a – Remote Code Execution (Backdoor)

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Atlassian Confluence 6.15.1 – Directory Traversal (Metasploit)

  • webapps
  • jsp
  • max7253
    2019-11-12

    eMerge E3 1.00-06 – Cross-Site Request Forgery

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    CBAS-Web 19.0.0 – Username Enumeration

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    RTK IIS Codec Service 6.4.10041.133 – ‘RtkI2SCodec’ Unquote Service Path

  • local
  • windows
  • chuyreds
    2019-11-12

    eMerge E3 1.00-06 – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Wondershare Application Framework Service 2.4.3.231 – ‘WsAppService’ Unquote Service Path

  • local
  • windows
  • chuyreds
    2019-11-12

    CBAS-Web 19.0.0 – Information Disclosure

  • remote
  • hardware
  • LiquidWorm
    2019-11-12

    eMerge E3 1.00-06 – Privilege Escalation

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    CBAS-Web 19.0.0 – ‘id’ Boolean-based Blind SQL Injection

  • webapps
  • php
  • LiquidWorm
    2019-11-12

    Wondershare Application Framework Service – “WsAppService” Unquote Service Path

  • local
  • windows
  • chuyreds
    2019-11-12

    CBAS-Web 19.0.0 – Cross-Site Request Forgery (Add Super Admin)

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    eMerge E3 Access Controller 4.6.07 – Remote Code Execution (Metasploit)

  • remote
  • hardware
  • LiquidWorm
    2019-11-12

    Prima Access Control 2.3.35 – ‘HwName’ Persistent Cross-Site Scripting

  • webapps
  • alpha
  • LiquidWorm
    2019-11-12

    eMerge E3 Access Controller 4.6.07 – Remote Code Execution

  • remote
  • hardware
  • LiquidWorm
    2019-11-12

    eMerge50P 5000P 4.6.07 – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Atlassian Confluence 6.15.1 – Directory Traversal

  • webapps
  • jsp
  • max7253
    2019-11-12

    eMerge E3 1.00-06 – ‘layout’ Reflected Cross-Site Scripting

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    eMerge E3 1.00-06 – Arbitrary File Upload

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Adrenalin Core HCM 5.4.0 – ‘ReportID’ Reflected Cross-Site Scripting

  • webapps
  • aspx
  • Cy83rl0gger
    2019-11-12

    Control Center PRO 6.2.9 – Local Stack Based Buffer Overflow (SEH)

  • local
  • windows
  • sasaga92
    2019-11-12

    FlexAir Access Control 2.3.35 – Authentication Bypass

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    CBAS-Web 19.0.0 – Remote Code Execution

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Prima Access Control 2.3.35 – Arbitrary File Upload

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Adrenalin Core HCM 5.4.0 – ‘strAction’ Reflected Cross-Site Scripting

  • webapps
  • aspx
  • Cy83rl0gger
    2019-11-12

    Optergy 2.3.0a – Username Disclosure

  • webapps
  • hardware
  • LiquidWorm
    2019-11-12

    Acronis True Image OEM 19.0.5128 – ‘afcdpsrv’ Unquoted Service Path

  • local
  • windows
  • Alejandra Sánchez
    2019-11-12

    Optergy 2.3.0a – Cross-Site Request Forgery (Add Admin)

  • webapps
  • hardware
  • LiquidWorm
    2019-11-11

    Adobe Acrobat Reader DC for Windows – Use of Uninitialized Pointer due to Malformed JBIG2Globals Stream

  • dos
  • windows
  • Google Security Research
    2019-11-11

    Alps HID Monitor Service 8.1.0.10 – ‘ApHidMonitorService’ Unquote Service Path

  • local
  • windows
  • Héctor Gabriel Chimecatl Hernández
    2019-11-11

    _GCafé 3.0 – ‘gbClienService’ Unquoted Service Path

  • local
  • windows
  • 4ll4u
    2019-11-11

    XML Notepad 2.8.0.4 – XML External Entity Injection

  • local
  • xml
  • daejinoh
    2019-11-11

    iOS IOUSBDeviceFamily 12.4.1 – ‘IOInterruptEventSource’ Heap Corruption (PoC)

  • dos
  • ios
  • Sem Voigtlander
    2019-11-11

    iMessage – Decoding NSSharedKeyDictionary can read ObjC Object at Attacker Controlled Address

  • dos
  • multiple
  • Google Security Research
    2019-11-11

    Adobe Acrobat Reader DC for Windows – Use of Uninitialized Pointer due to Malformed OTF Font (CFF Table)

  • dos
  • windows
  • Google Security Research
    2019-11-08

    SolarWinds Kiwi Syslog Server 8.3.52 – ‘Kiwi Syslog Server’ Unquoted Service Path

  • local
  • windows
  • Carlos A Garcia R
    2019-11-08

    Adive Framework 2.0.7 – Privilege Escalation

  • webapps
  • php
  • Pablo Santiago
    2019-11-08

    Jenkins build-metrics plugin 1.3 – ‘label’ Cross-Site Scripting

  • webapps
  • java
  • vesche
    2019-11-08

    Nextcloud 17 – Cross-Site Request Forgery

  • webapps
  • php
  • Ozer Goker