AVS Audio Converter 9.1.2.600 – Stack Overflow (PoC)
# Exploit Title: AVS Audio Converter 9.1.2.600 - Stack Overflow (PoC)
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: AVS Audio Converter 9.1.2.600 - Stack Overflow (PoC)
# Exploit Title: elearning-script 1.0 - Authentication Bypass
# Exploit Title: FTP Navigator 8.03 - Stack Overflow (SEH)
# Exploit Title: XEROX WorkCentre 6655 Printer - Cross-Site Request Forgery (Add Admin)
# Exploit: Thrive Smart Home 1.1 - Authentication Bypass
# Exploit Title: XEROX WorkCentre 7855 Printer - Cross-Site Request Forgery (Add Admin)
# Exploit Title: XEROX WorkCentre 7830 Printer - Cross-Site Request Forgery (Add Admin)
# Exploit: WEMS BEMS 21.3.1 - Undocumented Backdoor Account
# Exploit Title: Wing FTP Server 6.0.7 - Unquoted Service Path
# Exploit: AVE DOMINAplus 1.10.x - Credential Disclosure
# Exploit: AVE DOMINAplus 1.10.x - Unauthenticated Remote Reboot
# Exploit: AVE DOMINAplus 1.10.x - Cross-Site Request Forgery (enable/disable alarm)
# Exploit: AVE DOMINAplus 1.10.x - Authentication Bypass
# Exploit Title: Heatmiser Netmonitor 3.03 - Hardcoded Credentials
# Exploit: MyDomoAtHome REST API Domoticz ISS Gateway 0.2.40 - Information Disclosure
# Exploit Title: Domain Quester Pro 6.02 - Stack Overflow (SEH)
# Exploit Title: RICOH SP 4510SF Printer - HTML Injection
# Exploit Title: RICOH Web Image Monitor 1.09 - HTML Injection
# Exploit Title: Heatmiser Netmonitor 3.03 - HTML Injection
# Exploit: FreeBSD-SA-19:02.fd - Privilege Escalation
# Exploit: FreeBSD-SA-19:15.mqueuefs - Privilege Escalation
EDB Note ~ Download: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/47879.zip
# Exploit Title: XnConvert 1.82 - Denial of Service (PoC)
# Exploit Title: Prime95 Version 29.8 build 6 - Buffer Overflow (SEH)
# Exploit Title: Microsoft Windows 10 BasicRender.sys - Denial of Service (PoC)
# Exploit Title: phpMyChat-Plus 1.98 - 'pmc_username' Reflected Cross-Site Scripting
# Exploit Title: FreeSWITCH 1.10.1 - Command Execution
# Exploit Title: FTP Navigator 8.03 - 'Custom Command' Denial of Service (SEH)
# Exploit Title: SurfOffline Professional 2.2.0.103 - 'Project Name' Denial of Service (SEH)
# Exploit Title: Deutsche Bahn Ticket Vending Machine Local Kiosk - Privilege Escalation
# Exploit Title: Tautulli 2.1.9 - Cross-Site Request Forgery (ShutDown)
# Exploit Title: XnView 2.49.1 - 'Research' Denial of Service (PoC)
# Exploit Title: Xerox AltaLink C8035 Printer - Cross-Site Request Forgery (Add Admin)
# Exploit Title: AVS Audio Converter 9.1 - 'Exit folder' Buffer Overflow
# Exploit Title: Rumpus FTP Web File Manager 8.2.9.1 - Reflected Cross-Site Scripting
The XNU function wait_for_namespace_event() in bsd/vfs/vfs_syscalls.c releases a file descriptor for use by userspace...
See the full write-up at Bishop Fox, CVE-2019-18935: https://know.bishopfox.com/research/cve-2019-18935-remote-code-e...
# Exploit Title: Zendesk App SweetHawk Survey 1.6 - Persistent Cross-Site Scripting
# Exploit Title: Netgear R6400 - Remote Code Execution
# Vulnerability Title: NopCommerce 4.2.0 - Privilege Escalation
#!/usr/bin/env python
# Exploit Title: D-Link DIR-615 Wireless Router - Persistent Cross-Site Scripting
# Exploit Title: Roxy Fileman 1.4.5 - Directory Traversal
# Exploit Title: D-Link DIR-615 - Privilege Escalation
Since commit 0fa03c624d8f ("io_uring: add support for sendmsg()", first in v5.3),
Qualys Security Advisory
# Title: NVMS-1000 - Directory Traversal
# Exploit Title: FTP Commander Pro 8.03 - Local Stack Overflow
# Exploit Title: Lenovo Power Management Driver 1.67.17.48 - 'pmdrvs.sys' Denial of Service (PoC)