Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2019-07-22

Axway SecureTransport 5 – Unauthenticated XML Injection

  • webapps
  • linux
  • Dominik Penner
    2019-07-22

    Comtrend-AR-5310 – Restricted Shell Escape

  • local
  • linux
  • AMRI Amine
    2019-07-22

    BACnet Stack 0.8.6 – Denial of Service

  • dos
  • linux
  • mmorillo
    2019-07-19

    Web Ofisi Firma Rehberi 1 – ‘il’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-19

    fuel CMS 1.4.1 – Remote Code Execution (1)

  • webapps
  • linux
  • 0xd0ff9
    2019-07-19

    Web Ofisi Emlak 3 – ’emlak_durumu’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-19

    Docker – Container Escape

  • local
  • linux
  • dominikczarnotatob
    2019-07-19

    Web Ofisi Platinum E-Ticaret 5 – ‘q’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-19

    Web Ofisi Firma 13 – ‘oz’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-19

    MAPLE Computer WBT SNMP Administrator 2.0.195.15 – Remote Buffer Overflow (EggHunter)

  • remote
  • windows_x86
  • sasaga92
    2019-07-19

    Web Ofisi Emlak 2 – ‘ara’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-19

    REDCap < 9.1.2 - Cross-Site Scripting

  • webapps
  • php
  • Alexandre ZANNI
    2019-07-19

    Web Ofisi Rent a Car 3 – ‘klima’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-19

    Web Ofisi E-Ticaret 3 – ‘a’ SQL Injection

  • webapps
  • linux
  • Ahmet Ümit BAYRAM
    2019-07-18

    WordPress Plugin OneSignal 1.17.5 – ‘subdomain’ Persistent Cross-Site Scripting

  • webapps
  • linux
  • LiquidWorm
    2019-07-18

    Microsoft Windows 10 1903/1809 – RPCSS Activation Kernel Security Callback Privilege Escalation

  • local
  • windows
  • Google Security Research
    2019-07-17

    WinMPG iPod Convert 3.0 – ‘Register’ Denial of Service

  • dos
  • windows
  • stresser
    2019-07-17

    Microsoft Windows – NtUserSetWindowFNID Win32k User Callback Privilege Escalation (Metasploit)

  • local
  • windows
  • Metasploit
    2019-07-17

    Linux – Broken Permission and Object Lifetime Handling for PTRACE_TRACEME

  • local
  • linux
  • Google Security Research
    2019-07-17

    Oracle Siebel CRM 19.0 – Persistent Cross-Site Scripting

  • webapps
  • linux
  • Sarath Nair
    2019-07-17

    MAPLE Computer WBT SNMP Administrator 2.0.195.15 – Remote Buffer Overflow

  • remote
  • windows
  • hyp3rlinx
    2019-07-16

    Microsoft Compiled HTML Help / Uncompiled .chm File – XML External Entity Injection

  • dos
  • windows
  • hyp3rlinx
    2019-07-16

    R 3.4.4 (Windows 10 x64) – Buffer Overflow SEH (DEP/ASLR Bypass)

  • local
  • windows_x86-64
  • blackleitus
    2019-07-16

    CentOS Control Web Panel 0.9.8.836 – Authentication Bypass

  • webapps
  • linux
  • Pongtorn Angsuchotmetee
    2019-07-16

    CentOS Control Web Panel 0.9.8.836 – Privilege Escalation

  • webapps
  • linux
  • Pongtorn Angsuchotmetee, Nissana Sirijirakal, Narin Boonwasanarak
    2019-07-16

    PHP Laravel Framework 5.5.40 / 5.6.x < 5.6.30 - token Unserialize Remote Command Execution (Metasploit)

  • remote
  • linux
  • Metasploit
    2019-07-16

    CentOS Control Web Panel 0.9.8.838 – User Enumeration

  • webapps
  • linux
  • Pongtorn Angsuchotmetee, Nissana Sirijirakal, Narin Boonwasanarak
    2019-07-16

    DameWare Remote Support 12.0.0.509 – ‘Host’ Buffer Overflow (SEH)

  • local
  • windows
  • Xavi Beltran
    2019-07-16

    Microsoft Windows 10 < build 17763 - AppXSvc Hard Link Privilege Escalation (Metasploit)

  • local
  • windows
  • Metasploit
    2019-07-15

    Microsoft Windows Remote Desktop – ‘BlueKeep’ Denial of Service (Metasploit)

  • dos
  • windows
  • RAMELLA Sebastien
    2019-07-15

    Android 7 – 9 VideoPlayer – ‘ihevcd_parse_pps’ Out-of-Bounds Write

  • dos
  • android
  • Marcin Kozlowski
    2019-07-15

    Netgear WiFi Router JWNR2010v5 / R6080 – Authentication Bypass

  • webapps
  • hardware
  • Wadeek
    2019-07-15

    CISCO Small Business 200 / 300 / 500 Switches – Multiple Vulnerabilities

  • webapps
  • hardware
  • Ramikan
    2019-07-15

    FlightPath < 4.8.2 / < 5.0-rc2 - Local File Inclusion

  • webapps
  • php
  • Mohammed Althibyani
    2019-07-15

    Streamripper 2.6 – ‘Song Pattern’ Buffer Overflow

  • local
  • windows
  • Andrey Stoykov
    2019-07-12

    Citrix SD-WAN Appliance 10.2.2 – Authentication Bypass / Remote Command Execution

  • webapps
  • cgi
  • Chris Lyne
    2019-07-12

    Xymon 4.3.25 – useradm Command Execution (Metasploit)

  • remote
  • multiple
  • Metasploit
    2019-07-12

    Microsoft Font Subsetting – DLL Heap Corruption in ComputeFormat4CmapData

  • dos
  • windows
  • Google Security Research
    2019-07-12

    Jenkins Dependency Graph View Plugin 0.13 – Persistent Cross-Site Scripting

  • webapps
  • java
  • Ishaq Mohammed
    2019-07-12

    Tenda D301 v2 Modem Router – Persistent Cross-Site Scripting

  • webapps
  • hardware
  • ABDO10
    2019-07-12

    Sahi Pro 8.0.0 – Remote Command Execution

  • webapps
  • java
  • AkkuS
    2019-07-12

    Microsoft Windows 10.0.17134.648 – HTTP -> SMB NTLM Reflection Leads to Privilege Elevation

  • local
  • windows
  • Google Security Research
    2019-07-12

    MyT Project Management 1.5.1 – User[username] Persistent Cross-Site Scripting

  • webapps
  • php
  • Metin Yunus Kandemir
    2019-07-11

    Sitecore 9.0 rev 171002 – Persistent Cross-Site Scripting

  • webapps
  • aspx
  • Owais Mehtab
    2019-07-11

    SNMPc Enterprise Edition 9/10 – Mapping Filename Buffer Overflow

  • local
  • windows
  • xerubus
    2019-07-10

    Microsoft DirectWrite / AFDKO – Heap-Based Buffer Overflow in OpenType Font Handling in readCharset

  • dos
  • windows
  • Google Security Research
    2019-07-10

    Microsoft DirectWrite / AFDKO – Interpreter Stack Underflow in OpenType Font Handling Due to Missing CHKUFLOW

  • dos
  • windows
  • Google Security Research
    2019-07-10

    Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling Due to Negative nAxes

  • dos
  • windows
  • Google Security Research
    2019-07-10

    Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling While Processing CFF Blend DICT Operator

  • dos
  • windows
  • Google Security Research
    2019-07-10

    Microsoft DirectWrite / AFDKO – Stack-Based Buffer Overflow in do_set_weight_vector_cube for Large nAxes

  • dos
  • windows
  • Google Security Research