Audacity 2.3 – Denial of Service (PoC)
# Exploit Title: AudaCity 2.3 - Denial of Service (PoC)
windows 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: AudaCity 2.3 - Denial of Service (PoC)
Windows: FSCTL_FIND_FILES_BY_SID Information Disclosure
[+] Credits: John Page (aka hyp3rlinx)
# Exploit Title: Phoenix Contact WebVisit 2985725 - Authentication Bypass
# Exploit Title: Microsoft SQL Server Management Studio 17.9 - '.xmla' XML External Entity Injection
# Exploit Title: Microsoft SQL Server Management Studio 17.9 - '.xel' XML External Entity Injection
# Exploit Title: Microsoft SQL Server Management Studio 17.9 - XML External Entity Injection
The switch statement only handles Js::TypeIds_Array but not Js::TypeIds_NativeIntArray and Js::TypeIds_NativeFloatArr...
The BailOutOnInvalidatedArrayHeadSegment check uses the JavascriptArray::GetArrayForArrayOrObjectWithArray method to ...
# Exploit Title: Seqrite End Point Security 7.4 - Privilege Escalation
1. Content process -> Privileged content process (first_stage.js)
# Title: EE 4GEE Mini EE40_00_02.00_44 - Privilege Escalation
# Exploit Title: iWay Data Quality Suite Web Console 10.6.1.ga-2016-11-20 – XML External Entity Injection
Windows: Double Dereference in NtEnumerateKey Elevation of Privilege
Windows: CiSetFileCache TOCTOU CVE-2017-11830 Variant WDAC Security Feature Bypass
A call to the String.prototype.localeCompare method can be inlineed when it only takes one argument. There are two ve...
Here's a snippet of PathTypeHandlerBase::SetAttributesHelper.
# Exploit Title: Ubisoft Uplay Desktop Client 63.0.5699.0 - Remote Code Execution
3y3t3m th!s - Ivan Ivanovic Ivanov Иван-дурак
# Exploit Title: Socusoft Photo to Video Converter 8.07 - 'Registration Name' Buffer Overflow
# Exploit Title: Faleemi Desktop Software 1.8.2 - 'SavePath for ScreenShots' Buffer Overflow (SEH)
# Exploit Title: STOPzilla AntiMalware 6.5.2.59 - Privilege Escalation
# Exploit Title: Apache Syncope 2.0.7 - Remote Code Execution
# Exploit Title: MediaTek Wirless Utility rt2870 - Denial of Service (PoC)
# Exploit Title: Apache Portals Pluto 3.0.0 - Remote Code Execution
# Exploit Title: Infiltrator Network Security Scanner 4.6 - Denial of Service (PoC)
# Exploit Title: PDF Explorer 1.5.66.2 - Denial of Service (PoC)
# Exploit Title: iCash 7.6.5 - Denial of Service (PoC)
# Exploit Author: bzyo
# Exploit Author: bzyo
# Title: Microsoft Baseline Security Analyzer 2.3 - XML External Entity Injection
# Exploit Title: DVD Photo Slideshow Professional 8.07 - Buffer Overflow (SEH)
# Exploit Title: Wikipedia 12.0 - Denial of Service (PoC)
# Exploit Title: Microsoft Windows Explorer Out-of-Bound read - Denial of Service (PoC)
# Title: FsPro Labs Event Log Explorer v4.6.1.2115 - XML External Entity Injection
# Exploit Title: VSAXESS V2.6.2.70 build20171226_053 - 'Nickname' Denial of Service (PoC)
#--------------------------------------------------------#
(Note: PoC will now hijack the print spooler service - spoolsv.exe - as it required less code then hijacking printfil...
# Exploit Title: Cisco Network Assistant 6.3.3 - 'Cisco Login' Denial of Service (PoC)
# Exploit Title: Sentrifugo HRMS 3.2 - 'deptid' SQL Injection
# Exploit Title: ManageEngine ADManager Plus 6.5.7 - HTML Injection
# Exploit Title: PCViewer vt1000 - Directory Traversal
The InitializeNumberFormat function in Intl.js is used to initialize an Intl.NumberFormat object, and InitializeDateT...