Microsoft Windows 10 – Desktop Bridge Virtual Registry CVE-2018-0880 Incomplete Fix Privilege Escalation
Windows: Windows: Desktop Bridge Virtual Registry CVE-2018-0880 Incomplete Fix EoP
windows 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
Windows: Windows: Desktop Bridge Virtual Registry CVE-2018-0880 Incomplete Fix EoP
Windows: Desktop Bridge Activation Arbitrary Directory Creation EoP
# Exploit Title: Path Traversal in Gateway in Mirasys DVMS Workstation
Writeup: https://codewhitesec.blogspot.com/2018/06/cve-2018-0624.html
# Exploit Title: Redatam Web Server < 7 - Directory Traversal
# Exploit Title: Audiograbber 1.83 - Local Buffer Overflow (SEH)
# Exploit Title: Pale Moon Browser < 27.9.3 - Use After Free (PoC)
# Exploit Title: Soroush IM Desktop app 0.15 - Authentication Bypass
# Title: RSLinx Classic and FactoryTalk Linx Gateway - Privilege Escalation
Windows: Child Process Restriction Mitigation Bypass
[+] Credits: John Page (aka hyp3rlinx)
#!/usr/bin/python
#!/usr/bin/python
function opt(w, arr) {
#!/usr/bin/python
Demo exploitation of the POP SS vulnerability (CVE-2018-8897), leading to unsigned code execution with kernel privila...
BOOL JavascriptNativeFloatArray::SetItem(uint32 index, double dValue)
# Exploit Title: Schneider Electric PLCs - Cross-Site Request Forgery
Chakra uses the InvariantBlockBackwardIterator class to backpropagate the information about the hoisted bound checks....
# Exploit Title: Prime95 Local Buffer Overflow (SEH)
# Exploit Title: HPE iMC EL Injection Unauthenticated RCE
# Exploit Title: Nanopool Claymore Dual Miner >= 7.3 Remote Code Execution
Windows: Token Trust SID Access Check Bypass EOP
# Exploit Title: Rockwell Scada System - Cross-Site Scripting
# Exploit Title: [BSOD by IOCTL 0x8000200D in 2345NsProtect.sys of 2345 Security Guard 3.7]
#!/usr/bin/env python
# Exploit Title: [BSOD by IOCTL 0x002220e0 in 2345BdPcSafe.sys of 2345 Security Guard 3.7]
# Exploit Title: EMC RecoverPoint 4.3 - Admin CLI Command Injection
# Exploit Title: Open-AudIT Community - 2.2.0 – Cross-Site Scripting
# Exploit Title: Open-AudIT Professional 2.1.1 – Multiple Cross-Site Scripting
Title: Dell Touchpad - ApMsgFwd.exe Denial Of Service
###########################################################################################
# Exploit Title: Microsoft Windows FxCop 10/12 - XML External Entity Injection
# -*- coding: utf-8 -*-
#!/usr/bin/python
# Exploit Title: DeviceLock Plug and Play Auditor 5.72 - Unicode Buffer Overflow (SEH)
A few years ago, I became aware of a security issue in most Call of Duty games.
% a PDF file using an XFA
What do you need to know? Tenable Research has discovered a critical remote code execution vulnerability in Schneider...
#!/usr/bin/python
#!/usr/bin/python
#!/usr/bin/python
#######################################################
#include "stdafx.h"
#!/usr/bin/env python