windows
windows 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
Cyclope Employee Surveillance Solution 6.0/6.1.0/6.2.0/6.2.1/6.3.0 – SQL Injection
# Author: loneferret of Offensive Security
IBM Proventia Network Mail Security System 2.5 – POST File Read
#!/usr/bin/python
xeams email server 4.4 build 5720 – Persistent Cross-Site Scripting
#!/usr/bin/python
winwebmail server 3.8.1.6 – Persistent Cross-Site Scripting
#!/usr/bin/python
Surgemail 6.0a4 – Persistent Cross-Site Scripting
#!/usr/bin/python
smartermail free 9.2 – Persistent Cross-Site Scripting
#!/usr/bin/python
Alt-N MDaemon free 12.5.4 – Persistent Cross-Site Scripting
#!/usr/bin/python
ManageEngine ServiceDesk Plus 8.1 – Persistent Cross-Site Scripting
#!/usr/bin/python
mailtraq 2.17.3.3150 – Persistent Cross-Site Scripting
#!/usr/bin/python
mailenable enterprise 6.5 – Persistent Cross-Site Scripting
#!/usr/bin/python
escon supportportal pro 3.0 – Persistent Cross-Site Scripting
#!/usr/bin/python
Axigen Mail Server 8.0.1 – Persistent Cross-Site Scripting
#!/usr/bin/python
Zoho BugTracker – Multiple Persistent Cross-Site Scripting Vulnerabilities
Zoho BugTracker Multiple Stored XSS Vulnerabilities
Oracle Business Transaction Management Server 12.1.0.2.7 FlashTunnelService – Remote File Deletion
Oracle Business Transaction Management Server 12.1.0.2.7 FlashTunnelService
Oracle Business Transaction Management Server 12.1.0.2.7 – FlashTunnelService WriteToFile Message Remote Code Execution
Oracle Business Transaction Management Server 12.1.0.2.7 FlashTunnelService
AOL Products downloadUpdater2 Plugin – ‘SRC’ Remote Code Execution
AOL Products downloadUpdater2 Plugin SRC Parameter Remote Code Execution
CoolPlayer Portable 2.19.2 – Local Buffer Overflow (ASLR Bypass) (2)
# Buffer overflow that bypasses ASLR by using a non-aslr module
VideoLAN VLC Media Player 2.0.2 – ‘.3gp’ File Divide-by-Zero Denial of Service
source: https://www.securityfocus.com/bid/54791/info
Dr. Web Control Center 6.00.3.201111300 – Cross-Site Scripting
Dr. Web Control Center Admin UI Remote Script Code Injection
httpdx 1.5.4 – Remote Heap Overflow
#!/usr/bin/perl -w
Mini-stream RM-MP3 Converter 3.1.2.1.2010.03.30 – Local Buffer Overflow (ASLR + DEP Bypass)
# Exploit Title: Mini-stream RM-MP3 Converter 3.1.2.1.2010.03.30 local buffer overflow (\w ASLR and DEP bypass)
Barcodewiz ‘Barcodewiz.dll’ ActiveX Control – ‘Barcode’ Method Remote Buffer Overflow
source: https://www.securityfocus.com/bid/54701/info
Photodex ProShow Producer 5.0.3256 – Local Buffer Overflow
#######################################################################################
SolarWinds Orion Network Performance Monitor 10.2.2 – Multiple Vulnerabilities
######################################################################################
httpdx 1.5.4 – HTTP Server Remote Denial of Service
#!/usr/bin/perl -w
Oxide WebServer 2.0.4 – Denial of Service
##############################################################################
Oracle Outside-In – ‘.LWP’ File Parsing Stack Buffer Overflow
#####################################################################################
Oracle Outside-In JP2 – File Parsing Heap Overflow
#####################################################################################
Oracle Outside-In – ‘.FPX’ File Parsing Heap Overflow
#####################################################################################
Simple Web Server 2.2 rc2 – Remote Buffer Overflow
use IO::Socket;