VBScript – VbsErase Reference Leak Use-After-Free
There is an reference leak in Microsoft VBScript that can be turned into an use-after-free given sufficient time. The...
dos 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
There is an reference leak in Microsoft VBScript that can be turned into an use-after-free given sufficient time. The...
# Exploit Title: MegaPing
# Exploit Title: Excel Password Recovery Professional
# Exploit Title: AnyBurn
# Exploit Title: UltraISO 9.7.1.3519 - 'Output FileName' Denial of Service (PoC) and Pointer to next SEH and SE handl...
#!/usr/bin/python
Using the userfaultfd API, it is possible to first register a
# Exploit Title: LanSpy 2.0.1.159 - Local BoF (PoC)
# -*- coding: utf-8 -*-
# Exploit Title: Textpad 8.1.2 - Denial Of Service (PoC)
The following crash due to a heap-based out-of-bounds read can be observed in an ASAN build of Wireshark (current git...
The following crash due to a stack-based out-of-bounds memory access can be observed in an ASAN build of Wireshark (c...
# Exploit Title: Microsoft Lync for Mac 2011 Injection Forced Browsing/Download
# Exploit Title: Budabot 4.0 - Denial of Service (PoC)
# Exploit Title: Mozilla Firefox 63.0.1 - Denial of Service (PoC)
# Exploit Title: Linux Kernel 4.8 (Ubuntu 16.04) - Leak sctp kernel pointer
This is simillar to issue 1263 . When hoisting a function onto the outer scope, if it overwrites the iteration varia...
case ArrayPushIntrinsic: {
When a for-in loop is executed, a JSPropertyNameEnumerator object is created at the beginning and used to store the i...
# Exploit Title: MariaDB Client 10.1.26 - Denial of Service (PoC)
# Exploit Title: MacOS 10.13 - 'workq_kernreturn' Denial of Service (PoC)
Since the patch for CVE-2018-8372, it checks all inputs to native arrays, and if any input equals to the MissingItem ...
# Exploit Title: XMPlay 3.8.3 - '.m3u' Denial of Service (PoC)
# Exploit Title: Easy Outlook Express Recovery 2.0 - Denial of Service (PoC)
# Exploit Title: Mumsoft Easy Software 2.0 - Denial of Service (PoC)
# Exploit Title: Notepad3 1.0.2.350 - Denial of Service (PoC)
# Exploit Title: Bosch Video Management System 8.0-Configuration Client-Denial of Service (Poc)
# Exploit Title: AMPPS 2.7 - Denial of Service (PoC)
[+] Credits: John Page (aka hyp3rlinx)
# Exploit Title: evince command line injection
# Exploit Title: CuteFTP Mac 3.1 Denial of Service (PoC)
# Exploit Title: Mongoose Web Server 6.9 - Denial of Service (PoC)
# Exploit Title: CuteFTP 9.3.0.3 - Denial of Service (PoC)
# Exploit Title: HeidiSQL 9.5.0.5196 - Denial of Service (PoC)
# Exploit Title: VSAXESS V2.6.2.70 build20171226_053 - 'organization' Denial of Service (PoC)
# Exploit Title: eToolz 3.4.8.0 - Denial of Service (PoC)
# Exploit Title: Blue Server 1.1 - Denial of Service (PoC)
There is a heap corruption vulnerability in VCPDecompressionDecodeFrame which is called by FaceTime. This bug can be ...
There are a variety of problems that occur when processing malformed H264 streams in readSPSandGetDecoderParams, lead...
There is a memory corruption issue when processing a malformed RTP video stream in FaceTime that leads to a kernel pa...
# Exploit Title: Softros LAN Messenger 9.2 - Denial of Service (PoC)
# Exploit Title: Virgin Media Hub 3.0 Router - Denial of Service (PoC)
# Exploit Title: Zint Barcode Generator 2.6 - Denial of Service (PoC)
# Exploit Title: CdCatalog 2.3.1 - Denial of Service (PoC)