المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 3 4 5 6 7 8 9 10 [11] 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70

  1. [local] Allok RM RMVB to AVI MPEG DVD Converter 3.6.1217 - Stack Overflow (SEH)
  2. [dos] Backup Key Recovery 2.2.5 - 'Name' Denial of Service (PoC)
  3. [local] Allok Video Converter 4.6.1217 - Stack Overflow (SEH)
  4. [dos] Top Password Software Dialup Password Recovery 1.30 - Denial of Service (PoC)
  5. [dos] SpotOutlook 1.2.6 - 'Name' Denial of Service (PoC)
  6. [local] Advanced System Repair Pro 1.9.1.7 - Insecure File Permissions
  7. [dos] SpotDialup 1.6.7 - 'Name' Denial of Service (PoC)
  8. [webapps] Chevereto 3.13.4 Core - Remote Code Execution
  9. [webapps] Citrix Application Delivery Controller and Citrix Gateway - Remote Code Exe
  10. [webapps] Citrix Application Delivery Controller and Citrix Gateway - Remote Code Exe
  11. [webapps] ASTPP 4.0.1 VoIP Billing - Database Backup Download
  12. [webapps] PixelStor 5000 K:4.0.1580-20150629 - Remote Code Execution
  13. [webapps] Pandora 7.0NG - Remote Code Execution
  14. [local] TotalAV 2020 4.14.31 - Privilege Escalation
  15. [local] MSN Password Recovery 1.30 - XML External Entity Injection
  16. [webapps] Oracle Weblogic 10.3.6.0.0 - Remote Command Execution
  17. [dos] ZIP Password Recovery 2.30 - 'ZIP File' Denial of Service (PoC)
  18. [webapps] Sony Playstation 4 (PS4) < 6.72 - WebKit Code Execution (PoC)
  19. [webapps] Tomcat proprietaryEvaluate 9.0.0.M1 - Sandbox Escape
  20. [remote] JetBrains TeamCity 2018.2.4 - Remote Code Execution
  21. [remote] ASTPP VoIP 4.0.1 - Remote Code Execution
  22. [remote] EBBISLAND EBBSHAVE 6100-09-04-1441 - Remote Buffer Overflow
  23. [webapps] Online Book Store 1.0 - Unauthenticated Remote Code Execution
  24. [webapps] Codoforum 4.8.3 - 'input_txt' Persistent Cross-Site Scripting
  25. [remote] Cisco DCNM JBoss 10.4 - Credential Leakage
  26. [webapps] Complaint Management System 4.0 - Remote Code Execution
  27. [local] AnyDesk 5.4.0 - Unquoted Service Path
  28. [webapps] piSignage 2.6.4 - Directory Traversal
  29. [webapps] Job Portal 1.0 - Remote Code Execution
  30. [webapps] Wordpress Ultimate Addons for Beaver Builder 1.2.4.1 - Authentication Bypas
  31. [local] NextVPN v4.10 - Insecure File Permissions
  32. [webapps] Shopping Portal ProVersion 3.0 - Authentication Bypass
  33. [webapps] Dairy Farm Shop Management System 1.0 - 'username' SQL Injection
  34. [local] Plantronics Hub 3.13.2 - Local Privilege Escalation
  35. [webapps] Karakuzu ERP Management Web 5.7.0 - 'k_adi_duz' SQL Injection
  36. [webapps] Online Course Registration 2.0 - Remote Code Execution
  37. [webapps] Hospital Management System 4.0 - 'searchdata' SQL Injection
  38. [dos] MSN Password Recovery 1.30 - Denial of Service (PoC)
  39. [local] Microsoft Windows .Group File - Code Execution
  40. [remote] nostromo 1.9.6 - Remote Code Execution
  41. [webapps] Hospital Management System 4.0 - Authentication Bypass
  42. [webapps] IBM InfoPrint 4247-Z03 Impact Matrix Printer - Directory Traversal
  43. [webapps] IBM RICOH Infoprint 1532 Printer - Persistent Cross-Site Scripting
  44. [webapps] Subrion CMS 4.0.5 - Cross-Site Request Forgery (Add Admin)
  45. [dos] NetShareWatcher 1.5.8.0 - 'Name' Denial Of Service
  46. [webapps] Complaint Management System 4.0 - 'cid' SQL injection
  47. [webapps] BloodX 1.0 - Authentication Bypass
  48. [webapps] Hospital Management System 4.0 - Persistent Cross-Site Scripting
  49. [local] Adaware Web Companion 4.9.2159 - 'WCAssistantService' Unquoted Service Path
  50. [webapps] Hostel Management System 2.0 - 'id' SQL Injection
  51. [dos] NetworkSleuth 3.0.0.0 - 'Key' Denial of Service (PoC)
  52. [dos] SpotIE 2.9.5 - 'Key' Denial of Service (PoC)
  53. [dos] TextCrawler Pro3.1.1 - Denial of Service (PoC)
  54. [dos] Dnss Domain Name Search Software - 'Name' Denial of Service (PoC)
  55. [dos] NetShareWatcher 1.5.8.0 - 'Key' Denial of Service (PoC)
  56. [dos] ShareAlarmPro Advanced Network Access Control - 'Key' Denial of Service (PoC)
  57. [webapps] elaniin CMS 1.0 - Authentication Bypass
  58. [dos] BlueAuditor 1.7.2.0 - 'Name' Denial of Service (PoC)
  59. [dos] Dnss Domain Name Search Software - 'Key' Denial of Service (PoC)
  60. [dos] RemShutdown 2.9.0.0 - 'Key' Denial of Service (PoC)
  61. [local] Windows - Shell COM Server Registrar Local Privilege Escalation
  62. [webapps] Django < 3.0 < 2.2 < 1.11 - Account Hijack
  63. [dos] Microsoft Outlook VCF cards - Denial of Service (PoC)
  64. [webapps] Codoforum 4.8.3 - Persistent Cross-Site Scripting
  65. [webapps] Voyager 1.3.0 - Directory Traversal
  66. [webapps] Small CRM 2.0 - Authentication Bypass
  67. [dos] Duplicate Cleaner Pro 4 - Denial of Service (PoC)
  68. [dos] FTPGetter Professional 5.97.0.223 - Denial of Service (PoC)
  69. [dos] SpotIM 2.2 - 'Name' Denial Of Service
  70. [dos] SpotMSN 2.4.6 - 'Name' Denial of Service (PoC)
  71. [dos] SpotFTP FTP Password Recovery 3.0.0.0 - 'Name' Denial of Service (PoC)
  72. [dos] Office Product Key Finder 1.5.4 - Denial of Service (PoC)
  73. [dos] NBMonitor 1.6.6.0 - 'Key' Denial of Service (PoC)
  74. [dos] RemShutdown 2.9.0.0 - 'Name' Denial of Service (PoC)
  75. [dos] Backup Key Recovery Recover Keys Crashed Hard Disk Drive 2.2.5 - 'Key' Denial o
  76. [local] FreeBSD-SA-19:02.fd - Privilege Escalation
  77. [webapps] Heatmiser Netmonitor 3.03 - HTML Injection
  78. [local] FreeBSD-SA-19:15.mqueuefs - Privilege Escalation
  79. [webapps] RICOH Web Image Monitor 1.09 - HTML Injection
  80. [webapps] RICOH SP 4510SF Printer - HTML Injection
  81. [local] Domain Quester Pro 6.02 - Stack Overflow (SEH)
  82. [webapps] AVE DOMINAplus 1.10.x - Credential Disclosure
  83. [local] Wing FTP Server 6.0.7 - Unquoted Service Path
  84. [webapps] WEMS BEMS 21.3.1 - Undocumented Backdoor Account
  85. [webapps] AVE DOMINAplus 1.10.x - Unauthenticated Remote Reboot
  86. [webapps] MyDomoAtHome REST API Domoticz ISS Gateway 0.2.40 - Information Disclosure
  87. [webapps] Heatmiser Netmonitor 3.03 - Hardcoded Credentials
  88. [webapps] AVE DOMINAplus 1.10.x - Authentication Bypass
  89. [webapps] AVE DOMINAplus 1.10.x - Cross-Site Request Forgery (enable/disable alarm)
  90. [webapps] XEROX WorkCentre 6655 Printer - Cross-Site Request Forgery (Add Admin)
  91. [webapps] XEROX WorkCentre 7830 Printer - Cross-Site Request Forgery (Add Admin)
  92. [webapps] XEROX WorkCentre 7855 Printer - Cross-Site Request Forgery (Add Admin)
  93. [webapps] Thrive Smart Home 1.1 - Authentication Bypass
  94. [local] FTP Navigator 8.03 - Stack Overflow (SEH)
  95. [local] AVS Audio Converter 9.1.2.600 - Stack Overflow (PoC)
  96. [webapps] elearning-script 1.0 - Authentication Bypass
  97. [webapps] HomeAutomation 3.3.2 - Authentication Bypass
  98. [webapps] HomeAutomation 3.3.2 - Persistent Cross-Site Scripting
  99. [webapps] HomeAutomation 3.3.2 - Cross-Site Request Forgery (Add Admin)
  100. [webapps] HomeAutomation 3.3.2 - Remote Code Execution
  101. [local] Microsoft UPnP - Local Privilege Elevation (Metasploit)
  102. [local] Reptile Rootkit - reptile_cmd Privilege Escalation (Metasploit)
  103. [local] OpenBSD - Dynamic Loader chpass Privilege Escalation (Metasploit)
  104. [local] Prime95 Version 29.8 build 6 - Buffer Overflow (SEH)
  105. [webapps] WordPress Core < 5.3.x - 'xmlrpc.php' Denial of Service
  106. [remote] FreeSWITCH 1.10.1 - Command Execution
  107. [webapps] phpMyChat-Plus 1.98 - 'pmc_username' Reflected Cross-Site Scripting
  108. [dos] Microsoft Windows 10 BasicRender.sys - Denial of Service (PoC)
  109. [webapps] Deutsche Bahn Ticket Vending Machine Local Kiosk - Privilege Escalation
  110. [dos] FTP Navigator 8.03 - 'Custom Command' Denial of Service (SEH)
  111. [webapps] Telerik UI - Remote Code Execution via Insecure Deserialization
  112. [dos] macOS 10.14.6 (18G87) - Kernel Use-After-Free due to Race Condition in wait_for
  113. [remote] OpenMRS - Java Deserialization RCE (Metasploit)
  114. [webapps] Rumpus FTP Web File Manager 8.2.9.1 - Reflected Cross-Site Scripting
  115. [local] AVS Audio Converter 9.1 - 'Exit folder' Buffer Overflow
  116. [webapps] Xerox AltaLink C8035 Printer - Cross-Site Request Forgery (Add Admin)
  117. [dos] XnView 2.49.1 - 'Research' Denial of Service (PoC)
  118. [webapps] Tautulli 2.1.9 - Cross-Site Request Forgery (ShutDown)
  119. [webapps] NopCommerce 4.2.0 - Privilege Escalation
  120. [webapps] Netgear R6400 - Remote Code Execution
  121. [webapps] Roxy Fileman 1.4.5 - Directory Traversal
  122. [webapps] D-Link DIR-615 Wireless Router - Persistent Cross-Site Scripting
  123. [webapps] Zendesk App SweetHawk Survey 1.6 - Persistent Cross-Site Scripting
  124. [local] OpenBSD 6.x - Dynamic Loader Privilege Escalation
  125. [local] Linux 5.3 - Privilege Escalation via io_uring Offload of sendmsg() onto Kerne
  126. [webapps] D-Link DIR-615 - Privilege Escalation
  127. [local] FTP Commander Pro 8.03 - Local Stack Overflow
  128. [webapps] NVMS 1000 - Directory Traversal
  129. [webapps] Bullwark Momentum Series JAWS 1.0 - Directory Traversal
  130. [webapps] OpenNetAdmin 18.1.1 - Command Injection Exploit (Metasploit)
  131. [dos] Lenovo Power Management Driver 1.67.17.48 - 'mdrvs.sys' Denial of Service (PoC)
  132. [webapps] Apache Olingo OData 4.0 - XML External Entity Injection
  133. [dos] Adobe Acrobat Reader DC - Heap-Based Memory Corruption due to Malformed TTF Fon
  134. [dos] AppXSvc 17763 - Arbitrary File Overwrite (DoS)
  135. [dos] Product Key Explorer 4.2.0.0 - 'Key' Denial of Service (PoC)
  136. [dos] Product Key Explorer 4.2.0.0 - 'Name' Denial of Service (POC)
  137. [webapps] Inim Electronics Smartliving SmartLAN 6.x - Remote Command Execution
  138. [webapps] Inim Electronics Smartliving SmartLAN 6.x - Unauthenticated Server-Side Req
  139. [local] Inim Electronics Smartliving SmartLAN 6.x - Hard-coded Credentials
  140. [webapps] Oracle Siebel Sales 8.1 - Persistent Cross-Site Scripting
  141. [webapps] Alcatel-Lucent Omnivista 8770 - Remote Code Execution
  142. [webapps] Yachtcontrol Webapplication 1.0 - Unauthenticated Remote Code Execution
  143. [local] SpotAuditor 5.3.2 - 'Base64' Local Buffer Overflow (SEH)
  144. [webapps] PRO-7070 Haz?r Profesyonel Web Sitesi 1.0 - Authentication Bypass
  145. [dos] Omron PLC 1.0.0 - Denial of Service (PoC)
  146. [webapps] Snipe-IT Open Source Asset Management 4.7.5 - Persistent Cross-Site Scripti
  147. [local] Microsoft Windows 10 - 'WSReset' UAC Protection Bypass (propsys.dll)
  148. [local] Microsoft Windows - 'WSReset' UAC Protection Bypass (Registry)
  149. [local] Microsoft Windows - Multiple UAC Protection Bypasses
  150. [local] Mozilla FireFox (Windows 10 x64) - Full Chain Client Side Attack
  151. [local] Trend Micro Deep Security Agent 11 - Arbitrary File Overwrite
  152. [remote] Integard Pro NoJs 2.2.0.9026 - Remote Buffer Overflow
  153. [webapps] Verot 2.0.3 - Remote Code Execution
  154. [local] Amiti Antivirus 25.0.640 - Unquoted Service Path
  155. [webapps] Broadcom CA Privilged Access Manager 2.8.2 - Remote Command Execution
  156. [local] NETGATE Data Backup 3.0.620 - 'NGDatBckpSrv' Unquoted Service Path
  157. [webapps] Cisco WLC 2504 8.9 - Denial of Service (PoC)
  158. [webapps] OwnCloud 8.1.8 - Username Disclosure
  159. [webapps] Online Clinic Management System 2.2 - HTML Injection
  160. [local] Microsoft Visual Basic 2010 Express - XML External Entity Injection
  161. [webapps] SSDWLAB 6.1 - Authentication Bypass
  162. [webapps] Revive Adserver 4.2 - Remote Code Execution
  163. [local] Microsoft Windows Media Center 2002 - XML External Entity MotW Bypass
  164. [webapps] Intelbras Router RF1200 1.1.3 - Cross-Site Request Forgery
  165. [webapps] Online Invoicing System 2.6 - 'description' Persistent Cross-Site Scripting
  166. [local] Microsoft Excel 2016 1901 - XML External Entity Injection
  167. [local] Anviz CrossChex 4.3.12 - Local Buffer Overflow
  168. [local] Max Secure Anti Virus Plus 19.0.4.020 - Insecure File Permissions
  169. [dos] Nsauditor 3.1.8.0 - 'Key' Denial of Service (PoC)
  170. [webapps] Dokuwiki 2018-04-22b - Username Enumeration
  171. [webapps] SmartHouse Webapp 6.5.33 - Cross-Site Request Forgery
  172. [local] Visual Studio 2008 - XML External Entity Injection
  173. [dos] Nsauditor 3.1.8.0 - 'Name' Denial of Service (PoC)
  174. [local] Bash 5.0 Patch 11 - SUID Priv Drop Exploit
  175. [dos] SpotAuditor 5.3.2 - 'Name' Denial of Service
  176. [dos] SpotAuditor 5.3.2 - 'Key' Denial of Service
  177. [local] TexasSoft CyberPlanet 6.4.131 - 'CCSrvProxy' Unquoted Service Path
  178. [webapps] Online Inventory Manager 3.2 - Persistent Cross-Site Scripting
  179. [webapps] Mersive Solstice 2.8.0 - Remote Code Execution
  180. [webapps] Wordpress 5.3 - User Disclosure
  181. [dos] GHIA CamIP 1.2 for iOS - 'Password' Denial of Service (PoC)
  182. [local] ClamAV < 0.102.0 - 'bytecode_vm' Code Execution
  183. [dos] SMPlayer 19.5.0 - Denial of Service (PoC)
  184. [local] Waves MaxxAudio Drivers 1.1.6.0 - 'WavesSysSvc64' Unquoted Service Path
  185. [dos] InTouch Machine Edition 8.1 SP1 - 'Atributos' Denial of Service (PoC)
  186. [local] Easy-Hide-IP 5.0.0.3 - 'EasyRedirect' Unquoted Service Path
  187. [local] Microsoft Windows AppXsvc Deployment Extension - Privilege Escalation
  188. [local] VMware WorkStation 12.5.5 - Virtual Machine Escape
  189. [local] VMware WorkStation 12.5.3 - Virtual Machine Escape
  190. [dos] iNetTools for iOS 8.20 - 'Whois' Denial of Service (PoC)
  191. [dos] InduSoft Web Studio 8.1 SP1 - "Atributos" Denial of Service (PoC)
  192. [dos] Microsoft DirectX SDK 2010 - '.PIXrun' Denial Of Service (PoC)
  193. [dos] SpotAuditor 5.3.2 - 'Base64' Denial Of Service (PoC)
  194. [local] ProShow Producer 9.0.3797 - ('ScsiAccess') Unquoted Service Path
  195. [local] macOS 10.14.6 - root->kernel Privilege Escalation via update_dyld_shared_cach
  196. [dos] Internet Explorer - Use-After-Free in JScript Arguments During toJSON Callback
  197. [local] LiteManager 4.5.0 - Insecure File Permissions
  198. [dos] XMedia Recode 3.4.8.6 - '.m3u' Denial Of Service
  199. [dos] scadaApp for iOS 1.1.4.0 - 'Servername' Denial of Service (PoC)
  200. [dos] Centova Cast 3.2.12 - Denial of Service (PoC)
  201. [local] Studio 5000 Logix Designer 30.01.00 - 'FactoryTalk Activation Service' Unquot
  202. [local] BartVPN 1.2.2 - 'BartVPNService' Unquoted Service Path
  203. [webapps] Apache Httpd mod_rewrite - Open Redirects
  204. [webapps] Apache Httpd mod_proxy - Error Page Cross-Site Scripting
  205. [remote] Cisco Prime Infrastructure Health Monitor HA TarArchive - Directory Traversa
  206. [local] DOUBLEPULSAR (x64) - Hooking 'srv!SrvTransactionNotImplemented' in 'srv!SrvTr
  207. [local] Microsoft Windows 10 Build 1803 < 1903 - 'COMahawk' Local Privilege Escalatio
  208. [remote] Microsoft Windows 7 (x86) - 'BlueKeep' Remote Desktop Protocol (RDP) Remote
  209. [dos] ipPulse 1.92 - 'Enter Key' Denial of Service (PoC)
  210. [webapps] WordPress Core < 5.2.3 - Viewing Unauthenticated/Password/Private Posts
  211. [webapps] OpenNetAdmin 18.1.1 - Remote Code Execution
  212. [local] Windows - Escalate UAC Protection Bypass (Via dot net profiler) (Metasploit)
  213. [local] Windows - Escalate UAC Protection Bypass (Via Shell Open Registry Key) (Metas
  214. [dos] iOS 12.4 - Sandbox Escape due to Integer Overflow in mediaserverd
  215. [dos] Ubuntu 19.10 - Refcount Underflow and Type Confusion in shiftfs
  216. [dos] Ubuntu 19.10 - ubuntu-aufs-modified mmap_region() Breaks Refcounting in overlay
  217. [remote] FusionPBX - Operator Panel exec.php Command Execution (Metasploit)
  218. [webapps] Network Management Card 6.2.0 - Host Header Injection
  219. [local] GNU Mailutils 3.7 - Privilege Escalation
  220. [webapps] TestLink 1.9.19 - Persistent Cross-Site Scripting
  221. [local] Xorg X11 Server - Local Privilege Escalation (Metasploit)
  222. [remote] Pulse Secure VPN - Arbitrary Command Execution (Metasploit)
  223. [remote] Bludit - Directory Traversal Image File Upload (Metasploit)
  224. [remote] FreeSWITCH - Event Socket Command Execution (Metasploit)
  225. [remote] nipper-ng 0.11.10 - Remote Buffer Overflow (PoC)
  226. [webapps] TemaTres 3.0 - 'value' Persistent Cross-site Scripting
  227. [dos] Foscam Video Management System 1.1.4.9 - 'Username' Denial of Service (PoC)
  228. [webapps] TemaTres 3.0 - Cross-Site Request Forgery (Add Admin)
  229. [webapps] Centova Cast 3.2.11 - Arbitrary File Download
  230. [local] NCP_Secure_Entry_Client 9.2 - Unquoted Service Paths
  231. [local] MobileGo 8.5.0 - Insecure File Permissions
  232. [webapps] Crystal Live HTTP Server 6.01 - Directory Traversal
  233. [dos] Open Proficy HMI-SCADA 5.0.0.25920 - 'Password' Denial of Service (PoC)
  234. [local] ASUS HM Com Service 1.00.31 - 'asHMComSvc' Unquoted Service Path
  235. [webapps] Lexmark Services Monitor 2.27.4.0.39 - Directory Traversal
  236. [dos] iSmartViewPro 1.3.34 - Denial of Service (PoC)
  237. [local] Emerson PAC Machine Edition 9.70 Build 8595 - 'FxControlRuntime' Unquoted Ser
  238. [webapps] Prima Access Control 2.3.35 - 'HwName' Persistent Cross-Site Scripting
  239. [webapps] Prima Access Control 2.3.35 - Arbitrary File Upload
  240. [webapps] Atlassian Confluence 6.15.1 - Directory Traversal (Metasploit)
  241. [local] Alps Pointing-device Controller 8.1202.1711.04 - 'ApHidMonitorService' Unquot
  242. [local] RTK IIS Codec Service 6.4.10041.133 - 'RtkI2SCodec' Unquote Service Path
  243. [webapps] Optergy 2.3.0a - Remote Code Execution (Backdoor)
  244. [webapps] Optergy 2.3.0a - Username Disclosure
  245. [webapps] Optergy 2.3.0a - Cross-Site Request Forgery (Add Admin)
  246. [webapps] FlexAir Access Control 2.4.9api3 - Remote Code Execution
  247. [webapps] Optergy 2.3.0a - Remote Code Execution
  248. [webapps] Adrenalin Core HCM 5.4.0 - 'ReportID' Reflected Cross-Site Scripting
  249. [webapps] FlexAir Access Control 2.3.35 - Authentication Bypass
  250. [local] Control Center PRO 6.2.9 - Local Stack Based Buffer Overflow (SEH)