المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 [3] 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46

  1. [webapps] PerfexCRM 1.9.7 - Arbitrary File Upload
  2. [webapps] RISE 1.9 - 'search' SQL Injection
  3. [remote] SysGauge Server 3.6.18 - Buffer Overflow
  4. [remote] Disk Pulse Enterprise 10.1.18 - Buffer Overflow
  5. [webapps] ImgHosting 1.5 - Cross-Site Scripting
  6. [shellcode] Linux/x86-64 - Reverse TCP Password (doomedra) Shell (/bin/sh) (192.168.1
  7. [webapps] Domains & Hostings Manager PRO 3.0 - Authentication Bypass
  8. [shellcode] Linux/x86-64 - Bind TCP Password (doomedra) Shell (/bin/sh) (4444/TCP) Sh
  9. [shellcode] Linux/x86-64 - Add Root User (shell-storm/leet) Polymorphic Shellcode (2
  10. [shellcode] Linux/x86-64 - Bind TCP Stager (4444/TCP) + Egghunter Shellcode (157 byte
  11. [shellcode] Linux/x86-64 - Add User (pwned/$pass$) Using open,write,close Shellcode (
  12. [shellcode] Linux/x86-64 - Add User (pwned/$pass$) Using echo cmd Shellcode (273 byte
  13. [shellcode] Linux/x86-64 - Read /etc/passwd Shellcode (82 bytes)
  14. [shellcode] Linux/x86-64 - Bind TCP Password (Password) /bin/sh Shell (4444/TCP) Shel
  15. [webapps] pfSense < 2.1.4 - 'status_rrd_graph_img.php' Command Injection
  16. [shellcode] Linux/x86-64 - Bind TCP Password (hell) /bin/sh Shell (4444/TCP) Shellcod
  17. [shellcode] Linux/ARM - creat("/root/pwned", 0777) Shellcode (39 bytes)
  18. [shellcode] Linux/ARM - execve("/bin/sh", [], [0 vars]) Shellcode (35 bytes)
  19. [shellcode] Linux/ARM - execve("/bin/sh",NULL,0) Shellcode (31 bytes)
  20. [webapps] Xnami 1.0 - Cross-Site Scripting
  21. [shellcode] Android/ARM - Reverse TCP /system/bin/sh Shell (10.0.2.2:0x3412/TCP) Shel
  22. [shellcode] Linux/StrongARM - setuid() Shellcode (20 bytes)
  23. [shellcode] Linux/StrongARM - execve(/bin/sh) Shellcode (47 bytes)
  24. [shellcode] Linux/StrongARM - Bind TCP /bin/sh Shell Shellcode (203 bytes)
  25. [shellcode] Linux/SuperH (sh4) - execve("/bin/sh", 0, 0) Shellcode (19 bytes)
  26. [shellcode] Linux/SuperH (sh4) - Bind TCP /bin/sh Shell (31337/TCP) Shellcode (132 by
  27. [webapps] Taxi Booking Script 1.0 - Cross-site Scripting
  28. [shellcode] Linux/SPARC - setreuid(0,0) + execve(/bin/sh) Shellcode (64 bytes)
  29. [shellcode] Linux/SPARC - setreuid(0,0) + standard execve() Shellcode (72 bytes)
  30. [dos] Kentico CMS 11.0 - Buffer Overflow
  31. [dos] PyroBatchFTP < 3.19 - Buffer Overflow
  32. [shellcode] Linux/x86-64 - Execute /bin/sh Shellcode (27 bytes)
  33. [shellcode] Linux/x86-64 - Execute /bin/sh Shellcode (24 bytes)
  34. [shellcode] Linux/x86-64 - Add Map (127.1.1.1 google.lk) In /etc/hosts Shellcode (110
  35. [shellcode] Linux/x86-64 - Add Map (127.1.1.1 google.lk) In /etc/hosts Shellcode (96
  36. [shellcode] Linux/x86-64 - execve("/sbin/iptables", ["/sbin/iptables", "-F"], NULL) S
  37. [shellcode] Linux/x86-64 - sys_access() Egghunter Shellcode (49 bytes)
  38. [shellcode] Linux/x86-64 - shutdown -h now Shellcode (65 bytes)
  39. [shellcode] Linux/x86-64 - shutdown -h now Shellcode (64 bytes)
  40. [shellcode] Linux/x86-64 - Read /etc/passwd + Write To /tmp/outfile Shellcode (105 by
  41. [shellcode] Linux/x86-64 - Reverse TCP Password (hell) /bin/sh Shell (127.0.0.1:4444/
  42. [remote] ALLMediaServer 0.95 - Buffer Overflow
  43. [dos] macOS - 'process_policy' Stack Leak Through Uninitialized Field
  44. [dos] Microsoft Edge Chakra - 'AppendLeftOverItemsFromEndSegment' Out-of-Bounds Read
  45. [shellcode] Linux/ARM - execve("/bin/sh", NULL, 0) Shellcode (34 bytes)
  46. [dos] Android - Hardware Service Manager Arbitrary Service Replacement due to getpidc
  47. [dos] Microsoft Windows - NtImpersonateAnonymousToken AC to Non-AC Privilege Escalati
  48. [dos] Microsoft Windows - NtImpersonateAnonymousToken LPAC to Non-LPAC Privilege Esca
  49. [dos] Microsoft Windows SMB Server (v1 and v2) - Mount Point Arbitrary Device Open Pr
  50. [remote] LabF nfsAxe 3.7 FTP Client - Stack Buffer Overflow (Metasploit)
  51. [remote] phpCollab 2.5.1 - Unauthenticated File Upload (Metasploit)
  52. [dos] Microsoft Windows - NTFS Owner/Mandatory Label Privilege Bypass
  53. [shellcode] FreeBSD/x86 - Bind TCP /bin/sh Shell (41254/TCP) Shellcode (115 bytes)
  54. [shellcode] FreeBSD - reboot() Shellcode (15 Bytes)
  55. [shellcode] IRIX - execve(/bin/sh -c) Shellcode (72 bytes)
  56. [shellcode] IRIX - execve(/bin/sh) Shellcode (43 bytes)
  57. [shellcode] IRIX - Bind TCP /bin/sh Shell Shellcode (364 bytes)
  58. [shellcode] IRIX - execve(/bin/sh) Shellcode (68 bytes)
  59. [shellcode] IRIX - stdin-read Shellcode (40 bytes)
  60. [shellcode] FreeBSD/x86-64 - Bind TCP Password (R2CBw0cr) /bin/sh Shell Shellcode (12
  61. [shellcode] FreeBSD/x86 - execv(/bin/sh) Shellcode (23 bytes)
  62. [shellcode] FreeBSD/x86 - //sbin/pfctl -F all Shellcode (47 Bytes)
  63. [dos] MiniUPnP MiniUPnPc < 2.0 - Remote Denial of Service
  64. [shellcode] FreeBSD/x86-64 - execve /bin/sh Shellcode (28 bytes)
  65. [shellcode] Linux/ARM (Raspberry Pi) - Bind TCP /bin/sh Shell (0.0.0.0:4444/TCP) Null
  66. [local] Jungo WinDriver 12.5.1 - Local Privilege Escalation
  67. [local] Parity Browser < 1.6.10 - Bypass Same Origin Policy
  68. [local] Python smtplib 2.7.11 / 3.4.4 / 3.5.1 - Man In The Middle StartTLS Stripping
  69. [webapps] D-Link Routers 110/412/615/815 < 1.03 - 'service.cgi' Arbitrary Code Execut
  70. [webapps] SAP NetWeaver J2EE Engine 7.40 - SQL Injection
  71. [local] Jungo Windriver 12.5.1 - Privilege Escalation
  72. [remote] HPE iMC - dbman RestartDB Unauthenticated Remote Command Execution (Metasplo
  73. [dos] Multiple CPUs - Information Leak Using Speculative Execution
  74. [dos] Microsoft Edge Chakra JIT - 'Lowerer::LowerSetConcatStrMultiItem' Missing Integ
  75. [remote] HPE iMC - dbman RestoreDBase Unauthenticated Remote Command Execution (Metas
  76. [webapps] Joomla! Component Easydiscuss < 4.0.21 - Cross-Site Scripting
  77. [shellcode] Linux/x86 - execve(/bin/sh) Polymorphic Shellcode (53 bytes)
  78. [webapps] WordPress Plugin WordPress Download Manager 2.9.60 - Cross-Site Request For
  79. [webapps] WordPress Plugin Social Media Widget by Acurax 3.2.5 - Cross-Site Request F
  80. [webapps] WordPress Plugin CMS Tree Page View 1.4 - Cross-Site Request Forgery / Priv
  81. [webapps] WordPress Plugin Admin Menu Tree Page View 2.6.9 - Cross-Site Request Forge
  82. [shellcode] BSD/x86 - setreuid(geteuid(), geteuid()) + execve("/bin/sh") Shellcode (3
  83. [shellcode] Alpha - /bin/sh Shellcode (80 bytes)
  84. [shellcode] Alpha - execve() Shellcode (112 bytes)
  85. [shellcode] Alpha - setuid() Shellcode (156 bytes)
  86. [webapps] WordPress Plugin Events Calendar - 'event_id' SQL Injection
  87. [remote] DiskBoss Enterprise 8.8.16 - Buffer Overflow
  88. [webapps] Muviko 1.1 - SQL Injection
  89. [shellcode] Linux/x86 - execve /bin/dash Shellcode (30 bytes)
  90. [webapps] Worpress Plugin Service Finder Booking < 3.2 - Local File Disclosure
  91. [webapps] Synology Photostation 6.7.2-3429 - Remote Code Execution (Metasploit)
  92. [remote] Commvault Communications Service (cvd) - Command Injection (Metasploit)
  93. [dos] Microsoft Windows - 'nt!NtQuerySystemInformation (information class 138, QueryM
  94. [dos] Microsoft Windows - 'nt!NtQueryInformationProcess (information class 76, QueryP
  95. [dos] Microsoft Edge Chakra JIT - Escape Analysis Bug
  96. [dos] Microsoft Edge Chakra - 'asm.js' Out-of-Bounds Read
  97. [dos] Microsoft Edge Chakra JIT - BackwardPass::RemoveEmptyLoopAfterMemOp Does not In
  98. [dos] Microsoft Edge Chakra JIT - Op_MaxInAnArray and Op_MinInAnArray can Explicitly
  99. [local] Microsoft Windows - Local XPS Print Spooler Sandbox Escape
  100. [dos] Android - Inter-Process munmap due to Race Condition in ashmem
  101. [shellcode] Linux/x86 - chmod 777 /etc/sudoers Shellcode (36 bytes)
  102. [webapps] Vanilla < 2.1.5 - Cross-Site Request Forgery
  103. [webapps] FiberHome LM53Q1 - Multiple Vulnerabilities
  104. [webapps] WordPress Plugin LearnDash 2.5.3 - Arbitrary File Upload
  105. [remote] Oracle WebLogic < 10.3.6 - 'wls-wsat' Component Deserialisation Remote Comma
  106. [webapps] SonicWall NSA 6600/5600/4600/3600/2600/250M - Multiple Vulnerabilities
  107. [webapps] Photos in Wifi 1.0.1 - Path Traversal
  108. [webapps] Synology DiskStation Manager (DSM) < 6.1.3-15152 - 'forget_passwd.cgi' User
  109. [dos] BarcodeWiz ActiveX Control < 6.7 - Buffer Overflow
  110. [dos] Sync Breeze Enterprise 10.1.16 - Denial of Service
  111. [dos] DiskBoss Enterprise 8.5.12 - Denial of Service
  112. [dos] VX Search Enterprise 10.1.12 - Denial of Service
  113. [dos] Disk Pulse Enterprise 10.1.18 - Denial of Service
  114. [remote] Cisco IOS - Remote Code Execution
  115. [remote] Ayukov NFTP FTP Client 2.0 - Buffer Overflow (Metasploit)
  116. [local] VMware Workstation - ALSA Config File Local Privilege Escalation (Metasploit)
  117. [dos] Microsoft Windows win32k - Using SetClassLong to Switch Between CS_CLASSDC and
  118. [webapps] Gespage 7.4.8 - SQL Injection
  119. [webapps] IP.Board < 1.1.1 - Plaintext Password
  120. [webapps] P-Synch < 6.2.5 - Multiple Vulnerabilities
  121. [webapps] WinMX < 2.6 - Design Error
  122. [webapps] FTP Service < 1.2 - Multiple Vulnerabilities
  123. [webapps] MegaBrowser < 0.71b - Multiple Vulnerabilities
  124. [webapps] Max Web Portal < 1.30 - Multiple Vulnerabilities
  125. [webapps] Snitz Forums 2000 < 3.4.0.3 - Multiple Vulnerabilities
  126. [webapps] PHP Topsites < 2.2 - Multiple Vulnerabilities
  127. [webapps] phpLinks < 2.1.2 - Multiple Vulnerabilities
  128. [webapps] Zen Cart < 1.3.8a - SQL Injection
  129. [remote] WDMyCloud < 2.30.165 - Multiple Vulnerabilities
  130. [remote] D-Link DNS-320 ShareCenter - Backdoor Access
  131. [shellcode] Linux/x86 - Reverse TCP Shell (127.1.1.1:8888/TCP) Shellcode (69 bytes)
  132. [dos] GetGo Download Manager 5.3.0.2712 - 'Proxy' Buffer Overflow
  133. [webapps] gps-server.net GPS Tracking Software < 3.1 - Multiple Vulnerabilities
  134. [remote] Linksys WVBR0-25 - User-Agent Command Execution (Metasploit)
  135. [remote] Xplico - Remote Code Execution (Metasploit)
  136. [papers] [Hebrew] Digital Whisper Security Magazine #90
  137. [papers] PoC || GTFO 0x17
  138. [papers] Fortinet FortiClient - Local Privilege Escalation
  139. [papers] Meltdown - Bypass Intel's Hardware Barrier Between Applications And The Comp
  140. [papers] Spectre - Trick Error-Free Applications Into Giving Up Secret Information
  141. [local] Multiple CPUs - 'Spectre' Information Disclosure (PoC)
  142. [remote] Iopsys Router - 'dhcp' Remote Code Execution
  143. [webapps] EMC xPression 4.5SP1 Patch 13 - 'model.jobHistoryId' SQL Injection
  144. [local] Kingsoft Antivirus/Internet Security 9+ - Privilege Escalation
  145. [webapps] WordPress Plugin Smart Google Code Inserter < 3.5 - Authentication Bypass
  146. [papers] Fortinet FortiClient - Local Privilege Escalation
  147. [local] Linux Kernel < 4.4.0-83 / < 4.8.0-58 (Ubuntu 14.04/16.04) - Local Privilege E
  148. [papers] PoC || GTFO 0x17
  149. [papers] [Hebrew] Digital Whisper Security Magazine #90
  150. [dos] Apple macOS - IOHIDSystem Kernel Read/Write
  151. [webapps] Huawei Router HG532 - Arbitrary Command Execution
  152. [remote] Cambium ePMP1000 - 'ping' Shell via Command Injection (Metasploit)
  153. [remote] Cambium ePMP1000 - 'get_chart' Shell via Command Injection (Metasploit)
  154. [remote] HP Mercury LoadRunner Agent magentproc.exe - Remote Command Execution (Metas
  155. [dos] D3DGear 5.00 Build 2175 - Buffer Overflow
  156. [webapps] PHP Melody 2.7.1 - 'playlist' SQL Injection
  157. [remote] NetTransport 2.96L - Buffer Overflow (DEP Bypass)
  158. [remote] ALLMediaServer 0.95 - Buffer Overflow (Metasploit)
  159. [dos] ALLMediaServer 0.95 - Buffer Overflow
  160. [webapps] Xerox DC260 EFI Fiery Controller Webtools 2.0 - Arbitrary File Disclosure
  161. [webapps] DotNetNuke DreamSlider 01.01.02 - Arbitrary File Download
  162. [dos] SysGauge Server 3.6.18 - Denial of Service
  163. [webapps] Telesquare SKT LTE Router SDT-CS3B1 - Information Disclosure
  164. [dos] Telesquare SKT LTE Router SDT-CS3B1 - Denial of Service
  165. [webapps] Easy!Appointments 1.2.1 - Cross-Site Scripting
  166. [webapps] Telesquare SKT LTE Router SDT-CS3B1 - Cross-Site Request Forgery
  167. [local] Sony Playstation 4 4.05 FW - Local Kernel Exploit
  168. [webapps] SilverStripe CMS 3.6.2 - CSV Excel Macro Injection
  169. [webapps] Biometric Shift Employee Management System 3.0 - Local File Disclosure
  170. [webapps] Sendroid < 6.5.0 - SQL Injection
  171. [webapps] Joomla! Component JEXTN FAQ Pro 4.0.0 - 'id' SQL Injection
  172. [dos] GetGo Download Manager 5.3.0.2712 - Buffer Overflow
  173. [local] Ubiquiti UniFi Video 3.7.3 - Local Privilege Escalation
  174. [remote] COMTREND ADSL Router CT-5367 - Remote Code Execution
  175. [remote] Trend Micro Smart Protection Server - Session Hijacking / Log File Disclosur
  176. [local] Ruby < 2.2.8 / < 2.3.5 / < 2.4.2 / < 2.5.0-preview1 - 'NET::Ftp' Command Inje
  177. [remote] Cisco IOS 12.2 < 12.4 / 15.0 < 15.6 - Security Association Negotiation Requ
  178. [remote] Technicolor DPC3928SL - SNMP Authentication Bypass
  179. [remote] Fortinet FortiGate 4.x < 5.0.7 - SSH Backdoor
  180. [remote] Netcore / Netis Routers - UDP Backdoor
  181. [webapps] Conarc iChannel - Improper Access Restrictions
  182. [webapps] Ability Mail Server 3.3.2 - Cross-Site Scripting
  183. [webapps] BEIMS ContractorWeb 5.18.0.0 - SQL Injection
  184. [dos] Microsoft Windows Kernel - 'NtQueryVirtualMemory(MemoryMappedFilenameInformat io
  185. [remote] Samsung Internet Browser - SOP Bypass (Metasploit)
  186. [local] TeamViewer 11 < 13 (Windows 10 x86) - Inline Hooking / Direct Memory Modifica
  187. [dos] Microsoft Windows - 'jscript!NameTbl::GetValDef' Use-After-Free
  188. [dos] Microsoft Internet Explorer 11 - 'jscript!JSONStringifyObject' Use-After-Free
  189. [dos] Microsoft Windows - 'jscript!RegExpComp::Compile' Heap Overflow Through IE or L
  190. [dos] Microsoft Windows - jscript.dll 'Array.sort' Heap Overflow
  191. [dos] Microsoft Windows - 'jscript!JsArraySlice' Uninitialized Variable
  192. [dos] Microsoft Windows - 'jscript!RegExpFncObj::LastParen' Out-of-Bounds Read
  193. [dos] Intel Content Protection HECI Service - Type Confusion Privilege Escalation
  194. [remote] Tuleap 9.6 - Second-Order PHP Object Injection (Metasploit)
  195. [remote] Jenkins - XStream Groovy classpath Deserialization (Metasploit)
  196. [webapps] BrightSign Digital Signage - Multiple Vulnerablities
  197. [webapps] Joomla! Component NextGen Editor 2.1.0 - 'plname' SQL Injection
  198. [webapps] Linksys WVBR0 - 'User-Agent' Remote Command Injection
  199. [local] Firejail < 0.9.44.4 / < 0.9.38.8 LTS - Local Sandbox Escape
  200. [remote] GoAhead httpd 2.5 < 3.6.5 - 'LD_PRELOAD' Remote Code Execution
  201. [webapps] vBulletin 5 - 'routestring' Unauthenticated Remote Code Execution
  202. [webapps] vBulletin 5 - 'cacheTemplates' Unauthenticated Remote Arbitrary File Deleti
  203. [local] Linux kernel < 4.10.15 - Race Condition Privilege Escalation
  204. [dos] CDex 1.96 - Buffer Overflow
  205. [remote] Outlook for Android - Attachment Download Directory Traversal
  206. [dos] Zoom Linux Client 2.0.106600.0904 - Command Injection
  207. [dos] Zoom Linux Client 2.0.106600.0904 - Stack-Based Buffer Overflow
  208. [remote] Western Digital MyCloud - 'multi_uploadify' File Upload (Metasploit)
  209. [webapps] Joomla! Component User Bench 1.0 - 'userid' SQL Injection
  210. [webapps] Joomla! Component My Projects 2.0 - SQL Injection
  211. [webapps] Joomla! Component JB Visa 1.0 - 'visatype' SQL Injection
  212. [webapps] Joomla! Component Guru Pro - 'promocode' SQL Injection
  213. [webapps] Monstra CMS 3.0.4 - Arbitrary File Upload / Remote Code Execution
  214. [webapps] Movie Guide 2.0 - SQL Injection
  215. [dos] Sync Breeze 10.2.12 - Denial of Service
  216. [webapps] ITGuard-Manager 0.0.0.1 - Remote Code Execution
  217. [remote] Dup Scout Enterprise - Login Buffer Overflow (Metasploit)
  218. [webapps] Advantech WebAccess 8.2-2017.03.31 - Webvrpcs Service Opcode 80061 Stack Bu
  219. [remote] Palo Alto Networks Firewalls - Remote root Code Execution
  220. [remote] pfSense 2.4.1 - CSRF Error Page Clickjacking (Metasploit)
  221. [remote] Microsoft Office - DDE Payload Delivery (Metasploit)
  222. [webapps] Bus Booking Script 1.0 - 'txtname' SQL Injection
  223. [webapps] Piwigo 2.9.1 - 'cat_true' / 'cat_false' SQL Injection
  224. [webapps] FS Lynda Clone 1.0 - SQL Injection
  225. [webapps] Readymade Video Sharing Script 3.2 - HTML Injection
  226. [webapps] Paid To Read Script 2.0.5 - 'uid' / 'fnum' / 'fn' SQL Injection
  227. [webapps] Joomla! Component JEXTN Question And Answer 3.1.0 - SQL Injection
  228. [webapps] Joomla! Component JEXTN Video Gallery 3.0.5 - 'id' SQL Injection
  229. [webapps] Meinberg LANTIME Web Configuration Utility 6.16.008 - Arbitrary File Read
  230. [local] glibc ld.so - Memory Leak / Buffer Overflow
  231. [dos] macOS/iOS - Kernel Double Free due to Incorrect API Usage in Flow Divert Socket
  232. [dos] macOS - Kernel Code Execution due to Lack of Bounds Checking in AppleIntelCapri
  233. [dos] macOS/iOS - Multiple Kernel Use-After-Frees due to Incorrect IOKit Object Lifet
  234. [dos] Apple XNU Kernel - Memory Corruption due to Integer Overflow in __offsetof Usag
  235. [webapps] Accesspress Anonymous Post Pro < 3.2.0 - Unauthenticated Arbitrary File Upl
  236. [webapps] Joomla! Component JBuildozer 1.4.1 - 'appid' SQL Injection
  237. [dos] LibTIFF pal2rgb 4.0.9 - Heap Buffer Overflow
  238. [dos] macOS XNU Kernel - Memory Disclosure due to bug in Kernel API for Detecting Ker
  239. [dos] iOS/macOS - Kernel Double Free due to IOSurfaceRootUserClient not Respecting MI
  240. [dos] macOS - 'getrusage' Stack Leak Through struct Padding
  241. [dos] macOS - 'necp_get_socket_attributes' so_pcb Type Confusion
  242. [dos] MikroTik 6.40.5 ICMP - Denial of Service
  243. [webapps] Basic Job Site Script 2.0.5 - SQL Injection
  244. [webapps] Vanguard 1.4 - Arbitrary File Upload
  245. [webapps] Advanced World Database 2.0.5 - SQL Injection
  246. [webapps] Resume Clone Script 2.0.5 - SQL Injection
  247. [webapps] Vanguard 1.4 - SQL Injection
  248. [webapps] Muslim Matrimonial Script 3.02 - 'succid' SQL Injection
  249. [webapps] MLM Forced Matrix 2.0.9 - 'newid' SQL Injection
  250. [webapps] Groupon Clone Script 3.01 - 'state_id' / 'search' SQL Injection