المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 [36] 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58

  1. [dos] - macOS Kernel 10.12.3 (16D32) - Use-After-Free Due to Double-Release in posix_
  2. [dos] - macOS/iOS Kernel 10.12.3 (16D32) - SIOCSIFORDER Socket ioctl Memory Corruptio
  3. [dos] - macOS/iOS Kernel 10.12.3 (16D32) - SIOCGIFORDER Socket ioctl Off-by-One Memor
  4. [webapps] - Maian Greetings 2.1 - 'cat' Parameter SQL Injection
  5. [webapps] - Maian Uploader 4.0 - 'user' Parameter SQL Injection
  6. [webapps] - Pixie 1.0.4 - Arbitrary File Upload
  7. [local] - Bluecoat ASG 6.6/CAS 1.3 - Privilege Escalation (Metasploit)
  8. [remote] - Bluecoat ASG 6.6/CAS 1.3 - OS Command Injection (Metasploit)
  9. [remote] - Apache Tomcat 6/7/8/9 - Information Disclosure
  10. [webapps] - Zyxel, EMG2926 < V1.00(AAQT.4)b8 - OS Command Injection
  11. [dos] - BackBox OS - Denial of Service
  12. [webapps] - Splunk Enterprise - Information Disclosure
  13. [webapps] - Membership Formula - 'order' Parameter SQL Injection
  14. [dos] - Apple macOS/IOS 10.12.2(16C67) - mach_msg Heap Overflow
  15. [webapps] - EyesOfNetwork (EON) 5.1 - SQL Injection
  16. [remote] - Sync Breeze Enterprise 9.5.16 - 'GET' Buffer Overflow (SEH)
  17. [local] - Disk Sorter Enterprise 9.5.12 - 'Import Command' Buffer Overflow
  18. [local] - DiskBoss Enterprise 7.8.16 - 'Import Command' Buffer Overflow
  19. [local] - Sync Breeze Enterprise 9.5.16 - 'Import Command' Buffer Overflow
  20. [shellcode] - Linux/x86 - execve(/bin/sh") Shellcode (19 bytes)
  21. [webapps] - Opensource Classified Ads Script - 'keyword' Parameter SQL Injection
  22. [dos] - MikroTik RouterBoard 6.38.5 - Denial of Service
  23. [dos] - Microsoft Outlook - HTML Email Denial of Service
  24. [local] - Intermec PM43 Industrial Printer - Privilege Escalation
  25. [dos] - VX Search Enterprise 9.5.12 - 'Verify Email' Buffer Overflow
  26. [shellcode] - Linux/x86-64 - execve("/bin/sh") Shellcode (21 Bytes)
  27. [remote] - DzSoft PHP Editor 4.2.7 - File Enumeration
  28. [remote] - Samba 4.5.2 - Symlink Race Permits Opening Files Outside Share Directory
  29. [dos] - Apple Safari - 'DateTimeFormat.format' Type Confusion
  30. [dos] - Apple Safari - Builtin JavaScript Allows Function.caller to be Used in Strict
  31. [dos] - Apple Safari - Out-of-Bounds Read when Calling Bound Function
  32. [remote] - Github Enterprise - Default Session Secret And Deserialization (Metasploit
  33. [local] - QNAP QTS < 4.2.4 - Domain Privilege Escalation
  34. [dos] - Disk Sorter Enterprise 9.5.12 - Local Buffer Overflow
  35. [remote] - Internet Information Services (IIS) 6.0 WebDAV - 'ScStoragePathFromUrl' Bu
  36. [webapps] - Professional Bus Booking Script - 'hid_Busid' Parameter SQL Injection
  37. [webapps] - CouponPHP CMS 3.1 - 'code' Parameter SQL Injection
  38. [webapps] - Just Another Video Script 1.4.3 - SQL Injection
  39. [webapps] - Alibaba Clone Script - SQL Injection
  40. [webapps] - B2B Marketplace Script 2.0 - SQL Injection
  41. [webapps] - Php Real Estate Property Script - SQL Injection
  42. [webapps] - Courier Tracking Software 6.0 - SQL Injection
  43. [webapps] - Parcel Delivery Booking Script 1.0 - SQL Injection
  44. [webapps] - Delux Same Day Delivery Script 1.0 - SQL Injection
  45. [webapps] - Hotel Booking Script 1.0 - SQL Injection
  46. [webapps] - Tour Package Booking 1.0 - SQL Injection
  47. [shellcode] - Linux/x86 - Reverse /bin/bash Shellcode (110 bytes)
  48. [local] - Forticlient 5.2.3 Windows 10 x64 (Pre Anniversary) - Privilege Escalation
  49. [local] - Forticlient 5.2.3 Windows 10 x64 (Post Anniversary) - Privilege Escalation
  50. [remote] - NETGEAR WNR2000v5 - (Un)authenticated hidden_lang_avi Stack Overflow (Meta
  51. [remote] - Logsign 4.4.2 / 4.4.137 - Remote Command Injection (Metasploit)
  52. [webapps] - Gr8 Tutorial Script - SQL Injection
  53. [webapps] - Gr8 Gallery Script - SQL Injection
  54. [remote] - Miele Professional PG 8528 - Directory Traversal
  55. [dos] - wifirxpower - Local Buffer Overflow
  56. [webapps] - Flippa Clone - SQL Injection
  57. [webapps] - Joomla! Component Modern Booking 1.0 - 'coupon' Parameter SQL Injection
  58. [webapps] - Solare Datensysteme Solar-Log Devices 2.8.4-56 / 3.5.2-85 - Multiple Vuln
  59. [remote] - SysGauge 1.5.18 - SMTP Validation Buffer Overflow (Metasploit)
  60. [dos] - SpyCamLizard 1.230 - Denial of Service
  61. [webapps] - GLink Word Link Script 1.2.3 - SQL Injection
  62. [remote] - Disk Sorter Enterprise 9.5.12 - 'GET' Buffer Overflow (SEH)
  63. [papers] - PoC || GTFO 0x14
  64. [webapps] - Joomla! Component Extra Search 2.2.8 - 'establename' Parameter SQL Inject
  65. [dos] - Google Nest Cam 5.2.1? - Buffer Overflow Conditions Over Bluetooth LE
  66. [webapps] - phplist 3.2.6 - SQL Injection
  67. [dos] - Microsoft Windows Kernel - Registry Hive Loading Crashes in nt!nt!HvpGetBinMe
  68. [dos] - Microsoft Windows - Uniscribe Font Processing Out-of-Bounds Read in usp10!otl
  69. [dos] - Microsoft Windows - 'USP10!otlList::insertAt' Uniscribe Font Processing Heap-
  70. [dos] - Microsoft Windows - Uniscribe Font Processing Heap-Based Out-of-Bounds Read/W
  71. [webapps] - Joomla! Component JooCart 2.x - 'product_id' Parameter SQL Injection
  72. [webapps] - Joomla! Component jCart for OpenCart 2.0 - 'product_id' Parameter SQL Inj
  73. [dos] - ExtraPuTTY 0.29-RC2 - Denial of Service
  74. [papers] - Art of Anti Detection - Shellcode Alchemy
  75. [dos] - FTPShell Server 6.56 - 'ChangePassword' Buffer Overflow
  76. [remote] - HttpServer 1.0 - Directory Traversal
  77. [shellcode] - Linux/x86 - File Reader Shellcode (54 Bytes)
  78. [webapps] - Secure Download Links - 'dc' Parameter SQL Injection
  79. [webapps] - iFdate Social Dating Script 2.0 - SQL Injection
  80. [webapps] - DIGISOL DG-HR1400 1.00.02 Wireless Router - Privilege Escalation
  81. [webapps] - Omegle Clone - SQL Injection
  82. [dos] - FTPShell Client 6.53 - Local Buffer Overflow
  83. [shellcode] - Linux/x86 - Encoded exceve("/bin/sh") Shellcode (44 Bytes)
  84. [shellcode] - Linux/x86 - Super Small Bind Shell Shellcode (51 bytes)
  85. [webapps] - Departmental Store Management System 1.2 - SQL Injection
  86. [dos] - Cerberus FTP Server 8.0.10.3 - 'MLST' Buffer Overflow
  87. [webapps] - Wordpress Plugin Membership Simplified 1.58 - Arbitrary File Download
  88. [webapps] - AXIS Communications - Cross-Site Scripting / Content Injection
  89. [webapps] - AXIS Multiple Products - Cross-Site Request Forgery
  90. [papers] - Attacking RDP - How to Eavesdrop on Poorly Secured RDP Connections
  91. [dos] - Microsoft Edge 38.14393.0.0 - JavaScript Engine Use-After-Free
  92. [local] - Windows DVD Maker 6.1.7 - XML External Entity Injection
  93. [webapps] - GitHub Enterprise 2.8.0 < 2.8.6 - Remote Code Execution
  94. [local] - Microsoft Windows - COM Session Moniker Privilege Escalation (MS17-012)
  95. [dos] - Adobe Flash - Metadata Parsing Out-of-Bounds Read
  96. [dos] - Adobe Flash - MovieClip Attach init Object Use-After-Free
  97. [dos] - Adobe Flash - ATF Thumbnailing Heap Overflow
  98. [dos] - Adobe Flash - ATF Planar Decompression Heap Overflow
  99. [dos] - Adobe Flash - AVC Header Slicing Heap Overflow
  100. [local] - Rawether for Windows - Privilege Escalation
  101. [local] - ASUS PCE-AC56 WLAN Card Utilities (PCAUSA Rawether Windows 10 x64) - Local
  102. [webapps] - Joomla! Component Vik Appointments 1.5 - SQL Injection
  103. [webapps] - Joomla! Component Vik Rent Items 1.3 - SQL Injection
  104. [webapps] - Joomla! Component Vik Rent Car 1.11 - SQL Injection
  105. [webapps] - Joomla! Component Simple Membership 3.3.3 - 'userId' Parameter SQL Inject
  106. [webapps] - Joomla! Component Advertisement Board 3.0.4 - 'id' Parameter SQL Injectio
  107. [local] - VirtualBox - Cooperating VMs can Escape from Shared Folder
  108. [remote] - Netgear R7000 and R6400 - cgi-bin Command Injection (Metasploit)
  109. [dos] - Cerberus FTP Server 8.0.10.1 - Denial of Service
  110. [webapps] - Car Workshop System - SQL Injection
  111. [shellcode] - Windows x86 - Hide Console Window Shellcode (182 bytes)
  112. [webapps] - Domain Marketplace Script - SQL Injection
  113. [webapps] - Global In - SQL Injection
  114. [webapps] - Global In - Arbitrary File Upload
  115. [webapps] - Vanelo - SQL Injection
  116. [webapps] - Mirage - SQL Injection
  117. [webapps] - Pet Listing Script 3.0 - SQL Injection
  118. [webapps] - Property Listing Script 3.1 - SQL Injection
  119. [webapps] - Travel Tours Script 2.0 - SQL Injection
  120. [webapps] - Yacht Listing Script 2.0 - SQL Injection
  121. [webapps] - WatchGuard XTMv 11.12 Build 516911 - User Management Cross-Site Request F
  122. [webapps] - dnaLIMS DNA Sequencing - Directory Traversal / Session Hijacking / Cross-
  123. [webapps] - Kinsey Infor/Lawson / ESBUS - SQL Injection
  124. [webapps] - Price Comparison Script 2017.1.8 - SQL Injection
  125. [webapps] - Clickbank Affiliate Marketplace Script 2017 - SQL Injection
  126. [webapps] - FTP Voyager Scheduler 16.2.0 - Cross-Site Request Forgery
  127. [webapps] - Country on Sale Script - SQL Injection
  128. [webapps] - Media Search Engine Script - 'search' Parameter SQL Injection
  129. [webapps] - Soundify 1.1 - 'tid' Parameter SQL Injection
  130. [webapps] - BistroStays 3.0 - 'guests' Parameter SQL Injection
  131. [webapps] - Nlance 2.2 - SQL Injection
  132. [webapps] - Busewe 1.2 - SQL Injection
  133. [webapps] - Fashmark 1.2 - 'category' Parameter SQL Injection
  134. [webapps] - TradeMart 1.1 - SQL Injection
  135. [webapps] - Drupal 7.x Module Services - Remote Code Execution
  136. [dos] - Livebox 3 Sagemcom SG30_sip-fr-5.15.8.1 - Denial of Service
  137. [webapps] - Navetti PricePoint 4.6.0.0 - SQL Injection / Cross-Site Scripting / Cross
  138. [webapps] - Themeforest Clone Script - SQL Injection
  139. [webapps] - Graphicriver Clone Script - SQL Injection
  140. [webapps] - Codecanyon Clone Script - SQL Injection
  141. [webapps] - Audiojungle Clone Script - SQL Injection
  142. [webapps] - Videohive Clone Script - SQL Injection
  143. [webapps] - Envato Clone Script - SQL Injection
  144. [local] - USBPcap - Privilege Escalation
  145. [remote] - Azure Data Expert Ultimate 2.2.16 - Buffer Overflow
  146. [webapps] - Bull/IBM AIX Clusterwatch/Watchware - Multiple Vulnerabilities
  147. [dos] - Evostream Media Server 1.7.1 (x64) - Denial of Service
  148. [webapps] - Mini CMS 1.1 - 'name' Parameter SQL Injection
  149. [webapps] - Daily Deals Script 1.0 - 'id' Parameter SQL Injection
  150. [webapps] - Advanced Bus Booking Script 2.04 - SQL Injection
  151. [webapps] - Entrepreneur Bus Booking Script 3.03 - 'hid_Busid' Parameter SQL Injectio
  152. [webapps] - Single Theater Booking Script - 'newsid' Parameter SQL Injection
  153. [webapps] - Responsive Events & Movie Ticket Booking Script - SQL Injection
  154. [webapps] - Online Cinema and Event Booking Script 2.01 - 'newsid' Parameter SQL Inje
  155. [webapps] - Redbus Clone Script 3.05 - 'hid_Busid' Parameter SQL Injection
  156. [webapps] - Groupon Clone Script 3.01 - 'catid' Parameter SQL Injection
  157. [webapps] - Naukri Clone Script 3.02 - 'type' Parameter SQL Injection
  158. [webapps] - Yellow Pages Clone Script 1.3.4 - SQL Injection
  159. [webapps] - Advanced Matrimonial Script 2.0.3 - SQL Injection
  160. [webapps] - Joomla! Component JUX EventOn 1.0.1 - 'id' Parameter SQL Injection
  161. [webapps] - Joomla! Component Monthly Archive 3.6.4 - 'author_form' Parameter SQL Inj
  162. [webapps] - Joomla! Component AYS Quiz 1.0 - 'id' Parameter SQL Injection
  163. [webapps] - Joomla! Component Content ConstructionKit 1.1 - SQL Injection
  164. [webapps] - Joomla! Component AltaUserPoints 1.1 - 'userid' Parameter SQL Injection
  165. [shellcode] - Linux/x86-64 - NetCat Reverse Shell Shellcode (72 bytes)
  166. [shellcode] - Linux/x86-64 - Polymorphic NetCat Reverse Shell Shellcode (106 bytes)
  167. [webapps] - EPSON TMNet WebConfig 1.00 - Cross-Site Scripting
  168. [shellcode] - Linux/x86-64 - Polymorphic Flush IPTables Shellcode (47 bytes)
  169. [webapps] - pfSense 2.3.2 - Cross-Site Scripting / Cross-Site Request Forgery
  170. [webapps] - Joomla! Component Coupon 3.5 - SQL Injection
  171. [webapps] - Wordpress < 4.7.1 - Username Enumeration
  172. [shellcode] - Linux/x86-64 - Polymorphic Setuid(0) & Execve(/bin/sh) Shellcode (31 by
  173. [webapps] - Joomla! Component Abstract 2.1 - SQL Injection
  174. [webapps] - Joomla! Component StreetGuessr Game 1.0 - SQL Injection
  175. [webapps] - Joomla! Component Guesser 1.0.4 - 'type' Parameter SQL Injection
  176. [webapps] - Joomla! Component Recipe Manager 2.2 - 'id' Parameter SQL Injection
  177. [webapps] - Php Classified OLX Clone Script - 'category' Parameter SQL Injection
  178. [webapps] - SchoolDir - SQL Injection
  179. [shellcode] - Windows x86 - Reverse TCP Staged Alphanumeric Shellcode (332 Bytes)
  180. [webapps] - Aruba AirWave 8.2.3 - XML External Entity Injection / Cross-Site Scriptin
  181. [webapps] - WordPress Plugin Contact Form Manager - Cross-Site Request Forgery / Cros
  182. [webapps] - WordPress Plugin User Login Log 2.2.1 - Cross-Site Scripting
  183. [webapps] - WordPress Plugin Popup by Supsystic 1.7.6 - Cross-Site Request Forgery
  184. [webapps] - WordPress Plugin NewStatPress 1.2.4 - Cross-Site Scripting
  185. [webapps] - WordPress Plugin Global Content Blocks 2.1.5 - Cross-Site Request Forgery
  186. [webapps] - WordPress Plugin File Manager 3.0.1 - Cross-Site Request Forgery
  187. [webapps] - DLink DSL-2730U Wireless N 150 - Cross-Site Request Forgery
  188. [remote] - SysGauge 1.5.18 - Buffer Overflow
  189. [shellcode] - Linux/x86-64 - Reverse Shell Shellcode (84 bytes)
  190. [dos] - BlueIris 4.5.1.4 - Denial of Service
  191. [dos] - Synchronet BBS 3.16c - Denial of Service
  192. [local] - Cisco AnyConnect Secure Mobility Client 4.3.04027 - Privilege Escalation
  193. [webapps] - NETGEAR DGN2200v1/v2/v3/v4 - Cross-Site Request Forgery
  194. [remote] - MVPower DVR TV-7104HE 1.8.4 115215B9 - Shell Unauthenticated Command Execu
  195. [papers] - RSA Asymmetric Polymorphic Shellcode
  196. [webapps] - Joomla! Component OneVote! 1.0 - SQL Injection
  197. [shellcode] - Linux/x86_64 - Random Listener Shellcode (54 bytes)
  198. [shellcode] - Windows x86 - Executable Directory Search Shellcode (130 bytes)
  199. [webapps] - NETGEAR DGN2200v1/v2/v3/v4 - 'dnslookup.cgi' Remote Command Execution
  200. [webapps] - Joomla! Component Gnosis 1.1.2 - 'id' Parameter SQL Injection
  201. [webapps] - Joomla! Component Appointments for JomSocial 3.8.1 - SQL Injection
  202. [webapps] - Joomla! Component My MSG 3.2.1 - SQL Injection
  203. [webapps] - Joomla! Component Spinner 360 1.3.0 - SQL Injection
  204. [webapps] - Joomla! Component JomSocial - SQL Injection
  205. [dos] - Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free PoC
  206. [local] - Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free Privilege Escalation
  207. [webapps] - Joomla! Component Intranet Attendance Track 2.6.5 - SQL Injection
  208. [webapps] - Joomla! Component JooDatabase 3.1.0 - SQL Injection
  209. [webapps] - Joomla! Component JO Facebook Gallery 4.5 - SQL Injection
  210. [webapps] - Joomla! Component AJAX Search for K2 2.2 - SQL Injection
  211. [webapps] - Joomla! Component Community Surveys 4.3 - SQL Injection
  212. [webapps] - Joomla! Component Community Polls 4.5.0 - SQL Injection
  213. [webapps] - Joomla! Component GPS Tools 4.0.1 - SQL Injection
  214. [webapps] - Joomla! Component Community Quiz 4.3.5 - SQL Injection
  215. [webapps] - Apple WebKit 10.0.2 - 'FrameLoader::clear' Universal Cross-Site Scripting
  216. [webapps] - Apple WebKit 10.0.2 - Cross-Origin or Sandboxed IFRAME Pop-up Blocker Byp
  217. [webapps] - Apple WebKit 10.0.2 - 'Frame::setDocument' Universal Cross-Site Scripting
  218. [dos] - Microsoft Edge and Internet Explorer - 'HandleColumnBreakOnColumnSpanningElem
  219. [remote] - macOS HelpViewer 10.12.1 - XSS Leads to Arbitrary File Execution and Arbit
  220. [shellcode] - Linux/x86-64 - Egghunter Shellcode (38 bytes)
  221. [webapps] - Joomla! Component Store for K2 3.8.2 - SQL Injection
  222. [webapps] - Joomla! Component UserExtranet 1.3.1 - SQL Injection
  223. [webapps] - Joomla! Component MultiTier 3.1 - SQL Injection
  224. [remote] - Disk Savvy Enterprise 9.4.18 - Buffer Overflow (SEH)
  225. [webapps] - Teradici Management Console 2.2.0 - Privilege Escalation
  226. [dos] - Google Chrome - 'layout' Out-of-Bounds Read
  227. [dos] - EasyCom For PHP 4.0.0 - Buffer Overflow (PoC)
  228. [dos] - EasyCom For PHP 4.0.0 - Denial of Service
  229. [webapps] - Joomla! Component ContentMap 1.3.8 - 'contentid' Parameter SQL Injection
  230. [webapps] - Joomla! Component VehicleManager 3.9 - SQL Injection
  231. [webapps] - Joomla! Component RealEstateManager 3.9 - SQL Injection
  232. [webapps] - Joomla! Component BookLibrary 3.6.1 - SQL Injection
  233. [webapps] - Joomla! Component MediaLibrary Basic 3.5 - SQL Injection
  234. [dos] - Microsoft Office PowerPoint 2010 - 'MSO!Ordinal5429' Missing Length Check Hea
  235. [webapps] - Joomla! Component J-HotelPortal 6.0.2 - 'review_id' Parameter SQL Injecti
  236. [webapps] - Joomla! Component J-CruiseReservation Standard 3.0 - 'city' Parameter SQL
  237. [webapps] - Joomla! Component Eventix Events Calendar 1.0 - SQL Injection
  238. [webapps] - Joomla! Component J-MultipleHotelReservation Standard 6.0.2 - 'review_id'
  239. [webapps] - Joomla! Component Directorix Directory Manager 1.1.1 - SQL Injection
  240. [webapps] - Joomla! Component Magic Deals Web 1.2.0 - SQL Injection
  241. [webapps] - Joomla! Component J-BusinessDirectory 4.6.8 - SQL Injection
  242. [webapps] - Joomla! Component AppointmentBookingPro 4.0.1 - SQL Injection
  243. [webapps] - DIGISOL DG-HR1400 Wireless Router - Cross-Site Request Forgery
  244. [shellcode] - Linux/x86 - SELinux Permissive Mode Switcher Shellcode (45 bytes)
  245. [webapps] - Album Lock 4.0 iOS - Directory Traversal
  246. [webapps] - Joomla! Component MaQma Helpdesk 4.2.7 - 'id' Parameter SQL Injection
  247. [webapps] - Joomla! Component PayPal IPN for DOCman 3.1 - 'id' Parameter SQL Injectio
  248. [papers] - Injecting SQLite Database Based Applications
  249. [webapps] - PHPShell 2.4 - Session Fixation
  250. [shellcode] - Linux - Reverse Shell Shellcode (66 bytes)