المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 3 [4] 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63

  1. [local] Microsoft Windows 10 - Theme API 'ThemePack' File Parsing
  2. [webapps] Liferay CE Portal 6.0.2 - Remote Command Execution
  3. [webapps] Cups Easy 1.0 - Cross Site Request Forgery (Password Reset)
  4. [local] XMLBlueprint 16.191112 - XML External Entity Injection
  5. [webapps] Kibana 6.6.1 - CSV Injection
  6. [dos] macOS/iOS ImageIO - Heap Corruption when Processing Malformed TIFF Image
  7. [webapps] Octeth Oempro 4.8 - 'CampaignID' SQL Injection
  8. [webapps] Centreon 19.10.5 - Database Credentials Disclosure
  9. [webapps] Centreon 19.10.5 - Remote Command Execution
  10. [webapps] Adive Framework 2.0.8 - Cross-Site Request Forgery (Change Admin Password)
  11. [local] Torrent 3GP Converter 1.51 - Stack Overflow (SEH)
  12. [local] Ricoh Printer Drivers - Local Privilege Escalation
  13. [dos] Remote Desktop Gateway - 'BlueGate' Denial of Service (PoC)
  14. [webapps] OLK Web Store 2020 - Cross-Site Request Forgery
  15. [webapps] Genexis Platinum-4410 2.1 - Authentication Bypass
  16. [webapps] TP-Link TP-SG105E 1.0.0 - Unauthenticated Remote Reboot
  17. [webapps] Webtareas 2.0 - 'id' SQL Injection
  18. [local] Reliable Datagram Sockets (RDS) - rds_atomic_free_op NULL pointer dereference
  19. [remote] Pachev FTP Server 1.0 - Path Traversal
  20. [webapps] qdPM 9.1 - Remote Code Execution
  21. [dos] BOOTP Turbo 2.0 - Denial of Service (SEH)(PoC)
  22. [dos] KeePass 2.44 - Denial of Service (PoC)
  23. [webapps] Citrix XenMobile Server 10.8 - XML External Entity Injection
  24. [webapps] ManageEngine Network Configuration Manager 12.2 - 'apiKey' SQL Injection
  25. [local] NEOWISE CARBONFTP 1.4 - Weak Password Encryption
  26. [webapps] Adive Framework 2.0.8 - Persistent Cross-Site Scripting
  27. [dos] Sysax Multi Server 5.50 - Denial of Service (PoC)
  28. [webapps] Centreon 19.04 - Authenticated Remote Code Execution (Metasploit)
  29. [local] Easy XML Editor 1.7.8 - XML External Entity Injection
  30. [local] Plantronics Hub 3.13.2 - SpokesUpdateService Privilege Escalation (Metasploit
  31. [local] Trend Micro Maximum Security 2019 - Privilege Escalation
  32. [dos] GTalk Password Finder 2.2.1 - 'Key' Denial of Service (PoC)
  33. [webapps] Wordpress Plugin InfiniteWP Client 1.9.4.5 - Authentication Bypass
  34. [local] Trend Micro Maximum Security 2019 - Arbitrary Code Execution
  35. [webapps] Wordpress Time Capsule Plugin 1.21.16 - Authentication Bypass
  36. [dos] APKF Product Key Finder 2.5.8.0 - 'Name' Denial of Service (PoC)
  37. [local] Torrent FLV Converter 1.51 Build 117 - Stack Oveflow (SEH partial overwrite)
  38. [remote] Sagemcom F@ST 3890 (50_10_19-T1) Cable Modem - 'Cable Haunt' Remote Code Exe
  39. [local] SunOS 5.10 Generic_147148-26 - Local Privilege Escalation
  40. [local] Microsoft Windows - CryptoAPI (Crypt32.dll) Elliptic Curve Cryptography (ECC)
  41. [webapps] Rukovoditel Project Management CRM 2.5.2 - 'filters' SQL Injection
  42. [local] Microsoft Windows 10 (19H1 1901 x64) - 'ws2ifsl.sys' Use After Free Local Pri
  43. [webapps] Online Book Store 1.0 - Arbitrary File Upload
  44. [webapps] Tautulli 2.1.9 - Denial of Service ( Metasploit )
  45. [webapps] Citrix Application Delivery Controller (ADC) and Gateway 13.0 - Path Traver
  46. [webapps] Rukovoditel Project Management CRM 2.5.2 - 'entities_id' SQL Injection
  47. [webapps] WordPress Plugin Postie 1.9.40 - Persistent Cross-Site Scripting
  48. [webapps] Rukovoditel Project Management CRM 2.5.2 - 'reports_id' SQL Injection
  49. [webapps] Jenkins Gitlab Hook Plugin 1.4.2 - Reflected Cross-Site Scripting
  50. [remote] Barco WePresent - file_transfer.cgi Command Injection (Metasploit)
  51. [webapps] Online Book Store 1.0 - 'bookisbn' SQL Injection
  52. [webapps] Huawei HG255 - Directory Traversal ( Metasploit )
  53. [dos] WeChat - Memory Corruption in CAudioJBM::InputAudioFrameToJBM
  54. [dos] Android - ashmem Readonly Bypasses via remap_file_pages() and ASHMEM_UNPIN
  55. [local] VPN unlimited 6.1 - Unquoted Service Path
  56. [webapps] IBM RICOH InfoPrint 6500 Printer - HTML Injection
  57. [webapps] IBM RICOH 6400 Printer - HTML Injection
  58. [dos] Redir 3.3 - Denial of Service (PoC)
  59. [webapps] Citrix Application Delivery Controller and Gateway 10.5 - Remote Code Execu
  60. [webapps] Digi AnywhereUSB 14 - Reflective Cross-Site Scripting
  61. [local] Microsoft Windows 10 build 1809 - Local Privilege Escalation (UAC Bypass)
  62. [local] Advanced System Repair Pro 1.9.1.7 - Insecure File Permissions
  63. [dos] SpotOutlook 1.2.6 - 'Name' Denial of Service (PoC)
  64. [dos] Top Password Software Dialup Password Recovery 1.30 - Denial of Service (PoC)
  65. [local] Allok Video Converter 4.6.1217 - Stack Overflow (SEH)
  66. [dos] Backup Key Recovery 2.2.5 - 'Name' Denial of Service (PoC)
  67. [local] Allok RM RMVB to AVI MPEG DVD Converter 3.6.1217 - Stack Overflow (SEH)
  68. [dos] TaskCanvas 1.4.0 - 'Registration' Denial Of Service
  69. [dos] Top Password Firefox Password Recovery 2.8 - Denial of Service (PoC)
  70. [webapps] Chevereto 3.13.4 Core - Remote Code Execution
  71. [dos] SpotDialup 1.6.7 - 'Name' Denial of Service (PoC)
  72. [webapps] Citrix Application Delivery Controller and Citrix Gateway - Remote Code Exe
  73. [webapps] Citrix Application Delivery Controller and Citrix Gateway - Remote Code Exe
  74. [local] TotalAV 2020 4.14.31 - Privilege Escalation
  75. [webapps] Pandora 7.0NG - Remote Code Execution
  76. [webapps] PixelStor 5000 K:4.0.1580-20150629 - Remote Code Execution
  77. [webapps] ASTPP 4.0.1 VoIP Billing - Database Backup Download
  78. [webapps] Oracle Weblogic 10.3.6.0.0 - Remote Command Execution
  79. [local] MSN Password Recovery 1.30 - XML External Entity Injection
  80. [dos] ZIP Password Recovery 2.30 - 'ZIP File' Denial of Service (PoC)
  81. [webapps] Sony Playstation 4 (PS4) < 6.72 - WebKit Code Execution (PoC)
  82. [webapps] Online Book Store 1.0 - Unauthenticated Remote Code Execution
  83. [remote] EBBISLAND EBBSHAVE 6100-09-04-1441 - Remote Buffer Overflow
  84. [remote] ASTPP VoIP 4.0.1 - Remote Code Execution
  85. [remote] JetBrains TeamCity 2018.2.4 - Remote Code Execution
  86. [webapps] Tomcat proprietaryEvaluate 9.0.0.M1 - Sandbox Escape
  87. [remote] Cisco DCNM JBoss 10.4 - Credential Leakage
  88. [webapps] Codoforum 4.8.3 - 'input_txt' Persistent Cross-Site Scripting
  89. [webapps] piSignage 2.6.4 - Directory Traversal
  90. [local] AnyDesk 5.4.0 - Unquoted Service Path
  91. [webapps] Complaint Management System 4.0 - Remote Code Execution
  92. [webapps] Job Portal 1.0 - Remote Code Execution
  93. [dos] Backup Key Recovery Recover Keys Crashed Hard Disk Drive 2.2.5 - 'Key' Denial o
  94. [dos] RemShutdown 2.9.0.0 - 'Name' Denial of Service (PoC)
  95. [dos] NBMonitor 1.6.6.0 - 'Key' Denial of Service (PoC)
  96. [dos] Office Product Key Finder 1.5.4 - Denial of Service (PoC)
  97. [dos] SpotFTP FTP Password Recovery 3.0.0.0 - 'Name' Denial of Service (PoC)
  98. [dos] SpotMSN 2.4.6 - 'Name' Denial of Service (PoC)
  99. [dos] SpotIM 2.2 - 'Name' Denial Of Service
  100. [dos] FTPGetter Professional 5.97.0.223 - Denial of Service (PoC)
  101. [dos] Duplicate Cleaner Pro 4 - Denial of Service (PoC)
  102. [webapps] Small CRM 2.0 - Authentication Bypass
  103. [webapps] Voyager 1.3.0 - Directory Traversal
  104. [webapps] Codoforum 4.8.3 - Persistent Cross-Site Scripting
  105. [dos] Microsoft Outlook VCF cards - Denial of Service (PoC)
  106. [webapps] Django < 3.0 < 2.2 < 1.11 - Account Hijack
  107. [local] Windows - Shell COM Server Registrar Local Privilege Escalation
  108. [dos] RemShutdown 2.9.0.0 - 'Key' Denial of Service (PoC)
  109. [dos] Dnss Domain Name Search Software - 'Key' Denial of Service (PoC)
  110. [dos] BlueAuditor 1.7.2.0 - 'Name' Denial of Service (PoC)
  111. [webapps] elaniin CMS 1.0 - Authentication Bypass
  112. [dos] ShareAlarmPro Advanced Network Access Control - 'Key' Denial of Service (PoC)
  113. [dos] NetShareWatcher 1.5.8.0 - 'Key' Denial of Service (PoC)
  114. [dos] Dnss Domain Name Search Software - 'Name' Denial of Service (PoC)
  115. [dos] TextCrawler Pro3.1.1 - Denial of Service (PoC)
  116. [dos] SpotIE 2.9.5 - 'Key' Denial of Service (PoC)
  117. [dos] NetworkSleuth 3.0.0.0 - 'Key' Denial of Service (PoC)
  118. [webapps] Hostel Management System 2.0 - 'id' SQL Injection
  119. [local] Adaware Web Companion 4.9.2159 - 'WCAssistantService' Unquoted Service Path
  120. [webapps] Hospital Management System 4.0 - Persistent Cross-Site Scripting
  121. [webapps] BloodX 1.0 - Authentication Bypass
  122. [webapps] Complaint Management System 4.0 - 'cid' SQL injection
  123. [dos] NetShareWatcher 1.5.8.0 - 'Name' Denial Of Service
  124. [webapps] Subrion CMS 4.0.5 - Cross-Site Request Forgery (Add Admin)
  125. [webapps] IBM RICOH Infoprint 1532 Printer - Persistent Cross-Site Scripting
  126. [webapps] IBM InfoPrint 4247-Z03 Impact Matrix Printer - Directory Traversal
  127. [webapps] Hospital Management System 4.0 - Authentication Bypass
  128. [remote] nostromo 1.9.6 - Remote Code Execution
  129. [local] Microsoft Windows .Group File - Code Execution
  130. [dos] MSN Password Recovery 1.30 - Denial of Service (PoC)
  131. [webapps] Hospital Management System 4.0 - 'searchdata' SQL Injection
  132. [webapps] Online Course Registration 2.0 - Remote Code Execution
  133. [webapps] Karakuzu ERP Management Web 5.7.0 - 'k_adi_duz' SQL Injection
  134. [local] Plantronics Hub 3.13.2 - Local Privilege Escalation
  135. [webapps] Dairy Farm Shop Management System 1.0 - 'username' SQL Injection
  136. [webapps] Shopping Portal ProVersion 3.0 - Authentication Bypass
  137. [local] NextVPN v4.10 - Insecure File Permissions
  138. [webapps] Wordpress Ultimate Addons for Beaver Builder 1.2.4.1 - Authentication Bypas
  139. [local] FreeBSD-SA-19:15.mqueuefs - Privilege Escalation
  140. [webapps] Heatmiser Netmonitor 3.03 - HTML Injection
  141. [local] FreeBSD-SA-19:02.fd - Privilege Escalation
  142. [local] Domain Quester Pro 6.02 - Stack Overflow (SEH)
  143. [webapps] RICOH SP 4510SF Printer - HTML Injection
  144. [webapps] RICOH Web Image Monitor 1.09 - HTML Injection
  145. [webapps] AVE DOMINAplus 1.10.x - Cross-Site Request Forgery (enable/disable alarm)
  146. [webapps] AVE DOMINAplus 1.10.x - Authentication Bypass
  147. [webapps] Heatmiser Netmonitor 3.03 - Hardcoded Credentials
  148. [webapps] MyDomoAtHome REST API Domoticz ISS Gateway 0.2.40 - Information Disclosure
  149. [webapps] AVE DOMINAplus 1.10.x - Unauthenticated Remote Reboot
  150. [webapps] WEMS BEMS 21.3.1 - Undocumented Backdoor Account
  151. [local] Wing FTP Server 6.0.7 - Unquoted Service Path
  152. [webapps] AVE DOMINAplus 1.10.x - Credential Disclosure
  153. [local] FTP Navigator 8.03 - Stack Overflow (SEH)
  154. [webapps] Thrive Smart Home 1.1 - Authentication Bypass
  155. [webapps] XEROX WorkCentre 7855 Printer - Cross-Site Request Forgery (Add Admin)
  156. [webapps] XEROX WorkCentre 7830 Printer - Cross-Site Request Forgery (Add Admin)
  157. [webapps] XEROX WorkCentre 6655 Printer - Cross-Site Request Forgery (Add Admin)
  158. [webapps] elearning-script 1.0 - Authentication Bypass
  159. [local] AVS Audio Converter 9.1.2.600 - Stack Overflow (PoC)
  160. [webapps] HomeAutomation 3.3.2 - Remote Code Execution
  161. [webapps] HomeAutomation 3.3.2 - Cross-Site Request Forgery (Add Admin)
  162. [webapps] HomeAutomation 3.3.2 - Persistent Cross-Site Scripting
  163. [webapps] HomeAutomation 3.3.2 - Authentication Bypass
  164. [local] OpenBSD - Dynamic Loader chpass Privilege Escalation (Metasploit)
  165. [local] Reptile Rootkit - reptile_cmd Privilege Escalation (Metasploit)
  166. [local] Microsoft UPnP - Local Privilege Elevation (Metasploit)
  167. [local] Prime95 Version 29.8 build 6 - Buffer Overflow (SEH)
  168. [webapps] WordPress Core < 5.3.x - 'xmlrpc.php' Denial of Service
  169. [remote] FreeSWITCH 1.10.1 - Command Execution
  170. [dos] Microsoft Windows 10 BasicRender.sys - Denial of Service (PoC)
  171. [webapps] phpMyChat-Plus 1.98 - 'pmc_username' Reflected Cross-Site Scripting
  172. [webapps] Deutsche Bahn Ticket Vending Machine Local Kiosk - Privilege Escalation
  173. [dos] FTP Navigator 8.03 - 'Custom Command' Denial of Service (SEH)
  174. [dos] macOS 10.14.6 (18G87) - Kernel Use-After-Free due to Race Condition in wait_for
  175. [webapps] Telerik UI - Remote Code Execution via Insecure Deserialization
  176. [remote] OpenMRS - Java Deserialization RCE (Metasploit)
  177. [webapps] Xerox AltaLink C8035 Printer - Cross-Site Request Forgery (Add Admin)
  178. [local] AVS Audio Converter 9.1 - 'Exit folder' Buffer Overflow
  179. [webapps] Rumpus FTP Web File Manager 8.2.9.1 - Reflected Cross-Site Scripting
  180. [dos] XnView 2.49.1 - 'Research' Denial of Service (PoC)
  181. [webapps] Tautulli 2.1.9 - Cross-Site Request Forgery (ShutDown)
  182. [webapps] NopCommerce 4.2.0 - Privilege Escalation
  183. [webapps] D-Link DIR-615 Wireless Router - Persistent Cross-Site Scripting
  184. [webapps] Roxy Fileman 1.4.5 - Directory Traversal
  185. [webapps] Netgear R6400 - Remote Code Execution
  186. [webapps] Zendesk App SweetHawk Survey 1.6 - Persistent Cross-Site Scripting
  187. [local] Linux 5.3 - Privilege Escalation via io_uring Offload of sendmsg() onto Kerne
  188. [local] OpenBSD 6.x - Dynamic Loader Privilege Escalation
  189. [webapps] D-Link DIR-615 - Privilege Escalation
  190. [webapps] NVMS 1000 - Directory Traversal
  191. [local] FTP Commander Pro 8.03 - Local Stack Overflow
  192. [dos] Lenovo Power Management Driver 1.67.17.48 - 'mdrvs.sys' Denial of Service (PoC)
  193. [webapps] OpenNetAdmin 18.1.1 - Command Injection Exploit (Metasploit)
  194. [webapps] Bullwark Momentum Series JAWS 1.0 - Directory Traversal
  195. [dos] Adobe Acrobat Reader DC - Heap-Based Memory Corruption due to Malformed TTF Fon
  196. [webapps] Apache Olingo OData 4.0 - XML External Entity Injection
  197. [dos] Product Key Explorer 4.2.0.0 - 'Name' Denial of Service (POC)
  198. [dos] Product Key Explorer 4.2.0.0 - 'Key' Denial of Service (PoC)
  199. [dos] AppXSvc 17763 - Arbitrary File Overwrite (DoS)
  200. [webapps] Inim Electronics Smartliving SmartLAN 6.x - Unauthenticated Server-Side Req
  201. [webapps] Inim Electronics Smartliving SmartLAN 6.x - Remote Command Execution
  202. [local] Inim Electronics Smartliving SmartLAN 6.x - Hard-coded Credentials
  203. [local] SpotAuditor 5.3.2 - 'Base64' Local Buffer Overflow (SEH)
  204. [webapps] Yachtcontrol Webapplication 1.0 - Unauthenticated Remote Code Execution
  205. [webapps] Alcatel-Lucent Omnivista 8770 - Remote Code Execution
  206. [webapps] Oracle Siebel Sales 8.1 - Persistent Cross-Site Scripting
  207. [webapps] Snipe-IT Open Source Asset Management 4.7.5 - Persistent Cross-Site Scripti
  208. [dos] Omron PLC 1.0.0 - Denial of Service (PoC)
  209. [webapps] PRO-7070 Haz?r Profesyonel Web Sitesi 1.0 - Authentication Bypass
  210. [local] Microsoft Windows - Multiple UAC Protection Bypasses
  211. [local] Microsoft Windows - 'WSReset' UAC Protection Bypass (Registry)
  212. [local] Microsoft Windows 10 - 'WSReset' UAC Protection Bypass (propsys.dll)
  213. [local] Mozilla FireFox (Windows 10 x64) - Full Chain Client Side Attack
  214. [remote] Integard Pro NoJs 2.2.0.9026 - Remote Buffer Overflow
  215. [local] Trend Micro Deep Security Agent 11 - Arbitrary File Overwrite
  216. [webapps] Verot 2.0.3 - Remote Code Execution
  217. [webapps] Broadcom CA Privilged Access Manager 2.8.2 - Remote Command Execution
  218. [local] Amiti Antivirus 25.0.640 - Unquoted Service Path
  219. [local] NETGATE Data Backup 3.0.620 - 'NGDatBckpSrv' Unquoted Service Path
  220. [webapps] OwnCloud 8.1.8 - Username Disclosure
  221. [webapps] Cisco WLC 2504 8.9 - Denial of Service (PoC)
  222. [webapps] SSDWLAB 6.1 - Authentication Bypass
  223. [local] Microsoft Visual Basic 2010 Express - XML External Entity Injection
  224. [webapps] Online Clinic Management System 2.2 - HTML Injection
  225. [webapps] Revive Adserver 4.2 - Remote Code Execution
  226. [local] Microsoft Windows Media Center 2002 - XML External Entity MotW Bypass
  227. [webapps] Online Invoicing System 2.6 - 'description' Persistent Cross-Site Scripting
  228. [webapps] Intelbras Router RF1200 1.1.3 - Cross-Site Request Forgery
  229. [local] Visual Studio 2008 - XML External Entity Injection
  230. [webapps] SmartHouse Webapp 6.5.33 - Cross-Site Request Forgery
  231. [webapps] Dokuwiki 2018-04-22b - Username Enumeration
  232. [dos] Nsauditor 3.1.8.0 - 'Key' Denial of Service (PoC)
  233. [local] Max Secure Anti Virus Plus 19.0.4.020 - Insecure File Permissions
  234. [local] Anviz CrossChex 4.3.12 - Local Buffer Overflow
  235. [local] Microsoft Excel 2016 1901 - XML External Entity Injection
  236. [dos] Nsauditor 3.1.8.0 - 'Name' Denial of Service (PoC)
  237. [dos] SpotAuditor 5.3.2 - 'Name' Denial of Service
  238. [local] Bash 5.0 Patch 11 - SUID Priv Drop Exploit
  239. [webapps] Online Inventory Manager 3.2 - Persistent Cross-Site Scripting
  240. [local] TexasSoft CyberPlanet 6.4.131 - 'CCSrvProxy' Unquoted Service Path
  241. [dos] SpotAuditor 5.3.2 - 'Key' Denial of Service
  242. [webapps] Mersive Solstice 2.8.0 - Remote Code Execution
  243. [dos] GHIA CamIP 1.2 for iOS - 'Password' Denial of Service (PoC)
  244. [webapps] Wordpress 5.3 - User Disclosure
  245. [dos] SpotAuditor 5.3.2 - 'Base64' Denial Of Service (PoC)
  246. [dos] Microsoft DirectX SDK 2010 - '.PIXrun' Denial Of Service (PoC)
  247. [dos] InduSoft Web Studio 8.1 SP1 - "Atributos" Denial of Service (PoC)
  248. [dos] iNetTools for iOS 8.20 - 'Whois' Denial of Service (PoC)
  249. [local] VMware WorkStation 12.5.3 - Virtual Machine Escape
  250. [local] VMware WorkStation 12.5.5 - Virtual Machine Escape