المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 [41] 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56

  1. [webapps] - Openfire 3.10.2 - Privilege Escalation
  2. [webapps] - Openfire 3.10.2 - Remote File Inclusion
  3. [webapps] - Openfire 3.10.2 - Unrestricted File Upload
  4. [local] - Total Commander 8.52 - SEH-Overwrite BOF
  5. [remote] - TP-Link NC200/NC220 Cloud Camera 300Mbps Wi-Fi - Hard-Coded Credentials
  6. [webapps] - EZ SQL Reports < 4.11.37 - Multiple Vulnerabilities
  7. [webapps] - ManageEngine OpManager 11.5 - Multiple Vulnerabilities
  8. [webapps] - ManageEngine EventLog Analyzer < 10.6 build 10060 - SQL Query Execution
  9. [dos] - IKEView.exe Fox beta 1 - Stack Buffer Overflow
  10. [dos] - IKEView.exe R60 - Stack Buffer Overflow
  11. [dos] - Microsoft Internet Explorer 11 - Stack Underflow Crash PoC
  12. [remote] - Windows Media Center Command Execution - MS15-100
  13. [webapps] - Monsta FTP 1.6.2 - Multiple Vulnerabilities
  14. [local] - Logitech Webcam Software 1.1 - eReg.exe SEH/Unicode Buffer Overflow
  15. [dos] - OpenLDAP 2.4.42 - ber_get_next Denial of Service
  16. [shellcode] - OS X x64 - tcp bind shellcode, NULL byte free (144 bytes)
  17. [local] - OS X Install.framework suid Helper Privilege Escalation
  18. [local] - OS X Install.framework Arbitrary mkdir, unlink and chown to admin Group
  19. [local] - OS X Install.framework suid root Runner Binary Privilege Escalation
  20. [webapps] - Octogate UTM 3.0.12 - Admin Interface Directory Traversal
  21. [webapps] - Synology Video Station 1.5-0757 - Multiple Vulnerabilities
  22. [webapps] - php - cgimode fpm writeprocmemfile bypass disable function demo
  23. [shellcode] - Linux/x86 - execve(/bin/bash) - 31 bytes
  24. [dos] - PHP unserialize() Use-After-Free Vulnerabilities
  25. [remote] - Android Stagefright - Remote Code Execution
  26. [dos] - PHP Session Deserializer Use-After-Free
  27. [dos] - PHP SplObjectStorage unserialize() Use-After-Free
  28. [dos] - PHP GMP unserialize() Use-After-Free
  29. [dos] - PHP SplDoublyLinkedList unserialize() Use-After-Free
  30. [webapps] - Auto-Exchanger 5.1.0 - CSRF Vulnerability
  31. [webapps] - Qlikview
  32. [papers] - Evading All Web-Application Firewalls XSS Filters
  33. [shellcode] - Linux/x86 - Create file with permission 7775 and exit (Shell Generator)
  34. [shellcode] - Linux/x86 - execve("/bin/cat", ["/bin/cat", "/etc/passwd"], NULL)
  35. [webapps] - DirectAdmin Web Control Panel 1.483 - Multiple Vulnerabilities
  36. [local] - IBM AIX High Availability Cluster Multiprocessing (HACMP) Local Privilege E
  37. [local] - Cisco Sourcefire User Agent 2.2 - Insecure File Permissions
  38. [dos] - Advantech WebAccess 8.0, 3.4.3 ActiveX - Multiple Vulnerabilities
  39. [papers] - Shoot zend_executor_globals to bypass php disable_functions
  40. [local] - VeryPDF HTML Converter 2.0 - SEH/ToLower() Bypass Buffer Overflow
  41. [remote] - Endian Firewall Proxy Password Change Command Injection
  42. [webapps] - NETGEAR Wireless Management System 2.1.4.15 (Build 1236) - Privilege Esca
  43. [webapps] - JSPMySQL Administrador - Multiple Vulnerabilities
  44. [webapps] - HooToo Tripmate HT-TM01 2.000.022 - CSRF Vulnerabilities
  45. [webapps] - Zhone ADSL2+ 4P Bridge & Router (Broadcom) - Multiple Vulnerabilities
  46. [local] - Disconnect.me Mac OS X Client
  47. [webapps] - FireEye Appliance Unauthorized File Disclosure
  48. [webapps] - Elastix < 2.5 , PHP Code Injection Exploit
  49. [webapps] - WordPress Contact Form Generator
  50. [dos] - ActiveState Perl.exe x64 Client 5.20.2 - Crash PoC
  51. [local] - AutoCAD DWG and DXF To PDF Converter 2.2 - Buffer Overflow
  52. [papers] - Compromising ISP Issued 802.11 Wireless Cable Modem Networks for Profit
  53. [papers] - [Hebrew] Digital Whisper Security Magazine #63
  54. [papers] - [Hebrew] Digital Whisper Security Magazine #64
  55. [webapps] - YesWiki 0.2 - Path Traversal Vulnerability
  56. [shellcode] - Mainframe/System Z Bind Shell
  57. [webapps] - Cerb 7.0.3 - CSRF Vulnerability
  58. [webapps] - GPON Home Router FTP G-93RG1 - CSRF Command Execution Vulnerability
  59. [dos] - SphereFTP Server 2.0 - Crash PoC
  60. [papers] - [Persian] Pyrit Cluster with Kali Linux
  61. [papers] - [Persian] Cracking WPA/WPA2 with Rainbow Table
  62. [shellcode] - OS X x64 /bin/sh Shellcode, NULL Byte Free, 34 bytes
  63. [webapps] - Thomson Wireless VoIP Cable Modem TWG850-4B ST9C.05.08 - Authentication B
  64. [webapps] - Edimax BR6228nS/BR6228nC - Multiple Vulnerabilities
  65. [dos] - XGI Windows VGA Display Manager 6.14.10.1090 - Arbitrary Write PoC
  66. [dos] - SiS Windows VGA Display Manager 6.14.10.3930 - Write-What-Where PoC
  67. [dos] - Mpxplay Multimedia Commander 2.00a - .m3u Stack-Based Buffer Overflow
  68. [webapps] - Bedita 3.5.1 - XSS Vulnerabilities
  69. [dos] - PFTP Server 8.0f Lite - textfield Local SEH Buffer Overflow
  70. [local] - Boxoft WAV to MP3 Converter - convert Feature Buffer Overflow
  71. [local] - Apple OS X Entitlements Rootpipe Privilege Escalation
  72. [webapps] - Cyberoam Firewall CR500iNG-XP - 10.6.2 MR-1 - Blind SQL Injection Vulnera
  73. [papers] - How to HeapSpray and Exploit Memory Corruption in IIS6
  74. [dos] - Viber 4.2.0 - Non-Printable Characters Handling Denial of Service Vulnerabili
  75. [dos] - Microsoft Office 2007 - msxml5.dll Crash PoC
  76. [webapps] - Ganglia Web Frontend < 3.5.1 - PHP Code Execution
  77. [webapps] - Edimax PS-1206MF - Web Admin Auth Bypass
  78. [webapps] - PhpWiki 1.5.4 - Multiple Vulnerabilities
  79. [remote] - PCMan FTP Server 2.0.7 - RENAME Command Buffer Overflow
  80. [remote] - PCMan FTP Server 2.0.7 - GET Command Buffer Overflow
  81. [dos] - Sysax Multi Server 6.40 SSH Component Denial of Service
  82. [remote] - MS SQL Server 2000/2005 SQLNS.SQLNamespace COM Object Refresh() Unhandled
  83. [webapps] - Samsung SyncThruWeb 2.01.00.26 - SMB Hash Disclosure
  84. [webapps] - Pluck CMS 4.7.3 - Multiple Vulnerabilities
  85. [dos] - freeSSHd 1.3.1 - Denial of Service Vulnerability
  86. [webapps] - Wolf CMS Arbitrary File Upload To Command Execution
  87. [webapps] - Jenkins 1.626 - Cross Site Request Forgery / Code Execution
  88. [webapps] - WordPress Responsive Thumbnail Slider Plugin 1.0 - Arbitrary File Upload
  89. [dos] - Photo Transfer (2) 1.0 iOS - Denial of Service Vulnerability
  90. [dos] - QEMU Programmable Interrupt Timer Controller Heap Overflow
  91. [webapps] - IP.Board 4.X - Stored XSS
  92. [local] - BSIGN 0.4.5 - Buffer Overflow
  93. [local] - FENIX 0.92 - Buffer Overflow
  94. [dos] - Xion Audio Player 1.5 build 155 Stack Based Buffer Overflow
  95. [remote] - FHFS - FTP/HTTP File Server 2.1.2 Remote Command Execution
  96. [webapps] - Magento eCommerce - Remote Code Execution
  97. [dos] - VLC Media Player 2.2.1 - m3u8/m3u Crash PoC
  98. [local] - ZSNES 1.51 - Buffer Overflow
  99. [dos] - Microsoft Office 2007 Malformed Document Stack-Based Buffer Overflow
  100. [dos] - Microsoft Office 2007 OneTableDocumentStream Invalid Object
  101. [webapps] - Keeper IP Camera 3.2.2.10 - Authentication Bypass
  102. [remote] - Firefox PDF.js Privileged Javascript Injection
  103. [dos] - GOM Audio 2.0.8 - (.gas) Crash POC
  104. [webapps] - WordPress GeoPlaces3 Theme - Arbitrary File Upload Vulnerbility
  105. [webapps] - Pligg CMS 2.0.2 - CSRF Add Admin Exploit
  106. [dos] - Mock SMTP Server 1.0 Remote Crash PoC
  107. [papers] - MySQL Error Based SQL Injection Using EXP
  108. [remote] - Easy Address Book Web Server 1.6 - USERID Remote Buffer Overflow
  109. [webapps] - Netsweeper 4.0.8 - Authentication Bypass
  110. [remote] - Easy File Sharing Web Server 6.9 - USERID Remote Buffer Overflow
  111. [local] - Multiple ChiefPDF Software 2.0 - Buffer Overflow
  112. [webapps] - Netsweeper 4.0.8 - Arbitrary File Upload and Execution
  113. [webapps] - Netsweeper 3.0.6 - Authentication Bypass
  114. [webapps] - Netsweeper 4.0.9 - Arbitrary File Upload And Execution
  115. [webapps] - Netsweeper 4.0.8 - Authentication Bypass Issue
  116. [webapps] - Netsweeper 4.0.8 - SQL Injection Authentication Bypass
  117. [webapps] - Netsweeper 4.0.4 - SQL Injection
  118. [webapps] - Netsweeper 2.6.29.8 - SQL Injection
  119. [local] - Mozilla Maintenance Service Log File Overwrite Elevation of Privilege
  120. [dos] - Microsoft Office 2007 MSPTLS Heap Index Integer Underflow
  121. [dos] - Windows ATMFD.DLL CharString Stream Out-of-Bounds Reads
  122. [dos] - Windows ATMFD.DLL Write to Uninitialized Address Due to Malformed CFF Table
  123. [dos] - Windows win32k.sys TTF Font Processing IUP[] Program Instruction Pool-Based B
  124. [dos] - Windows win32k.sys TTF Font Processing win32k!scl_ApplyTranslation Pool-Based
  125. [dos] - Windows ATMFD.DLL Out-of-Bounds Read Due to Malformed Name INDEX in the CFF T
  126. [dos] - Windows ATMFD.DLL Out-of-Bounds Read Due to Malformed FDSelect Offset in the
  127. [dos] - Windows win32k.sys TTF Font Processing win32k!fsc_RemoveDups Out-of-Bounds Po
  128. [dos] - Windows win32k.sys TTF Font Processing win32k!fsc_BLTHoriz Out-of-Bounds Pool
  129. [dos] - Microsoft Office 2007 MSO.dll Use-After-Free
  130. [dos] - Microsoft Office 2007 MSO.dll Arbitrary Free
  131. [dos] - Microsoft Office 2007 OGL.dll DpOutputSpanStretch::OutputSpan Out of Bounds W
  132. [webapps] - WordPress MDC Private Message Plugin 1.0.0 - Persistent XSS
  133. [shellcode] - Win2003 x64 - Token Stealing shellcode - 59 bytes
  134. [webapps] - Pligg CMS 2.0.2 - Arbitrary Code Execution
  135. [dos] - Valhala Honeypot 1.8 - Stack-Based Buffer Overflow
  136. [webapps] - Vifi Radio v1 - CSRF Vulnerability
  137. [webapps] - Aruba Mobility Controller 6.4.2.8 - Multiple vulnerabilities
  138. [webapps] - up.time 7.5.0 Upload And Execute File Exploit
  139. [webapps] - up.time 7.5.0 Arbitrary File Disclose And Delete Exploit
  140. [webapps] - up.time 7.5.0 XSS And CSRF Add Admin Exploit
  141. [webapps] - up.time 7.5.0 Superadmin Privilege Escalation Exploit
  142. [dos] - Adobe Flash Heap Use-After-Free in SurfaceFilterList::CreateFromScriptAtom
  143. [dos] - Adobe Flash AS2 Use-After-Free in TextField.filters
  144. [dos] - Adobe Flash Overflow in ID3 Tag Parsing
  145. [dos] - Adobe Flash Shared Object Type Confusion
  146. [dos] - Adobe Flash Heap-Based Buffer Overflow Due to Indexing Error When Loading FLV
  147. [dos] - Adobe Flash Heap-Based Buffer Overflow Loading FLV File with Nellymoser Audio
  148. [dos] - Adobe Flash: FileReference Class Type Confusion
  149. [dos] - Adobe Flash Use-After-Free in TextField.gridFitType
  150. [dos] - Adobe Flash XMLSocket Destructor Not Cleared Before Setting User Data in conn
  151. [dos] - Adobe Flash URL Resource Use-After-Free
  152. [dos] - Adobe Flash Type Confusion in TextRenderer.setAdvancedAntialiasingTable
  153. [dos] - Adobe Flash Pointer Crash After Continuing Slow Script
  154. [dos] - Adobe Flash Pointer Crash in Drawing and Bitmap Handling
  155. [dos] - Adobe Flash Use-After-Free in attachMovie
  156. [dos] - Adobe Flash Use-After-Free in Drawing Methods "this"
  157. [dos] - Adobe Flash Use-After-Free in scale9Grid
  158. [dos] - Adobe Flash Out-of-Bounds Read in UTF Conversion
  159. [dos] - Flash AS2 Use-After-Free in DisplacementMapFilter.mapBitmap (2)
  160. [dos] - Flash Use-After-Free with Color.setRGB in AS2
  161. [dos] - Adobe Flash Use-After-Free in XML.childNodes
  162. [dos] - Adobe Flash Out-of-Bounds Memory Read While Parsing a Mutated TTF File Embedd
  163. [dos] - Adobe Flash Use-After-Free When Setting Variable
  164. [remote] - Flash Boundless Tunes - Universal SOP Bypass Through ActionSctipt's Sound
  165. [dos] - Flash Use-After-Free in NetConnection.connect
  166. [dos] - Flash Use-After-Free in Display List Handling
  167. [dos] - Flash AS2 Use After Free While Setting TextField.filters
  168. [dos] - Flash AS2 Use After Free in TextField.filters
  169. [dos] - Flash Issues in DefineBitsLossless and DefineBitsLossless2 Leads to Using Uni
  170. [dos] - Flash Uninitialized Stack Variable MPD Parsing Memory Corruption
  171. [dos] - Flash AVSS.setSubscribedTags Use After Free Memory Corruption
  172. [dos] - Flash Player Integer Overflow in Function.apply
  173. [remote] - Flash Broker-Based Sandbox Escape via Unexpected Directory Lock
  174. [remote] - Flash Broker-Based Sandbox Escape via Forward Slash Instead of Backslash
  175. [dos] - Flash PCRE Regex Compilation Zero-Length Assertion Arbitrary Bytecode Executi
  176. [remote] - Easy File Management Web Server 5.6 - USERID Remote Buffer Overflow
  177. [webapps] - WordPress WP Symposium Plugin 15.1 - Blind SQL Injection
  178. [webapps] - BigTree CMS 4.2.3 - Authenticated SQL Injection Vulnerabilities
  179. [webapps] - CodoForum 3.3.1 - Multiple SQL Injection Vulnerabilities
  180. [webapps] - PHPfileNavigator 2.3.3 - Privilege Escalation
  181. [webapps] - PHPfileNavigator 2.3.3 - CSRF Vulnerability
  182. [webapps] - PHPfileNavigator 2.3.3 - XSS Vulnerabilities
  183. [remote] - Werkzeug Debug Shell Command Execution
  184. [local] - VideoCharge Studio Buffer Overflow (SEH)
  185. [remote] - Symantec Endpoint Protection Manager Authentication Bypass and Code Execut
  186. [webapps] - Magento CE < 1.9.0.1 Post Auth RCE
  187. [dos] - FTP Commander 8.02 - SEH Overwrite
  188. [webapps] - Nuts CMS Remote PHP Code Injection / Execution
  189. [remote] - Microsoft Windows HTA (HTML Application) - Remote Code Execution (MS14-064
  190. [webapps] - Sagemcom F@ST 3864 V2 - Get Admin Password
  191. [local] - MASM321 11 Quick Editor (.qeditor) 4.0g- .qse SEH Based Buffer Overflow (AS
  192. [dos] - XMPlay 3.8.1.12 - .pls Local Crash PoC
  193. [shellcode] - Windows x86 All Versions - user32!MessageBox "Hello World!" (199 Bytes
  194. [webapps] - Security IP Camera Star Vision DVR - Authentication Bypass
  195. [dos] - Ubuntu 14.04 NetKit FTP Client - Crash/DoS PoC
  196. [dos] - Ability FTP Server 2.1.4 - Admin Panel AUTHCODE Command Remote DoS
  197. [dos] - Ability FTP Server 2.1.4 - afsmain.exe USER Command Remote DoS
  198. [webapps] - Joomla com_informations component - SQL Injection vulnerability
  199. [webapps] - Joomla com_memorix component - SQL Injection vulnerability
  200. [local] - Firefox < 39.03 - pdf.js Same Origin Policy Exploit
  201. [local] - Microsoft HTML Help Compiler 4.74.8702.0 - SEH Based Overflow
  202. [webapps] - TOTOLINK Routers - Backdoor and RCE Exploit PoC
  203. [webapps] - Gkplugins Picasaweb - Download File
  204. [local] - PDF Shaper 3.5 - Buffer Overflow
  205. [local] - Windows 8.1 DCOM DCE/RPC Local NTLM Reflection Privilege Escalation (MS15-0
  206. [shellcode] - Linux x86 - /bin/sh ROL/ROR Encoded Shellcode
  207. [dos] - Internet Explorer CTreeNode::GetCascadedLang Use-After-Free Vulnerability (MS
  208. [webapps] - WordPress Candidate Application Form Plugin 1.0 - Arbitrary File Download
  209. [webapps] - WordPress Simple Image Manipulator Plugin 1.0 - Arbitrary File Download
  210. [webapps] - WordPress Recent Backups Plugin 0.7 - Arbitrary File Download
  211. [webapps] - WordPress WPTF Image Gallery 1.03 - Aribtrary File Download
  212. [webapps] - WDS CMS - SQL Injection
  213. [shellcode] - Linux x86 Egg Hunter Shellcode (19 bytes)
  214. [webapps] - WordPress Video Gallery 2.7 SQL Injection
  215. [dos] - Havij Pro - Crash POC
  216. [dos] - OSX Keychain - EXC_BAD_ACCESS DoS
  217. [dos] - Classic FTP 2.36 - CWD Reconnection DoS
  218. [dos] - Brasero - Crash Proof Of Concept
  219. [dos] - Acunetix Web Vulnerability Scanner 9.5 - Crash PoC
  220. [webapps] - JoomShopping - Blind SQL Injection
  221. [local] - Tomabo MP4 Player 3.11.3 - (.m3u) SEH Buffer Overflow
  222. [dos] - Dell Netvault Backup 10.0.1.24 - Denial of Service
  223. [webapps] - WordPress Job Manager Plugin 0.7.22 - Persistent XSS
  224. [webapps] - Microweber 1.0.3 File Upload Filter Bypass Remote PHP Code Execution
  225. [webapps] - Microweber 1.0.3 - Stored XSS And CSRF Add Admin Exploit
  226. [papers] - BIGINT Overflow Error Based SQL Injection
  227. [local] - Windows NDProxy Privilege Escalation XP SP3 x86 and 2003 SP2 x86 (MS14-002)
  228. [remote] - PCMan FTP Server 2.0.7 - PUT Command Buffer Overflow
  229. [webapps] - PHP News Script 4.0.0 - SQL Injection
  230. [webapps] - Froxlor Server Management Panel 0.9.33.1 - MySQL Login Information Disclo
  231. [local] - Linux x86 Memory Sinkhole Privilege Escalation PoC
  232. [local] - Linux Privilege Escalation Due to Nested NMIs Interrupting espfix64
  233. [dos] - ISC BIND9 TKEY Remote DoS PoC
  234. [dos] - BIND9 - TKEY PoC
  235. [dos] - KMPlayer 3.9.x - .srt Crash PoC
  236. [dos] - T-Mobile Internet Manager - Contact Name Crash PoC
  237. [webapps] - Tendoo CMS 1.3 - XSS Vulnerabilities
  238. [local] - Sudo
  239. [local] - Heroes of Might and Magic III - Map Parsing Arbitrary Code Execution
  240. [webapps] - phpFileManager 0.9.8 - CSRF Vulnerability
  241. [webapps] - phpFileManager 0.9.8 - Remote Command Execution Vulnerability
  242. [webapps] - Xceedium Xsuite - Multiple Vulnerabilities
  243. [webapps] - WordPress Count Per Day Plugin 3.4 - SQL Injection
  244. [webapps] - WordPress Unite Gallery Lite Plugin 1.4.6 - Multiple Vulnerabilities
  245. [dos] - Libuser Library - Multiple Vulnerabilities
  246. [webapps] - Hawkeye-G v3.0.1.4912 Persistent XSS & Information Leakage
  247. [local] - Foxit Reader - PNG Conversion Parsing tEXt Chunk Arbitrary Code Execution
  248. [webapps] - Airdroid iOS, Android & Win 3.1.3 - Persistent Vulnerability
  249. [webapps] - Hawkeye-G v3.0.1.4912 CSRF Vulnerability
  250. [webapps] - phpVibe < 4.20 Stored XSS