المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 [50] 51 52 53 54 55 56 57 58 59 60

  1. [dos] - Fast Image Resizer 098 - Local Crash Poc
  2. [webapps] - LittleSite 0.1 'file' Parameter Local File Include Vulnerability
  3. [dos] - Seafile-server
  4. [webapps] - ClassApps SelectSurvey.net - Multiple SQL Injection Vulnerabilities
  5. [webapps] - Livefyre LiveComments Plugin - Stored XSS
  6. [webapps] - Briefcase 4.0 iOS - Code Execution & File Include Vulnerability
  7. [webapps] - USB&WiFi Flash Drive 1.3 iOS - Code Execution Vulnerability
  8. [webapps] - CacheGuard-OS 5.7.7 - CSRF Vulnerability
  9. [remote] - SolarWinds Storage Manager Authentication Bypass
  10. [remote] - ManageEngine Eventlog Analyzer Arbitrary File Upload
  11. [remote] - Railo Remote File Include
  12. [remote] - Http File Server 2.3.x - Remote Command Execution
  13. [webapps] - ALCASAR
  14. [webapps] - ChatSecure IM 2.2.4 iOS - Persistent XSS Vulnerability
  15. [webapps] - Photorange 1.0 iOS - File Inclusion Vulnerability
  16. [webapps] - Joomla Spider Contacts 1.3.6 (index.php, contacts_id param) - SQL Injecti
  17. [webapps] - OroCRM - Stored XSS Vulnerability
  18. [webapps] - Wordpress WP Support Plus Responsive Ticket System 2.0 Plugin - Multiple
  19. [remote] - ALCASAR 2.8 Remote Root Code Execution Vulnerability
  20. [webapps] - Atmail Webmail 7.2 - Multiple Vulnerabilities
  21. [remote] - ManageEngine Desktop Central StatusUpdate Arbitrary File Upload
  22. [shellcode] - Obfuscated Shellcode Linux x86 - chmod 777 (/etc/passwd + /etc/shadow)
  23. [papers] - Breaking the Sandbox
  24. [dos] - PHP Stock Management System 1.02 - Multiple Vulnerabilty
  25. [webapps] - TP-LINK Model No. TL-WR841N / TL-WR841ND - Multiple Vulnerabilities
  26. [webapps] - TP-LINK Model No. TL-WR340G / TL-WR340GD - Multiple Vulnerabilities
  27. [webapps] - osCommerce 2.3.4 - Multiple vulnerabilities
  28. [webapps] - Jenkins 1.578 - Multiple Vulnerabilities
  29. [webapps] - Mpay24 PrestaShop Payment Module 1.5 - Multiple Vulnerabilities
  30. [webapps] - WordPress Acento Theme (view-pdf.php, file param) - Arbitrary File Downlo
  31. [webapps] - Wordpress Bulk Delete Users by Email Plugin 1.0 - CSRF
  32. [webapps] - Joomla Spider Calendar
  33. [webapps] - PhpOnlineChat 3.0 - XSS
  34. [webapps] - Wordpress Like Dislike Counter 1.2.3 Plugin - SQL Injection Vulnerability
  35. [webapps] - LoadedCommerce7 - Systemic Query Factory Vulnerability
  36. [webapps] - IP Board 3.x - CSRF Token hjiacking
  37. [webapps] - Syslog LogAnalyzer 3.6.5 - Stored XSS (Python Exploit)
  38. [webapps] - PHP Stock Management System 1.02 - Multiple Persistent Cross Site Scripti
  39. [local] - HTML Help Workshop 1.4 - Local Buffer Overflow Exploit (SEH)
  40. [local] - BulletProof FTP Client 2010 - Buffer Overflow (SEH) Exploit
  41. [webapps] - MyBB User Social Networks Plugin 1.2 - Stored XSS
  42. [webapps] - Wordpress Plugins Premium Gallery Manager Unauthenticated Configuration A
  43. [webapps] - vBulletin 4.0.x - 4.1.2 (search.php, cat param) - SQL Injection Exploit
  44. [webapps] - Wordpress Huge-IT Image Gallery 1.0.1 Authenticated SQL Injection
  45. [webapps] - ManageEngine EventLog Analyzer Multiple Vulnerabilities
  46. [webapps] - ManageEngine Desktop Central - Arbitrary File Upload / RCE
  47. [remote] - Wing FTP Server Authenticated Command Execution
  48. [papers] - Outsmarted - Why Malware Works in face of Antivirus Software
  49. [papers] - [Spanish] Design and Implementation of a Voice Encryption System for Telep
  50. [webapps] - WordPress Slideshow Gallery Plugin 1.4.6 - Shell Upload Vulnerability
  51. [webapps] - Arachni Web Application Scanner Web UI - Stored XSS Vulnerability
  52. [webapps] - Mulitple WordPress Themes (admin-ajax.php, img param) - Arbitrary File Do
  53. [remote] - NRPE 2.15 - Remote Code Execution Vulnerability
  54. [remote] - F5 Big-IP - Unauthenticated rsync Access
  55. [local] - HTML Help Workshop 1.4 - (SEH) Buffer Overflow
  56. [dos] - Internet Explorer MS14-029 Memory Corruption PoC
  57. [webapps] - Plogger 1.0-RC1 - Authenticated Arbitrary File Upload
  58. [remote] - Firefox WebIDL Privileged Javascript Injection
  59. [webapps] - ManageEngine DeviceExpert 5.9 - User Credential Disclosure
  60. [webapps] - ActualAnalyzer Lite 2.81 - Unauthenticated Command Execution
  61. [webapps] - PhpWiki - Remote Command Execution
  62. [webapps] - XRMS - Blind SQL Injection and Command Execution
  63. [webapps] - WordPress ShortCode Plugin 1.1 - Local File Inclusion Vulnerability
  64. [webapps] - WooCommerce Store Exporter 1.7.5 - SXSS and RXSS
  65. [local] - glibc Off-by-One NUL Byte gconv_translit_find Exploit
  66. [webapps] - ntopng 1.2.0 - XSS Injection
  67. [webapps] - VTLS Virtua InfoStation.cgi - SQL Injection
  68. [webapps] - ManageEngine Password Manager MetadataServlet.dat SQL Injection
  69. [webapps] - Innovaphone PBX Admin-GUI - CSRF Vulnerability
  70. [remote] - Air Transfer Iphone 1.3.9 - Multiple Vulnerabilities
  71. [local] - BlazeDVD Pro 7.0 (.plf) - Buffer Overflow (SEH)
  72. [remote] - HybridAuth install.php PHP Code Execution
  73. [webapps] - MyBB 1.8 Beta 3 - Multiple Vulnerabilities
  74. [remote] - Gitlab-shell Code Execution
  75. [remote] - Firefox toString console.time Privileged Javascript Injection
  76. [webapps] - Feng Office - Stored XSS
  77. [webapps] - Tenda A5s Router 3.02.05_CN - Authentication Bypass Vulnerability
  78. [remote] - VirtualBox 3D Acceleration Virtual Machine Escape
  79. [remote] - VMTurbo Operations Manager 4.6 vmtadmin.cgi Remote Command Execution
  80. [webapps] - Disqus for Wordpress 2.7.5 Admin Stored CSRF and XSS
  81. [local] - VirtualBox Guest Additions VBoxGuest.sys Privilege Escalation
  82. [webapps] - HybridAuth 2.2.2 - Remote Code Execution
  83. [local] - BlazeDVD Pro 7.0 - (.plf) Stack Based Buffer Overflow (Direct RET)
  84. [webapps] - TomatoCart 1.x - SQL Injection Vulnerability
  85. [dos] - Sky Broadband Router SR101 - Weak WPA-PSK Generation Algorithm
  86. [dos] - SHARP MX Series - Denial of Service
  87. [webapps] - Easy FTP Pro 4.2 iOS - Command Injection Vulnerabilities
  88. [papers] - [Romanian] Stack Based Buffer Overflow
  89. [webapps] - PhotoSync Wifi & Bluetooth 1.0 - File Include Vulnerability
  90. [webapps] - Pro Chat Rooms 8.2.0 - Multiple Vulnerabilities
  91. [shellcode] - Shellcode Linux x86 - chmod (777 /etc/passwd & /etc/shadow), Add New Ro
  92. [webapps] - Video WiFi Transfer 1.01 - Directory Traversal Vulnerability
  93. [webapps] - FreeDisk v1.01 iOS - Multiple Vulnerabilities
  94. [webapps] - TP-Link TL-WR740N v4 Router (FW-Ver. 3.16.6 Build 130529 Rel.47286n) - Co
  95. [webapps] - ArticleFR 11.06.2014 (data.php) - Privilege Escalation
  96. [webapps] - Photo WiFi Transfer 1.01 - Directory Traversal Vulnerability
  97. [webapps] - ISPConfig 3.0.54p1 - Authenticated Admin Local root Vulnerability
  98. [webapps] - TigerCom iFolder+ v1.2 iOS - Multiple Vulnerabilities
  99. [webapps] - Status2k Server Monitoring Software - Multiple Vulnerabilities
  100. [webapps] - Sphider Search Engine - Multiple Vulnerabilities
  101. [webapps] - D-Link AP 3200 Multiple Vulnerabilities
  102. [webapps] - SkaDate Lite 2.0 - Remote Code Execution Exploit
  103. [webapps] - SkaDate Lite 2.0 - Multiple CSRF And Persistent XSS Vulnerabilities
  104. [webapps] - Sphider 1.3.6 - Multiple Vulnerabilities
  105. [webapps] - Dlink DWR-113 Rev. Ax - CSRF Denial of Service
  106. [webapps] - WiFi HD v7.3.0 iOS - Multiple Vulnerabilities
  107. [papers] - [Turkish] SQLMap CSRF Bypass
  108. [remote] - Oxwall 1.7.0 - Remote Code Execution Exploit
  109. [webapps] - Oxwall 1.7.0 - Multiple CSRF And HTML Injection Vulnerabilities
  110. [webapps] - Ubiquiti UbiFi / mFi / AirVision - CSRF Vulnerability
  111. [webapps] - DirPHP 1.0 - LFI Vulnerability
  112. [webapps] - Sagem Fast 3304-V1 - Denial Of Service Vulnerability
  113. [webapps] - ZeroCMS 1.0 - Persistent Cross-Site Scripting Vulnerability
  114. [webapps] - Moodle 2.7 - Persistent XSS
  115. [webapps] - Pligg 2.0.1 - Multiple Vulnerabilities
  116. [local] - MQAC.sys Arbitrary Write Privilege Escalation
  117. [webapps] - Zenoss Monitoring System 4.2.5-2108 64bit - Stored XSS
  118. [dos] - Make 3.81 - Heap Overflow PoC
  119. [webapps] - Lian Li NAS - Multiple Vulnerabilities
  120. [dos] - BulletProof FTP Client 2010 - Buffer Overflow (SEH)
  121. [remote] - Omeka 2.2.1 - Remote Code Execution Exploit
  122. [webapps] - Wordpress Video Gallery Plugin 2.5 - Multiple Vulnerabilities
  123. [webapps] - NETGEAR DGN2200 1.0.0.29_1.7.29_HotS - Password Disclosure vulnerability
  124. [webapps] - Barracuda Networks #35 Web Firewall 610 6.0.1 - Filter Bypass & Persisten
  125. [local] - Microsoft XP SP3 - BthPan.sys Arbitrary Write Privilege Escalation
  126. [shellcode] - Socket Re-use Shellcode for Linux x86 (50 bytes)
  127. [remote] - Kolibri WebServer 2.0 - GET Request SEH Exploit
  128. [webapps] - Aerohive HiveOS 5.1r5 - 6.1r5 - XSS & LFI Vulnerability
  129. [local] - Microsoft XP SP3 MQAC.sys - Arbitrary Write Privilege Escalation
  130. [shellcode] - Windows All Versions - Add Admin User Shellcode (194 bytes)
  131. [dos] - DjVuLibre
  132. [webapps] - Wordpress WP BackupPlus - Database And Files Backup Download (0day)
  133. [local] - Linux Kernel ptrace/sysret - Local Privilege Escalation
  134. [dos] - Apache 2.4.7 mod_status Scoreboard Handling Race Condition
  135. [remote] - IBM GCM16/32 1.20.0.22575 - Multiple Vulnerabilities
  136. [dos] - World Of Warcraft 3.3.5a (macros-cache.txt) - Stack Overflow
  137. [webapps] - Raritan PowerIQ 4.1.0 - SQL Injection Vulnerability
  138. [remote] - OpenVAS Manager 4.0 - Authentication Bypass Vulnerability PoC
  139. [webapps] - MTS MBlaze Ultra Wi-Fi / ZTE AC3633 - Multiple Vulnerabilities
  140. [webapps] - Bilboplanet 2.0 - Multiple XSS Vulnerabilities
  141. [webapps] - Barracuda Networks Message Archiver 650 - Persistent XSS Vulnerability
  142. [dos] - ACME micro_httpd - Denial of Service
  143. [webapps] - Omeka 2.2 - CSRF And Stored XSS Vulnerability
  144. [webapps] - Bitdefender GravityZone 5.1.5.386 - Multiple Vulnerabilities
  145. [webapps] - Joomla Youtube Gallery Component - SQL Injection Vulnerability
  146. [remote] - Boat Browser 8.0 and 8.0.1 - Remote Code Execution Vulnerability
  147. [dos] - Node Browserify 4.2.0 - Remote Code Execution Vulnerability
  148. [remote] - D-Link info.cgi POST Request Buffer Overflow
  149. [local] - OpenVPN Private Tunnel Core Service - Unquoted Service Path Elevation Of Pr
  150. [webapps] - Shopizer 1.1.5 - Multiple Vulnerabilities
  151. [remote] - HP Data protector manager 8.10 remote command execution
  152. [remote] - D-Link Unauthenticated UPnP M-SEARCH Multicast Command Injection
  153. [remote] - D-Link HNAP Request Remote Buffer Overflow
  154. [remote] - D-Link info.cgi POST Request Buffer Overflow
  155. [webapps] - Infoblox 6.8.2.11 - OS Command Injection
  156. [webapps] - C99.php Shell - Authentication Bypass
  157. [webapps] - Frog CMS 0.9.5 - Arbitrary File Upload
  158. [remote] - Yokogawa CS3000 BKFSim_vhfd.exe Buffer Overflow
  159. [webapps] - Dolibarr CMS 3.5.3 - Multiple Security Vulnerabilities
  160. [webapps] - Photo Org WonderApplications 8.3 iOS - File Include Vulnerability
  161. [remote] - Wordpress MailPoet (wysija-newsletters) Unauthenticated File Upload
  162. [remote] - Gitlist Unauthenticated Remote Command Execution
  163. [remote] - Oracle Event Processing FileUploadServlet Arbitrary File Upload
  164. [webapps] - FireEye Malware Analysis System (MAS) 6.4.1 - Multiple Vulnerabilities
  165. [webapps] - Netgear WNR1000v3 - Password Recovery Credential Disclosure Vulnerability
  166. [local] - Ubisoft Uplay 4.6 - Insecure File Permissions Local Privilege Escalation
  167. [dos] - Baidu Spark Browser v26.5.9999.3511 - Remote Stack Overflow Vulnerability (Do
  168. [papers] - [Hebrew] Digital Whisper Security Magazine #52
  169. [webapps] - Kerio Control 8.3.1 - Blind SQL Injection
  170. [webapps] - Zurmo CRM - Persistent XSS Vulnerability
  171. [remote] - Internet Explorer 8 - Fixed Col Span ID Full ASLR, DEP & EMET 4.1.X Bypass
  172. [dos] - Flussonic Media Server 4.1.25 - 4.3.3 - Aribtrary File Disclosure
  173. [webapps] - IBM Algorithmics RICOS 4.5.0 - 4.7.0 - Multiple Vulnerabilities
  174. [papers] - The Ultimate XSS Protection Cheat Sheet for Developers
  175. [papers] - Asterisk Phreaking How-To
  176. [papers] - Back To The Future: Unix Wildcards Gone Wild
  177. [remote] - Gitlist
  178. [local] - check_dhcp 2.0.2 (Nagios Plugins) - Arbitrary Option File Read Race Conditi
  179. [webapps] - Mailspect Control Panel 4.0.5 - Multiple Vulnerabilities
  180. [local] - chkrootkit 0.49 - Local Root Vulnerability
  181. [papers] - PoC || GTFO 0x04
  182. [webapps] - Endeca Latitude 2.2.2 - CSRF Vulnerability
  183. [webapps] - Wordpress Simple Share Buttons Adder Plugin 4.4 - Multiple Vulnerabilitie
  184. [webapps] - Mailspect Control Panel 4.0.5 - Multiple Vulnerabilities
  185. [webapps] - Python CGIHTTPServer Encoded Path Traversal
  186. [local] - MS13-097 Registry Symlink IE Sandbox Escape
  187. [local] - MS14-009 .NET Deployment Service IE Sandbox Escape
  188. [remote] - HP AutoPass License Server File Upload
  189. [webapps] - Lunar CMS 3.3 Unauthenticated Remote Command Execution Exploit
  190. [remote] - Cogent DataHub Command Injection
  191. [remote] - AlienVault OSSIM < 4.7.0 - av-centerd 'get_log_line()' Remote Code Executi
  192. [webapps] - Wordpress TimThumb 2.8.13 WebShot - Remote Code Execution (0-day)
  193. [papers] - Hacking Blind
  194. [dos] - Internet Explorer 8, 9 & 10 - CInput Use-After-Free (MS14-035) - Crash PoC
  195. [webapps] - Thomson TWG87OUIR - POST Password CSRF
  196. [remote] - AlienVault OSSIM av-centerd Command Injection
  197. [papers] - Android KeyStore Stack Buffer Overflow
  198. [remote] - D-Link hedwig.cgi Buffer Overflow in Cookie Header
  199. [remote] - D-Link authentication.cgi Buffer Overflow
  200. [papers] - Searching SHODAN For Fun And Profit
  201. [webapps] - ZeroCMS 1.0 - (zero_transact_article.php article_id POST parameter) SQL I
  202. [webapps] - Lunar CMS 3.3 - CSRF And Stored XSS Vulnerability
  203. [webapps] - Wordpress 3.9.1 - Page Persistent XSS
  204. [local] - Linux Kernel
  205. [webapps] - Wordpress 3.9.1 - CSRF vulnerabilities
  206. [webapps] - D-link DSL-2760U-E1 - Persistent XSS
  207. [webapps] - Cacti Superlinks Plugin 1.4-2 - SQL Injection
  208. [dos] - Kojoney 0.0.4.1 - 'urllib.urlopen()' Remote Denial of Service Vulnerability
  209. [webapps] - web2Project 3.1 - Multiple Vulnerabilities
  210. [remote] - Ericom AccessNow Server Buffer Overflow
  211. [local] - docker 0.11 VMM-container Breakout
  212. [remote] - Rocket Servergraph Admin Center fileRequestor Remote Code Execution
  213. [remote] - Ubisoft Rayman Legends 1.2.103716 - Remote Stack Buffer Overflow Vulnerabi
  214. [webapps] - ZTE WXV10 W300 - Multiple Vulnerabilities
  215. [webapps] - Motorola SBG901 Wireless Modem - CSRF Vulnerability
  216. [local] - Adobe Reader for Android addJavascriptInterface Exploit
  217. [remote] - Easy File Management Web Server Stack Buffer Overflow
  218. [remote] - Java Debug Wire Protocol Remote Code Execution
  219. [papers] - [Persian] Oracle SID Detection Techniques - Part 4
  220. [papers] - [Persian] Oracle SID Detection Techniques - Part 3
  221. [papers] - [Persian] Oracle SID Detection Techniques - Part 2
  222. [papers] - [Persian] Oracle SID Detection Techniques - Part 1
  223. [webapps] - ZeroCMS 1.0 - zero_transact_user.php, Handling Privilege Escalation
  224. [remote] - Yealink VoIP Phone SIP-T38G - Privileges Escalation
  225. [remote] - Yealink VoIP Phone SIP-T38G - Remote Command Execution
  226. [remote] - Yealink VoIP Phone SIP-T38G - Local File Inclusion
  227. [remote] - Yealink VoIP Phone SIP-T38G - Default Credentials
  228. [remote] - ZTE and TP-Link RomPager - DoS Exploit
  229. [webapps] - Plesk 10.4.4/11.0.9 - SSO XXE/XSS Injection Exploit
  230. [dos] - PostgreSQL
  231. [local] - IBM AIX 6.1.8 libodm - Arbitrary File Write
  232. [webapps] - SHOUTcast DNAS 2.2.1 - Stored XSS
  233. [dos] - Core FTP LE 2.2 - Heap Overflow PoC
  234. [webapps] - ZeroCMS 1.0 (zero_view_article.php, article_id param) - SQL Injection Vul
  235. [webapps] - DevExpress ASPxFileManager 10.2 to 13.2.8 - Directory Traversal
  236. [webapps] - WebTitan 4.01 (Build 68) - Multiple Vulnerabilities
  237. [papers] - 64 bits Linux Stack Based Buffer Overflow
  238. [webapps] - eFront 3.6.14.4 (surname param) - Persistent XSS Vulnerability
  239. [webapps] - Wordpress Theme Infocus - Post Local File Disclosure
  240. [webapps] - Wordpress Theme Elegance - Post Local File Disclosure
  241. [webapps] - Madness Pro
  242. [webapps] - Madness Pro
  243. [webapps] - IPSwitch IMail Server WEB client 12.4 persistent XSS
  244. [webapps] - Bluetooth Photo-File Share 2.1 iOS - Multiple Vulnerabilities
  245. [webapps] - Privacy Pro v1.2 HZ iOS - Local File Inclusion
  246. [webapps] - TigerCom My Assistant 1.1 iOS - Local File Inclusion
  247. [webapps] - AllReader 1.0 iOS - Multiple Vulnerabilities
  248. [webapps] - Files Desk Pro v1.4 iOS - Local File Inclusion
  249. [webapps] - NG WifiTransfer Pro 1.1 - Local File Inclusion
  250. [webapps] - PHPBTTracker+ 2.2 - SQL Injection