المساعد الشخصي الرقمي

مشاهدة النسخة كاملة : exploit database


الصفحات : 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 [51] 52 53 54 55 56 57 58 59 60

  1. [webapps] - Wordpress Video Gallery Plugin 2.5 - Multiple Vulnerabilities
  2. [webapps] - NETGEAR DGN2200 1.0.0.29_1.7.29_HotS - Password Disclosure vulnerability
  3. [webapps] - Barracuda Networks #35 Web Firewall 610 6.0.1 - Filter Bypass & Persisten
  4. [local] - Microsoft XP SP3 - BthPan.sys Arbitrary Write Privilege Escalation
  5. [shellcode] - Socket Re-use Shellcode for Linux x86 (50 bytes)
  6. [remote] - Kolibri WebServer 2.0 - GET Request SEH Exploit
  7. [webapps] - Aerohive HiveOS 5.1r5 - 6.1r5 - XSS & LFI Vulnerability
  8. [local] - Microsoft XP SP3 MQAC.sys - Arbitrary Write Privilege Escalation
  9. [shellcode] - Windows All Versions - Add Admin User Shellcode (194 bytes)
  10. [dos] - DjVuLibre
  11. [webapps] - Wordpress WP BackupPlus - Database And Files Backup Download (0day)
  12. [local] - Linux Kernel ptrace/sysret - Local Privilege Escalation
  13. [dos] - Apache 2.4.7 mod_status Scoreboard Handling Race Condition
  14. [remote] - IBM GCM16/32 1.20.0.22575 - Multiple Vulnerabilities
  15. [dos] - World Of Warcraft 3.3.5a (macros-cache.txt) - Stack Overflow
  16. [webapps] - Raritan PowerIQ 4.1.0 - SQL Injection Vulnerability
  17. [remote] - OpenVAS Manager 4.0 - Authentication Bypass Vulnerability PoC
  18. [webapps] - MTS MBlaze Ultra Wi-Fi / ZTE AC3633 - Multiple Vulnerabilities
  19. [webapps] - Bilboplanet 2.0 - Multiple XSS Vulnerabilities
  20. [webapps] - Barracuda Networks Message Archiver 650 - Persistent XSS Vulnerability
  21. [dos] - ACME micro_httpd - Denial of Service
  22. [webapps] - Omeka 2.2 - CSRF And Stored XSS Vulnerability
  23. [webapps] - Bitdefender GravityZone 5.1.5.386 - Multiple Vulnerabilities
  24. [webapps] - Joomla Youtube Gallery Component - SQL Injection Vulnerability
  25. [remote] - Boat Browser 8.0 and 8.0.1 - Remote Code Execution Vulnerability
  26. [dos] - Node Browserify 4.2.0 - Remote Code Execution Vulnerability
  27. [remote] - D-Link info.cgi POST Request Buffer Overflow
  28. [local] - OpenVPN Private Tunnel Core Service - Unquoted Service Path Elevation Of Pr
  29. [webapps] - Shopizer 1.1.5 - Multiple Vulnerabilities
  30. [remote] - HP Data protector manager 8.10 remote command execution
  31. [remote] - D-Link Unauthenticated UPnP M-SEARCH Multicast Command Injection
  32. [remote] - D-Link HNAP Request Remote Buffer Overflow
  33. [remote] - D-Link info.cgi POST Request Buffer Overflow
  34. [webapps] - Infoblox 6.8.2.11 - OS Command Injection
  35. [webapps] - C99.php Shell - Authentication Bypass
  36. [webapps] - Frog CMS 0.9.5 - Arbitrary File Upload
  37. [remote] - Yokogawa CS3000 BKFSim_vhfd.exe Buffer Overflow
  38. [webapps] - Dolibarr CMS 3.5.3 - Multiple Security Vulnerabilities
  39. [webapps] - Photo Org WonderApplications 8.3 iOS - File Include Vulnerability
  40. [remote] - Wordpress MailPoet (wysija-newsletters) Unauthenticated File Upload
  41. [remote] - Gitlist Unauthenticated Remote Command Execution
  42. [remote] - Oracle Event Processing FileUploadServlet Arbitrary File Upload
  43. [webapps] - FireEye Malware Analysis System (MAS) 6.4.1 - Multiple Vulnerabilities
  44. [webapps] - Netgear WNR1000v3 - Password Recovery Credential Disclosure Vulnerability
  45. [local] - Ubisoft Uplay 4.6 - Insecure File Permissions Local Privilege Escalation
  46. [dos] - Baidu Spark Browser v26.5.9999.3511 - Remote Stack Overflow Vulnerability (Do
  47. [papers] - [Hebrew] Digital Whisper Security Magazine #52
  48. [webapps] - Kerio Control 8.3.1 - Blind SQL Injection
  49. [webapps] - Zurmo CRM - Persistent XSS Vulnerability
  50. [remote] - Internet Explorer 8 - Fixed Col Span ID Full ASLR, DEP & EMET 4.1.X Bypass
  51. [dos] - Flussonic Media Server 4.1.25 - 4.3.3 - Aribtrary File Disclosure
  52. [webapps] - IBM Algorithmics RICOS 4.5.0 - 4.7.0 - Multiple Vulnerabilities
  53. [papers] - The Ultimate XSS Protection Cheat Sheet for Developers
  54. [papers] - Asterisk Phreaking How-To
  55. [papers] - Back To The Future: Unix Wildcards Gone Wild
  56. [remote] - Gitlist
  57. [local] - check_dhcp 2.0.2 (Nagios Plugins) - Arbitrary Option File Read Race Conditi
  58. [webapps] - Mailspect Control Panel 4.0.5 - Multiple Vulnerabilities
  59. [local] - chkrootkit 0.49 - Local Root Vulnerability
  60. [papers] - PoC || GTFO 0x04
  61. [webapps] - Endeca Latitude 2.2.2 - CSRF Vulnerability
  62. [webapps] - Wordpress Simple Share Buttons Adder Plugin 4.4 - Multiple Vulnerabilitie
  63. [webapps] - Mailspect Control Panel 4.0.5 - Multiple Vulnerabilities
  64. [webapps] - Python CGIHTTPServer Encoded Path Traversal
  65. [local] - MS13-097 Registry Symlink IE Sandbox Escape
  66. [local] - MS14-009 .NET Deployment Service IE Sandbox Escape
  67. [remote] - HP AutoPass License Server File Upload
  68. [webapps] - Lunar CMS 3.3 Unauthenticated Remote Command Execution Exploit
  69. [remote] - Cogent DataHub Command Injection
  70. [remote] - AlienVault OSSIM < 4.7.0 - av-centerd 'get_log_line()' Remote Code Executi
  71. [webapps] - Wordpress TimThumb 2.8.13 WebShot - Remote Code Execution (0-day)
  72. [papers] - Hacking Blind
  73. [dos] - Internet Explorer 8, 9 & 10 - CInput Use-After-Free (MS14-035) - Crash PoC
  74. [webapps] - Thomson TWG87OUIR - POST Password CSRF
  75. [remote] - AlienVault OSSIM av-centerd Command Injection
  76. [papers] - Android KeyStore Stack Buffer Overflow
  77. [remote] - D-Link hedwig.cgi Buffer Overflow in Cookie Header
  78. [remote] - D-Link authentication.cgi Buffer Overflow
  79. [papers] - Searching SHODAN For Fun And Profit
  80. [webapps] - ZeroCMS 1.0 - (zero_transact_article.php article_id POST parameter) SQL I
  81. [webapps] - Lunar CMS 3.3 - CSRF And Stored XSS Vulnerability
  82. [webapps] - Wordpress 3.9.1 - Page Persistent XSS
  83. [local] - Linux Kernel
  84. [webapps] - Wordpress 3.9.1 - CSRF vulnerabilities
  85. [webapps] - D-link DSL-2760U-E1 - Persistent XSS
  86. [webapps] - Cacti Superlinks Plugin 1.4-2 - SQL Injection
  87. [dos] - Kojoney 0.0.4.1 - 'urllib.urlopen()' Remote Denial of Service Vulnerability
  88. [webapps] - web2Project 3.1 - Multiple Vulnerabilities
  89. [remote] - Ericom AccessNow Server Buffer Overflow
  90. [local] - docker 0.11 VMM-container Breakout
  91. [remote] - Rocket Servergraph Admin Center fileRequestor Remote Code Execution
  92. [remote] - Ubisoft Rayman Legends 1.2.103716 - Remote Stack Buffer Overflow Vulnerabi
  93. [webapps] - ZTE WXV10 W300 - Multiple Vulnerabilities
  94. [webapps] - Motorola SBG901 Wireless Modem - CSRF Vulnerability
  95. [local] - Adobe Reader for Android addJavascriptInterface Exploit
  96. [remote] - Easy File Management Web Server Stack Buffer Overflow
  97. [remote] - Java Debug Wire Protocol Remote Code Execution
  98. [papers] - [Persian] Oracle SID Detection Techniques - Part 4
  99. [papers] - [Persian] Oracle SID Detection Techniques - Part 3
  100. [papers] - [Persian] Oracle SID Detection Techniques - Part 2
  101. [papers] - [Persian] Oracle SID Detection Techniques - Part 1
  102. [webapps] - ZeroCMS 1.0 - zero_transact_user.php, Handling Privilege Escalation
  103. [remote] - Yealink VoIP Phone SIP-T38G - Privileges Escalation
  104. [remote] - Yealink VoIP Phone SIP-T38G - Remote Command Execution
  105. [remote] - Yealink VoIP Phone SIP-T38G - Local File Inclusion
  106. [remote] - Yealink VoIP Phone SIP-T38G - Default Credentials
  107. [remote] - ZTE and TP-Link RomPager - DoS Exploit
  108. [webapps] - Plesk 10.4.4/11.0.9 - SSO XXE/XSS Injection Exploit
  109. [dos] - PostgreSQL
  110. [local] - IBM AIX 6.1.8 libodm - Arbitrary File Write
  111. [webapps] - SHOUTcast DNAS 2.2.1 - Stored XSS
  112. [dos] - Core FTP LE 2.2 - Heap Overflow PoC
  113. [webapps] - ZeroCMS 1.0 (zero_view_article.php, article_id param) - SQL Injection Vul
  114. [webapps] - DevExpress ASPxFileManager 10.2 to 13.2.8 - Directory Traversal
  115. [webapps] - WebTitan 4.01 (Build 68) - Multiple Vulnerabilities
  116. [papers] - 64 bits Linux Stack Based Buffer Overflow
  117. [webapps] - eFront 3.6.14.4 (surname param) - Persistent XSS Vulnerability
  118. [webapps] - Wordpress Theme Infocus - Post Local File Disclosure
  119. [webapps] - Wordpress Theme Elegance - Post Local File Disclosure
  120. [webapps] - Madness Pro
  121. [webapps] - Madness Pro
  122. [webapps] - IPSwitch IMail Server WEB client 12.4 persistent XSS
  123. [webapps] - Bluetooth Photo-File Share 2.1 iOS - Multiple Vulnerabilities
  124. [webapps] - Privacy Pro v1.2 HZ iOS - Local File Inclusion
  125. [webapps] - TigerCom My Assistant 1.1 iOS - Local File Inclusion
  126. [webapps] - AllReader 1.0 iOS - Multiple Vulnerabilities
  127. [webapps] - Files Desk Pro v1.4 iOS - Local File Inclusion
  128. [webapps] - NG WifiTransfer Pro 1.1 - Local File Inclusion
  129. [webapps] - PHPBTTracker+ 2.2 - SQL Injection
  130. [local] - dbus-glib pam_fprintd - Local Root Exploit
  131. [webapps] - Wordpress Participants Database 1.5.4.8 - SQL Injection
  132. [papers] - [Hebrew] Digital Whisper Security Magazine #51
  133. [remote] - Easy File Management Web Server v5.3 - UserID Remote Buffer Overflow (ROP)
  134. [webapps] - AuraCMS 3.0 - Multiple Vulnerabilities
  135. [local] - Ubuntu 12.04.0-2LTS x64 perf_swevent_init - Kernel Local Root Exploit
  136. [dos] - Microsoft Internet Explorer 11 - WeakMap Integer Divide-by-Zero
  137. [remote] - ElasticSearch Dynamic Script Arbitrary Java Execution
  138. [webapps] - Multiple Stored XSS in Mayan-EDMS web-based document management OS system
  139. [webapps] - Sharetronix 3.3 - Multiple Vulnerabilities
  140. [dos] - Wireshark CAPWAP Dissector - Denial of Service (msf)
  141. [remote] - TORQUE Resource Manager 2.5.x-2.5.13 - Stack Based Buffer Overflow Stub
  142. [webapps] - Web Terra 1.1 - books.cgi Remote Command Execution
  143. [remote] - Easy File Sharing FTP Server 3.5 - Stack Buffer Overflow
  144. [webapps] - Zyxel P-660HW-T1 v3 Wireless Router - CSRF Vulnerability
  145. [remote] - Symantec Workspace Streaming Arbitrary File Upload
  146. [webapps] - D-Link Routers - Multiple Vulnerabilities
  147. [local] - Linux kernel 3.14-rc1
  148. [dos] - Core FTP Server Version 1.2, build 535, 32-bit - Crash P.O.C.
  149. [webapps] - kesako script SQL Injection
  150. [webapps] - Binatone DT 850W Wireless Router - Multiple CSRF Vulnerabilities
  151. [remote] - Easy Address Book Web Server 1.6 - Stack Buffer Overflow
  152. [remote] - Easy File Management Web Server 5.3 - Stack Buffer Overflow
  153. [webapps] - SPIP - CMS < 3.0.9 / 2.1.22 / 2.0.23 - Privilege Escalation
  154. [remote] - AoA DVD Creator 2.6.2 - ActiveX Exploit
  155. [remote] - AoA Audio Extractor Basic 2.3.7 - ActiveX Exploit
  156. [papers] - Bypassing SSL Pinning on Android via Reverse Engineering
  157. [papers] - Reverse Engineering of x86 Linux Shellcodes the Easy Way
  158. [webapps] - SafeNet Sentinel Protection Server 7.0 - 7.4 and Sentinel Keys Server 1.0
  159. [local] - CyberLink Power2Go Essential 9.0.1002.0 - Registry SEH/Unicode Buffer Overf
  160. [webapps] - HP Release Control Authenticated XXE
  161. [remote] - AoA MP4 Converter 4.1.2 - ActiveX Exploit
  162. [webapps] - EGroupware 1.8.006 - Multiple Vulnerabilities
  163. [local] - check_dhcp - Nagios Plugins
  164. [dos] - Wireshark 1.10.7 - DoS PoC
  165. [webapps] - ElasticSearch Remote Code Execution
  166. [papers] - TP-Link TD-W89 Config File Download / Exploiting the Host
  167. [webapps] - Broadcom PIPA C211 - Sensitive Information Disclosure
  168. [remote] - Easy File Sharing Web Server 6.8 - Stack Buffer Overflow
  169. [dos] - TFTPD32 4.5 / TFTPD64 4.5 - DoS PoC
  170. [local] - Linux Kernel 3.3-3.8 - SOCK_DIAG Local Root Exploit
  171. [webapps] - AlienVault OSSIM 4.6.1 - Authenticated SQL Injection
  172. [webapps] - SpiceWorks 7.2.00174 - Persistent XSS Vulnerabilities
  173. [dos] - GOM Player 2.2.57.5189 (.ogg) - Crash PoC
  174. [dos] - JetAudio 8.1.1 (.ogg) - Crash PoC
  175. [webapps] - VM Turbo Operations Manager 4.5x - Directory Traversal
  176. [remote] - Adobe Flash Player Shader Buffer Overflow
  177. [remote] - Yokogawa CS3000 BKESimmgr.exe Buffer Overflow
  178. [remote] - Easy Chat Server 3.1 - Stack Buffer Overflow
  179. [webapps] - Skybox Security 6.3.x - 6.4.x - Multiple Information Disclosure
  180. [dos] - Skybox Security 6.3.x - 6.4.x - Multiple Denial Of Service Issue
  181. [local] - Python - Interpreter Heap Memory Corruption (PoC)
  182. [webapps] - Collabtive 1.2 - Stored XSS
  183. [webapps] - Cobbler 2.4.x - 2.6.x - LFI Vulnerability
  184. [papers] - SQL Injection in Insert, Update and Delete Statements
  185. [webapps] - OpenFiler 2.99.1 - Multiple persistent XSS Vulnerabilities
  186. [webapps] - OpenFiler 2.99.1 - Arbitrary Code Execution
  187. [webapps] - Collabtive 1.2 - SQL Injection
  188. [local] - Windows NTUserMessageCall Win32k Kernel Pool Overflow (Schlamperei)
  189. [remote] - Adobe Flash Player Integer Underflow Remote Code Execution
  190. [papers] - Windows Heap Overflow Exploitation
  191. [webapps] - TeamHelpdesk Customer Web Service (CWS) 8.3.5 & Technician Web Access (TW
  192. [webapps] - Seagate BlackArmor NAS - Multiple Vulnerabilities
  193. [webapps] - Crime24 Stealer Panel 1.0 - Multiple Vulnerabilities
  194. [webapps] - HP Laser Jet - JavaScript Persistent XSS via PJL Directory Traversal
  195. [webapps] - miSecureMessages 4.0.1 - Session Management & Authentication Bypass Vulne
  196. [webapps] - NETGEAR DGN2200 1.0.0.29_1.7.29_HotS - CSRF Vulnerability
  197. [remote] - AlienVault OSSIM SQL Injection and Remote Code Execution
  198. [remote] - Apache Struts ClassLoader Manipulation Remote Code Execution
  199. [remote] - F5 BIG-IQ 4.1.0.2013.0 - Privilege Escalation
  200. [papers] - [Hebrew] Digital Whisper Security Magazine #50
  201. [webapps] - Fritz!Box - Remote command Execution Exploit
  202. [webapps] - NETGEAR DGN2200 1.0.0.29_1.7.29_HotS - Stored XSS Vulnerability
  203. [papers] - Exploitation notes on CVE-2014-0160
  204. [webapps] - Beetel 450TC2 Router Admin Password CSRF Vulnerability
  205. [papers] - Introduction to Android Malware Analysis
  206. [remote] - Adobe Flash Player Type Confusion Remote Code Execution
  207. [webapps] - TRENDnet TEW-634GRU 1.00.23 - Multiple Vulnerabilities
  208. [webapps] - NULL NUKE CMS 2.2 - Multiple Vulnerabilities
  209. [papers] - [Turkish] WAF Bypass Methods
  210. [webapps] - GeoCore MAX DB Ver. 7.3.3 - Time-Based Blind Injection
  211. [webapps] - Wordpress iMember360 Plugin 3.8.012 - 3.9.001 - Multiple Vulnerabilities
  212. [local] - Wireshark
  213. [remote] - McAfee ePolicy Orchestrator 4.6.0-4.6.5 (ePowner) - Multiple Vulnerabiliti
  214. [webapps] - Adem 0.5.1 - Local File Inclusion
  215. [dos] - NTP ntpd monlist Query Reflection - Denial of Service
  216. [dos] - cFos Personal Net 3.09 - Remote Heap Memory Corruption Denial of Service
  217. [webapps] - Depot WiFi 1.0.0 iOS - Multiple Vulnerabilities
  218. [remote] - Kolibri 2.0 GET Request - Stack Buffer Overflow
  219. [webapps] - ApPHP MicroBlog 1.0.1 - Multiple Vulnerability (LFI/RCE)
  220. [local] - JRuby Sandbox 0.2.2 - Sandbox Escape
  221. [remote] - Kolibri 2.0 GET Request - Stack Buffer Overflow
  222. [webapps] - Wordpress Work-The-Flow Plugin 1.2.1 - Arbitrary File Upload
  223. [remote] - Heartbleed OpenSSL - Information Leak Exploit (2) - DTLS Support
  224. [remote] - Acunetix 8 build 20120704 - Remote Stack Based Overflow
  225. [webapps] - Bonefire v.0.7.1 - Reinstall Admin Account Exploit
  226. [webapps] - dompdf 0.6.0 (dompdf.php, read param) - Arbitrary File Read
  227. [webapps] - WD Arkeia Virtual Appliance 10.2.9 - Local File Inclusion
  228. [webapps] - AlienVault 4.3.1 - Unauthenticated SQL Injection
  229. [papers] - [EZINE] (FuckTheSystem) FTS Zine 5
  230. [webapps] - kitForm CRM Extension 0.43 (sorter.php, sorter_value param) - SQL Injecti
  231. [webapps] - Sixnet Sixview 2.4.1 - Web Console Directory Traversal
  232. [webapps] - No-CMS 0.6.6 rev 1 - Admin Account Hijacking / RCE Exploit via Static Enc
  233. [remote] - Adobe Flash Player Regular Expression Heap Overflow
  234. [webapps] - Teracom Modem T2-B-Gawv1.4U10Y-BI - CSRF Vulnerability
  235. [webapps] - PTCeffect 4.6 - LFI & SQL Injection Vulnerabilities
  236. [remote] - Sercomm TCP/32674 Backdoor Reactivation
  237. [webapps] - CMSimple 4.4, 4.4.2 - Remote File Inclusion
  238. [remote] - NRPE
  239. [dos] - Linux group_info refcounter - Overflow Memory Corruption
  240. [dos] - Jzip SEH Unicode Buffer Overflow (Denial of Service)
  241. [remote] - SAP Router - Timing Attack Password Disclosure
  242. [remote] - MS14-012 Microsoft Internet Explorer CMarkup Use-After-Free
  243. [remote] - Unitrends Enterprise Backup 7.3.0 - Unauthenticated Root RCE
  244. [webapps] - Xerox DocuShare - SQL Injection
  245. [webapps] - NETGEAR N600 WIRELESS DUAL BAND WNDR3400 - Multiple Vulnerabilities
  246. [local] - Adobe Reader for Android 11.1.3 - Arbitrary JavaScript Execution
  247. [webapps] - Wordpress Quick Page/Post Redirect Plugin 5.0.3 - Multiple Vulnerabilitie
  248. [webapps] - Wordpress Twitget Plugin 3.3.1 - Multiple Vulnerabilities
  249. [webapps] - eScan Web Management Console Command Injection
  250. [webapps] - WordPress Theme LineNity 1.20 - Local File Inclusion