Exploits (Total: 95506)

    
    
    
Nimble Streamer 3.0.2-2 < 3.5.4-9 - Directory Traversal
2019-08-23
LibreOffice < 6.2 Macro - Python Code Execution (Metasploit)
2019-08-21
Pulse Secure 8.1R15.1/8.2/8.3/9.0 SSL VPN - Arbitrary File Disclosure (metasploit)
2019-08-21
SilverSHielD 6.x - Local Privilege Escalation
2019-08-20
Linux/MIPS64 - Reverse Shell Shellcode (157 bytes)
2019-08-20
WordPress Plugin 2.2.1 - Cross-Site Request Forgery
2019-08-20
YouPHPTube 7.2 - 'userCreate.json.php' SQL Injection
2019-08-19
Webmin 1.920 - Remote Code Execution
2019-08-19
Linux/x86_64 - AVX2 XOR Decoder + execve("/bin/sh") Shellcode (62 bytes)
2019-08-19
Linux/x86_64 - Reverse Shell (/bin/sh) with Configurable Password Shellcode (120 bytes)
2019-08-19
Linux/x86_64 - Bind Shell (/bin/sh) with Configurable Password Shellcode (129 bytes)
2019-08-19
Neo Billing 3.5 - Persistent Cross-Site Scripting
2019-08-19
FortiOS 5.6.3 - 5.6.7 / FortiOS 6.0.0 - 6.0.4 - Credentials Disclosure
2019-08-19
FortiOS 5.6.3 - 5.6.7 / FortiOS 6.0.0 - 6.0.4 - Credentials Disclosure (Metasploit)
2019-08-19
Kimai 2 - Persistent Cross-Site Scripting
2019-08-19
RAR Password Recovery 1.80 - 'User Name and Registration Code' Denial of Service
2019-08-19
Web Wiz Forums 12.01 - 'PF' SQL Injection
2019-08-16
Integria IMS 5.0.86 - Arbitrary File Upload
2019-08-16
GetGo Download Manager 6.2.2.3300 - Denial of Service
2019-08-16
Joomla! component com_jsjobs 1.2.6 - Arbitrary File Deletion
2019-08-16
EyesOfNetwork 5.1 - Authenticated Remote Command Execution
2019-08-16
Adobe Acrobat Reader DC for Windows - Double Free due to Malformed JP2 Stream
2019-08-15
Adobe Acrobat Reader DC for Windows - free() of Uninitialized Pointer due to Malformed JBIG2Globals Stream
2019-08-15
Adobe Acrobat Reader DC for Windows - Heap-Based Buffer Overflow due to Malformed JP2 Stream
2019-08-15
Adobe Acrobat Reader DC for Windows - Heap-Based Memory Corruption due to Malformed TTF Font
2019-08-15
Adobe Acrobat Reader DC for Windows - Heap-Based Buffer Overflow in CoolType.dll
2019-08-15
Adobe Acrobat Reader DC for Windows - Heap-Based Buffer Overflow due to Malformed Font Stream
2019-08-15
Adobe Acrobat Reader DC for Windows - Static Buffer Overflow due to Malformed Font Stream
2019-08-15
Adobe Acrobat Reader DC for Windows - Heap-Based Buffer Overflow While Processing Malformed PDF
2019-08-15
Adobe Acrobat Reader DC for Windows - Use-After-Free due to Malformed JP2 Stream
2019-08-15
Adobe Acrobat Reader DC for Windows - Heap-Based Out-of-Bounds read due to Malformed JP2 Stream
2019-08-15
Microsoft Font Subsetting - DLL Heap-Based Out-of-Bounds read in FixSbitSubTableFormat1
2019-08-15
Microsoft Font Subsetting - DLL Heap Corruption in MakeFormat12MergedGlyphList
2019-08-15
Microsoft Font Subsetting - DLL Heap-Based Out-of-Bounds read in WriteTableFromStructure
2019-08-15
Microsoft Font Subsetting - DLL Heap Corruption in ReadAllocFormat12CharGlyphMapList
2019-08-15
Microsoft Font Subsetting - DLL Heap Corruption in ReadTableIntoStructure
2019-08-15
Microsoft Font Subsetting - DLL Heap Corruption in FixSbitSubTables
2019-08-15
Microsoft Font Subsetting - DLL Double Free in MergeFormat12Cmap / MakeFormat12MergedGlyphList
2019-08-15
Microsoft Font Subsetting - DLL Heap-Based Out-of-Bounds read in GetGlyphIdx
2019-08-15
Microsoft Font Subsetting - DLL Returning a Dangling Pointer via MergeFontPackage
2019-08-15
Adobe Acrobat CoolType (AFDKO) - Call from Uninitialized Memory due to Empty FDArray in Type 1 Fonts
2019-08-15
Adobe Acrobat CoolType (AFDKO) - Memory Corruption in the Handling of Type 1 Font load/store Operators
2019-08-15
Microsoft Windows Text Services Framework MSCTF - Multiple Vulnerabilities
2019-08-15
NSKeyedUnarchiver - Info Leak in Decoding SGBigUTF8String
2019-08-15
Agent Tesla Botnet - Arbitrary Code Execution (Metasploit)
2019-08-15
ManageEngine opManager 12.3.150 - Authenticated Code Execution
2019-08-15
ABC2MTEX 1.6.1 - Command Line Stack Overflow
2019-08-15
Microsoft Windows 10 AppXSvc Deployment Service - Arbitrary File Deletion
2019-08-15
TortoiseSVN 1.12.1 - Remote Code Execution
2019-08-15
WordPress Plugin Download Manager 2.5 - Cross-Site Request Forgery
2019-08-15
D-Link DIR-600M - Authentication Bypass (Metasploit)
2019-08-15
Joomla! Component JS Jobs (com_jsjobs) 1.2.5 - 'customfields.php' SQL Injection
2019-08-15
Windows PowerShell - Unsanitized Filename Command Execution
2019-08-15
SugarCRM Enterprise 9.0.0 - Cross-Site Scripting
2019-08-15
Mitsubishi Electric smartRTU / INEA ME-RTU - Unauthenticated OS Command Injection Bind Shell
2019-08-15
Mitsubishi Electric smartRTU / INEA ME-RTU - Unauthenticated Configuration Download
2019-08-15
Sony PlayStation Vita - The First F00D Exploit
2019-08-13
Azorult Botnet - SQL Injection
2019-08-13
Agent Tesla Botnet - Arbitrary Code Execution
2019-08-13
Linux/x86 - Multiple In-Memory Modules (Prompt + Privilege Restore + Break­ Chroot Jail + Backdoor) + Signature Evasion Shellcode
2019-08-13
Linux/x86 - execve("/bin/sh") + tolower() Shellcode
2019-08-13
Linux/Tru64 alpha - execve(/bin/sh) Shellcode (108 bytes)
2019-08-13
Steam Windows Client - Local Privilege Escalation
2019-08-13
WebKit - UXSS via XSLT and Nested Document Replacements
2019-08-12
Linux - Use-After-Free Reads in show_numa_stats()
2019-08-12
VxWorks 6.8 - TCP Urgent Pointer = 0 Integer Underflow
2019-08-12
Joomla! Component JS Jobs (com_jsjobs) 1.2.5 - 'cities.php' SQL Injection
2019-08-12
Ghidra (Linux) 9.0.4 - .gar Arbitrary Code Execution
2019-08-12
Webmin 1.920 - Unauthenticated Remote Code Execution (Metasploit)
2019-08-12
ManageEngine OpManager 12.4x - Unauthenticated Remote Command Execution (Metasploit)
2019-08-12
ManageEngine Application Manager 14.2 - Privilege Escalation / Remote Command Execution (Metasploit)
2019-08-12
ManageEngine OpManager 12.4x - Privilege Escalation / Remote Command Execution (Metasploit)
2019-08-12
osTicket 1.12 - Persistent Cross-Site Scripting
2019-08-12
osTicket 1.12 - Formula Injection
2019-08-12
osTicket 1.12 - Persistent Cross-Site Scripting via File Upload
2019-08-12
Joomla! Component JS Support Ticket (com_jssupportticket) 1.1.6 - 'ticket.php' Arbitrary File Deletion
2019-08-12
Joomla! Component JS Support Ticket (com_jssupportticket) 1.1.6 - 'ticketreply.php' SQL Injection
2019-08-12
UNA 10.0.0 RC1 - 'polyglot.php' Persistent Cross-Site Scripting
2019-08-12
Cisco Adaptive Security Appliance - Path Traversal (Metasploit)
2019-08-12
BSI Advance Hotel Booking System 2.0 - 'booking_details.php Persistent Cross-Site Scripting
2019-08-12
Joomla! Component JS Support Ticket (component com_jssupportticket) 1.1.5 - SQL Injection
2019-08-08
Adive Framework 2.0.7 - Cross-Site Request Forgery
2019-08-08
Joomla! Component JS Support Ticket (component com_jssupportticket) 1.1.5 - Arbitrary File Download
2019-08-08
Baldr Botnet Panel - Arbitrary Code Execution (Metasploit)
2019-08-08
Aptana Jaxer 1.0.3.4547 - Local File inclusion
2019-08-08
Daily Expense Manager 1.0 - Cross-Site Request Forgery (Delete Income)
2019-08-08
Open-School 3.0 / Community Edition 2.3 - Cross-Site Scripting
2019-08-08
Google Chrome 74.0.3729.0 / 76.0.3789.0 - Heap Use-After-Free in blink::PresentationAvailabilityState::UpdateAvailability
2019-08-07
WordPress Plugin JoomSport 3.3 - SQL Injection
2019-08-07
ARMBot Botnet - Arbitrary Code Execution
2019-08-05
Apache Tika 1.15 - 1.17 - Header Command Injection (Metasploit)
2019-08-05
macOS iMessage - Heap Overflow when Deserializing
2019-08-05
1CRM On-Premise Software 8.5.7 - Persistent Cross-Site Scripting
2019-08-02
Rest - Cafe and Restaurant Website CMS - 'slug' SQL Injection
2019-08-02
Sar2HTML 3.2.1 - Remote Command Execution
2019-08-02
Cisco Catalyst 3850 Series Device Manager - Cross-Site Request Forgery
2019-08-02
Linux/x86 - Force Reboot Shellcode (51 bytes)
2019-08-02
Linux/x86 - ASLR Disable Polymorphic Shellcode (107 bytes)
2019-08-02
Linux/x86 - chmod(/etc/shadow, 0666) Polymorphic Shellcode (53 bytes)
2019-08-02
WebIncorp ERP - SQL injection
2019-08-02
Exploits/page:


Page:
1.3.0 (www01)