Exploits (Total: 96850)

    
    
    
Online Shopping Alphaware 1.0 - Authentication Bypass
2020-07-30
Wordpress Plugin Maintenance Mode by SeedProd 5.1.1 - Persistent Cross-Site Scripting
2020-07-29
Cisco Adaptive Security Appliance Software 9.7 - Unauthenticated Arbitrary File Deletion
2020-07-29
Cisco Adaptive Security Appliance Software 9.11 - Local File Inclusion
2020-07-29
eGroupWare 1.14 - 'spellchecker.php' Remote Command Execution
2020-07-29
docPrint Pro 8.0 - 'Add URL' Buffer Overflow (SEH Egghunter)
2020-07-29
Windows/x86 - Download using mshta.exe Shellcode (100 bytes)
2020-07-29
Rails 5.0.1 - Remote Code Execution
2020-07-29
Virtual Airlines Manager 2.6.2 - Persistent Cross-Site Scripting
2020-07-29
pfSense 2.4.4-p3 - Cross-Site Request Forgery
2020-07-29
Socket.io-file 2.0.31 - Arbitrary File Upload
2020-07-29
Sickbeard 0.1 - Cross-Site Request Forgery (Disable Authentication)
2020-07-29
F5 Big-IP 13.1.3 Build 0.0.6 - Local File Inclusion
2020-07-29
Webtareas 2.1p - Arbitrary File Upload (Authenticated)
2020-07-29
Bio Star 2.8.2 - Local File Inclusion
2020-07-29
PandoraFMS 7.0 NG 746 - Persistent Cross-Site Scripting
2020-07-29
Koken CMS 0.22.24 - Arbitrary File Upload (Authenticated)
2020-07-29
elaniin CMS - Authentication Bypass
2020-07-29
Online Course Registration 1.0 - Unauthenticated Remote Code Execution
2020-07-29
Linux/x86 - Egghunter(0x50905090) + sigaction + execve(/bin/sh) Shellcode (35 bytes)
2020-07-29
LibreHealth 2.0.0 - Authenticated Remote Code Execution
2020-07-29
Bludit 3.9.2 - Directory Traversal
2020-07-29
WordPress Plugin Email Subscribers & Newsletters 4.2.2 - 'hash' SQL Injection (Unauthenticated)
2020-07-29
WordPress Plugin Email Subscribers & Newsletters 4.2.2 - Unauthenticated File Download
2020-07-29
Calavera UpLoader 3.5 - 'FTP Logi' Denial of Service (PoC + SEH Overwrite)
2020-07-29
Free MP3 CD Ripper 2.8 - Stack Buffer Overflow (SEH + Egghunter)
2020-07-29
Port Forwarding Wizard 4.8.0 - Buffer Overflow (SEH)
2020-07-29
UBICOD Medivision Digital Signage 1.5.1 - Cross-Site Request Forgery (Add Admin)
2020-07-29
INNEO Startup TOOLS 2018 M040 13.0.70.3804 - Remote Code Execution
2020-07-29
ManageEngine Applications Manager 13 - 'MenuHandlerServlet' SQL Injection
2020-07-29
Socusoft Photo to Video Converter Professional 8.07 - 'Output Folder' Buffer Overflow (SEH Egghunter)
2020-07-29
GOautodial 4.0 - Persistent Cross-Site Scripting (Authenticated)
2020-07-29
DiskBoss 7.7.14 - 'Reports and Data Directory' Buffer Overflow (SEH Egghunter)
2020-07-29
Frigate Professional 3.36.0.9 - 'Pack File' Buffer Overflow (SEH Egghunter)
2020-07-29
Nidesoft DVD Ripper 5.2.18 - Local Buffer Overflow (SEH)
2020-07-29
Snes9K 0.09z - 'Port Number' Buffer Overflow (SEH)
2020-07-29
FTPDummy 4.80 - Local Buffer Overflow (SEH)
2020-07-29
UBICOD Medivision Digital Signage 1.5.1 - Authorization Bypass
2020-07-29
Sophos VPN Web Panel 2020 - Denial of Service (Poc)
2020-07-29
WordPress Theme NexosReal Estate 1.7 - 'search_order' SQL Injection
2020-07-29
Docsify.js 4.11.4 - Reflective Cross-Site Scripting
2020-07-29
NetPCLinker 1.0.0.0 - Buffer Overflow (SEH Egghunter)
2020-07-29
CMSUno 1.6 - Cross-Site Request Forgery (Change Admin Password)
2020-07-29
Simple Startup Manager 1.17 - 'File' Local Buffer Overflow (PoC)
2020-07-29
Sonar Qube 8.3.1 - 'SonarQube Service' Unquoted Service Path
2020-07-29
Wing FTP Server 6.3.8 - Remote Code Execution (Authenticated)
2020-07-29
Infor Storefront B2B 1.0 - 'usr_name' SQL Injection
2020-07-29
Online Farm Management System 0.1.0 - Persistent Cross-Site Scripting
2020-07-29
Web Based Online Hotel Booking System 0.1.0 - Authentication Bypass
2020-07-29
Online Polling System 1.0 - Authentication Bypass
2020-07-29
Zyxel Armor X1 WAP6806 - Directory Traversal
2020-07-29
SuperMicro IPMI WebInterface 03.40 - Cross-Site Request Forgery (Add Admin)
2020-07-29
Linux/x86 - ASLR deactivation polymorphic Shellcode (124 bytes)
2020-07-29
TeamCity Agent XML-RPC 10.0 - Remote Code Execution
2020-07-29
Trend Micro Web Security Virtual Appliance 6.5 SP2 Patch 4 Build 1901 - Remote Code Execution (Metasploit)
2020-07-14
BSA Radar 1.6.7234.24750 - Local File Inclusion
2020-07-14
Park Ticketing Management System 1.0 - Authentication Bypass
2020-07-13
Park Ticketing Management System 1.0 - 'viewid' SQL Injection
2020-07-13
Aruba ClearPass Policy Manager 6.7.0 - Unauthenticated Remote Command Execution
2020-07-10
Barangay Management System 1.0 - Authentication Bypass
2020-07-10
HelloWeb 2.0 - Arbitrary File Download
2020-07-10
Savsoft Quiz 5 - Persistent Cross-Site Scripting
2020-07-09
FrootVPN 4.8 - 'frootvpn' Unquoted Service Path
2020-07-09
Wordpress Plugin Powie's WHOIS Domain Check 0.9.31 - Persistent Cross-Site Scripting
2020-07-09
PHP 7.4 FFI - 'disable_functions' Bypass
2020-07-09
BSA Radar 1.6.7234.24750 - Cross-Site Request Forgery (Change Password)
2020-07-08
SuperMicro IPMI 03.40 - Cross-Site Request Forgery (Add Admin)
2020-07-08
Microsoft Windows mshta.exe 2019 - XML External Entity Injection
2020-07-07
BSA Radar 1.6.7234.24750 - Authenticated Privilege Escalation
2020-07-07
Joomla! J2 JOBS 1.3.0 - 'sortby' Authenticated SQL Injection
2020-07-07
Online Shopping Portal 3.1 - 'email' SQL Injection
2020-07-07
Sickbeard 0.1 - Remote Command Injection
2020-07-07
Sony Playstation 2 (PS2): FreeDVDBoot - Hacking the PlayStation 2 through its DVD player
2020-07-07
Sony Playstation 4 (PS4) < 7.02 / FreeBSD 9 / FreeBSD 12 - 'ip6_setpktopt' Kernel Local Privilege Escalation (PoC)
2020-07-07
BIG-IP 15.0.0 < 15.1.0.3 / 14.1.0 < 14.1.2.5 / 13.1.0 < 13.1.3.3 / 12.1.0 < 12.1.5.1 / 11.6.1 < 11.6.5.1 - Traffic Management User Interface 'TMUI' Remote Code Execution (PoC)
2020-07-07
BIG-IP 15.0.0 < 15.1.0.3 / 14.1.0 < 14.1.2.5 / 13.1.0 < 13.1.3.3 / 12.1.0 < 12.1.5.1 / 11.6.1 < 11.6.5.1 - Traffic Management User Interface 'TMUI' Remote Code Execution
2020-07-07
Nagios XI 5.6.12 - 'export-rrd.php' Remote Code Execution
2020-07-06
RSA IG&L Aveksa 7.1.1 - Remote Code Execution
2020-07-06
Grafana 7.0.1 - Denial of Service (PoC)
2020-07-06
Fire Web Server 0.1 - Remote Denial of Service (PoC)
2020-07-06
RiteCMS 2.2.1 - Authenticated Remote Code Execution
2020-07-06
File Management System 1.1 - Persistent Cross-Site Scripting
2020-07-06
OCS Inventory NG 2.7 - Remote Code Execution
2020-07-02
ZenTao Pro 8.8.2 - Command Injection
2020-07-02
Online Shopping Portal 3.1 - Authentication Bypass
2020-07-01
PHP-Fusion 9.03.60 - PHP Object Injection
2020-07-01
e-learning Php Script 0.1.0 - 'search' SQL Injection
2020-07-01
RM Downloader 2.50.60 2006.06.23 - 'Load' Local Buffer Overflow (EggHunter) (SEH) (PoC)
2020-07-01
Reside Property Management 3.0 - 'profile' SQL Injection
2020-06-30
Victor CMS 1.0 - 'user_firstname' Persistent Cross-Site Scripting
2020-06-30
KiteService 1.2020.618.0 - Unquoted Service Path
2020-06-28
Windscribe 1.83 - 'WindscribeService' Unquoted Service Path
2020-06-28
OpenEMR 5.0.1 - 'controller' Remote Code Execution
2020-06-28
FHEM 6.0 - Local File Inclusion
2020-06-28
mySCADA myPRO 7 - Hardcoded Credentials
2020-06-28
BSA Radar 1.6.7234.24750 - Persistent Cross-Site Scripting
2020-06-28
Lansweeper 7.2 - Incorrect Access Control
2020-06-28
Code Blocks 20.03 - Denial Of Service (PoC)
2020-06-28
Online Student Enrollment System 1.0 - Cross-Site Request Forgery (Add Student)
2020-06-28
Responsive Online Blog 1.0 - 'id' SQL Injection
2020-06-28
Exploits/page:


Page:
1-4-2 (www01)