Exploits (Total: 98725)

    
    
    
SAP BusinessObjects launch pad - Server-Side Request Forgery
2018-03-11
Oracle WebLogic Server 10.3.6.0.0 / 12.x - Remote Command Execution
2018-03-11
Intel Active Management Technology - System Privileges
2018-03-11
Apache Struts - REST Plugin With Dynamic Method Invocation Remote Code Execution
2018-03-11
Cells Blog 3.5 - 'bgid' / 'fmid' / 'fnid' SQL Injection
2018-03-11
Dup Scout Enterprise 10.0.18 - 'Input Directory' Local Buffer Overflow (SEH)
2018-03-11
Microsoft Internet Explorer 11 (Windows 7 x86) - 'mshtml.dll' Remote Code Execution (MS17-007)
2018-03-11
MyMagazine 1.0 - 'id' SQL Injection
2018-03-11
CmsLite 1.4 - 'S' SQL Injection
2018-03-11
Basic B2B Script - SQL Injection
2018-03-11
CPA Lead Reward Script - SQL Injection
2018-03-11
Fake Magazine Cover Script - SQL Injection
2018-03-11
Nice PHP FAQ Script - 'nice_theme' SQL Injection
2018-03-11
Squid Analysis Report Generator 2.3.10 - Remote Code Execution
2018-03-11
Trend Micro OfficeScan 11.0/XG (12.0) - Man In The Middle Remote Code Execution
2018-03-11
Trend Micro OfficeScan 11.0/XG (12.0) - Image File Execution Bypass
2018-03-11
Linux Kernel 3.10.0-514.21.2.el7.x86_64 / 3.10.0-514.26.1.el7.x86_64 (CentOS 7) - SUID Position Independent Executable 'PIE' Local Privilege Escalation
2018-03-11
Sync Breeze Enterprise 10.1.16 - 'POST' Remote Buffer Overflow
2018-03-11
Oracle WebLogic Server 10.3.6.0 - Java Deserialization
2018-03-11
Apple iOS 10.2 - Broadcom Out-of-Bounds Write when Handling 802.11k Neighbor Report Response
2018-03-11
Adobe Flash - Out-of-Bounds Read in applyToRange
2018-03-11
Adobe Flash - Out-of-Bounds Write in MP4 Edge Processing
2018-03-11
Adobe Flash - Out-of-Bounds Memory Read in MP4 Parsing
2018-03-11
Humax Wi-Fi Router HG100R 2.0.6 - Authentication Bypass
2018-03-11
PHP-SecureArea < 2.7 - Multiple Vulnerabilities
2018-03-11
CMS Web-Gooroo < 1.141 - Multiple Vulnerabilities
2018-03-11
PDF-XChange Viewer 2.5 Build 314.0 - Code Execution
2018-03-11
iTech Movie Script 7.51 - SQL Injection
2018-03-11
iTech Job Script 9.27 - SQL Injection
2018-03-11
iTech Dating Script 3.40 - SQL Injection
2018-03-11
iTech Multi Vendor Script 6.63 - SQL Injection
2018-03-11
iTech Travel Script 9.49 - SQL Injection
2018-03-11
iTech Freelancer Script 5.27 - SQL Injection
2018-03-11
iTech Image Sharing Script 4.13 - SQL Injection
2018-03-11
iTech Classifieds Script 7.41 - SQL Injection
2018-03-11
iTech Caregiver Script 2.71 - SQL Injection
2018-03-11
iTech Business Networking Script 8.26 - SQL Injection
2018-03-11
iTech B2B Script 4.42 - SQL Injection
2018-03-11
NoMachine 5.3.9 - Local Privilege Escalation
2018-03-11
RPi Cam Control < 6.3.14 - Remote Command Execution
2018-03-11
AirMaster 3000M - Multiple Vulnerabilities
2018-03-11
JoySale 2.2.1 - Arbitrary File Upload
2018-03-11
WordPress Plugin Ads Pro < 3.4 - Cross-Site Scripting / SQL Injection
2018-03-11
Docker Daemon - Unprotected TCP Socket
2018-03-11
CenturyLink ZyXEL PK5001Z Router - Root Remote Code Execution
2018-03-11
VACRON VIG-US731VE 1.0.18-09-B727 IP Camera - Authentication Bypass
2018-03-11
Virtual Postage (VPA) - Man In The Middle Remote Code Execution
2018-03-11
SKILLS.com.au Industry App - Man In The Middle Remote Code Execution
2018-03-11
Tilde CMS 1.01 - Multiple Vulnerabilities
2018-03-11
Oracle E-Business Suite 12.x - Server-Side Request Forgery
2018-03-11
CyberArk Viewfinity 5.5.10.95 - Local Privilege Escalation
2018-03-11
WordPress Plugin Sabai Discuss - Cross-Site Scripting
2018-03-11
Zookeeper 3.5.2 Client - Denial of Service
2018-03-11
WordPress Plugin WatuPRO 5.5.1 - SQL Injection
2018-03-11
Australian Education App - Remote Code Execution
2018-03-11
SpyCamLizard 1.230 - Remote Buffer Overflow
2018-03-11
IBM Informix Dynamic Server - Code Injection / Remote Code Execution
2018-03-11
Nuevomailer < 6.0 - SQL Injection
2018-03-11
Uniview NVR - Password Disclosure
2018-03-11
Sungard eTRAKiT3 <= 3.2.1.17 - SQL Injection
2018-03-11
Sophos Cyberoam - Cross-site scripting
2018-03-11
Dive Assistant Template Builder 8.0 - XML External Entity Injection
2018-03-11
Zyxel P-660HW-61 Firmware < 3.40(PE.11)C0 Router - Local File Inclusion
2018-03-11
Personify360 7.5.2/7.6.1 - Improper Database Schema Access Restrictions
2018-03-11
Personify360 7.5.2/7.6.1 - Improper Access Restrictions
2018-03-11
Dmitry 1.3a - Local Buffer Overflow (PoC)
2018-03-11
D-Link DI-524 - Cross-Site Request Forgery
2018-03-11
Microsoft Windows Server 2008/2012 - LDAP RootDSE Netlogon Denial of Service
2018-03-11
BuilderEngine 3.5.0 - Arbitrary File Upload
2018-03-11
Contrexx CMS egov Module 1.0.0 - SQL Injection
2018-03-11
WordPress Plugin CYSTEME Finder 1.3 - Arbitrary File Disclosure/Arbitrary File Upload
2018-03-11
Ocomon 2.0 - SQL Injection
2018-03-11
VMware Virtual Machine Communication Interface (VMCI) - 'vmci.sys'
2018-03-11
Drupal Module Coder < 7.x-1.3/7.x-2.6 - Remote Code Execution
2018-03-11
Core FTP LE 2.2 - Path Field Local Buffer Overflow (PoC)
2018-03-11
VUPlayer 2.49 (Windows 7) - '.m3u' Local Buffer Overflow (DEP Bypass)
2018-03-11
Mediacoder 0.8.43.5830 - '.m3u' Local Buffer Overflow (SEH)
2018-03-11
CodoForum 3.4 - Persistent Cross-Site Scripting
2018-03-11
BSD / Linux / Windows - execve("/bin//sh", {"//bin/sh", "-c", "cmd"}, NULL) Execute Command Shellcode (194 bytes)
2018-03-11
Linux/x86 - Bind TCP (4444/TCP) Shell (/bin/bash) Shellcode (656 bytes)
2018-03-11
Linux/x86 - Bind TCP (1234/TCP) Shell (/bin/sh) Shellcode (87 bytes) (Generator)
2018-03-11
WordPress Plugin Huge-IT Image Gallery 1.8.9 - Multiple Vulnerabilities
2018-03-11
WordPress Plugin Q and A (Focus Plus) FAQ 1.3.9.7 - Multiple Vulnerabilities
2018-03-11
Windows - Keylogger to File (./log.bin) + Null-Free Shellcode (431 bytes)
2018-03-11
Linux/x86 - Bind TCP (1472/TCP) Shell (/bin/sh) + IPv6 Shellcode (1250 bytes)
2018-03-11
Linux/x86 - Reverse TCP (::ffff:192.168.64.129:1472/TCP) Shell (/bin/sh) + IPv6 Shellcode (159 bytes)
2018-03-11
Linux/x64 - Reverse TCP (192.168.1.2:1234/TCP) Shell Shellcode (134 bytes)
2018-03-11
ASX to MP3 Converter 1.82.50 (Windows 2003 x86) - '.asx' Local Stack Overflow
2018-03-11
Microsoft Internet Explorer 7 - HTML Form Value Denial of Service
2018-03-10
Mozilla Firefox 2.0.0.3 - Href Denial of Service
2018-03-10
LibreOffice 3.5.2.2 - Memory Corruption
2018-03-10
[eZine] Owned and Exposed - ISSUE no 3
2018-03-10
BroadWin Webaccess SCADA/HMI Client - Remote Code Execution
2018-03-10
Microsoft Excel - 0x5D record Stack Overflow (MS10-038)
2018-03-10
Kingsoft Writer 2010 - Local Stack Buffer Overflow
2018-03-10
[eZine] h0no 3
2018-03-10
[eZine] h0no 1
2018-03-10
[eZine] Zero For 0wned (ZFO) 1
2018-03-10
[eZine] Zero For 0wned (ZFO) 3
2018-03-10
[eZine] Zero For 0wned (ZFO) 4
2018-03-10
[eZine] r3m #1
2018-03-10
Apple Safari 4.0.4 / Google Chrome 4.0.249 - CSS style Stack Overflow Denial of Service (PoC)
2018-03-10
UltraISO 9.3.6.2750 - Local Buffer Overflow
2018-03-10
UltraISO 9.3.6.2750 - Local Buffer Overflow (PoC)
2018-03-10
Microsoft Media Player - 'quartz.dll .wav' Multiple Remote Denial of Service Vulnerabilities
2018-03-10
Open Office.org 2.31 - swriter Local Code Execution
2018-03-10
IrfanView 4.10 - '.fpx' Memory Corruption
2018-03-10
Opera 9 - long href Remote Denial of Service
2018-03-10
Microsoft Office - Composite Moniker Remote Code Execution Exploit
2018-03-09
Tor Browser ( Firefox 41 < 50 ) - Code Execution 0day Exploit
2018-03-09
Chrome 35.0.1916.153 - Sandbox Escape / Command Execution Exploit
2018-03-09
Mozilla Firefox - Address Bar Spoofing Exploit
2018-03-09
Bacula-Web < 8.0.0-rc2 - SQL Injection Vulnerability
2018-03-09
Broadcom BCM43xx Wi-Fi - BroadPWN Denial of Service Exploit
2018-03-09
Memcached 1.5.5 - Memcrashed Insufficient Control of Network Message Volume Denial of Service
2018-03-09
WebLog Expert Web Server Enterprise 9.4 Denial Of Service Exploit
2018-03-09
WebLog Expert Web Server Enterprise 9.4 Weak Permissions Vulnerability
2018-03-09
Eclipse Equinoxe OSGi Console Command Execution Exploit
2018-03-09
antMan 0.9.0c - Authentication Bypass Vulnerability
2018-03-09
Redaxo CMS Addon MyEvents 2.2.1 - SQL Injection Vulnerability
2018-03-09
Magento Product Attributes Cross Site Scripting Vulnerability
2018-03-07
Magento Downloadable Products Cross Site Scripting Vulnerability
2018-03-07
Magento Backups Cross Site Request Forgery Vulnerability
2018-03-07
Magento User Info Cross Site Scripting Vulnerability
2018-03-07
Rapid Scada 5.5.0 Insecure Permissions Vulnerability
2018-03-07
Bravo Tejari Web Portal - Cross-Site Request Forgery Vulnerability
2018-03-06
Tenda AC15 Router - Pe-authenticated Remote Code Execution Exploit
2018-03-06
Chrome V8 Out-Of-Bounds Read Exploit
2018-03-06
Chrome V8 JIT Optmization Bug Exploit
2018-03-06
Chrome V8 JIT JSBuiltinReducer::ReduceObjectCreate NULL Check Fail Exploit
2018-03-06
Chrome V8 JIT GetSpecializationContext Type Confusion Exploit
2018-03-06
CloudMe Sync 1.9.2 Remote Buffer Overflow Exploit
2018-03-06
Softros Network Time System Server 2.3.4 - Denial of Service Exploit
2018-03-06
Memcached - memcrashed Denial of Service Exploit
2018-03-06
Joomla #Joomanager 2.0.0 Component - com_Joomanager Arbitrary File Download Exploit
2018-03-05
Sophos UTM 9.410 - (loginuser) (confd) Service Privilege Escalation Vulnerability
2018-03-05
Xion 1.0.125 - .m3u Local SEH-Based Unicode Venetian Exploit
2018-03-05
Dup Scout Enterprise 10.5.12 - Share Username Local Buffer Overflow Exploit
2018-03-05
ClipBucket < 4.0.0 - Release 4902 - Command Injection / File Upload / SQL Injection Vulnerabiliti
2018-03-05
Suricata < 4.0.4 - IDS Detection Bypass Vulnerability
2018-03-05
Papenmeier WiFi Baby Monitor Free & Lite < 2.02.2 - Remote Audio Record Exploit
2018-03-05
NETGEAR Magic telnetd Enabler Exploit
2018-03-05
Samsung Display Solutions Application For Android Content Injection Vulnerability
2018-03-05
VideoLAN VLC Media Player 2.2.5 EphemeralCockroach Heap Overflow Exploit
2018-03-05
Parallels Remote Application Server 15.5 Path Traversal Vulnerability
2018-03-05
OTRS Authenticated Command Injection Exploit
2018-03-05
Apple OS X 10.10.5 - rootsh Local Privilege Escalation Exploit
2018-03-05
Apple macOS Sierra 10.12.1 - physmem Local Privilege Escalation Exploit
2018-03-05
Apple macOS HighSierra 10.13 - ctl_ctloutput-leak Information Leak Exploit
2018-03-05
Apple macOS Sierra 10.12.1 - IOFireWireFamily FireWire Port Denial of Service Exploit
2018-03-05
Apple macOS Sierra 10.12.3 - IOFireWireFamily-null-deref FireWire Port Denial of Service Exploit
2018-03-05
Apple OS X Yosemite - flow_divert-heap-overflow Kernel Panic Exploit
2018-03-05
Sony Playstation 4 (PS4) - WebKit setAttributeNodeNS User After Free Vulnerability
2018-03-05
Sony Playstation 4 (PS4) - NamedObj Kernel Exploit Overview Vulnerability
2018-03-05
Sony Playstation 4 (PS4) - 4.0x WebKit Exploit Writeup Vulnerability
2018-03-05
Sony Playstation 4 (PS4) - NamedObj 4.05 Kernel Exploit Writeup Vulnerability
2018-03-05
Joomla 3.7 - SQL Injection Vulnerability
2018-03-05
WordPress Polls 1.2.4 Plugin - SQL Injection (PoC) Exploit
2018-03-05
Posnic Stock Management System - SQL Injection Exploit
2018-03-05
TestLink Open Source Test Management < 1.9.16 - Remote Code Execution Vulnerability
2018-03-05
uWSGI < 2.0.17 - Directory Traversal Vulnerability
2018-03-05
DualDesk 20 - Proxy.exe Denial of Service Vulnerability
2018-03-05
Linux Kernel _sctp_make_chunk() Denial Of Service Vulnerability
2018-03-05
IrfanView 4.44 Email Plugin - Buffer Overflow (SEH) Exploit
2018-03-05
IrfanView 4.50 Email Plugin - Buffer Overflow (SEH Unicode) Exploit
2018-03-05
SEGGER embOS/IP FTP Server 3.22 - Denial of Service Vulnerability
2018-03-05
D-Link DIR-600M Wireless - Cross-Site Scripting Vulnerability
2018-03-05
Linux Kernel - BadIRET Local Privilege Escalation Exploit
2018-03-05
FreeBSD Kernel (FreeBSD 10.2 < 10.3 x64) - SETFKEY (PoC) Exploit
2018-03-05
FreeBSD Kernel (FreeBSD 10.2 x64) - sendmsg Kernel Heap Overflow (PoC) Exploit
2018-03-05
Sony Playstation 4 (PS4) 1.76 - dlclose Linux Loader Exploit
2018-03-05
WebKitGTK 2.1.2 (Ubuntu 14.04) - Heap based Buffer Overflow Exploit
2018-03-05
Nintendo Switch - WebKit Code Execution (PoC) Exploit
2018-03-05
ActivePDF Toolkit < 8.1.0.19023 - Multiple Memory Corruptions Exploit
2018-03-05
Apple iOS 11.2.5 / watchOS 4.2.2 / tvOS 11.2.5 - bluetoothd Memory Corruption Exploit
2018-03-05
AxxonSoft Axxon Next Directory Traversal Vulnerability
2018-03-05
ClipBucket SQL Injection / Command Injection / File Upload Vulnerabilities
2018-03-05
TestLink Open Source Test Management Insecure Direct Object Reference Vulnerability
2018-03-05
Routers2 2.24 - Cross-Site Scripting Vulnerability
2018-03-05
Sony Playstation 4 (PS4) 4.55 - Jailbreak (WebKit 5.01 / bpf Kernel Loader 4.55) Exploit
2018-03-05
Sony Playstation 4 (PS4) 5.01 - WebKit (PoC) Exploit
2018-03-05
Concrete5 < 8.3.0 - Username / Comments Enumeration Exploit
2018-03-05
School Management Script 3.0.4 - Authentication Bypass Vulnerability
2018-03-05
Microsoft Windows 8.1/2012 R2 - SMB Denial of Service Exploit
2018-03-05
Apple OS X 10.10.5 - 'rootsh' Local Privilege Escalation
2018-03-03
Apple OS X Yosemite - 'flow_divert-heap-overflow' Kernel Panic
2018-03-03
Apple macOS Sierra 10.12.1 - 'physmem' Local Privilege Escalation
2018-03-03
Apple macOS Sierra 10.12.3 - 'IOFireWireFamily-null-deref' FireWire Port Denial of Service
2018-03-03
Apple macOS Sierra 10.12.1 - 'IOFireWireFamily' FireWire Port Denial of Service
2018-03-03
Apple macOS High Sierra 10.13 - 'ctl_ctloutput-leak' Information Leak
2018-03-03
Sony Playstation 4 (PS4) - 4.0x WebKit Exploit Writeup (Breaking down qwertyoruiopz's 4.0x userland exploit)
2018-03-03
Sony Playstation 4 (PS4) - 'NamedObj' 4.05 Kernel Exploit Writeup
2018-03-03
Sony Playstation 4 (PS4) - "NamedObj" 4.05 Kernel Exploit Writeup
2018-03-03
Sony Playstation 4 (PS4) - WebKit 'setAttributeNodeNS' User After Free Write-up
2018-03-03
Sandoba CP:Shop CMS v2016.1 - Multiple XSS Vulnerabilities
2018-03-02
WordPress Plugin Polls 1.2.4 - SQL Injection (PoC)
2018-03-02
Posnic Stock Management System - SQL Injection
2018-03-02
Joomla! 3.7 - SQL Injection
2018-03-02
TestLink Open Source Test Management < 1.9.16 - Remote Code Execution
2018-03-02
uWSGI < 2.0.17 - Directory Traversal
2018-03-02
DualDesk 20 - 'Proxy.exe' Denial of Service
2018-03-02
SEGGER embOS/IP FTP Server 3.22 - Denial of Service
2018-03-02
D-Link DIR-600M Wireless - Cross-Site Scripting
2018-03-02
IrfanView 4.50 Email Plugin - Buffer Overflow (SEH Unicode)
2018-03-02
IrfanView 4.44 Email Plugin - Buffer Overflow (SEH)
2018-03-02
Routers2 2.24 - Cross-Site Scripting
2018-02-28
Apple iOS 11.2.5 / watchOS 4.2.2 / tvOS 11.2.5 - 'bluetoothd' Memory Corruption
2018-02-28
Nintendo Switch - WebKit Code Execution (PoC)
2018-02-28
FreeBSD Kernel (FreeBSD 10.2 x64) - 'sendmsg' Kernel Heap Overflow (PoC)
2018-02-28
FreeBSD Kernel (FreeBSD 10.2 < 10.3 x64) - 'SETFKEY' (PoC)
2018-02-28
Sony Playstation 4 (PS4) 1.76 - 'dlclose' Linux Loader
2018-02-28
Linux Kernel - 'BadIRET' Local Privilege Escalation
2018-02-28
WebKitGTK 2.1.2 (Ubuntu 14.04) - Heap based Buffer Overflow
2018-02-28
Sony Playstation 3 (PS3) < 2.50 - WebKit Code Execution (PoC)
2018-02-28
Sony Playstation 4 (PS4) 3.15 < 3.55 - WebKit Code Execution (PoC)
2018-02-28
Sony Playstation 4 (PS4) 3.50 < 4.07 - WebKit Code Execution (PoC)
2018-02-28
Sony Playstation 4 (PS4) 5.01 - WebKit (PoC)
2018-02-28
Sony Playstation 4 (PS4) 4.55 - Jailbreak (WebKit 5.01 / 'bpf' Kernel Loader 4.55)
2018-02-28
Joomla K2 2.8.0 Component - Arbitrary File Download Vulnerability
2018-02-27
MyBB My Arcade Plugin 1.3 - Cross-Site Scripting Vulnerability
2018-02-27
Schools Alert Management Script 2.0.2 - Authentication Bypass Vulnerability
2018-02-27
GetGo Download Manager 5.3.0.2712 - Buffer Overflow (SEH) Exploit
2018-02-27
Sony Playstation 4 4.55 FW - Local Kernel Exploit
2018-02-27
Chrome V8 PropertyArray Integer Overflow Exploit
2018-02-27
Chrome V8 TranslatedState::MaterializeCapturedObjectAt Caching Bug Exploit
2018-02-27
Asterisk 15.2.0 chan_pjsip SUBSCRIBE Stack Corruption Exploit
2018-02-27
Asterisk 15.2.0 chan_pjsip SDP fmtp Denial Of Service Exploit
2018-02-27
Asterisk 15.2.0 chan_pjsip SDP Media Format Denial Of Service Exploit
2018-02-27
Asterisk 15.2.0 chan_pjsip INVITE Denial Of Service Exploit
2018-02-27
Microsoft Edge Chakra JIT CallRegExSymbolFunction Return Check Fail Exploit
2018-02-27
Transmission Torrent Parsing Integer Overflows Exploit
2018-02-27
CMS Made Simple 2.1.6 Remote Code Execution Vulnerability
2018-02-27
Audio Cutter Software - Code Injection Vulnerability
2018-02-27
AsusWRT LAN Unauthenticated Remote Code Execution Exploit
2018-02-27
Disk Savvy Enterprise 10.4.18 Buffer Ovreflow Exploit
2018-02-27
CloudMe Sync 1.10.9 Buffer Overflow Exploit
2018-02-27
Groupon Clone Script 3.0.2 - Cross-Site Scripting Vulnerability
2018-02-27
Armadito Antivirus 0.12.7.2 - Detection Bypass Vulnerability
2018-02-27
Learning and Examination Management System - Cross-Site Scripting Vulnerability
2018-02-27
Alibaba Clone Script 1.0.2 - Cross-Site Scripting Vulnerability
2018-02-27
Groupon Clone Script 3.0.2 - Cross-Site Scripting Vulnerability
2018-02-27
Trend Micro Email Encryption Gateway 5.5 (Build 1111.00) - Multiple Vulnerabilities
2018-02-27
NoMachine x64 < 6.0.80 - nxfuse Privilege Escalation Exploit
2018-02-27
NoMachine x86 < 6.0.80 - nxfuse Privilege Escalation Exploit
2018-02-27
Joomla Proclaim 9.1.1 Component - Arbitrary File Upload Vulnerability
2018-02-27
Joomla OS Property Real Estate 3.12.7 Component - SQL Injection Vulnerability
2018-02-27
Joomla CheckList 1.1.1 Component - SQL Injection Vulnerability
2018-02-27
Joomla Alexandria Book Library 3.1.2 Component - letter SQL Injection Vulnerability
2018-02-27
Joomla Ek Rishta 2.9 Component - SQL Injection Vulnerability
2018-02-27
Joomla PrayerCenter 3.0.2 Component - sessionid SQL Injection Vulnerability
2018-02-27
Joomla Proclaim 9.1.1 Component - Backup File Download Vulnerability
2018-02-27
Joomla CW Tags 2.0.6 Component - SQL Injection Vulnerability
2018-02-27
EChat Server 3.1 - CHAT.ghp Buffer Overflow Exploit
2018-02-27
Disk Savvy Enterprise 10.4.18 - Buffer Overflow (SEH) Exploit
2018-02-27
Disk Pulse Enterprise 10.4.18 - Import Command Buffer Overflow (SEH) Exploit
2018-02-27
Wavpack 5.1.0 - Denial of Service Exploit
2018-02-27
Yab Quarx 2.4.3 Cross Site Scripting Vulnerability
2018-02-27
Radiant CMS 1.1.4 Cross Site Scripting Vulnerability
2018-02-27
Microsoft Internet Explorer 11 - Js::RegexHelper::RegexReplace Use-After-Free Exploit
2018-02-27
Concrete5 < 8.3.0 - Username / Comments Enumeration
2018-02-27
CMS Made Simple 2.1.6 - Remote Code Execution
2018-02-27
School Management Script 3.0.4 - Authentication Bypass
2018-02-27
Microsoft Windows Windows 8.1/2012 R2 - SMB Denial of Service
2018-02-27
Joomla! Component K2 2.8.0 - Arbitrary File Download
2018-02-27
GetGo Download Manager 5.3.0.2712 - Buffer Overflow (SEH)
2018-02-27
MyBB My Arcade Plugin 1.3 - Cross-Site Scripting
2018-02-27
Schools Alert Management Script 2.0.2 - Authentication Bypass
2018-02-27
Asterisk chan_pjsip 15.2.0 - 'SUBSCRIBE' Stack Corruption
2018-02-27
Asterisk chan_pjsip 15.2.0 - 'SDP fmtp' Denial of Service
2018-02-27
Asterisk chan_pjsip 15.2.0 - 'SDP' Denial of Service
2018-02-27
Asterisk chan_pjsip 15.2.0 - 'INVITE' Denial of Service
2018-02-27
Chrome V8 - 'TranslatedState::MaterializeCapturedObjectAt' Type Confusion
2018-02-27
Chrome V8 - 'PropertyArray' Integer Overflow
2018-02-27
transmission - Integer Overflows Parsing Torrent Files
2018-02-27
Sony Playstation 4 4.55 FW - Local Kernel
2018-02-27
AsusWRT LAN - Unauthenticated Remote Code Execution (Metasploit)
2018-02-26
CloudMe Sync 1.10.9 - Stack-Based Buffer Overflow (Metasploit)
2018-02-26
Disk Savvy Enterprise 10.4.18 - Stack-Based Buffer Overflow (Metasploit)
2018-02-26
Groupon Clone Script 3.0.2 - Cross-Site Scripting
2018-02-22
Alibaba Clone Script 1.0.2 - Cross-Site Scripting
2018-02-22
Learning and Examination Management System - Cross-Site Scripting
2018-02-22
Armadito Antivirus 0.12.7.2 - Detection Bypass
2018-02-22
NoMachine x64 < 6.0.80 - 'nxfuse' Privilege Escalation
2018-02-22
NoMachine x86 < 6.0.80 - 'nxfuse' Privilege Escalation
2018-02-22
Joomla! Component OS Property Real Estate 3.12.7 - SQL Injection
2018-02-22
Joomla! Component Proclaim 9.1.1 - Arbitrary File Upload
2018-02-22
Joomla! Component CheckList 1.1.1 - SQL Injection
2018-02-22
Joomla! Component Alexandria Book Library 3.1.2 - 'letter' SQL Injection
2018-02-22
Joomla! Component Ek Rishta 2.9 - SQL Injection
2018-02-22
Joomla! Component PrayerCenter 3.0.2 - 'sessionid' SQL Injection
2018-02-22
Trend Micro Email Encryption Gateway 5.5 (Build 1111.00) - Multiple Vulnerabilities
2018-02-22
Joomla! Component Proclaim 9.1.1 - Backup File Download
2018-02-22
Joomla! Component CW Tags 2.0.6 - SQL Injection
2018-02-22
Weblication CMS Core & Grid v12.6.24 - XSS Vulnerabilities
2018-02-21
Disk Pulse Enterprise 10.4.18 - 'Import Command' Buffer Overflow (SEH)
2018-02-21
Disk Savvy Enterprise 10.4.18 - Buffer Overflow (SEH)
2018-02-21
EChat Server 3.1 - 'CHAT.ghp' Buffer Overflow
2018-02-21
Wavpack 5.1.0 - Denial of Service
2018-02-21
utorrent - JSON-RPC Remote Code Execution / Information Disclosure Vulnerabilities
2018-02-21
Microsoft Windows - Constrained Impersonation Capability Privilege Escalation Exploit
2018-02-21
Microsoft Windows - NPFS Symlink Security Feature Bypass/Elevation of Privilege/Dangerous Behavior E
2018-02-21
Microsoft Windows - Global Reparse Point Security Feature Bypass/Elevation of Privilege Exploit
2018-02-21
Microsoft Windows Kernel - nt!RtlpCopyLegacyContextX86 Stack Memory Disclosure Exploit
2018-02-21
MagniComp SysInfo - mcsiwrapper Privilege Escalation Exploit
2018-02-21
Aastra 6755i SIP SP4 - Denial of Service Vulnerability
2018-02-21
Kentico CMS 11 Arbitrary Code Execution Vulnerability
2018-02-21
Kentico CMS 11 Cross Site Scripting Vulnerability
2018-02-21
October CMS < 1.0.431 - Cross-Site Scripting Vulnerability
2018-02-21
Linux/ARM - Bind TCP (4444/TCP) Shell (/bin/sh) + IP Controlled (192.168.1.190) + Null-Free Shellcod
2018-02-21
Joomla Saxum Picker 3.2.10 Component - SQL Injection Vulnerability
2018-02-21
Joomla SquadManagement 1.0.3 Component - SQL Injection Vulnerability
2018-02-21
Joomla Saxum Numerology 3.0.4 Component - SQL Injection Vulnerability
2018-02-21
Joomla Saxum Astro 4.0.14 Component - SQL Injection Vulnerability
2018-02-21
Joomla ccNewsletter 2.x.x Component id - SQL Injection Vulnerability
2018-02-21
Joomla Pinterest Clone Social Pinboard 2.0 - SQL Injection Vulnerability
2018-02-21
Joomla Timetable Responsive Schedule For Joomla 1.5 Component - alias SQL Injection Vulnerability
2018-02-21
Joomla Staff Master 1.0 RC 1 Component - SQL Injection Vulnerability
2018-02-21
Joomla Solidres 2.5.1 Component - SQL Injection Vulnerability
2018-02-21
Joomla Smart Shoutbox 3.0.0 Component - SQL Injection Vulnerability
2018-02-21
Joomla SimpleCalendar 3.1.9 Component - SQL Injection Vulnerability
2018-02-21
Joomla Realpin 1.5.04 Component - SQL Injection Vulnerability
2018-02-21
Joomla Project Log 1.5.3 Component - search SQL Injection Vulnerability
2018-02-21
Joomla NeoRecruit 4.1 Component - SQL Injection Vulnerability
2018-02-21
Joomla MediaLibrary Free 4.0.12 Component - SQL Injection Vulnerability
2018-02-21
Joomla JTicketing 2.0.16 Component - SQL Injection Vulnerability
2018-02-21
Joomla JS Jobs 1.1.9 Component - SQL Injection Vulnerability
2018-02-21
Joomla JS Autoz 1.0.9 Component - SQL Injection Vulnerability
2018-02-21
Joomla JquickContact 1.3.2.2.1 Component - SQL Injection Vulnerability
2018-02-21
Joomla JomEstate PRO 3.7 Component - id SQL Injection Vulnerability
2018-02-21
Joomla jGive 2.0.9 Component - SQL Injection Vulnerability
2018-02-21
Joomla JB Bus 2.3 Component - order_number SQL Injection Vulnerability
2018-02-21
Joomla InviteX 3.0.5 Component - invite_type SQL Injection Vulnerability
2018-02-21
Joomla Google Map Landkarten 4.2.3 Component - SQL Injection Vulnerability
2018-02-21
Joomla Gallery WD 1.3.6 Component - SQL Injection Vulnerability
2018-02-21
Joomla Form Maker 3.6.12 Component - SQL Injection Vulnerability
2018-02-21
Joomla File Download Tracker 3.0 Component - SQL Injection Vulnerability
2018-02-21
Joomla Fastball 2.5 Component - season SQL Injection Vulnerability
2018-02-21
Joomla DT Register 3.2.7 Component - id SQL Injection Vulnerability
2018-02-21
Joomla AllVideos Reloaded 1.2.x Component - divid SQL Injection Vulnerability
2018-02-21
Joomla Aist 2.0 Component - id SQL Injection Vulnerability
2018-02-21
Joomla Advertisement Board 3.1.0 Component - catname SQL Injection Vulnerability
2018-02-21
Joomla Kubik-Rubik Simple Image Gallery Extended (SIGE) 3.2.3 Component - Cross-Site Scripting
2018-02-21
Oracle Primavera P6 Enterprise Project Portfolio Management - HTTP Response Splitting Vulnerability
2018-02-21
PHIMS - Hospital Management Information System - Password SQL Injection Vulnerability
2018-02-21
UserSpice 4.3 - Blind SQL Injection Exploit
2018-02-21
PSNews Website 1.0.0 - Keywords SQL Injection Vulnerability
2018-02-21
TV - Video Subscription - Authentication Bypass SQL Injection Vulnerability
2018-02-21
EPIC MyChart - SQL Injection Vulnerability
2018-02-21
Twig < 2.4.4 - Server Side Template Injection Vulnerability
2018-02-21
ABRT - raceabrt Privilege Escalation Exploit
2018-02-21
Siemens SIPROTEC 4 and SIPROTEC Compact EN100 Ethernet Module < 4.25 - Denial of Service Exploit
2018-02-21
JBoss Remoting 6.14.18 - Denial of Service Exploit
2018-02-21
Microsoft Edge - UnmapViewOfFile ACG Bypass Vulnerability
2018-02-21
Front Accounting ERP 2.4.3 - Cross-Site Request Forgery Vulnerability
2018-02-21
Microsoft Internet Explorer 11 - 'Js::RegexHelper::RegexReplace' Use-After-Free
2018-02-20
Microsoft Windows - StorSvc SvcMoveFileInheritSecurity Arbitrary File Creation Privilege Escalation
2018-02-20
utorrent - JSON-RPC Remote Code Execution / Information Disclosure
2018-02-20
AEF CMS v1.0.9 - (PM) Persistent Cross Site Vulnerability
2018-02-20
Geldkarte - transaktionsid Cross Site Scripting Vulnerability
2018-02-20
MagniComp SysInfo - mcsiwrapper Privilege Escalation (Metasploit)
2018-02-20
Microsoft Windows - Constrained Impersonation Capability Privilege Escalation
2018-02-20
Microsoft Windows - NPFS Symlink Security Feature Bypass/Elevation of Privilege/Dangerous Behavior
2018-02-20
Microsoft Windows - Global Reparse Point Security Feature Bypass/Elevation of Privilege
2018-02-20
Microsoft Windows Kernel - 'nt!RtlpCopyLegacyContextX86' Stack Memory Disclosure
2018-02-20
Mobile Application Hacking Diary Ep.2
2018-02-19
October CMS < 1.0.431 - Cross-Site Scripting
2018-02-19
Linux/ARM - IP Controlled TCP Bind Shell Shellcode (/bin/sh) (168 bytes)
2018-02-19
Aastra 6755i SIP SP4 - Denial of Service
2018-02-19
Oracle Primavera P6 Enterprise Project Portfolio Management - HTTP Response Splitting
2018-02-17
PSNews Website 1.0.0 - 'Keywords' SQL Injection
2018-02-17
PHIMS - Hospital Management Information System - 'Password' SQL Injection
2018-02-17
Front Accounting ERP 2.4.3 - Cross-Site Request Forgery
2018-02-17
Joomla! Component Saxum Picker 3.2.10 - SQL Injection
2018-02-17
Joomla! Component SquadManagement 1.0.3 - SQL Injection
2018-02-17
Joomla! Component Saxum Numerology 3.0.4 - SQL Injection
2018-02-17
Joomla! Component Saxum Astro 4.0.14 - SQL Injection
2018-02-17
Joomla Component ccNewsletter 2.x.x 'id' - SQL Injection
2018-02-17
Joomla! Pinterest Clone Social Pinboard 2.0 - SQL Injection
2018-02-17
Joomla! Component Timetable Responsive Schedule For Joomla 1.5 - 'alias' SQL Injection
2018-02-17
Joomla! Component Staff Master 1.0 RC 1 - SQL Injection
2018-02-17
Joomla! Component Solidres 2.5.1 - SQL Injection
2018-02-17
Joomla! Component Smart Shoutbox 3.0.0 - SQL Injection
2018-02-17
Joomla! Component SimpleCalendar 3.1.9 - SQL Injection
2018-02-17
Joomla! Component Realpin 1.5.04 - SQL Injection
2018-02-17
Joomla! Component Project Log 1.5.3 - 'search' SQL Injection
2018-02-16
Joomla! Component NeoRecruit 4.1 - SQL Injection
2018-02-16
Joomla! Component MediaLibrary Free 4.0.12 - SQL Injection
2018-02-16
Joomla! Component JTicketing 2.0.16 - SQL Injection
2018-02-16
Joomla! Component JS Jobs 1.1.9 - SQL Injection
2018-02-16
Joomla! Component JS Autoz 1.0.9 - SQL Injection
2018-02-16
Joomla! Component JquickContact 1.3.2.2.1 - SQL Injection
2018-02-16
Joomla! Component JomEstate PRO 3.7 - 'id' SQL Injection
2018-02-16
Joomla! Component jGive 2.0.9 - SQL Injection
2018-02-16
Joomla! Component JB Bus 2.3 - 'order_number' SQL Injection
2018-02-16
Joomla! Component InviteX 3.0.5 - 'invite_type' SQL Injection
2018-02-16
Joomla! Component Google Map Landkarten 4.2.3 - SQL Injection
2018-02-16
Joomla! Component Gallery WD 1.3.6 - SQL Injection
2018-02-16
Joomla! Component Form Maker 3.6.12 - SQL Injection
2018-02-16
Joomla! Component File Download Tracker 3.0 - SQL Injection
2018-02-16
Joomla! Component Fastball 2.5 - 'season' SQL Injection
2018-02-16
Joomla! Component DT Register 3.2.7 - 'id' SQL Injection
2018-02-16
Joomla! Component AllVideos Reloaded 1.2.x - 'divid' SQL Injection
2018-02-16
Joomla! Component Aist 2.0 - 'id' SQL Injection
2018-02-16
Joomla! Component Advertisement Board 3.1.0 - 'catname' SQL Injection
2018-02-16
Joomla! Component Kubik-Rubik Simple Image Gallery Extended (SIGE) 3.2.3 - Cross-Site Scripting
2018-02-16
Siemens SIPROTEC 4 and SIPROTEC Compact EN100 Ethernet Module < 4.25 - Denial of Service
2018-02-16
Twig < 2.4.4 - Server Side Template Injection
2018-02-16
UserSpice 4.3 - Blind SQL Injection
2018-02-16
TV - Video Subscription - Authentication Bypass SQL Injection
2018-02-16
JBoss Remoting 6.14.18 - Denial of Service
2018-02-16
EPIC MyChart - SQL Injection
2018-02-16
ABRT - raceabrt Privilege Escalation(Metasploit)
2018-02-16
Microsoft Edge - 'UnmapViewOfFile' ACG Bypass
2018-02-16
Pdfium - Pattern Shading Integer Overflows Exploit
2018-02-15
Pdfium - Out-of-Bounds Read with Shading Pattern Backed by Pattern Colorspace Exploit
2018-02-15
Chrome V8 - Runtime_RegExpReplace Integer Overflow Exploit
2018-02-15
Microsoft Edge Chakra JIT - LdThis Type Confusion Exploit
2018-02-15
Microsoft Edge Chakra JIT - NewScObjectNoCtor Array Type Confusion Exploit
2018-02-15
Microsoft Edge Chakra JIT - Array.prototype.reverse Array Type Confusion Exploit
2018-02-15
Microsoft Edge Chakra JIT - Array Type Confusion via InitProto Instructions Exploit
2018-02-15
Microsoft Edge Chakra JIT - ImplicitCallFlags Checks Bypass Exploit
2018-02-15
Microsoft Edge Chakra JIT - Memory Corruption Exploit
2018-02-15
Microsoft Edge Chakra JIT - GlobOpt::OptTagChecks Must Consider IsLoopPrePass Properly (2)
2018-02-15
Chrome V8 - 'Runtime_RegExpReplace' Integer Overflow
2018-02-15
Pdfium - Out-of-Bounds Read with Shading Pattern Backed by Pattern Colorspace
2018-02-15
Pdfium - Pattern Shading Integer Overflows
2018-02-15
Microsoft Edge Chakra JIT - 'LdThis' Type Confusion
2018-02-15
Microsoft Edge Chakra JIT - 'NewScObjectNoCtor' Array Type Confusion
2018-02-15
Microsoft Edge Chakra JIT - 'Array.prototype.reverse' Array Type Confusion
2018-02-15
Microsoft Edge Chakra JIT - Array Type Confusion via InitProto Instructions
2018-02-15
Microsoft Edge Chakra JIT - ImplicitCallFlags Checks Bypass
2018-02-15
Microsoft Edge Chakra JIT - Memory Corruption
2018-02-15
Microsoft Edge Chakra JIT - 'GlobOpt::OptTagChecks' Must Consider IsLoopPrePass Properly (2)
2018-02-15
Dell EMC Isilon OneFS - Multiple Vulnerabilities
2018-02-15
TrendNet AUTHORIZED_GROUP Information Disclosure Vulnerability
2018-02-15
GNU binutils 2.26.1 - Integer Overflow (POC) Exploit
2018-02-15
Social Oauth Login PHP - Authentication Bypass Vulnerability
2018-02-15
SOA School Management - access_login SQL Injection Vulnerability
2018-02-15
NAT32 2.2 Build 22284 - Remote Command Execution Vulnerability
2018-02-15
NAT32 2.2 Build 22284 - Cross-Site Request Forgery Vulnerability
2018-02-15
userSpice 4.3 - Cross-Site Scripting Vulnerability
2018-02-15
Dasan Networks GPON ONT WiFi Router H640X versions 12.02-01121 / 2.77p1-1124 / 3.03p2-1146 - Unauthenticated Remote Code Execution
2018-02-15
HPE Intelligent Management Center (iMC) 7.2 (E0403P10) - Code Execution
2018-02-15
Geneko Routers - Unauthenticated Path Traversal
2018-02-15
IDERA Uptime Monitor 7.8 - Multiple Vulnerabilities
2018-02-15
Cisco DPC3928 Router - Arbitrary File Disclosure
2018-02-15
360 Total Security - Local Privilege Escalation
2018-02-15
OrientDB - Code Execution
2018-02-15
McAfee Security Scan Plus - Remote Command Execution
2018-02-15
Dashlane - DLL Hijacking
2018-02-15
Sophos XG Firewall 16.05.4 MR-4 - Path Traversal
2018-02-15
Odoo CRM 10.0 - Code Execution
2018-02-15
Nitro Pro PDF - Multiple Vulnerabilities
2018-02-15
McAfee LiveSafe 16.0.3 - Man In The Middle Registry Modification Leading to Remote Command Execution
2018-02-15
Hanbanggaoke IP Camera - Arbitrary Password Change
2018-02-15
QNAP HelpDesk < 1.1.12 - SQL Injection
2018-02-15
Horde Groupware 5.2.21 - Unauthorized File Download
2018-02-15
Tiandy IP Cameras 5.56.17.120 - Sensitive Information Disclosure
2018-02-15
Oracle Java JDK/JRE < 1.8.0.131 / Apache Xerces 2.11.0 - 'PDF/Docx' Server Side Denial of Service
2018-02-15
PHP Melody 2.7.3 - Multiple Vulnerabilities
2018-02-15
Ikraus Anti Virus 2.16.7 - Remote Code Execution
2018-02-15
FiberHome - Directory Traversal
2018-02-15
Linux Kernel - 'AF_PACKET' Use-After-Free
2018-02-15
Cisco UCS Platform Emulator 3.1(2ePE1) - Remote Code Execution
2018-02-15
DblTek - Multiple Vulnerabilities
2018-02-15
Ametys CMS 4.0.2 - Unauthenticated Password Reset
2018-02-15
Linux Kernel (Ubuntu 17.04) - 'XFRM' Local Privilege Escalation
2018-02-15
Ichano AtHome IP Cameras - Multiple Vulnerabilities
2018-02-15
Trustwave SWG 11.8.0.27 - SSH Unauthorized Access
2018-02-15
K7 Total Security 15.1.0.305 - Device Driver Arbitrary Memory Read
2018-02-15
Monstra CMS - Remote Code Execution
2018-02-15
GitStack - Unauthenticated Remote Code Execution
2018-02-15
iBall WRA150N - Multiple Vulnerabilities
2018-02-15
Hotspot Shield - Information Disclosure
2018-02-15
Oracle Knowledge Management 12.1.1 < 12.2.5 - XML External Entity Leading To Remote Code Execution
2018-02-15
Dell EMC Isilon OneFS - Multiple Vulnerabilities
2018-02-14
userSpice 4.3 - Cross-Site Scripting
2018-02-14
SOA School Management - 'access_login' SQL Injection
2018-02-14
Social Oauth Login PHP - Authentication Bypass
2018-02-14
GNU binutils 2.26.1 - Integer Overflow (POC)
2018-02-14
NAT32 2.2 Build 22284 - Cross-Site Request Forgery
2018-02-14
NAT32 2.2 Build 22284 - Remote Command Execution
2018-02-14
Ciesto Solutions ERP System SQL Injection Vulnerability
2018-02-13
Advantech WebAccess 8.3.0 - Remote Code Execution Exploit
2018-02-13
News Website Script 2.0.4 - search SQL Injection Vulnerability
2018-02-13
TypeSetter CMS 5.1 - Host Header Injection Vulnerability
2018-02-13
TypeSetter CMS 5.1 - Cross-Site Request Forgery Vulnerability
2018-02-13
CloudMe Sync 1.10.9 Remote Buffer Overflow Vulnerability
2018-02-13
LibreOffice < 6.0.1 - =WEBSERVICE Remote Arbitrary File Disclosure Vulnerability
2018-02-13
LogicalDOC Enterprise 7.7.4 - Root Remote Code Execution Vulnerability
2018-02-13
LogicalDOC Enterprise 7.7.4 - User Enumeration Vulnerability
2018-02-13
LogicalDOC Enterprise 7.7.4 - Directory Traversal Vulnerability
2018-02-13
Juju-run Agent Privilege Escalation Exploit
2018-02-13
SoapUI 5.3.0 Code Execution Exploit
2018-02-13
WordPress Bookly Lite 13.2 Cross Site Scripting Vulnerability
2018-02-13
Paypal Clone Script 1.0.9 - id / acctype SQL Injection Vulnerability
2018-02-13
Readymade Video Sharing Script 3.2 - search SQL Injection Vulnerability
2018-02-13
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation Exploit
2018-02-13
glibc $ORIGIN Expansion Privilege Escalation Exploit
2018-02-13
NetEx HyperIP 6.1.0 Post-Auth Command Execution Vulnerability
2018-02-13
Exploits/page:


Page:
1-4-2 (www01)