Exploits (Total: 97231)

    
    
    
Oracle Weblogic Server Deserialization Remote Code Execution Exploit
2018-08-11
iSmartViewPro 1.5 - Password Buffer Overflow Exploit
2018-08-11
MyBB Like Plugin 3.0.0 - Cross-Site Scripting Vulnerability
2018-08-11
MyBB Thank You/Like Plugin 3.0.0 - Cross-Site Scripting Vulnerability
2018-08-11
Zimbra 8.6.0_GA_1153 - Cross-Site Scripting Vulnerability
2018-08-11
Linux #Kernel #LinuxKernel 4.14.7 ( #Ubuntu 16.04 / #CentOS 7) Arbitrary File Read Exploit
2018-08-09
Mikrotik WinBox 6.42 - Credential Disclosure Exploit
2018-08-09
TPLink Archer C50 V3 Wireless Router 3 - CSRF (Remote Reboot) Vulnerability
2018-08-09
TPLink Archer C50 V3 Wireless Router 3 - CSRF (Information Disclosure) Vulnerability
2018-08-09
CloudMe Sync 1.10.9 - Buffer Overflow (SEH) Exploit
2018-08-09
AgataSoft Auto PingMaster 1.5 - Buffer Overflow (SEH) Exploit
2018-08-09
Sitecore.Net 8.1 - Directory Traversal Vulnerability
2018-08-09
Ericsson-LG iPECS NMS 30M - Directory Traversal Vulnerability
2018-08-09
TP-Link TL-WR840N - Denial of Service Vulnerability
2018-08-09
man-cgi Local File Inclusion Vulnerability
2018-08-09
reSIProcate 1.10.2 Heap Overflow Exploit
2018-08-08
iSmartViewPro 1.5 - Account Buffer Overflow Exploit
2018-08-08
iSmartViewPro 1.5 - Device Alias Buffer Overflow Exploit
2018-08-08
Microsoft Windows SCF File Feature Bypass Vulnerability
2018-08-08
OpenEMR < 5.0.1 - Remote Code Execution Exploit
2018-08-08
OCS Inventory NG Webconsole Shell Upload Vulnerability
2018-08-08
QNap QVR Client 5.0.3.23100 - Denial of Service Exploit
2018-08-08
Open-AudIT Community 2.2.6 - Cross-Site Scripting Vulnerability
2018-08-08
Monstra 3.0.4 - Cross-Site Scripting Vulnerability
2018-08-08
LAMS < 3.1 - Cross-Site Scripting Vulnerability
2018-08-08
Subrion CMS 4.2.1 - Cross-Site Scripting Vulnerability
2018-08-08
onArcade 2.4.2 - Cross-Site Request Forgery (Add Admin) Vulnerability
2018-08-08
CMS ISWEB 3.5.3 - Directory Traversal Vulnerability
2018-08-08
Fortinet FortiClient 5.2.3 (Windows 10 x64 Creators) - Local Privilege Escalation Exploit
2018-08-08
cgit < 1.2.1 - cgit_clone_objects() Directory Traversal Vulnerability
2018-08-08
Vuze Bittorrent Client 5.7.6.0 - SSDP Processing XML External Entity Injection Vulnerability
2018-08-08
Plex Media Server 1.13.2.5154 - SSDP Processing XML External Entity Injection Vulnerability
2018-08-08
PHP Template Store Script 3.0.6 - Cross-Site Scripting Vulnerability
2018-08-08
Wedding Slideshow Studio 1.36 - Buffer Overflow Exploit
2018-08-08
Linux Kernel UDP Fragmentation Offset (UFO) Privilege Escalation Exploit
2018-08-08
Linux/x86 - Reverse TCP (::FFFF:192.168.1.5:4444/TCP) Shell (/bin/sh) + Null-Free + IPv6 (86 bytes)
2018-08-08
Basic B2B Script 2.0.0 - Cross-Site Scripting Vulnerability
2018-08-08
ASUS DSL-N12E C1 1.1.2.3_345 - Remote Command Execution Exploit
2018-08-08
Seq 4.2.476 - Authentication Bypass Vulnerability
2018-08-08
AgataSoft Auto PingMaster 1.5 - Host name Denial of Service PoC Exploit
2018-08-08
PageResponse FB Inboxer Add-on 1.2 - search_field SQL Injection Vulnerability
2018-08-08
TI Online Examination System v2 - Arbitrary File Download Vulnerability
2018-08-08
Chartered Accountant : Auditor Website 2.0.1 - Cross-Site Scripting Vulnerability
2018-08-08
WityCMS 0.6.2 - Cross-Site Request Forgery (Password Change) Vulnerability
2018-08-08
Imperva SecureSphere 12.0.0.50 - SealMode Shell Escape Exploit
2018-08-08
Imperva SecureSphere 11.5 / 12.0 / 13.0 - Privilege Escalation Exploit
2018-08-08
CoSoSys Endpoint Protector 4.5.0.1 - Authenticated Remote Root Command Injection Exploit
2018-08-08
Universal Media Server 7.1.0 - SSDP Processing XML External Entity Injection Vulnerability
2018-08-08
DataLife Engine 13.0 Cross Site Scripting Vulnerability
2018-08-08
WebRTC - H264 NAL Packet Processing Type Confusion Exploit
2018-08-08
WebRTC - FEC Processing Overflow Exploit
2018-08-08
WebRTC - VP8 Block Decoding Use-After-Free Exploit
2018-08-08
Easy DVD Creator 2.5.11 Buffer Overflow Exploit
2018-08-08
My Video Converter 1.5.24 Buffer Overflow Exploit
2018-08-08
Allok Fast AVI MPEG Splitter 1.2 SEH Overwrite Exploit
2018-08-08
Linux/ARM - Reverse (::1:4444/TCP) Shell (/bin/sh) +IPv6 Shellcode (116 Bytes)
2018-08-08
Switch Port Mapping Tool 2.81 - SNMP Community Name Denial of Service PoC Exploit
2018-08-08
ipPulse 1.92 - Licence Key Denial of Service PoC Exploit
2018-08-08
HRSale 1.0.6 Local File Disclosure Vulnerability
2018-08-08
MicroFocus Secure Messaging Gateway Remote Code Execution Exploit
2018-08-08
Vtiger CRM 6.3.0 Authenticated Logo Upload Remote Command Execution Exploit
2018-08-08
SonicWall Global Management System XMLRPC Exploit
2018-08-08
Microsoft Wireless Display Adapter 2 Command Injection / Broken Access Control Vulnerability
2018-08-08
Allok MOV Converter 4.6.1217 Buffer Overflow Exploit
2018-08-08
Responsive Filemanager 9.13.1 Server-Side Request Forgery Vulnerability
2018-08-08
Charles Proxy 4.2 - Local root Privilege Escalation Exploit
2018-08-08
QNap QVR Client 5.0.3.23100 - Denial of Service (PoC)
2018-08-07
OpenEMR < 5.0.1 - Remote Code Execution
2018-08-07
Open-AudIT Community 2.2.6 - Cross-Site Scripting
2018-08-06
Monstra 3.0.4 - Cross-Site Scripting
2018-08-06
CMS ISWEB 3.5.3 - Directory Traversal
2018-08-06
onArcade 2.4.2 - Cross-Site Request Forgery (Add Admin)
2018-08-06
LAMS < 3.1 - Cross-Site Scripting
2018-08-06
Subrion CMS 4.2.1 - Cross-Site Scripting
2018-08-06
Fortinet FortiClient 5.2.3 (Windows 10 x64 Creators) - Local Privilege Escalation
2018-08-05
cgit < 1.2.1 - 'cgit_clone_objects()' Directory Traversal
2018-08-03
Linux Kernel - UDP Fragmentation Offset (UFO) Privilege Escalation (Metasploit)
2018-08-03
Plex Media Server 1.13.2.5154 - SSDP Processing XML External Entity Injection
2018-08-03
Vuze Bittorrent Client 5.7.6.0 - SSDP Processing XML External Entity Injection
2018-08-03
Linux/ARM - Bind (4444/TCP) Shell +IPv6 Shellcode (128 Bytes)
2018-08-03
PHP Template Store Script 3.0.6 - Cross-Site Scripting
2018-08-03
Wedding Slideshow Studio 1.36 - Buffer Overflow
2018-08-03
Entrepreneur Job Portal Script 3.0.1 - Cross-Site Scripting
2018-08-03
Basic B2B Script 2.0.0 - Cross-Site Scripting
2018-08-03
Linux/x86 - Reverse Shell (/bin/sh)+Null Free+IPv6 Shellcode (86 bytes)
2018-08-03
AgataSoft Auto PingMaster 1.5 - 'Host name' Denial of Service (PoC)
2018-08-02
Seq 4.2.476 - Authentication Bypass
2018-08-02
ASUS DSL-N12E_C1 1.1.2.3_345 - Remote Command Execution
2018-08-02
Allok Fast AVI MPEG Splitter 1.2 - Buffer Overflow (PoC)
2018-08-02
Universal Media Server 7.1.0 - SSDP Processing XML External Entity Injection
2018-08-02
SecureSphere 12.0.0.50 - SealMode Shell Escape (Metasploit)
2018-08-02
CoSoSys Endpoint Protector 4.5.0.1 - Authenticated Remote Root Command Injection
2018-08-02
Imperva SecureSphere 11.5 / 12.0 / 13.0 - Privilege Escalation
2018-08-02
PageResponse FB Inboxer Add-on 1.2 - 'search_field' SQL Injection
2018-08-02
TI Online Examination System v2 - Arbitrary File Download
2018-08-02
WityCMS 0.6.2 - Cross-Site Request Forgery (Password Change)
2018-08-02
Sun Solaris 11.3 AVS - Local Kernel root Exploit
2018-08-02
Chartered Accountant : Auditor Website 2.0.1 - Cross-Site Scripting
2018-08-02
SonicWall Global Management System - XMLRPC set_time_zone Command Injection (Metasploit)
2018-08-01
WebRTC - H264 NAL Packet Processing Type Confusion
2018-08-01
WebRTC - FEC Processing Overflow
2018-08-01
WebRTC - VP8 Block Decoding Use-After-Free
2018-08-01
Axis Network Camera - .srv to parhand RCE (Metasploit)
2018-08-01
Linux/ARM - Reverse (::1:4444/TCP) Shell +IPv6 Shellcode (116 Bytes)
2018-08-01
Switch Port Mapping Tool 2.81 - 'SNMP Community Name' Denial of Service (PoC)
2018-08-01
ipPulse 1.92 - 'Licence Key' Denial of Service (PoC)
2018-08-01
Allok MOV Converter 4.6.1217 - Buffer Overflow (SEH)
2018-08-01
fusermount - user_allow_other Restriction Bypass and SELinux Label Control Exploit
2018-07-30
Charles Proxy 4.2 - Local root Privilege Escalation
2018-07-30
fusermount - user_allow_other Restriction Bypass and SELinux Label Control
2018-07-30
H2 Database 1.4.197 - Information Disclosure
2018-07-30
Microsoft Windows Kernel - win32k!NtUserConsoleControl Denial of Service #PoC Exploit
2018-07-30
H2Database 1.4.197 - Information Disclosure Exploit
2018-07-30
ipPulse 1.92 - IP Address/HostName-Comment Denial of Service #PoC Exploit
2018-07-30
Microsoft Windows Kernel - 'win32k!NtUserConsoleControl' Denial of Service (PoC)
2018-07-30
ipPulse 1.92 - 'IP Address/HostName-Comment' Denial of Service (PoC)
2018-07-30
ProjectSend - SQL Injection Vulnerability
2018-07-29
WordPress Plugin Responsive Thumbnail Slider - Arbitrary File Upload (Metasploit)
2018-07-28
Skia - Heap Overflow in SkScan::FillPath due to Precision Error
2018-07-28
SoftNAS Cloud < 4.0.3 - OS Command Injection
2018-07-28
NetScanTools Basic Edition 2.5 - 'Hostname' Denial of Service (PoC)
2018-07-28
Online Trade 1 - Information Disclosure
2018-07-28
QNap QVR Client 5.1.1.30070 - 'Password' Denial of Service (PoC)
2018-07-28
Core FTP 2.0 - 'XRMD' Denial of Service (PoC)
2018-07-28
Inteno’s IOPSYS - (Authenticated) Local Privilege Escalation
2018-07-28
Trivum Multiroom Setup Tool 8.76 - Corss-Site Request Forgery (Admin Bypass)
2018-07-28
GetGo Download Manager 6.2.1.3200 - Denial of Service (PoC)
2018-07-28
10-Strike LANState 8.8 - Local Buffer Overflow (SEH)
2018-07-28
10-Strike Bandwidth Monitor 3.7 - Local Buffer Overflow (SEH)
2018-07-28
D-link DAP-1360 - Path Traversal / Cross-Site Scripting
2018-07-28
Micro Focus Secure Messaging Gateway (SMG) < 471 - Remote Code Execution (Metasploit)
2018-07-28
Nagios Core 4.4.1 - Denial of Service
2018-07-28
Linux/x86 - Bind (4444/TCP) Shell (/bin/sh) + IPv6 Shellcode (100 bytes)
2018-07-28
Microsoft Windows - 'dnslint.exe' Drive-By Download
2018-07-28
Tenda Wireless N150 Router 5.07.50 - Cross-Site Request Forgery (Reboot Router)
2018-07-28
Windows Speech Recognition - Buffer Overflow (PoC)
2018-07-28
Davolink DVW 3200 Router - Password Disclosure
2018-07-28
Splinterware System Scheduler Pro 5.12 - Buffer Overflow (SEH)
2018-07-28
NUUO NVRmini - 'upgrade_handle.php' Remote Command Execution
2018-07-28
GeoVision GV-SNVR0811 - Directory Traversal
2018-07-28
TP-Link TL-WR840N - Denial of Service
2018-07-28
Touchpad / Trivum WebTouch Setup 2.53 build 13163 - Authentication Bypass
2018-07-28
MSVOD 10 - 'cid' SQL Injection
2018-07-28
Google Chrome - SwiftShader OpenGL Texture Bindings Reference Count Leak
2018-07-28
Google Chrome - Swiftshader Blitting Floating-Point Precision Errors
2018-07-28
Google Chrome - Swiftshader Texture Allocation Integer Overflow
2018-07-28
WordPress Responsive Thumbnail Slider Plugin - Arbitrary File Upload Exploit
2018-07-27
NetScanTools Basic Edition 2.5 - Hostname Denial of Service (PoC) Exploit
2018-07-27
Skia - Heap Overflow in SkScan::FillPath due to Precision Error Vulnerability
2018-07-27
Online Trade 1 - Information Disclosure Vulnerability
2018-07-27
QNap #QVR Client 5.1.1.30070 - Password Denial of Service #PoC Exploit
2018-07-27
Tracto #ERC20 Integer Overflow Vulnerability
2018-07-27
SoftNAS Cloud OS Command Injection Vulnerability
2018-07-27
Axis Network Camera Remote Command Execution Exploit
2018-07-27
FTPShell Client 5.22 Remote Buffer Overflow Exploit
2018-07-27
CleanMyMac3 Local Privilege Escalation Exploit
2018-07-27
Super CMS Blog Pro PHP Script 1.0 SQL Injection / Shell Upload Vulnerabilities
2018-07-27
WordPress Snazzy Maps 1.1.3 Cross Site Scripting Vulnerability
2018-07-27
WordPress Strong Testimonials 2.31.4 Cross Site Scripting Vulnerability
2018-07-27
WordPress Gwolle Guestbook 2.5.3 Cross Site Scripting Vulnerability
2018-07-27
Core FTP 2.0 - XRMD Denial of Service PoC Exploit
2018-07-26
Trivum Multiroom Setup Tool 8.76 - Cross-Site Request Forgery (Admin Bypass) Vulnerability
2018-07-26
Inteno IOPSYS - (Authenticated) Local Privilege Escalation Exploit
2018-07-26
GetGo Download Manager 6.2.1.3200 - Buffer Overflow Exploit
2018-07-25
10-Strike LANState 8.8 - Local Buffer Overflow (SEH) Exploit
2018-07-25
10-Strike Bandwidth Monitor 3.7 - Local Buffer Overflow (SEH) Exploit
2018-07-25
Sourcetree Remote Code Execution Exploit
2018-07-24
GeoVision GV-SNVR0811 Directory Traversal Vulnerability
2018-07-24
SMPlayer 18.6.0 Memory Corruption Exploit
2018-07-24
Micro Focus Secure Messaging Gateway (SMG) < 471 - Remote Code Execution Exploit
2018-07-24
Nagios Core 4.4.1 - Denial of Service Vulnerability
2018-07-24
D-link DAP-1360 - Path Traversal / Cross-Site Scripting Vulnerabilities
2018-07-24
NetworkManager #VPNC 1.2.4 Privilege Escalation Vulnerability
2018-07-24
Cisco Adaptive Security Appliance Path Traversal Exploit
2018-07-24
WordPress LimoLabs 1.0.0 Remote Password Disclosure Vulnerability
2018-07-24
Windows Speech Recognition - Buffer Overflow Exploit
2018-07-24
Splinterware System Scheduler Pro 5.12 - Buffer Overflow (SEH) Exploit
2018-07-24
Tenda #Wireless N150 Router 5.07.50 - Cross-Site Request Forgery (Reboot Router) Exploit
2018-07-24
Davolink DVW 3200 Router - Password Disclosure Exploit
2018-07-24
NUUO NVRmini - upgrade_handle.php Remote Command Execution Vulnerability
2018-07-24
Linux/x86 - Bind (4444/TCP) #Shell (/bin/sh) + IPv6 #Shellcode (100 bytes)
2018-07-24
TP-Link Archer C2 v3.0 UnAuthenticated Remote Code Execution Vulnerability
2018-07-23
Poppler v0.62.0 Memory Corruption Vulnerability
2018-07-23
Zoho #ManageEngine 13 (13790 build) XSS / File Read / File Deletion Vulnerabilities
2018-07-23
Microsoft DNS dnslint.exe Tool Forced Drive-By Download Vulnerability
2018-07-21
Oracle Fusion Middleware 12c (12.2.1.3.0) WebLogic SAML Issues Vulnerability
2018-07-21
Linux Driver National Instruments Remote Code Injection Vulnerability
2018-07-21
CMSMadeSimple 2.2.5 Authenticated Remote Command Execution Exploit
2018-07-20
Linux Kernel < 4.14.8 Sign Extension Local Privilege Escalation Exploit
2018-07-20
WordPress All In One Favicon 4.6 Plugin - Cross-Site Scripting Vulnerability
2018-07-20
MyBB New Threads Plugin 1.1 - Cross-Site Scripting Vulnerability
2018-07-20
FTP2FTP 1.0 - Arbitrary File Download Vulnerability
2018-07-20
Modx Revolution < 2.6.4 - Remote Code Execution Exploit
2018-07-20
Open-AudIT Community 2.1.1 - Cross-Site Scripting Vulnerability
2018-07-20
PrestaShop < 1.6.1.19 - AES CBC Privilege Escalation Exploit
2018-07-20
PrestaShop < 1.6.1.19 - BlowFish ECD Privilege Escalation Exploit
2018-07-20
Smart SMS & Email Manager 3.3 - contact_type_id SQL Injection Vulnerability
2018-07-20
JavaScript Core - Arbitrary Code Execution Exploit
2018-07-20
HomeMatic Zentrale CCU2 Unauthenticated Remote Code Execution Exploit
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Remote Root Vulnerability
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - File Manipulation Vulnerability
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Configuration Download Vulnerability
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Denial of Service Vulnerability
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Cross-Site Request Forgery Vulnerabil
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Restricted Shell Escape Vulnerability
2018-07-20
Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials Vulnerability
2018-07-20
Linux/x64 - Reverse (::1:1337/TCP) + IPv6 + Password (pwnd) Shellcode (115 bytes)
2018-07-20
QNAP QCenter change_passwd Command Execution Exploit
2018-07-20
Nanopool Claymore Dual Miner APIs Remote Code Execution Exploit
2018-07-20
TP-Link Archer C60 1.0 Code Execution Exploit
2018-07-20
Microsoft Windows .library-ms Information Disclosure Vulnerability
2018-07-20
macOS / iOS - JavaScript Injection Bug in OfficeImporter Exploit
2018-07-20
Linux Ubuntu - Other Users coredumps can be read via setgid Directory and killpriv Bypass Exploit
2018-07-20
Linux/ARM - Bind (/TCP) Shell Shellcode (104 bytes)
2018-07-20
Microsoft Enterprise Mode Site List Manager - XML External Entity Injection Vulnerability
2018-07-20
Wordpress Job Manager 4.1.0 Plugin - Cross-Site Scripting Vulnerability
2018-07-20
VelotiSmart WiFi B-380 Camera - Directory Traversal Vulnerability
2018-07-20
Fortify Software Security Center (SSC) 17.x/18.1 - XML External Entity Injection Vulnerability
2018-07-20
Linux Ubuntu Coredump Reading Access Bypass Vulnerability
2018-07-20
Microsoft Windows POP/MOV SS Local Privilege Elevation Exploit
2018-07-20
Apache Hadoop YARN ResourceManager Unauthenticated Command Execution Exploit
2018-07-20
ISS For Business 14.0.1400.2029 Blue Screen Of Death Vulnerability
2018-07-20
OpenConext-EngineBlock 5.7.3 Cross Site Scripting Vulnerability
2018-07-20
Grundig Smart [email protected] 3.0 - Cross-Site Request Forgery Vulnerability
2018-07-20
G DATA Total Security 25.4.0.3 - Activex Buffer Overflow Exploit
2018-07-20
phpMyAdmin Authenticated Remote Code Execution Exploit
2018-07-20
Apache CouchDB Arbitrary Command Execution Exploit
2018-07-20
Manage Engine Exchange Reporter Plus Unauthenticated Remote Code Execution Exploit
2018-07-20
Zeta Producer Desktop CMS 14.2.0 Code Execution / File Disclosure Vulnerabilities
2018-07-20
QNAP Qcenter Virtual Appliance 1.6.x Information Disclosure / Command Injection Vulnerabilities
2018-07-20
Chrome V8 KeyAccumulator Bug Exploit
2018-07-20
Microsoft Edge Chakra JIT - Type Confusion with Hoisted SetConcatStrMultiItemBE Instructions Exploit
2018-07-20
Microsoft Edge Chakra JIT - BoundFunction::NewInstance Out-of-Bounds Read Exploit
2018-07-20
Microsoft Edge Chakra JIT - Out-of-Bounds Reads/Writes Exploit
2018-07-20
Linux Kernel < 4.13.9 (Ubuntu 16.04/Fedora 27) - Local Privilege Escalation Exploit
2018-07-20
Monstra CMS Authenticated Arbitrary File Upload Exploit
2018-07-20
WAGO e!DISPLAY 7300T XSS / File Upload / Code Execution Vulnerabilities
2018-07-20
Dicoogle PACS 2.5.0 - Directory Traversal Vulnerability
2018-07-20
IBM QRadar SIEM - Unauthenticated Remote Code Execution Exploit
2018-07-20
Instagram-Clone Script 2.0 - Cross-Site Scripting Vulnerability
2018-07-20
Linux - BPF Sign Extension Local Privilege Escalation (Metasploit)
2018-07-19
MyBB New Threads Plugin 1.1 - Cross-Site Scripting
2018-07-19
WordPress Plugin All In One Favicon 4.6 - Cross-Site Scripting
2018-07-19
Modx Revolution < 2.6.4 - Remote Code Execution
2018-07-19
FTP2FTP 1.0 - Arbitrary File Download
2018-07-19
Open-AudIT Community 2.1.1 - Cross-Site Scripting
2018-07-19
HomeMatic Zentrale CCU2 - Remote Code Execution
2018-07-19
Smart SMS & Email Manager 3.3 - 'contact_type_id' SQL Injection
2018-07-19
JavaScript Core - Arbitrary Code Execution
2018-07-19
PrestaShop < 1.6.1.19 - 'BlowFish ECD' Privilege Escalation
2018-07-19
Exploits/page:


Page:
1-4-2 (www01)