2019-07-30 |
imessage - memory corruption when decoding nsknownkeysdictionary1
|
dos exploit |
multiple vulnerability |
2019-07-30 |
imessage - nsarray deserialization can invoke subclass that does not retain references
|
dos exploit |
multiple vulnerability |
2019-07-30 |
macos / ios javascriptcore - jsvalue use-after-free in valueprofiles
|
dos exploit |
multiple vulnerability |
2019-07-30 |
macos / ios javascriptcore - loop-invariant code motion (licm) leaves object property access unguarded
|
dos exploit |
multiple vulnerability |
2019-07-30 |
macos / ios nskeyedunarchiver - use-after-free of objc objects when unarchiving oitsuintdictionary instances
|
dos exploit |
multiple vulnerability |
2019-07-30 |
amcrest cameras 2.520.ac00.18.r - unauthenticated audio streaming
|
webapps exploit |
hardware vulnerability |
2019-07-29 |
wordpress plugin database backup < 5.2 - remote code execution (metasploit)
|
remote exploit |
php vulnerability |
2019-07-29 |
schneider electric pelco endura net55xx encoder - authentication bypass (metasploit)
|
remote exploit |
unix vulnerability |
2019-07-29 |
gigtodo 1.3 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-07-29 |
wordpress theme real estate 2.8.9 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-07-29 |
linux/x86 - not +shift-n+ xor-n encoded /bin/sh shellcode (168 bytes)
|
shellcode exploit |
linux_x86-64 vulnerability |
2019-07-29 |
wordpress plugin simple membership 3.8.4 - cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-07-26 |
ahsay backup 7.x - 8.1.1.50 - xml external entity injection
|
webapps exploit |
jsp vulnerability |
2019-07-26 |
ahsay backup 7.x - 8.1.1.50 - authenticated arbitrary file upload / remote code execution (metasploit)
|
webapps exploit |
jsp vulnerability |
2019-07-26 |
ahsay backup 7.x - 8.1.1.50 - authenticated arbitrary file upload / remote code execution
|
webapps exploit |
jsp vulnerability |
2019-07-26 |
pdfresurrect 0.15 - buffer overflow
|
dos exploit |
linux vulnerability |
2019-07-26 |
moodle filepicker 3.5.2 - server side request forgery
|
webapps exploit |
php vulnerability |
2019-07-26 |
microsoft windows 7 build 7601 (x86) - local privilege escalation
|
local exploit |
windows_x86 vulnerability |
2018-12-30 |
deepin linux 15 - 'lastore-daemon' local privilege escalation
|
local exploit |
multiple vulnerability |
2019-01-12 |
asan/suid - local privilege escalation
|
local exploit |
multiple vulnerability |
2019-01-13 |
serv-u ftp server < 15.1.7 - local privilege escalation (2)
|
local exploit |
multiple vulnerability |
2019-01-13 |
s-nail < 14.8.16 - local privilege escalation
|
local exploit |
multiple vulnerability |
2018-12-30 |
vmware workstation/player < 12.5.5 - local privilege escalation
|
local exploit |
multiple vulnerability |
2018-12-29 |
linux kernel 4.4.0-21 < 4.4.0-51 (ubuntu 14.04/16.04 x64) - 'af_packet' race condition privilege escalation
|
local exploit |
windows_x86-64 vulnerability |
2018-12-29 |
linux kernel < 4.4.0/ < 4.8.0 (ubuntu 14.04/16.04 / linux mint 17/18 / zorin) - local privilege escalation (kaslr / smep)
|
local exploit |
linux vulnerability |
2018-12-29 |
linux kernel 4.8.0-34 < 4.8.0-45 (ubuntu / linux mint) - packet socket local privilege escalation
|
local exploit |
linux vulnerability |
2019-01-04 |
linux kernel 4.15.x < 4.19.2 - 'map_write() cap_sys_admin' local privilege escalation (polkit method)
|
local exploit |
linux vulnerability |
2018-11-21 |
linux kernel 4.15.x < 4.19.2 - 'map_write() cap_sys_admin' local privilege escalation (ldpreload method)
|
local exploit |
linux vulnerability |
2019-01-04 |
linux kernel 4.15.x < 4.19.2 - 'map_write() cap_sys_admin' local privilege escalation (dbus method)
|
local exploit |
linux vulnerability |
2018-11-21 |
linux kernel 4.15.x < 4.19.2 - 'map_write() cap_sys_admin' local privilege escalation (cron method)
|
local exploit |
linux vulnerability |
2019-07-24 |
linux kernel 4.10 < 5.1.17 - 'ptrace_traceme' pkexec local privilege escalation
|
local exploit |
linux vulnerability |
2019-07-25 |
webkit - universal cross-site scripting due to synchronous page loads
|
dos exploit |
multiple vulnerability |
2019-07-25 |
mybb < 1.8.21 - remote code execution
|
webapps exploit |
php vulnerability |
2019-07-25 |
ovidentia 8.4.3 - sql injection
|
webapps exploit |
php vulnerability |
2019-07-25 |
ovidentia 8.4.3 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-07-24 |
apple imessage - digitaltouch tap message processing out-of-bounds read
|
dos exploit |
watchos vulnerability |
2019-07-24 |
android 7 < 9 - remote code execution
|
remote exploit |
android vulnerability |
2019-07-23 |
bluekeep - technical analysis (potential path for exploitation)
|
papers exploit |
windows vulnerability |
2019-07-24 |
trend micro deep discovery inspector ids - security bypass
|
remote exploit |
multiple vulnerability |
2019-07-24 |
wordpress plugin hybrid composer 1.4.6 - improper access restrictions
|
webapps exploit |
php vulnerability |
2019-07-24 |
cisco wireless controller 3.6.10e - cross-site request forgery
|
webapps exploit |
hardware vulnerability |
2019-07-24 |
novismart cms - sql injection
|
webapps exploit |
php vulnerability |
2019-07-23 |
linux/x86_64 - wget linux enumeration script shellcode (155 bytes)
|
shellcode exploit |
linux_x86-64 vulnerability |
2019-07-22 |
axway securetransport 5 - unauthenticated xml injection
|
webapps exploit |
linux vulnerability |
2019-07-22 |
comtrend-ar-5310 - restricted shell escape
|
local exploit |
linux vulnerability |
2019-07-22 |
bacnet stack 0.8.6 - denial of service
|
dos exploit |
linux vulnerability |
2019-07-19 |
docker - container escape
|
local exploit |
linux vulnerability |
2019-07-19 |
redcap < 9.1.2 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-07-19 |
web ofisi firma 13 - 'oz' sql injection
|
webapps exploit |
linux vulnerability |
2019-07-19 |
web ofisi rent a car 3 - 'klima' sql injection
|
webapps exploit |
linux vulnerability |