2019-05-03 |
linux/x86 - reverse (127.0.0.1:8080/tcp) shell (/bin/sh) + generator shellcode (91 bytes)
|
shellcode exploit |
generator vulnerability |
2019-05-03 |
zotonic < 0.47.0 mod_admin - cross-site scripting
|
webapps exploit |
multiple vulnerability |
2019-05-03 |
instagram auto follow - authentication bypass
|
webapps exploit |
php vulnerability |
2019-05-03 |
crestron am/barco wepresent wipg/extron sharelink/teq av it/sharp pn-l703wa/optoma wps-pro/blackbox hd wps/infocus liteshow - remote command injection
|
webapps exploit |
hardware vulnerability |
2019-05-02 |
ruby on rails - doubletap development mode secret_key_base remote code execution (metasploit)
|
remote exploit |
linux vulnerability |
2019-05-01 |
centos web panel 0.9.8.793 (free) / v0.9.8.753 (pro) / 0.9.8.807 (pro) - domain field (add dns zone) cross-site scripting
|
webapps exploit |
linux vulnerability |
2019-04-30 |
pimcore < 5.71 - unserialize remote code execution (metasploit)
|
remote exploit |
php vulnerability |
2019-04-30 |
ais logistics esel-server - unauthenticated sql injection remote code execution (metasploit)
|
remote exploit |
windows vulnerability |
2019-04-30 |
linux - missing locking between elf coredump code and userfaultfd vma modification
|
dos exploit |
linux vulnerability |
2019-04-30 |
oracle weblogic 10.3.6.0.0 / 12.1.3.0.0 - remote code execution
|
webapps exploit |
windows vulnerability |
2019-04-30 |
deviceviewer 3.12.0.1 - 'user' seh overflow
|
local exploit |
windows vulnerability |
2019-04-30 |
spotauditor 5.2.6 - 'name' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-30 |
agent tesla botnet - information disclosure
|
webapps exploit |
php vulnerability |
2019-04-30 |
hyvikk fleet manager - shell upload
|
webapps exploit |
php vulnerability |
2019-04-30 |
moodle 3.6.3 - 'install plugin' remote command execution (metasploit)
|
remote exploit |
php vulnerability |
2019-04-30 |
joomla! component jifile 2.3.1 - arbitrary file download
|
webapps exploit |
php vulnerability |
2019-04-30 |
domoticz 4.10577 - unauthenticated remote command execution
|
webapps exploit |
multiple vulnerability |
2019-04-30 |
spring cloud config 2.1.x - path traversal (metasploit)
|
webapps exploit |
java vulnerability |
2019-04-30 |
humhub 1.3.12 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-04-30 |
intelbras iwr 3000n 1.5.0 - cross-site request forgery
|
webapps exploit |
hardware vulnerability |
2019-04-30 |
joomla! component ari quiz 3.7.4 - sql injection
|
webapps exploit |
php vulnerability |
2019-04-30 |
intelbras iwr 3000n - denial of service (remote reboot)
|
dos exploit |
hardware vulnerability |
2019-04-30 |
veeam one reporter 9.5.0.3201 - persistent cross-site scripting (add/edit widget)
|
webapps exploit |
ashx vulnerability |
2019-04-30 |
veeam one reporter 9.5.0.3201 - persistent cross-site scripting
|
webapps exploit |
ashx vulnerability |
2019-04-30 |
veeam one reporter 9.5.0.3201 - multiple cross-site request forgery
|
webapps exploit |
ashx vulnerability |
2019-04-30 |
netgear dgn2200 / dgnd3700 - admin password disclosure
|
webapps exploit |
hardware vulnerability |
2019-04-30 |
freefloat ftp server 1.0 - 'stor' remote buffer overflow
|
remote exploit |
windows vulnerability |
2019-04-30 |
freefloat ftp server 1.0 - 'size' remote buffer overflow
|
remote exploit |
windows vulnerability |
2019-04-30 |
[turkish] tunelleme teknikleri ile firewall atlatmak
|
papers exploit |
multiple vulnerability |
2019-04-26 |
systemd - dynamicuser can create setuid binaries when assisted by another process
|
dos exploit |
linux vulnerability |
2019-04-26 |
apache pluto 3.0.0 / 3.0.1 - persistent cross-site scripting
|
webapps exploit |
java vulnerability |
2019-04-26 |
nsauditor 3.1.2.0 - 'name' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-26 |
nsauditor 3.1.2.0 - 'community' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-25 |
rarlab winrar 5.61 - ace format input validation remote code execution (metasploit)
|
local exploit |
windows vulnerability |
2019-04-25 |
lavavo cd ripper 4.20 - 'license activation name' buffer overflow (seh)
|
local exploit |
windows vulnerability |
2019-04-25 |
anming mp3 cd burner 2.0 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-25 |
osticket 1.11 - cross-site scripting / local file inclusion
|
webapps exploit |
php vulnerability |
2019-04-25 |
jiofi 4g m2s 1.0.2 - denial of service
|
dos exploit |
hardware vulnerability |
2019-04-25 |
jiofi 4g m2s 1.0.2 - 'mask' cross-site scripting
|
webapps exploit |
hardware vulnerability |
2019-04-25 |
backup key recovery 2.2.4 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-25 |
heidisql 10.1.0.5464 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-24 |
google chrome 72.0.3626.121 / 74.0.3725.0 - 'newfixeddoublearray' integer overflow
|
remote exploit |
multiple vulnerability |
2019-04-24 |
virtualbox 6.0.4 r128413 - com rpc interface code injection host privilege escalation
|
local exploit |
windows vulnerability |
2019-04-24 |
linux/x86 - rabbit encoder shellcode (200 bytes)
|
shellcode exploit |
generator vulnerability |
2019-04-23 |
linux - 'page->_refcount' overflow via fuse
|
dos exploit |
linux vulnerability |
2019-04-23 |
linux - missing locking in siemens r3964 line discipline race condition
|
dos exploit |
linux vulnerability |
2019-04-23 |
systemd - lack of seat verification in pam module permits spoofing active session to polkit
|
dos exploit |
linux vulnerability |
2019-04-23 |
ross video dashboard 8.5.1 - insecure permissions
|
local exploit |
windows vulnerability |
2019-04-22 |
ulicms 2019.2 / 2019.1 - multiple cross-site scripting
|
webapps exploit |
php vulnerability |
2019-04-22 |
manageengine applications manager 14.0 - authentication bypass / remote command execution (metasploit)
|
remote exploit |
multiple vulnerability |