2019-04-12 |
linux/x86 - add user (sshd/root) to /etc/passwd shellcode (149 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-04-12 |
cyberark epm 10.2.1.603 - security restrictions bypass
|
local exploit |
windows vulnerability |
2019-04-10 |
d-link di-524 v2.06ru - multiple cross-site scripting
|
webapps exploit |
hardware vulnerability |
2019-04-10 |
ftpshell server 6.83 - 'virtual path mapping' local buffer
|
local exploit |
windows vulnerability |
2019-04-10 |
ftpshell server 6.83 - 'account name to ban' local buffer
|
local exploit |
windows vulnerability |
2019-04-10 |
dell kace systems management appliance (k1000) 6.4.120756 - unauthenticated remote code execution
|
webapps exploit |
php vulnerability |
2019-04-09 |
microsoft windows - appx deployment service privilege escalation
|
local exploit |
windows vulnerability |
2019-04-09 |
apache axis 1.4 - remote code execution
|
remote exploit |
multiple vulnerability |
2019-04-09 |
ashop shopping cart software - 'bannedcustomers.php?blacklistitemid' sql injection
|
webapps exploit |
php vulnerability |
2019-04-09 |
linux/x64 - xanax decoder shellcode (127 bytes)
|
shellcode exploit |
generator vulnerability |
2019-04-09 |
linux/x64 - xanax encoder shellcode (127 bytes)
|
shellcode exploit |
generator vulnerability |
2019-04-09 |
tp-link tl-wr940n / tl-wr941nd - buffer overflow
|
remote exploit |
hardware vulnerability |
2019-02-27 |
php 7.2 - 'imagecolormatch()' out of band heap write
|
remote exploit |
php vulnerability |
2019-04-08 |
apache 2.4.17 < 2.4.38 - 'apache2ctl graceful' 'logrotate' local privilege escalation
|
local exploit |
linux vulnerability |
2019-04-08 |
qnap netatalk < 3.1.12 - authentication bypass
|
remote exploit |
multiple vulnerability |
2019-04-08 |
manageengine servicedesk plus 9.3 - user enumeration
|
webapps exploit |
java vulnerability |
2019-04-08 |
download accelerator plus (dap) 10.0.6.0 - seh buffer overflow
|
local exploit |
windows vulnerability |
2019-04-08 |
wordpress plugin limit login attempts reloaded 2.7.4 - login limit bypass
|
webapps exploit |
php vulnerability |
2019-04-08 |
tradebox cryptocurrency - 'symbol' sql injection
|
webapps exploit |
php vulnerability |
2019-04-08 |
river past cam do 3.7.6 - 'activation code' local buffer overflow
|
local exploit |
windows vulnerability |
2019-04-08 |
centos web panel 0.9.8.793 (free) / 0.9.8.753 (pro) - cross-site scripting
|
webapps exploit |
linux vulnerability |
2019-04-08 |
allplayer 7.4 - seh buffer overflow (unicode)
|
local exploit |
windows vulnerability |
2019-04-08 |
salicru -slc-20-cube3(5) - html injection
|
webapps exploit |
hardware vulnerability |
2019-04-08 |
shoretel connect onsite < 19.49.1500.0 - multiple vulnerabilities
|
webapps exploit |
php vulnerability |
2019-04-08 |
flexhex 2.71 - seh buffer overflow (unicode)
|
local exploit |
windows vulnerability |
2019-04-08 |
bolt cms 3.6.6 - cross-site request forgery / remote code execution
|
webapps exploit |
php vulnerability |
2019-04-08 |
jobgator - 'experience' sql injection
|
webapps exploit |
php vulnerability |
2019-04-05 |
wordpress core 5.0.0 - crop-image shell upload (metasploit)
|
remote exploit |
php vulnerability |
2019-04-05 |
wordpress plugin contact form maker 1.13.1 - cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-04-05 |
aida64 extreme 5.99.4900 - 'logging' seh buffer overflow
|
local exploit |
windows vulnerability |
2019-04-05 |
manage engine servicedesk plus 10.0 - privilege escalation
|
webapps exploit |
jsp vulnerability |
2019-04-04 |
freesms 2.1.2 - sql injection (authentication bypass)
|
webapps exploit |
php vulnerability |
2019-04-04 |
aida64 engineer 5.99.4900 - 'load from file' field buffer overflow (seh)
|
local exploit |
windows vulnerability |
2019-04-04 |
magic iso maker 5.5(build 281) - 'serial code' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-04-03 |
cisco rv320 and rv325 - unauthenticated remote code execution (metasploit)
|
remote exploit |
hardware vulnerability |
2019-04-03 |
google chrome 72.0.3626.96 / 74.0.3702.0 - 'jspromise::triggerpromisereactions' type confusion
|
remote exploit |
multiple vulnerability |
2019-04-03 |
google chrome 73.0.3683.39 / chromium 74.0.3712.0 - 'readablestream' internal object leak type confusion
|
dos exploit |
multiple vulnerability |
2019-04-03 |
google chrome 72.0.3626.81 - 'v8trustedtypepolicyoptions::toimpl' type confusion
|
dos exploit |
multiple vulnerability |
2019-04-03 |
webkitgtk+ - 'threadedcompositor' race condition
|
dos exploit |
multiple vulnerability |
2019-04-03 |
webkit javascriptcore - codeblock dangling watchpoints use-after-free
|
dos exploit |
multiple vulnerability |
2019-04-03 |
webkit javascriptcore - out-of-bounds access in ftl jit due to licm moving array access before the bounds check
|
dos exploit |
multiple vulnerability |
2019-04-03 |
ios < 12.2 / macos < 10.14.4 xnu - pidversion increment during execve is unsafe
|
dos exploit |
multiple vulnerability |
2019-04-03 |
webkit javascriptcore - 'createregexpmatchesarray' type confusion
|
dos exploit |
multiple vulnerability |
2019-04-03 |
spidermonkey - ionmonkey compiled code fails to update inferred property types (type confusion)
|
dos exploit |
multiple vulnerability |
2019-04-03 |
phreebooks erp 5.2.3 - remote command execution
|
remote exploit |
python vulnerability |
2019-04-03 |
phreebooks erp 5.2.3 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2019-04-03 |
ashop shopping cart software - sql injection
|
webapps exploit |
php vulnerability |
2019-04-03 |
clinic pro v4 - 'month' sql injection
|
webapps exploit |
php vulnerability |
2019-04-03 |
teemip ipam < 2.4.0 - 'new_config' command injection (metasploit)
|
remote exploit |
php vulnerability |
2019-04-03 |
iscripts reservelogic - sql injection
|
webapps exploit |
php vulnerability |