2019-03-13 |
elfinder php connector < 2.1.48 - 'exiftran' command injection (metasploit)
|
remote exploit |
php vulnerability |
2019-03-13 |
pfsense 2.4.4-p1 (haproxy package 0.59_14) - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2019-03-13 |
wordpress plugin gracemedia media player 1.0 - local file inclusion
|
webapps exploit |
php vulnerability |
2019-03-13 |
microsoft windows mshtml engine - 'edit' remote code execution
|
local exploit |
windows vulnerability |
2019-03-13 |
core ftp server ftp / sftp server v2 build 674 - 'size' directory traversal
|
dos exploit |
windows vulnerability |
2019-03-13 |
core ftp server ftp / sftp server v2 build 674 - 'mdtm' directory traversal
|
dos exploit |
windows vulnerability |
2019-03-13 |
microsoft windows - '.reg' file / dialog box message spoofing
|
dos exploit |
windows vulnerability |
2019-03-12 |
core ftp 2.0 build 653 - 'pbsz' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-03-12 |
piluscart 1.4.1 - cross-site request forgery (add admin)
|
webapps exploit |
php vulnerability |
2019-03-11 |
netsetman 4.7.1 - local buffer overflow (seh unicode)
|
local exploit |
windows vulnerability |
2019-03-11 |
linux kernel 4.4 (ubuntu 16.04) - 'snd_timer_user_ccallback()' kernel pointer leak
|
dos exploit |
linux vulnerability |
2019-03-11 |
flexpaper php publish service 2.3.6 - remote code execution
|
webapps exploit |
php vulnerability |
2019-03-11 |
prtg network monitor 18.2.38 - (authenticated) remote code execution
|
webapps exploit |
windows vulnerability |
2019-03-11 |
openkm 6.3.2 < 6.3.7 - remote command execution (metasploit)
|
webapps exploit |
jsp vulnerability |
2019-03-11 |
liferay ce portal < 7.1.2 ga3 - remote command execution (metasploit)
|
webapps exploit |
multiple vulnerability |
2019-03-11 |
linux/x86 - execve(/bin/sh) + polymorphic shellcode (63 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-03-11 |
linux/x86 - mmx-xor encoder / decoder execve(/bin/sh) shellcode (44 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-03-08 |
sony playstation 4 (ps4) < 6.20 - webkit code execution (poc)
|
local exploit |
hardware vulnerability |
2019-03-08 |
flexpaper <= 2.3.6 remote code execution whitepaper
|
papers exploit |
php vulnerability |
2019-03-08 |
directadmin 1.55 - 'cmd_account_admin' cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-03-08 |
linux/x86 - insertion encoder / decoder execve(/bin/sh) shellcode (88 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-03-08 |
mcafee epo 5.9.1 - registered executable local access bypass
|
webapps exploit |
windows vulnerability |
2019-03-08 |
orientdb 3.0.17 ga community edition - cross-site request forgery / cross-site scripting
|
webapps exploit |
multiple vulnerability |
2019-01-11 |
openssh scp client - write arbitrary files
|
remote exploit |
multiple vulnerability |
2019-03-05 |
file transfer skills in the red team post penetration test
|
papers exploit |
multiple vulnerability |
2018-03-28 |
teamcity < 9.0.2 - disabled registration bypass
|
remote exploit |
multiple vulnerability |
2018-10-25 |
oracle weblogic server - deserialization remote command execution (patch bypass)
|
remote exploit |
multiple vulnerability |
2018-12-12 |
phpbb 3.2.3 - remote code execution
|
webapps exploit |
php vulnerability |
2019-03-01 |
wordpress core 5.0 - remote code execution
|
webapps exploit |
php vulnerability |
2019-03-07 |
drupal < 8.5.11 / < 8.6.10 - restful web services unserialize() remote command execution (metasploit)
|
remote exploit |
php vulnerability |
2019-03-07 |
imperva securesphere 13.x - 'pws' command injection (metasploit)
|
remote exploit |
linux vulnerability |
2019-03-07 |
freebsd - intel sysret privilege escalation (metasploit)
|
local exploit |
freebsd_x86-64 vulnerability |
2019-03-07 |
anyburn 4.3 x86 - 'copy disc to image file' buffer overflow (unicode) (seh)
|
local exploit |
windows_x86 vulnerability |
2019-03-07 |
qnap ts-431 qts < 4.2.2 - remote command execution (metasploit)
|
remote exploit |
hardware vulnerability |
2019-03-07 |
kados r10 greenbee - multiple sql injection
|
webapps exploit |
php vulnerability |
2019-03-06 |
android - getpidcon() usage in hardware binder servicemanager permits acl bypass
|
dos exploit |
android vulnerability |
2019-03-06 |
android - binder use-after-free via racy initialization of ->allow_user_free
|
dos exploit |
android vulnerability |
2019-03-06 |
linux < 4.20.14 - virtual address 0 is mappable via privileged write() to /proc/*/mem
|
dos exploit |
linux vulnerability |
2016-12-20 |
java debug wire protocol (jdwp) - remote code execution
|
remote exploit |
java vulnerability |
2019-03-05 |
opendocman 1.3.4 - 'search.php where' sql injection
|
webapps exploit |
php vulnerability |
2019-03-05 |
linux/x86 - xor encoder / decoder execve(/bin/sh) shellcode (45 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-03-04 |
fiberhome an5506-04-f rp2669 - persistent cross-site scripting
|
webapps exploit |
hardware vulnerability |
2019-03-04 |
wordpress plugin cerber security, antispam & malware scan 8.0 - multiple bypass vulnerabilities
|
webapps exploit |
php vulnerability |
2019-03-04 |
craft cms 3.1.12 pro - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-03-04 |
bolt cms 3.6.4 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-03-04 |
marcomcentral fusionpro vdp creator < 10.0 - directory traversal
|
webapps exploit |
windows vulnerability |
2019-03-04 |
linux/x86 - not encoder / decoder - execve(/bin/sh) shellcode (44 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-03-04 |
linux/x64 - kill all processes shellcode (11 bytes)
|
shellcode exploit |
linux_x86-64 vulnerability |
2019-03-04 |
linux/x86 - flush iptables rules (iptables -f) shellcode (43 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2019-03-04 |
raisecom xpon iscomht803g-u_2.0.0_140521_r4.1.47.002 - remote code execution
|
webapps exploit |
hardware vulnerability |