Exploits

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers

共24443Exploits
日期 标题 类型 平台 作者
2023-07-03

TP-Link TL-WR940N V4 – Buffer OverFlow

  • dos
  • hardware
  • Amirhossein Bahramizadeh
    2023-07-03

    WP AutoComplete 1.0.4 – Unauthenticated SQLi

  • webapps
  • php
  • matitanium
    2023-07-03

    GZ Forum Script 1.8 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • CraCkEr
    2023-07-03

    Time Slot Booking Calendar 1.8 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • CraCkEr
    2023-07-03

    spip v4.1.10 – Spoofing Admin account

  • webapps
  • php
  • nu11secur1ty
    2023-07-03

    D-Link DAP-1325 – Broken Access Control

  • webapps
  • hardware
  • ieduardogoncalves
    2023-07-03

    Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 32-bit – Remote Code Execution (RCE)

  • remote
  • multiple
  • nu11secur1ty
    2023-07-03

    WebsiteBaker v2.13.3 – Directory Traversal

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-07-03

    WebsiteBaker v2.13.3 – Stored XSS

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-07-03

    Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 64-bit – Remote Code Execution (RCE)

  • remote
  • multiple
  • nu11secur1ty
    2023-07-03

    POS Codekop v2.0 – Authenticated Remote Code Execution (RCE)

  • webapps
  • php
  • yuyudhn
    2023-06-26

    Xenforo Version 2.2.13 – Authenticated Stored XSS

  • webapps
  • php
  • Furkan Karaarslan
    2023-06-26

    Azure Apache Ambari 2302250400 – Spoofing

  • remote
  • multiple
  • Amirhossein Bahramizadeh
    2023-06-26

    PrestaShop Winbiz Payment module – Improper Limitation of a Pathname to a Restricted Directory

  • webapps
  • php
  • Amirhossein Bahramizadeh
    2023-06-26

    Windows 11 22h2 – Kernel Privilege Elevation

  • local
  • windows
  • Amirhossein Bahramizadeh
    2023-06-26

    Microsoft SharePoint Enterprise Server 2016 – Spoofing

  • webapps
  • multiple
  • Amirhossein Bahramizadeh
    2023-06-23

    MCL-Net 4.3.5.8788 – Information Disclosure

  • webapps
  • hardware
  • Victor A. Morales
    2023-06-23

    Bludit < 3.13.1 Backup Plugin - Arbitrary File Download (Authenticated)

  • webapps
  • php
  • Antonio Cuomo
    2023-06-23

    NCH Express Invoice – Clear Text Password Storage and Account Takeover

  • local
  • windows
  • Tejas Pingulkar
    2023-06-22

    Smart Office Web 20.28 – Remote Information Disclosure (Unauthenticated)

  • webapps
  • aspx
  • Tejas Pingulkar
    2023-06-22

    Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit – Spoofing

  • remote
  • multiple
  • nu11secur1ty
    2023-06-21

    HiSecOS 04.0.01 – Privilege Escalation

  • webapps
  • hardware
  • dreizehnutters
    2023-06-20

    Super Socializer 7.13.52 – Reflected XSS

  • webapps
  • php
  • Amirhossein Bahramizadeh
    2023-06-20

    WP Sticky Social 1.0.1 – Cross-Site Request Forgery to Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • Amirhossein Bahramizadeh
    2023-06-20

    SPIP v4.2.0 – Remote Code Execution (Unauthenticated)

  • webapps
  • php
  • nuts7
    2023-06-20

    Nokia ASIKA 7.13.52 – Hard-coded private key disclosure

  • remote
  • hardware
  • Amirhossein Bahramizadeh
    2023-06-19

    WordPress Theme Medic v1.0.0 – Weak Password Recovery Mechanism for Forgotten Password

  • webapps
  • php
  • Amirhossein Bahramizadeh
    2023-06-19

    Symantec SiteMinder WebAgent v12.52 – Cross-site scripting (XSS)

  • webapps
  • hardware
  • Harshit Joshi
    2023-06-19

    Diafan CMS 6.0 – Reflected Cross-Site Scripting (XSS)

  • webapps
  • php
  • tmrswrr
    2023-06-19

    Student Study Center Management System v1.0 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • VIVEK CHOUDHARY
    2023-06-19

    Jobpilot v2.61 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-06-19

    Groomify v1.0 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-06-19

    The Shop v2.5 – SQL Injection

  • webapps
  • php
  • Ahmet Ümit BAYRAM
    2023-06-15

    Online Art gallery project 1.0 – Arbitrary File Upload (Unauthenticated)

  • webapps
  • php
  • Ramil Mustafayev
    2023-06-14

    projectSend r1605 – CSV injection

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-06-14

    Anevia Flamingo XL 3.2.9 – Remote Root Jailbreak

  • remote
  • hardware
  • LiquidWorm
    2023-06-14

    PyLoad 0.5.0 – Pre-auth Remote Code Execution (RCE)

  • webapps
  • Python
  • Gabriel Lima
    2023-06-14

    Anevia Flamingo XL 3.6.20 – Authenticated Root Remote Code Execution

  • remote
  • hardware
  • LiquidWorm
    2023-06-14

    Anevia Flamingo XS 3.6.5 – Authenticated Root Remote Code Execution

  • remote
  • hardware
  • LiquidWorm
    2023-06-14

    Textpattern CMS v4.8.8 – Stored Cross-Site Scripting (XSS) (Authenticated)

  • webapps
  • php
  • tmrswrr
    2023-06-14

    Online Thesis Archiving System v1.0 – Multiple-SQLi

  • webapps
  • php
  • nu11secur1ty
    2023-06-14

    Xoops CMS 2.5.10 – Stored Cross-Site Scripting (XSS) (Authenticated)

  • webapps
  • php
  • tmrswrr
    2023-06-14

    Monstra 3.0.4 – Stored Cross-Site Scripting (XSS)

  • webapps
  • php
  • tmrswrr
    2023-06-14

    projectSend r1605 – Stored XSS

  • webapps
  • php
  • Mirabbas Ağalarov
    2023-06-13

    Sales Tracker Management System v1.0 – Multiple Vulnerabilities

  • webapps
  • php
  • AFFAN AHMED
    2023-06-13

    Teachers Record Management System 1.0 – File Upload Type Validation

  • webapps
  • php
  • AFFAN AHMED
    2023-06-13

    Online Examination System Project 1.0 – Cross-site request forgery (CSRF)

  • webapps
  • php
  • Ramil Mustafayev
    2023-06-09

    WordPress Theme Workreap 2.2.2 – Unauthenticated Upload Leading to Remote Code Execution

  • webapps
  • php
  • Mohammad Hossein Khanaki
    2023-06-09

    Thruk Monitoring Web Interface 3.06 – Path Traversal

  • webapps
  • perl
  • Galoget Latorre
    2023-06-07

    USB Flash Drives Control 4.1.0.0 – Unquoted Service Path

  • local
  • windows
  • Jeffrey Bencteux