Commit graph

89 commits

Author SHA1 Message Date
Offensive Security
31a21bb68d DB: 2016-09-03
14 new exploits

Too many to list!
2016-09-03 05:08:42 +00:00
Offensive Security
3a2154afbd DB: 2016-09-01
15 new exploits

WordPress CYSTEME Finder Plugin 1.3 - Arbitrary File Dislcosure/Arbitrary File Upload
PHP 5.0.0 - snmpwalkoid() Local Denial of Service
PHP 5.0.0 - fbird_[p]connect() Local Denial of Service
PHP 5.0.0 - snmpwalk() Local Denial of Service
PHP 5.0.0 - snmprealwalk() Local Denial of Service
PHP 5.0.0 - snmpset() Local Denial of Service
PHP 7.0 - AppendIterator::append Local Denial of Service
ZKTeco ZKTime.Net 3.0.1.6 - Insecure File Permissions Privilege Escalation
ZKTeco ZKAccess Professional 3.5.3 - Insecure File Permissions Privilege Escalation
ZKTeco ZKBioSecurity 3.0 - Hardcoded Credentials Remote SYSTEM Code Execution
ZKTeco ZKBioSecurity 3.0 - (Add Superadmin) Cross-Site Request Forgery
ZKTeco ZKBioSecurity 3.0 - Directory Traversal
ZKTeco ZKBioSecurity 3.0 - (visLogin.jsp) Local Authorization Bypass
ZKTeco ZKAccess Security System 5.3.1 - Persistent Cross-Site Scripting
PHP 7.0 - JsonSerializable::jsonSerialize json_encode Local Denial of Service
2016-09-01 05:08:40 +00:00
Offensive Security
24a0e1921a DB: 2016-08-16 2016-08-16 20:39:41 +00:00
Offensive Security
832f9cf8b5 DB: 2016-08-11
10 new exploits

Nagios Network Analyzer 2.2.1 - Multiple CSRF
Linux/x86 - zsh TCP Bind Shell Port 9090 (96 bytes)
Linux/x86 - zsh Reverse TCP Shellcode port 9090 (80 bytes)
Microsoft Office Word 2007_2010_2013_2016 - Out-of-Bounds Read Remote Code Execution (MS16-099)
vBulletin 5.2.2 - Preauth Server Side Request Forgery (SSRF)
EyeLock Myris 3.3.2 - SDK Service Unquoted Service Path Privilege Escalation
EyeLock nano NXT 3.5 - Local File Disclosure
EyeLock nano NXT 3.5 - Remote Root Exploit
WebNMS Framework Server 5.2 and 5.2 SP1 - Multiple Vulnerabilities
SAP SAPCAR - Multiple Vulnerabilities
2016-08-11 05:08:59 +00:00
Offensive Security
9821fd03b3 DB: 2016-08-09
4 new exploits

VMware 5.5.1 COM Object Arbitrary Partition Table Delete Exploit
VMware 5.5.1 - COM Object Arbitrary Partition Table Delete Exploit

VMware Inc 6.0.0 CreateProcess Remote Code Execution Exploit
VMware Inc 6.0.0 - CreateProcess Remote Code Execution Exploit

VMware Workstation (hcmon.sys 6.0.0.45731) Local DoS
VMware Workstation - (hcmon.sys 6.0.0.45731) Local DoS

VMware COM API ActiveX Remote Buffer Overflow PoC
VMware - COM API ActiveX Remote Buffer Overflow PoC

RoundCube Webmail 0.2-3 beta Code Execution
RoundCube Webmail 0.2-3 beta - Code Execution

VMWare Fusion 2.0.5 - vmx86 kext Kernel Local Root Exploit
VMware Fusion 2.0.5 - vmx86 kext Kernel Local Root Exploit

VMWare Fusion 2.0.5 vmx86 kext Local PoC
VMware Fusion 2.0.5 - vmx86 kext Local PoC

VMware Remote Console e.x.p build-158248 - format string
VMware Remote Console e.x.p build-158248 - Format String

VMware Workstation 7.1.1 VMkbd.sys Denial of Service Exploit
VMware Workstation 7.1.1 - VMkbd.sys Denial of Service Exploit

VMware Tools update OS Command Injection
VMware Tools - Update OS Command Injection

VMware Update Manager Directory Traversal
VMware - Update Manager Directory Traversal

VMWare 1.0.1 - Buffer Overflow
VMware 1.0.1 - Buffer Overflow

VMWare GSX Server 2.0 - Authentication Server Buffer Overflow
VMware GSX Server 2.0 - Authentication Server Buffer Overflow

VMware vCenter Chargeback Manager ImageUploadServlet Arbitrary File Upload
VMware vCenter - Chargeback Manager ImageUploadServlet Arbitrary File Upload

VMware Player 1.0.1 Build 19317 Malformed VMX File Denial of Service
VMware Player 1.0.1 Build 19317 - Malformed VMX File Denial of Service

VMware 5.5.1 Partition Table Deletion Denial of Service
VMware 5.5.1 - Partition Table Deletion Denial of Service

VMware Server 2.0.1_ESXi Server 3.5 - Directory Traversal
VMware Server 2.0.1 / ESXi Server 3.5 - Directory Traversal

VMware View 3.1.x URL Processing Cross-Site Scripting
VMware View 3.1.x - URL Processing Cross-Site Scripting

PHPCollab 2.5 - SQL Injection
PHPCollab 2.5 - (deletetopics.php) SQL Injection

phpCollab 2.5 Database Backup Information Disclosure
phpCollab 2.5 - Database Backup Information Disclosure

phpCollab 2.5 uploadfile.php Crafted Request Arbitrary Non-PHP File Upload
phpCollab 2.5 - uploadfile.php Crafted Request Arbitrary Non-PHP File Upload

phpCollab 2.5 Unauthenticated Direct Request Multiple Protected Page Access
phpCollab 2.5 - Unauthenticated Direct Request Multiple Protected Page Access

Wireshark 1.12.0 to 1.12.12 - NDS Dissector Denial of Service
Wireshark 1.12.0 - 1.12.12 - NDS Dissector Denial of Service
Wireshark 2.0.0 to 2.0.4 - CORBA IDL Dissectors Denial of Service
Wireshark 2.0.0 to 2.0.4_ 1.12.0 to 1.12.12 - PacketBB Dissector Denial of Service
Wireshark 2.0.0 to 2.0.4_ 1.12.0 to 1.12.12 - WSP Dissector Denial of Service
Wireshark 2.0.0 to 2.0.4_ 1.12.0 to 1.12.12 - RLC Dissector Denial of Service
Wireshark 2.0.0 - 2.0.4 - CORBA IDL Dissectors Denial of Service
Wireshark 2.0.0 - 2.0.4 / 1.12.0 - 1.12.12 - PacketBB Dissector Denial of Service
Wireshark 2.0.0 - 2.0.4 / 1.12.0 - 1.12.12 - WSP Dissector Denial of Service
Wireshark 2.0.0 - 2.0.4 / 1.12.0 - 1.12.12 - RLC Dissector Denial of Service
Navis WebAccess - SQL Injection
phpCollab CMS 2.5 - (emailusers.php) SQL Injection
Microsoft Windows Group Policy - Privilege Escalation (MS16-072)
WordPress Add From Server Plugin < 3.3.2 - (File Upload) CSRF
2016-08-09 05:02:52 +00:00
Offensive Security
52cf6a3185 DB: 2016-07-07
9 new exploits

CIMA DocuClass ECM - Multiple Vulnerabilities
24online SMS_2500i 8.3.6 build 9.0 - SQL Injection
Linux 64bit Ncat Shellcode (SSL_ MultiChannel_ Persistant_ Fork_ IPv4/6_ Password) - 176 bytes
Advanced Webhost Billing System (AWBS) 2.9.6 - Multiple Vulnerabilities
PaKnPost Pro 1.14 - Multiple Vulnerabilities
GNU Wget < 1.18 - Arbitrary File Upload/Remote Code Execution
OpenFire 3.10.2 - 4.0.1 - Multiple Vulnerabilities
Samsung Android JACK - Privilege Escalation
Nagios XI Chained Remote Code Execution
2016-07-07 05:06:28 +00:00
Offensive Security
b530dd470e DB: 2016-07-05
8 new exploits

BigDump - (Cross Site Scripting/SQL Injection/Arbitrary File Upload) Multiple Vulnerabilities
BigDump 0.29b and 0.32b - Multiple Vulnerabilities

Linux - netfilter IPT_SO_SET_REPLACE Memory Corruption
Linux Kernel 3.10_ 3.18 + 4.4 - netfilter IPT_SO_SET_REPLACE Memory Corruption

Debian Exim - Spool Local Root Privilege Escalation

Ubuntu 16.04 local root exploit - netfilter target_offset OOB
Linux Kernel 4.4.0-2 (Ubuntu 16.04) - netfilter target_offset OOB Local Root Exploit
XpoLog Center 6 - Remote Command Execution CSRF
Ktools Photostore 4.7.5 - Multiple Vulnerabilities
Linux 64bit NetCat Bind Shell Shellcode - 64 bytes
WordPress Real3D FlipBook Plugin - Multiple Vulnerabilities
Linux x86 TCP Bind Shell Port 4444 - 98 bytes
WebCalendar 1.2.7 - Multiple Vulnerabilities
eCardMAX 10.5 - Multiple Vulnerabilities
2016-07-05 05:06:28 +00:00
Offensive Security
2dba371921 DB: 2016-06-03
4 new exploits

Linux Kernel 2.4 / 2.6 x86-64 - System Call Emulation Exploit
Linux Kernel 2.4 / 2.6 (x86_64) - System Call Emulation Exploit

Linux Kernel 2.6.x (<= 2.6.20 / <= 2.6.24 / <= 2.6.27_7-10) (Ubuntu 7.04/8.04/8.10 / Fedora Core 10 / OpenSuse 11.1)  - SCTP FWD Memory Corruption Remote Exploit
Linux Kernel 2.6.x (<= 2.6.20 / <= 2.6.24 / <= 2.6.27_7-10) (Ubuntu 7.04/8.04/8.10 / Fedora Core 10 / OpenSuse 11.1) - SCTP FWD Memory Corruption Remote Exploit

Linux Kernel <= 2.6.24_16-23 / <= 2.6.28.3 (Ubuntu 8.04/8.10 & Fedora Core 10) (x86-64) - set_selection() UTF-8 Off By One Local Exploit
Linux Kernel <= 2.6.24_16-23 / <= 2.6.28.3 (Ubuntu 8.04/8.10 & Fedora Core 10 x86_64) - set_selection() UTF-8 Off By One Local Exploit

Linux Kernel 2.6 < 2.6.19 (White Box 4 / CentOS 4.4/4.5 / Fedora Core 4/5/6) - (32-bit) ip_append_data() ring0 Root Exploit
Linux Kernel 2.6 < 2.6.19 (White Box 4 / CentOS 4.4/4.5 / Fedora Core 4/5/6 x86) - ip_append_data() ring0 Root Exploit
Linux Kernel < 2.6.36-rc4-git2 - x86_64 ia32syscall Emulation Privilege Escalation
Linux Kernel 2.6.27 < 2.6.36 (x86_64) (Redhat) - compat Local Root Exploit
Linux Kernel < 2.6.36-rc4-git2 (x86_64) - ia32syscall Emulation Privilege Escalation
Linux Kernel 2.6.27 < 2.6.36 (Redhat x86_64) - compat Local Root Exploit

Linux Kernel < 2.6.34 CAP_SYS_ADMIN x86 & x64 (Ubuntu 11.10) - Local Privilege Escalation Exploit (2)
Linux Kernel < 2.6.34 (Ubuntu 11.10 x86 & x64) - CAP_SYS_ADMIN Local Privilege Escalation Exploit (2)

Linux Kernel 2.6.39 <= 3.2.2 (32-bit & 64-bit) (Gentoo / Ubuntu) - Mempodipper Local Root (1)
Linux Kernel 2.6.39 <= 3.2.2 (Gentoo / Ubuntu x86/x64) - Mempodipper Local Root (1)

Linux Kernel < 3.3.x - 3.7.x (Arch Linux x86-64) - sock_diag_handlers[] Local Root
Linux Kernel < 3.3.x - 3.7.x (Arch Linux x86_64) - sock_diag_handlers[] Local Root

Linux Kernel <= 3.7.10 (Ubuntu 12.10) (64-Bit) - sock_diag_handlers Local Root Exploit
Linux Kernel <= 3.7.10 (Ubuntu 12.10 x64) - sock_diag_handlers Local Root Exploit

Linux Kernel < 3.8.9 - x86_64 perf_swevent_init Local Root Exploit
Linux Kernel < 3.8.9 (x86_64) - perf_swevent_init Local Root Exploit

Linux Kernel <= 3.7.6  (Redhat) (32bit/64bit) - 'MSR' Driver Local Privilege Escalation
Linux Kernel <= 3.7.6 (Redhat x86/x64) - 'MSR' Driver Local Privilege Escalation

Systrace 1.x (64-Bit) - Aware Linux Kernel Privilege Escalation Vulnerability
Systrace 1.x (x64) - Aware Linux Kernel Privilege Escalation Vulnerability

Linux Kernel 2.6.x - (64 bit) Personality Handling Local Denial of Service Vulnerability
Linux Kernel 2.6.x (x64) - Personality Handling Local Denial of Service Vulnerability

Linux Kernel < 3.2.0-23  (Ubuntu 12.04) - ptrace/sysret Local Privilege Escalation
Linux Kernel < 3.2.0-23 (Ubuntu 12.04 x64) - ptrace/sysret Local Privilege Escalation

Linux Kernel 2.6.39 <= 3.2.2 (32-bit & 64-bit) - Mempodipper Local Root (2)
Linux Kernel 2.6.39 <= 3.2.2 (x86/x64) - Mempodipper Local Root (2)
Joomla SecurityCheck Extension 2.8.9 - Multiple Vulnerabilities
Liferay CE < 6.2 CE GA6 - Stored XSS
Relay Ajax Directory Manager relayb01-071706_ 1.5.1_ 1.5.3 - Unauthenticated File Upload
Websockify (C Implementation) 0.8.0 - Buffer Overflow
2016-06-03 05:02:50 +00:00
Offensive Security
6fa97a6001 DB: 2016-05-07
6 new exploits

RPCScan 2.03 - Hostname/IP Field Crash PoC
CIScan 1.00 - Hostname/IP Field Crash PoC
DotNetNuke 07.04.00 - Administration Authentication Bypass
Adobe Flash - Use-After-Free When Rendering Displays From Multiple Scripts
Adobe Flash - MovieClip.duplicateMovieClip Use-After-Free
ManageEngine Applications Manager Build 12700 - Multiple Vulnerabilities
2016-05-07 05:03:58 +00:00
Offensive Security
39fe341c5b DB: 2016-04-26
9 new exploits

Totemomail 4.x and 5.x - Persistent XSS
C/C++ Offline Compiler and C For OS - Persistent XSS
Gemtek CPE7000 - WLTCS-106 Administrator SID Retriever (MSF)
Gemtek CPE7000 - WLTCS-106 sysconf.cgi Unauthenticated Remote Command Execution (MSF)
CompuSource Systems - Real Time Home Banking - Local Privilege Escalation
Linux x64 - Bind Shell Shellcode Generator
PCMan FTP Server 2.0.7 - RENAME Command Buffer Overflow (MSF)
NationBuilder Multiple Stored XSS Vulnerabilities
Rough Auditing Tool for Security (RATS) 2.3 - Crash PoC
2016-04-26 05:03:34 +00:00
Offensive Security
1e62f55c1a DB: 2016-04-14
3 new exploits

Oracle Application Testing Suite 12.4.0.2.0 - Authentication Bypass and Arbitrary File Upload Exploit
Texas Instrument Emulator 3.03 - Local Buffer Overflow
Dell KACE K1000 File Upload
2016-04-14 05:02:17 +00:00
Offensive Security
921bb6b2e3 DB: 2016-04-12
9 new exploits

Hikvision Digital Video Recorder - Cross-Site Request Forgery
WPN-XM Serverstack 0.8.6 - Cross Site Request Forgery
OpenCart 2.1.0.2 to 2.2.0.0 - json_decode Function Remote Code Execution
CAM UnZip 5.1 - Archive Path Traversal
Axis Network Cameras - Multiple Vulnerabilities
Linux/x86_64 - bindshell (PORT: 5600) - 81 bytes
Android - IOMX getConfig/getParameter Information Disclosure
Android - IMemory Native Interface is Insecure for IPC Use
Novell Service Desk 7.1.0_ 7.0.3 and 6.5 - Multiple Vulnerabilities
2016-04-12 05:04:12 +00:00
Offensive Security
48af7fb829 DB: 2016-04-07
5 new exploits

Asbru Web Content Management System 9.2.7 - Multiple Vulnerabilities
SocialEngine 4.8.9 - SQL Injection
Linux x86 - Disable ASLR by Setting the RLIMIT_STACK Resource to Unlimited
Panda Security URL Filtering < 4.3.1.9 - Privilege Escalation
Panda Endpoint Administration Agent < 7.50.00 - Privilege Escalation
2016-04-07 05:01:52 +00:00
Offensive Security
60fd0ef490 DB: 2016-04-06
5 new exploits

Easy File Sharing HTTP Server 7.2 SEH Overflow
PCMAN FTP Server Buffer Overflow - PUT Command
Internet Explorer - MSHTML!CSVGHelpers::SetAttributeStringAndPointer Use-After-Free (MS16-023)
ManageEngine Password Manager Pro 8102 to 8302 - Multiple Vulnerabilities
Windows Kernel Win32k.sys Privilege Escalation Exploit (MS14-058)
2016-04-06 05:04:31 +00:00
Offensive Security
477bcbdcc0 DB: 2016-03-17
5 new exploits

phpMyNewsletter <= 0.8 (beta5) - Multiple Vulnerability Exploit
phpMyNewsletter <= 0.8 (beta5) - Multiple Vulnerabilities

My Book World Edition NAS Multiple Vulnerability
My Book World Edition NAS - Multiple Vulnerabilities

Katalog Stron Hurricane 1.3.5 - Multiple Vulnerability RFI / SQL
Katalog Stron Hurricane 1.3.5 - (RFI / SQL) Multiple Vulnerabilities

cmsfaethon-2.2.0-ultimate.7z Multiple Vulnerability
cmsfaethon-2.2.0-ultimate.7z - Multiple Vulnerabilities

DynPG CMS 4.1.0 - Multiple Vulnerability (popup.php and counter.php)
DynPG CMS 4.1.0 - (popup.php and counter.php) Multiple Vulnerabilities

Nucleus CMS 3.51 (DIR_LIBS) - Multiple Vulnerability
Nucleus CMS 3.51 (DIR_LIBS) - Multiple Vulnerabilities

N/X - Web CMS (N/X WCMS 4.5) Multiple Vulnerability
N/X - Web CMS (N/X WCMS 4.5) - Multiple Vulnerabilities

New-CMS - Multiple Vulnerability
New-CMS - Multiple Vulnerabilities

Edgephp Clickbank Affiliate Marketplace Script Multiple Vulnerability
Edgephp Clickbank Affiliate Marketplace Script - Multiple Vulnerabilities

JV2 Folder Gallery 3.1.1 - (popup_slideshow.php) Multiple Vulnerability
JV2 Folder Gallery 3.1.1 - (popup_slideshow.php) Multiple Vulnerabilities

i-Gallery - Multiple Vulnerability
i-Gallery - Multiple Vulnerabilities

My Kazaam Notes Management System Multiple Vulnerability
My Kazaam Notes Management System - Multiple Vulnerabilities

Omnidocs - Multiple Vulnerability
Omnidocs - Multiple Vulnerabilities

Web Cookbook Multiple Vulnerability
Web Cookbook - Multiple Vulnerabilities

KikChat - (LFI/RCE) Multiple Vulnerability
KikChat - (LFI/RCE) Multiple Vulnerabilities

Webformatique Reservation Manager - 'index.php' Cross-Site Scripting Vulnerability
Webformatique Reservation Manager 2.4 - 'index.php' Cross-Site Scripting Vulnerability

xEpan 1.0.4 - Multiple Vulnerability
xEpan 1.0.4 - Multiple Vulnerabilities
AKIPS Network Monitor 15.37 through 16.5 - OS Command Injection
Netwrix Auditor 7.1.322.0 - ActiveX (sourceFile) Stack Buffer Overflow
Cisco UCS Manager 2.1(1b) - Shellshock Exploit
OpenSSH <= 7.2p1 - xauth Injection
FreeBSD 10.2 amd64 Kernel - amd64_set_ldt Heap Overflow
2016-03-17 07:07:56 +00:00
Offensive Security
1221dcb78e DB: 2016-02-04
6 new exploits
2016-02-04 05:01:40 +00:00
Offensive Security
970933a341 DB: 2016-02-03
5 new exploits
2016-02-03 05:02:35 +00:00
Offensive Security
f89cce16df DB: 2016-01-01
9 new exploits
2016-01-01 05:03:26 +00:00
Offensive Security
f25ba13a4f DB: 2015-11-28
6 new exploits
2015-11-28 05:03:37 +00:00
Offensive Security
58b97ca2f6 DB: 2015-11-07
6 new exploits
2015-11-07 05:02:13 +00:00
Offensive Security
aa57287847 DB: 2015-10-16
17 new exploits
2015-10-16 05:02:10 +00:00
Offensive Security
de10ad30b5 DB: 2015-10-06
5 new exploits
2015-10-06 05:02:27 +00:00
Offensive Security
24fffa54a2 DB: 2015-09-29
25 new exploits
2015-09-29 05:03:06 +00:00
Offensive Security
c14ed0e3ce DB: 2015-09-26
11 new exploits
2015-09-26 05:01:39 +00:00
Offensive Security
ad3ef8e89a DB: 2015-09-19
13 new exploits
2015-09-19 05:01:42 +00:00
Offensive Security
fcfafebf3e DB: 2015-09-16
24 new exploits
2015-09-16 05:02:44 +00:00
Offensive Security
8b29a6e1e8 DB: 2015-09-08
6 new exploits
2015-09-08 05:02:53 +00:00
Offensive Security
4377b18056 DB: 2015-08-18
11 new exploits
2015-08-18 05:03:02 +00:00
Offensive Security
a732415255 DB: 2015-08-13
1 new exploits
2015-08-13 05:06:40 +00:00
Offensive Security
e8f22fe4b6 DB: 2015-07-11
26 new exploits
2015-07-11 05:03:28 +00:00
Offensive Security
369395e0c1 DB: 2015-07-04
8 new exploits
2015-07-04 05:01:45 +00:00
Offensive Security
7e7d4b0244 DB: 2015-07-01
22 new exploits
2015-07-01 05:02:13 +00:00
Offensive Security
20d0fff830 DB: 2015-06-13
7 new exploits
2015-06-13 05:02:28 +00:00
Offensive Security
5aabf25b26 DB: 2015-06-11
16 new exploits
2015-06-11 05:02:28 +00:00
Offensive Security
5cd9f850c3 DB: 2015-06-07
11 new exploits
2015-06-07 05:02:18 +00:00
Offensive Security
0b3f393d50 DB: 2015-05-30
17 new exploits
2015-05-30 05:02:42 +00:00
Offensive Security
8a28155962 DB: 2015-05-27
15 new exploits
2015-05-27 05:02:00 +00:00
Offensive Security
01ba689949 DB: 2015-05-08
19 new exploits
2015-05-08 05:02:43 +00:00
Offensive Security
cc553d1147 DB: 2015-04-20
11 new exploits
2015-04-20 12:44:13 +00:00
Offensive Security
0607d0429f DB: 2015-04-09
19 new exploits
2015-04-09 08:36:09 +00:00
Offensive Security
42107c1e33 Update: 2015-03-14
13 new exploits
2015-03-14 08:36:01 +00:00
Offensive Security
b109a86d7a Update: 2015-03-06
22 new exploits
2015-03-06 08:35:37 +00:00
Offensive Security
de2152bda8 Update: 2015-02-10
11 new exploits
2015-02-10 08:36:13 +00:00
Offensive Security
40cfbfb905 Update: 2015-01-28
24 new exploits
2015-01-28 08:35:58 +00:00
Offensive Security
c263b4d439 Update: 2015-01-07
13 new exploits
2015-01-07 08:36:08 +00:00
Offensive Security
e60ec300be Update: 2015-01-04
8 new exploits
2015-01-04 08:36:28 +00:00
Offensive Security
4c02ce5463 Updated 12_25_2014 2014-12-25 04:53:38 +00:00
Offensive Security
da2dbbdc68 Updated 11_15_2014 2014-11-15 04:45:59 +00:00
Offensive Security
73654ec124 Updated 11_12_2014 2014-11-12 04:43:24 +00:00
Offensive Security
173a7ded66 Updated 11_09_2014 2014-11-09 04:45:16 +00:00