exploit-db-mirror/platforms/xml/webapps
Offensive Security 07fdc778ee DB: 2016-10-21
24 new exploits

NetAuctionHelp 4.1 - search.asp SQL Injection

Apple Mac OSX 10.4.11 2007-008 - i386_set_ldt System Call Local Arbitrary Code Execution
Microsoft Edge - Array.map Heap Overflow (MS16-119)

Microsoft Jet Database Engine - '.MDB' File Parsing Remote Buffer Overflow
Microsoft Edge - Array.join Info Leak (MS16-119)

Windows DeviceApi CMApi PiCMOpenDeviceKey - Arbitrary Registry Key Write Privilege Escalation (MS16-124)
Windows DeviceApi CMApi - PiCMOpenDeviceKey Arbitrary Registry Key Write Privilege Escalation (MS16-124)

HikVision Security Systems - Activex Buffer Overflow
Oracle Netbeans IDE 8.1 - Directory Traversal
MiCasa VeraLite - Remote Code Execution
Oracle BI Publisher 11.1.1.6.0 / 11.1.1.7.0 / 11.1.1.9.0 / 12.2.1.0.0 - XML External Entity Injection
Classifieds Rental Script - SQL Injection
SAP NetWeaver KERNEL 7.0 < 7.5 - Denial of Service
SAP Adaptive Server Enterprise  16 - Denial of Service
Event Calendar PHP 1.5 - SQL Injection
SPIP 3.1.2 Template Compiler/Composer - PHP Code Execution
SPIP 3.1.1 / 3.1.2 - File Enumeration / Path Traversal
SPIP 3.1.2 - Cross-Site Request Forgery
Windows win32k.sys - TTF Processing RCVT TrueType Instruction Handler Out-of-Bounds Read (MS16-120)
Windows win32k.sys - TTF Processing win32k!sbit_Embolden / win32k!ttfdCloseFontContext Use-After-Free (MS16-120)
Windows Kernel - Registry Hive Loading Negative RtlMoveMemory Size in nt!CmpCheckValueList (MS16-124)
Windows Kernel - Registry Hive Loading Relative Arbitrary Read in nt!RtlValidRelativeSecurityDescriptor (MS16-123)
Microsoft Edge - Function.apply Info Leak (MS16-119)
Microsoft Edge - Spread Operator Stack Overflow (MS16-119)
Windows Edge/IE - Isolated Private Namespace Insecure DACL Privilege Escalation (MS16-118)
Windows Edge/IE - Isolated Private Namespace Insecure Boundary Descriptor Privilege Escalation (MS16-118)
Windows - NtLoadKeyEx Read Only Hive Arbitrary File Write Privilege Escalation (MS16-124)
Hak5 WiFi Pineapple - Preconfiguration Command Injection (Metasploit)
OpenNMS - Java Object Unserialization Remote Code Execution (Metasploit)
2016-10-21 05:01:17 +00:00
..
35275.txt DB: 2015-04-20 2015-04-20 12:44:13 +00:00
36132.txt DB: 2015-04-20 2015-04-20 12:44:13 +00:00
36369.txt DB: 2015-04-20 2015-04-20 12:44:13 +00:00
36441.txt DB: 2015-03-20 2015-03-20 08:36:08 +00:00
36941.txt DB: 2015-05-08 2015-05-08 05:02:43 +00:00
37250.txt DB: 2015-06-11 2015-06-11 05:02:28 +00:00
37609.txt DB: 2015-07-15 2015-07-15 05:01:36 +00:00
37891.txt DB: 2015-08-27 2015-08-27 05:01:55 +00:00
37977.py DB: 2016-09-03 2016-09-03 13:13:25 +00:00
38118.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
38261.txt DB: 2015-09-23 2015-09-23 05:02:17 +00:00
38896.py DB: 2015-12-09 2015-12-09 05:02:11 +00:00
38897.txt DB: 2015-12-09 2015-12-09 05:02:11 +00:00
38898.txt DB: 2015-12-09 2015-12-09 05:02:11 +00:00
38899.txt DB: 2015-12-09 2015-12-09 05:02:11 +00:00
39170.txt DB: 2016-01-06 2016-01-06 05:03:27 +00:00
39840.txt DB: 2016-05-20 2016-05-20 06:50:49 +00:00
39841.txt DB: 2016-05-20 2016-05-20 06:50:49 +00:00
39909.rb DB: 2016-06-11 2016-06-11 05:06:22 +00:00
40077.txt DB: 2016-07-09 2016-07-09 05:06:22 +00:00
40109.txt DB: 2016-07-14 2016-07-14 05:05:01 +00:00
40501.txt DB: 2016-10-12 2016-10-12 05:01:17 +00:00
40590.txt DB: 2016-10-21 2016-10-21 05:01:17 +00:00