exploit-db-mirror/exploits/linux/webapps
Offensive Security de260aeac6 DB: 2021-10-30
95 changes to exploits/shellcodes

Product Key Explorer 4.2.7 - 'multiple' Denial of Service (PoC)
Managed Switch Port Mapping Tool 2.85.2 - Denial of Service (PoC)
AgataSoft PingMaster Pro 2.1 - Denial of Service (PoC)
Nsauditor 3.2.2.0 - 'Event Description' Denial of Service (PoC)
WordPress Plugin WPGraphQL 1.3.5 - Denial of Service
Sandboxie 5.49.7 - Denial of Service (PoC)
WebSSH for iOS 14.16.10 - 'mashREPL' Denial of Service (PoC)
iDailyDiary 4.30 - Denial of Service (PoC)
RarmaRadio 2.72.8 - Denial of Service (PoC)
DupTerminator 1.4.5639.37199 - Denial of Service (PoC)
Color Notes 1.4 - Denial of Service (PoC)
Macaron Notes great notebook 5.5 - Denial of Service (PoC)
My Notes Safe 5.3 - Denial of Service (PoC)

n+otes 1.6.2 - Denial of Service (PoC)

Telegram Desktop 2.9.2 - Denial of Service (PoC)

Mini-XML 3.2 - Heap Overflow
Solaris 10 (Intel) - 'dtprintinfo' Local Privilege Escalation (2)
Solaris 10 (Intel) - 'dtprintinfo' Local Privilege Escalation (3)
Solaris 10 (SPARC) - 'dtprintinfo' Local Privilege Escalation (1)
Solaris 10 (SPARC) - 'dtprintinfo' Local Privilege Escalation (2)

MariaDB 10.2 - 'wsrep_provider' OS Command Execution

Microsoft Internet Explorer 11 and WPAD service 'Jscript.dll' - Use-After-Free

Visual Studio Code 1.47.1 - Denial of Service (PoC)

DELL dbutil_2_3.sys 2.3 - Arbitrary Write to Local Privilege Escalation (LPE)

MySQL User-Defined (Linux) x32 / x86_64 - 'sys_exec' Local Privilege Escalation (2)

Cmder Console Emulator 1.3.18 - 'Cmder.exe' Denial of Service (PoC)

GNU Wget < 1.18 - Arbitrary File Upload (2)

WebCTRL OEM 6.5 - 'locale' Reflected Cross-Site Scripting (XSS)

E-Learning System 1.0 - Authentication Bypass

PEEL Shopping 9.3.0 - 'Comments' Persistent Cross-Site Scripting

GetSimple CMS 3.3.16 - Persistent Cross-Site Scripting

EgavilanMedia User Registration & Login System with Admin Panel 1.0 - Persistent Cross-Site Scripting

Selea Targa 512 IP OCR-ANPR Camera - Stream Disclosure (Unauthenticated)

Library System 1.0 - Authentication Bypass

Web Based Quiz System 1.0 - 'name' Persistent Cross-Site Scripting

Dolibarr ERP 11.0.4 - File Upload Restrictions Bypass (Authenticated RCE)

GetSimple CMS My SMTP Contact Plugin 1.1.1 - Cross-Site Request Forgery

GravCMS 1.10.7 - Unauthenticated Arbitrary File Write (Metasploit)

Umbraco v8.14.1 - 'baseUrl' SSRF

Cacti 1.2.12 - 'filter' SQL Injection

GetSimple CMS Custom JS 0.1 - Cross-Site Request Forgery

Internship Portal Management System 1.0 - Remote Code Execution(Unauthenticated)
Markdown Explorer 0.1.1 - Persistent Cross-Site Scripting
Xmind 2020 - Persistent Cross-Site Scripting
Tagstoo 2.0.1 - Persistent Cross-Site Scripting
SnipCommand 0.1.0 - Persistent Cross-Site Scripting
Moeditor 0.2.0 - Persistent Cross-Site Scripting
Marky 0.0.1 - Persistent Cross-Site Scripting
StudyMD 0.3.2 - Persistent Cross-Site Scripting
Freeter 1.2.1 - Persistent Cross-Site Scripting
Markright 1.0 - Persistent Cross-Site Scripting
Markdownify 1.2.0 - Persistent Cross-Site Scripting
Anote 1.0 - Persistent Cross-Site Scripting
Subrion CMS 4.2.1 - Arbitrary File Upload
Printable Staff ID Card Creator System 1.0 - 'email' SQL Injection

Schlix CMS 2.2.6-6 - Arbitary File Upload (Authenticated)

Selenium 3.141.59 - Remote Code Execution (Firefox/geckodriver)

CHIYU IoT Devices - Denial of Service (DoS)

Zenario CMS 8.8.52729 - 'cID' SQL injection (Authenticated)

TextPattern CMS 4.8.7 - Remote Command Execution (Authenticated)

WordPress Plugin Anti-Malware Security and Bruteforce Firewall 4.20.59 - Directory Traversal

Atlassian Jira Server Data Center 8.16.0 - Reflected Cross-Site Scripting (XSS)

Scratch Desktop 3.17 - Remote Code Execution

Church Management System 1.0 - Arbitrary File Upload (Authenticated)

Phone Shop Sales Managements System 1.0 - Arbitrary File Upload

Zoo Management System 1.0 - 'Multiple' Persistent Cross-Site-Scripting (XSS)

WordPress Plugin Current Book 1.0.1 - 'Book Title' Persistent Cross-Site Scripting

ForgeRock Access Manager 14.6.3 - Remote Code Execution (RCE) (Unauthenticated)

KevinLAB BEMS 1.0 - Authentication Bypass

Event Registration System with QR Code 1.0 - Authentication Bypass

CloverDX 5.9.0 - Cross-Site Request Forgery (CSRF)

Panasonic Sanyo CCTV Network Camera 2.03-0x - Cross-Site Request Forgery (Change Password)

qdPM 9.2 - Password Exposure (Unauthenticated)
ApacheOfBiz 17.12.01 - Remote Command Execution (RCE)
Movable Type 7 r.5002 - XMLRPC API OS Command Injection (Metasploit)

GeoVision Geowebserver 5.3.3 - Local FIle Inclusion

Simple Phone Book 1.0 - 'Username' SQL Injection (Unauthenticated)

Umbraco CMS 8.9.1 - Directory Traversal

Traffic Offense Management System 1.0 - Remote Code Execution (RCE) (Unauthenticated)

Dolibarr ERP 14.0.1 - Privilege Escalation

Compro Technology IP Camera - 'killps.cgi' Denial of Service (DoS)

Drupal Module MiniorangeSAML 8.x-2.22 - Privilege escalation

Phpwcms 1.9.30 - Arbitrary File Upload

Windows/x86 - Download File (http://10.10.10.5:8080/2NWyfQ9T.hta) Via mshta + Execute + Stager Shellcode (143 bytes)
Linux/x64 - Bind_tcp (0.0.0.0:4444) + Password (12345678) + Shell (/bin/sh) Shellcode (142 bytes)
Linux/x64 - execve _cat /etc/shadow_ Shellcode (66 bytes)
Windows/x86 - Add User Alfred to Administrators/Remote Desktop Users Group Shellcode (240 bytes)
Windows/x64 - Dynamic Null-Free WinExec PopCalc Shellcode (205 Bytes)
Windows/x64 - Dynamic NoNull Add RDP Admin (BOKU:SP3C1ALM0V3) Shellcode (387 Bytes)
Linux/x86 - setreuid(0) + execve(_/bin/sh_) Shellcode (29 bytes)
Linux/x86 - Bind (User Specified Port) Shell (/bin/sh) Shellcode (102 bytes)
Linux/x86 - Reverse (dynamic IP and port/TCP) Shell (/bin/sh) Shellcode (86 bytes)
Linux/x86 - Egghunter Reverse TCP Shell dynamic IP and port Shellcode
Windows/x86 - WinExec PopCalc PEB & Export Directory Table NullFree Dynamic Shellcode (178 bytes)
Windows/x86 - MessageBoxA PEB & Export Address Table NullFree/Dynamic Shellcode (230 bytes)
2021-10-30 05:02:09 +00:00
..
6026.pl DB: 2021-09-03 2021-09-03 20:19:21 +00:00
10261.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10262.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
10263.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10426.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10427.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10429.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10430.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10433.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10755.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10756.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
10757.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
14177.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
14818.pl DB: 2021-09-03 2021-09-03 20:19:21 +00:00
16889.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
17941.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
18343.pl DB: 2021-09-03 2021-09-03 20:19:21 +00:00
18797.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
18932.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
19406.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
20037.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
20038.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
20064.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
20706.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
20707.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
21836.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
23110.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
24932.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
27776.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
28175.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
28243.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
28558.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
28653.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
28979.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
30085.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
30286.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
30472.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
32869.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
34086.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
34130.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
34241.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
34672.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
36442.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
36619.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
36689.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
36963.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
37442.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
38383.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
38833.txt DB: 2021-09-03 2021-09-03 21:04:54 +00:00
39500.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
39642.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
40171.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
40180.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
40249.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
40377.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
40378.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41040.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41141.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41223.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41224.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
41312.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41414.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
41437.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41570.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41628.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
41676.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41677.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41697.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41698.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41950.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41962.sh DB: 2021-09-03 2021-09-03 13:39:06 +00:00
41963.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
41976.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
42101.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
42149.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
42187.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
42269.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
42290.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
42306.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
42314.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
42745.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
42769.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
42975.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
42991.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
43436.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44039.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44051.md DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44054.md DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44431.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44441.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44498.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44543.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44545.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44589.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44628.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44640.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44647.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44655.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44667.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44681.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44687.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44698.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44734.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44749.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44751.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44757.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44843.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44865.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44902.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44911.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44913.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44932.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
44951.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
44999.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45073.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45090.txt DB: 2021-09-03 2021-09-03 21:04:54 +00:00
45094.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45103.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45105.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45108.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45167.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45195.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45198.rb DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45202.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45341.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45361.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45385.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45409.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45437.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45542.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45808.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45852.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
45929.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
45933.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
46221.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
46349.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
46352.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
46450.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
46468.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
46629.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
46669.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
46784.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
46811.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47059.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47123.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47124.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47125.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47132.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
47136.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47138.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47139.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47140.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47141.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47142.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47143.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47144.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47145.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47150.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
47293.sh DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47330.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
47457.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47537.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47571.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47900.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
47996.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
48212.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
48367.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48442.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48443.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48454.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48519.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48642.sh DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48643.txt DB: 2021-09-03 2021-09-03 20:19:21 +00:00
48964.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
49096.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
49265.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
49318.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
49321.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
49330.rb DB: 2021-09-03 2021-09-03 20:19:21 +00:00
49360.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
49362.py DB: 2021-09-03 2021-09-03 13:39:06 +00:00
49735.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
49862.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
49915.rb DB: 2021-10-30 2021-10-30 05:02:09 +00:00
49960.py DB: 2021-10-29 2021-10-29 05:02:12 +00:00
50108.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
50126.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
50144.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00
50200.txt DB: 2021-09-03 2021-09-03 13:39:06 +00:00
50234.py DB: 2021-09-03 2021-09-03 20:19:21 +00:00