exploit-db-mirror/platforms/cgi/remote
Offensive Security 6ab9a26ee4 DB: 2017-06-27
10 new exploits

PHP Exif Extension - 'exif_read_data()' Function Remote Denial of Service
PHP 'Exif' Extension - 'exif_read_data()' Function Remote Denial of Service

PHP phar extension 1.1.1 - Heap Overflow
PHP 'phar' Extension 1.1.1 - Heap Overflow

PHP 5.2.1 GD Extension - '.WBMP' File Integer Overflow Vulnerabilities
PHP 5.2.1 'GD' Extension - '.WBMP' File Integer Overflow Vulnerabilities

PHP 5.3.1 - 'session_save_path()' 'Safe_mode' Restriction-Bypass
PHP 5.3.1 - 'session_save_path()' 'Safe_mode()' Restriction Bypass Exploiot

PHP 5.3.2 xmlrpc Extension - Multiple Remote Denial of Service Vulnerabilities
PHP 5.3.2 'xmlrpc' Extension - Multiple Remote Denial of Service Vulnerabilities
PHP 5.3.x - 'Intl' Extension 'NumberFormatter::setSymbol()' Function Denial of Service
PHP 5.3.x - 'Zip' Extension 'stream_get_contents()' Function Denial of Service
PHP 5.3.x  'Intl' Extension - 'NumberFormatter::setSymbol()' Function Denial of Service
PHP 5.3.x 'Zip' Extension - 'stream_get_contents()' Function Denial of Service
PHP < 5.3.6 OpenSSL Extension - openssl_encrypt Function Plaintext Data Memory Leak Denial of Service
PHP < 5.3.6 OpenSSL Extension - openssl_decrypt Function Ciphertext Data Memory Leak Denial of Service
PHP < 5.3.6 'OpenSSL' Extension - 'openssl_encrypt' Function Plaintext Data Memory Leak Denial of Service
PHP < 5.3.6 'OpenSSL' Extension - 'openssl_decrypt' Function Ciphertext Data Memory Leak Denial of Service

unrar 5.40 - VMSF_DELTA Filter Arbitrary Memory Write
unrar 5.40 - 'VMSF_DELTA' Filter Arbitrary Memory Write
NTFS 3.1 - Master File Table Denial of Service
LAME 3.99.5 - 'II_step_one' Buffer Overflow
LAME 3.99.5 - 'III_dequantize_sample' Stack-Based Buffer Overflow
IBM DB2 9.7 / 10.1 / 10.5 / 11.1 - Command Line Processor Buffer Overflow

PHP COM extensions - (inconsistent Win32) Safe_mode Bypass Exploit
PHP 'COM' Extensions - (inconsistent Win32) 'safe_mode' Bypass Exploit

PHP 5.2.3 Tidy extension - Local Buffer Overflow
PHP 5.2.3 'Tidy' Extension - Local Buffer Overflow

PHP 5.2.3 - Win32std ext. Safe_mode/disable_functions Protections Bypass
PHP 5.2.3 - Win32std ext. 'safe_mode' / 'disable_functions' Protections Bypass

PHP 5.x - (Win32service) Local Safe Mode Bypass Exploit
PHP 5.x - (Win32service) Local 'Safe_Mode()' Bypass Exploit
PHP FFI Extension 5.0.5 - Local Safe_mode Bypass
PHP Perl Extension - Safe_mode BypassExploit
PHP 'FFI' Extension 5.0.5 - 'Safe_mode' Local  Bypass Exploit
PHP 'Perl' Extension - 'Safe_mode' Bypass Exploit

PHP 4.4.7 / 5.2.3 - MySQL/MySQL Injection Safe Mode Bypass
PHP 4.4.7 / 5.2.3 - MySQL/MySQLi 'Safe_Mode' Bypass Exploit

PHP 5.2.4 ionCube extension - Safe_mode / disable_functions Bypass
PHP 5.2.4 'ionCube' Extension - 'safe_mode' / disable_functions Bypass

PHP 5.x - COM functions Safe_mode and disable_function Bypass
PHP 5.x - COM functions 'Safe_mode()' / 'disable_function' Bypass

PHP 5.2.6 - (error_log) Safe_mode Bypass
PHP 5.2.6 - 'error_log' Safe_mode Bypass Exploit

PHP - Safe_mode Bypass via proc_open() and custom Environment
PHP - 'Safe_mode' Bypass via 'proc_open()' and custom Environment

PHP python extension safe_mode - Bypass Local
PHP 'python' Extension - 'safe_mode' Local Bypass Exploit

PHP 3 < 5 - Ini_Restore() Safe_mode and open_basedir Restriction Bypass
PHP 3 < 5 - Ini_Restore() 'Safe_mode' / 'open_basedir' Restriction Bypass

PHP 5.2 - Session.Save_Path() Safe_mode and open_basedir Restriction Bypass
PHP 5.2 - Session.Save_Path() 'Safe_mode' / 'open_basedir' Restriction Bypass

PHP 5.2 - FOpen Safe_mode Restriction-Bypass
PHP 5.2 - FOpen 'Safe_mode' Restriction Bypass Exploit

PHP 5.2.5 - Multiple functions 'safe_mode_exec_dir' and 'open_basedir' Restriction Bypass Vulnerabilities
PHP 5.2.5 - Multiple functions 'safe_mode_exec_dir' / 'open_basedir' Restriction Bypass Vulnerabilities

suPHP 0.7 - 'suPHP_ConfigPath' Safe Mode Restriction-Bypass
suPHP 0.7 - 'suPHP_ConfigPath' Safe_Mode() Restriction Bypass Exploit

PHP 5.2.9 cURL - 'Safe_mode' and 'open_basedir' Restriction-Bypass
PHP 5.2.9 cURL - 'Safe_mode' / 'open_basedir' Restriction Bypass Exploit

JAD Java Decompiler 1.5.8e - Buffer Overflow

Oracle Secure Backup Server 10.3.0.1.0 - Authentication Bypass/RCI Exploit
Oracle Secure Backup Server 10.3.0.1.0 - Authentication Bypass / Remote Code Injection Exploit

Network Tool 0.2 PHP-Nuke Addon - MetaCharacter Filtering Command Execution
PHP-Nuke Network Tool 0.2 Addon - MetaCharacter Filtering Command Execution

PHP 4.x/5.x - Html_Entity_Decode() Information Disclosure
PHP 4.x/5.x - 'Html_Entity_Decode()' Information Disclosure

PHP 4.x - copy() Function Safe Mode Bypass
PHP 4.x - 'copy()' Function 'Safe_Mode' Bypass Exploit

PHP 5.2.5 - cURL 'safe mode' Security Bypass
PHP 5.2.5 - cURL 'safe_mode' Security Bypass Exploit

PHP 5.x (5.3.x 5.3.2) - 'ext/phar/stream.c' and 'ext/phar/dirstream.c' Multiple Format String Vulnerabilities
PHP 5.3.x < 5.3.2 - 'ext/phar/stream.c' / 'ext/phar/dirstream.c' Multiple Format String Vulnerabilities

Apache 2.4.7 + PHP 7.0.2 - openssl_seal() Uninitialized Memory Code Execution
Apache 2.4.7 + PHP 7.0.2 - 'openssl_seal()' Uninitialized Memory Code Execution

Easy File Sharing HTTP Server 7.2 - POST Buffer Overflow (Metasploit)

Crypttech CryptoLog - Remote Code Execution (Metasploit)
Symantec Messaging Gateway 10.6.2-7 - Remote Code Execution (Metasploit)
Netgear DGN2200 - dnslookup.cgi Command Injection (Metasploit)

Linux/x86 - Bind Shell Shellcode (75 bytes)

JiRos Banner Experience 1.0 - (Create Authentication Bypass) Remote Exploit
JiRos Banner Experience 1.0 - Create Authentication Bypass Remote Exploit

XOOPS myAds Module - (lid) SQL Injection
XOOPS myAds Module - 'lid' SQL Injection

PHP-Update 2.7 - extract() Authentication Bypass / Shell Inject Exploit
PHP-Update 2.7 - 'extract()' Authentication Bypass / Shell Inject Exploit

Kolang - proc_open PHP safe mode Bypass 4.3.10 - 5.3.0 Exploit
Kolang 4.3.10 < 5.3.0 - 'proc_open()' PHP 'safe_mode' Bypass Exploit
SmarterMail 7.x (7.2.3925) - Persistent Cross-Site Scripting
SmarterMail 7.x (7.2.3925) - LDAP Injection
SmarterMail < 7.2.3925 - Persistent Cross-Site Scripting
SmarterMail < 7.2.3925 - LDAP Injection

MaticMarket 2.02 for PHP-Nuke - Local File Inclusion
PHP-Nuke MaticMarket 2.02 - Local File Inclusion

WordPress Plugin BuddyPress plugin 1.5.x < 1.5.5 - SQL Injection
WordPress Plugin BuddyPress Plugin 1.5.x < 1.5.5 - SQL Injection

Search Enhanced Module 1.1/2.0 for PHP-Nuke - HTML Injection
PHP-Nuke Search Enhanced Module 1.1/2.0 - HTML Injection

SonicWALL Gms 7.x - Filter Bypass & Persistent Exploit
SonicWALL Gms 7.x - Filter Bypass / Persistent Exploit

Barracuda Networks #35 Web Firewall 610 6.0.1 - Filter Bypass & Persistent Exploit
Barracuda Networks #35 Web Firewall 610 6.0.1 - Filter Bypass / Persistent Exploit

PHP < 5.6.2 - Bypass disable_functions Exploit (Shellshock)
PHP < 5.6.2 - 'disable_functions()' Bypass Exploit (Shellshock)

phpSFP - Schedule Facebook Posts 1.5.6 SQL Injection
phpSFP Schedule Facebook Posts 1.5.6 - SQL Injection

pragmaMx 1.12.1 - modules.php URI Cross-Site Scripting
pragmaMx 1.12.1 - 'modules.php' URI Cross-Site Scripting

Glossaire Module for XOOPS - '/modules/glossaire/glossaire-aff.php' SQL Injection
XOOPS Glossaire Module- '/modules/glossaire/glossaire-aff.php' SQL Injection

ATutor LMS - install_modules.php Cross-Site Request Forgery / Remote Code Execution
ATutor LMS - 'install_modules.php' Cross-Site Request Forgery / Remote Code Execution

vBulletin 5.x/4.x - Authenticated Persistent Cross-Site Scripting in AdminCP/ApiLog via xmlrpc API
vBulletin 4.x/5.x - Authenticated Persistent Cross-Site Scripting in AdminCP/ApiLog via xmlrpc API

Eltek SmartPack - Backdoor Account
2017-06-27 05:01:26 +00:00
..
211.c DB: 2016-09-03 2016-09-03 05:08:42 +00:00
1862.c DB: 2016-09-03 2016-09-03 05:08:42 +00:00
10028.rb Updated 2013-12-03 19:44:07 +00:00
10037.rb DB: 2016-09-03 2016-09-03 05:08:42 +00:00
16780.rb DB: 2016-09-03 2016-09-03 05:08:42 +00:00
16795.rb DB: 2016-09-03 2016-09-03 05:08:42 +00:00
18015.rb Updated 2013-12-03 19:44:07 +00:00
19713.pl Updated 2013-12-03 19:44:07 +00:00
19741.pl Updated 2013-12-03 19:44:07 +00:00
19745.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
19747.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
19786.txt Updated 2013-12-03 19:44:07 +00:00
19795.txt Updated 2013-12-03 19:44:07 +00:00
19808.txt Updated 2013-12-03 19:44:07 +00:00
19842.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
19844.txt Updated 2013-12-03 19:44:07 +00:00
19852.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
19890.txt Updated 2013-12-03 19:44:07 +00:00
19909.pl Updated 2013-12-03 19:44:07 +00:00
19913.txt Updated 2013-12-03 19:44:07 +00:00
19921.txt Updated 2013-12-03 19:44:07 +00:00
19951.php Updated 2013-12-03 19:44:07 +00:00
19956.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
19995.txt Updated 2013-12-03 19:44:07 +00:00
20007.c Updated 2013-12-03 19:44:07 +00:00
20008.txt Updated 2013-12-03 19:44:07 +00:00
20041.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20059.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20068.txt Updated 2013-12-03 19:44:07 +00:00
20085.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20156.txt Updated 2013-12-03 19:44:07 +00:00
20164.pl Updated 2013-12-03 19:44:07 +00:00
20165.html Updated 2013-12-03 19:44:07 +00:00
20176.pl Updated 2013-12-03 19:44:07 +00:00
20177.html Updated 2013-12-03 19:44:07 +00:00
20183.pl DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20194.pl Updated 2013-12-03 19:44:07 +00:00
20218.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20238.txt Updated 2013-12-03 19:44:07 +00:00
20242.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20244.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20245.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20273.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20277.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20279.txt Updated 2013-12-03 19:44:07 +00:00
20280.txt Updated 2013-12-03 19:44:07 +00:00
20281.txt Updated 2013-12-03 19:44:07 +00:00
20303.pl Updated 2013-12-03 19:44:07 +00:00
20370.txt Updated 2013-12-03 19:44:07 +00:00
20387.txt Updated 2013-12-03 19:44:07 +00:00
20397.txt Updated 2013-12-03 19:44:07 +00:00
20405.pl Updated 2013-12-03 19:44:07 +00:00
20408.txt Updated 2013-12-03 19:44:07 +00:00
20423.txt Updated 2013-12-03 19:44:07 +00:00
20430.txt Updated 2013-12-03 19:44:07 +00:00
20433.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20434.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20435.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20442.html DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20444.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20446.txt Updated 2013-12-03 19:44:07 +00:00
20447.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20448.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20463.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20465.sh DB: 2015-04-20 2015-04-20 12:44:13 +00:00
20483.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20497.html DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20503.html DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20504.html DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20506.html DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20522.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20523.pl Updated 2013-12-03 19:44:07 +00:00
20524.txt Updated 2013-12-03 19:44:07 +00:00
20525.txt Updated 2013-12-03 19:44:07 +00:00
20527.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20533.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20567.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20570.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20583.pl Updated 2013-12-03 19:44:07 +00:00
20606.pl DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20609.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20611.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20623.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20629.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20630.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20631.txt Updated 2013-12-03 19:44:07 +00:00
20632.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20633.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20642.pl Updated 2013-12-03 19:44:07 +00:00
20683.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20686.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20689.pl Updated 2013-12-03 19:44:07 +00:00
20714.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20725.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20744.pl Updated 2013-12-03 19:44:07 +00:00
20752.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20780.c Updated 2013-12-03 19:44:07 +00:00
20799.c Updated 2013-12-03 19:44:07 +00:00
20800.c Updated 2013-12-03 19:44:07 +00:00
20801.c Updated 2013-12-03 19:44:07 +00:00
20808.txt Updated 2013-12-03 19:44:07 +00:00
20809.html DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20831.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20832.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20833.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20849.pl Updated 2013-12-03 19:44:07 +00:00
20878.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20887.txt Updated 2013-12-03 19:44:07 +00:00
20895.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20914.pl Updated 2013-12-03 19:44:07 +00:00
20916.pl Updated 2013-12-03 19:44:07 +00:00
20935.pl Updated 2013-12-03 19:44:07 +00:00
20938.txt DB: 2016-07-11 2016-07-11 05:06:57 +00:00
20939.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20940.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
20982.pl Updated 2013-12-03 19:44:07 +00:00
21008.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21023.c Updated 2013-12-03 19:44:07 +00:00
21068.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21102.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21104.pl Updated 2013-12-03 19:44:07 +00:00
21125.pl Updated 2013-12-03 19:44:07 +00:00
21129.java DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21183.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21194.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21249.txt Updated 2013-12-03 19:44:07 +00:00
21263.txt Updated 2013-12-03 19:44:07 +00:00
21287.pl DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21340.pl Updated 2013-12-03 19:44:07 +00:00
21354.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21390.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
21415.txt Updated 2013-12-03 19:44:07 +00:00
21641.txt Updated 2013-12-03 19:44:07 +00:00
21642.txt Updated 2013-12-03 19:44:07 +00:00
22000.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
22054.c Updated 2013-12-03 19:44:07 +00:00
22311.txt Updated 2013-12-03 19:44:07 +00:00
22312.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
22355.txt Updated 2013-12-03 19:44:07 +00:00
22541.txt Updated 2013-12-03 19:44:07 +00:00
22542.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
22753.pl Updated 2013-12-03 19:44:07 +00:00
22754.pl Updated 2013-12-03 19:44:07 +00:00
23187.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
23304.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
23312.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
23582.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
23804.txt Updated 2013-12-03 19:44:07 +00:00
23987.txt Updated 2013-12-03 19:44:07 +00:00
24326.txt Updated 2013-12-03 19:44:07 +00:00
24327.txt Updated 2013-12-03 19:44:07 +00:00
24336.txt Updated 2013-12-03 19:44:07 +00:00
24337.txt Updated 2013-12-03 19:44:07 +00:00
24342.txt Updated 2013-12-03 19:44:07 +00:00
25648.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
26768.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
32962.txt DB: 2016-09-03 2016-09-03 13:13:25 +00:00
33051.txt Updated 04_28_2014 2014-04-28 04:36:23 +00:00
34777.rb DB: 2016-09-03 2016-09-03 13:13:25 +00:00
36045.txt Update: 2015-02-12 2015-02-12 08:36:52 +00:00
37426.py DB: 2015-07-03 2015-07-03 05:03:11 +00:00
37428.txt DB: 2015-07-03 2015-07-03 05:03:11 +00:00
38849.rb DB: 2015-12-03 2015-12-03 05:03:25 +00:00
39074.txt DB: 2015-12-22 2015-12-22 05:03:05 +00:00
39917.rb DB: 2016-06-11 2016-06-11 05:06:22 +00:00
39918.rb DB: 2016-06-11 2016-06-11 05:06:22 +00:00
40949.rb DB: 2017-01-31 2017-01-31 05:01:15 +00:00
41598.rb DB: 2017-03-14 2017-03-14 05:01:18 +00:00
42257.rb DB: 2017-06-27 2017-06-27 05:01:26 +00:00