AsusWRT Router Remote Code Execution
AsusWRT Router versions prior to 3.0.0.4.380.7743 suffer from an unauthenticated LAN remote code execution vulnerability.MD5 | 76e861a72a3ce836f6c0b5f6dc36b004Download>> Unauthenticated LAN...
View ArticleWebKitGTK+ Memory Corruption / Spoofing / Code Execution
WebKitGTK+ versions 2.18.x suffer from various memory corruption, user interface spoofing, and code execution vulnerabilities.MD5 |...
View ArticleLinux/x86 - Disable ASLR Security Obfuscated Shellcode (23 bytes)
EDB-ID: 43897Author: 0xAlaufiPublished: 2018-01-26CVE: N/A Type: ShellcodePlatform: Linux_x86Shellcode: Download / View Raw Shellcode Size: 23 bytes ;Date : 24 Jan 2018 ;Author : 0xAlaufi...
View ArticleApache NiFi CVE-2016-8748 Cross Site Scripting Vulnerability
Apache NiFi is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary script code in the...
View ArticleDodocool DC38 N300 - Cross-site Request Forgery
EDB-ID: 43898Author: Raffaele SabatoPublished: 2018-01-26CVE: CVE-2018-5720 Type: WebappsPlatform: HardwareVulnerable App: N/A # Date: 17-01-2018 # Exploit Authors: Raffaele Sabato # Contact:...
View ArticleExodus Wallet (ElectronJS Framework) - Remote Code Execution
EDB-ID: 43899Author: WflkiPublished: 2018-01-25CVE: CVE-2018-1000006 Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A <script> window.location =...
View ArticleASUS DSL-N14U B1 Router 1.1.2.3_345 - Change Administrator Password
EDB-ID: 43900Author: VÃctor CalvoPublished: 2018-01-25CVE: N/A Type: WebappsPlatform: HardwareAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A import sys import urllib3 ip = sys.argv[1]...
View ArticleWordPress Plugin Learning Management System - 'course_id' SQL Injection
EDB-ID: 43901Author: Esecurity.irPublished: 2018-01-26CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A Injection # Date: 2018-01-24 # Exploit Author: Esecurity.ir # Exploit Author Web Site:...
View ArticleBMC BladeLogic 8.3.00.64 - Remote Command Execution
EDB-ID: 43902Author: Paul TaylorPublished: 2018-01-26CVE: N/A Type: RemotePlatform: LinuxVulnerable App: N/A # Filename: BMC_rexec.py # Github: https://github.com/bao7uo/bmc_bladelogic # Date:...
View ArticleHot Scripts Clone Script 1.0 SQL Injection
Hot Scripts Clone Script version 1.0 suffers from a remote SQL injection vulnerability.MD5 | dd11ac53b70d4ac657bf655dc6ddd9e1Download# # # # # # Exploit Title: Hot Scripts Clone Script 1.0 - SQL...
View ArticleMultilanguage Real Estate MLM Script 3.0 SQL Injection
Multilanguage Real Estate MLM Script version 3.0 suffers from a remote SQL injection vulnerability.MD5 | eb1d9c6b4d5e71b25b7ad175c9adf9d3Download# # # # # # Exploit Title: Multilanguage Real Estate MLM...
View ArticleTask Rabbit Clone 1.0 SQL Injection
Task Rabbit Clone version 1.0 suffers from a remote SQL injection vulnerability.MD5 | b628904ff9a596452e134ff1f9a8c0acDownload# # # # # # Exploit Title: Task Rabbit Clone 1.0 - SQL Injection# Dork:...
View ArticleRapid7 Nexpose 6.4.65 Cross Site Request Forgery
Rapid7 Nexpose version 6.4.65 suffers from a cross site request forgery vulnerability.MD5 | 7912eb3f6c0edf7ab1245a3b608deaa7Download# Exploit Title: [Cross Site Request Forgery at Nexpose Automated...
View ArticleJoomla! JS Support Ticket 1.1.0 Cross Site Request Forgery
Joomla! JS Support Ticket component version 1.1.0 suffers from a cross site request forgery vulnerability.MD5 | 652967ee129e889e03e616980596a172Download<!--# # # # ## Exploit Title: Joomla!...
View ArticleVastal I-Tech Facebook Clone 2.9.9 SQL Injection
Vastal I-Tech Facebook Clone version 2.9.9 suffers from a remote SQL injection vulnerability.MD5 | d2361b0ea4c8c02889d2a3df29dff0a2Download# # # # # # Exploit Title: Vastal I-Tech Facebook Clone 2.9.9...
View ArticleJoomla! Jtag Members Directory 5.3.7 Arbitrary File Download
Joomla! Jtag Members Directory component version 5.3.7 suffers from an arbitrary file download vulnerability.MD5 | 22d9fe4f9b22dd59ed4c484b95c5c3b0Download# # # # ## Exploit Title: Joomla! Component...
View ArticleOracle WebLogic wls-wsat Component Deserialization Remote Code Execution
The Oracle WebLogic WLS WSAT component is vulnerable to an XML deserialization remote code execution vulnerability. Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.1.0 and...
View ArticleGnew 2018.1 - Cross-Site Request Forgery
EDB-ID: 43909Author: Cyril VallicariPublished: 2018-01-28CVE: N/A Type: WebappsPlatform: PHPVulnerable App: # Date: 26/01/2018 # Exploit Author: Cyril Vallicari / HTTPCS - ZIWIT # Vendor website :...
View ArticleTask Rabbit Clone 1.0 - 'id' SQL Injection
EDB-ID: 43914Author: Ihsan SencanPublished: 2018-01-28CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Task Rabbit Clone 1.0 - SQL Injection # Dork: N/A # Date: 27.01.2018 #...
View ArticleNetis WF2419 Router - Cross-Site Request Forgery
EDB-ID: 43919Author: Sajibe KantiPublished: 2018-01-28CVE: N/A Type: WebappsPlatform: HardwareVulnerable App: N/A # Date: 28/01/2018 # Exploit Author: Sajibe Kanti # Author Contact:...
View Article