Axis Communications MPQT/PACS - Heap Overflow / Information Leakage
EDB-ID: 43985Author: bashisPublished: 2017-11-30CVE: N/A Type: RemotePlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Subject: Axis Communications MPQT/PACS Heap Overflow...
View ArticleAdobe Flash Player CVE-2018-4877 Use After Free Remote Code Execution...
Adobe Flash Player is prone to an unspecified remote code-execution vulnerability. Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected...
View ArticleHot Scripts Clone Script Classified - Persistent Cross-Site Scripting
EDB-ID: 43991Author: Prasenjit Kanti PaulPublished: 2018-02-07CVE: N/A Type: WebappsPlatform: PHPAliases: N/AAdvisory/Source: N/ATags: Cross-Site Scripting (XSS)Vulnerable App: N/A # Exploit Title: Hot...
View ArticleAsterisk 13.17.2 - 'chan_skinny' Remote Memory Corruption
EDB-ID: 43992Author: Juan SaccoPublished: 2018-02-07CVE: CVE-2017-17090 Type: DosPlatform: MultipleVulnerable App: N/A # Vulnerability found using Exploit Pack v10 - Fuzzer module # CVE-2017-17090 -...
View ArticleAdobe Coldfusion 11.0.03.292866 - BlazeDS Java Object Deserialization Remote...
EDB-ID: 43993Author: Faisal TameeshPublished: 2018-02-07CVE: CVE-2017-3066 Type: RemotePlatform: WindowsVulnerable App: N/A # Date: February 6, 2018 # Exploit Author: Faisal Tameesh (@DreadSystems) #...
View ArticleEntrepreneur Dating Script 2.0.2 - Authentication Bypass
EDB-ID: 43995Author: L0RDPublished: 2018-02-07CVE: N/A Type: WebappsPlatform: PHPAliases: N/AAdvisory/Source: N/ATags: Authentication Bypass / Credentials Bypass (AB/CB)Vulnerable App: N/A # Dork: N/A...
View ArticleOnline Test Script 2.0.7 - 'cid' SQL Injection
EDB-ID: 43994Author: L0RDPublished: 2018-02-07CVE: N/A Type: WebappsPlatform: PHPAliases: N/AAdvisory/Source: N/ATags: SQL Injection (SQLi)Vulnerable App: N/A # Dork: N/A # Date: 2018-02-07 # Exploit...
View ArticleMultiple OEM - 'nsd' Remote Stack Format String (PoC)
EDB-ID: 43998Author: bashisPublished: 2017-12-14CVE: N/A Type: DosPlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Subject: Remote Stack Format String in 'nsd' binary...
View ArticleHerospeed - 'TelnetSwitch' Remote Stack Overflow / Overwrite Password /...
EDB-ID: 43997Author: bashisPublished: 2018-01-22CVE: N/A Type: RemotePlatform: HardwareAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A # # Herospeed TelnetSwitch daemon running on...
View ArticleAndroid - 'getpidcon' Permission Bypass in KeyStore Service
EDB-ID: 43996Author: Google Security ResearchPublished: 2018-02-07CVE: CVE-2017-13236 Type: DosPlatform: AndroidAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Binder calls to this...
View ArticleUniview - Remote Command Execution / Export Config (PoC)
EDB-ID: 43999Author: bashisPublished: 2017-10-28CVE: N/A Type: RemotePlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Subject: Uniview RCE and export config PoC...
View ArticleVivotek IP Cameras - Remote Stack Overflow (PoC)
EDB-ID: 44001Author: bashisPublished: 2017-12-12CVE: N/A Type: RemotePlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Subject: Vivotek IP Cameras - Remote Stack Overflow...
View ArticleVitek - Remote Command Execution / Information Disclosure (PoC)
EDB-ID: 44000Author: bashisPublished: 2017-12-22CVE: N/A Type: RemotePlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Subject: Vitek RCE and Information Disclosure (and...
View ArticleGeovision Inc. IP Camera / Video Server Remote Command Execution
Geovision Inc. IP Camera and Video Server remote command execution proof of concept exploit.MD5 | 420b8077a65259982e45e68c08322a8eDownload#!/usr/bin/env python2.7## [SOF]## Geovision Inc. IP Camera...
View ArticleAdobe Coldfusion 11.0.03.292866 Remote Code Execution
Adobe Coldfusion version 11.0.03.292866 BlazeDS java object deserialization remote code execution exploit.MD5 | 46942c29e2b6e97ace05a01a10b9e844Download# Exploit Title: Adobe Coldfusion BlazeDS Java...
View ArticlePHP Scripts Mall Doctor Search Script 1.0.2 Cross Site Scripting
PHP Scripts Mall Doctor Search Script version 1.0.2 suffers from a cross site scripting vulnerability.MD5 |...
View ArticleEntrepreneur Dating Script 2.0.2 SQL Injection
Entrepreneur Dating Script version 2.0.2 suffers from a remote SQL injection vulnerability that allows for authentication bypass.MD5 | 37b651d336e329ba123f9e285d8625d7Download# Exploit Title:...
View ArticleMultilanguage Real Estate MLM Script 3.0 Cross Site Scripting
Multilanguage Real Estate MLM Script versions 3.0 and below suffer from a persistent cross site scripting vulnerability.MD5 |...
View ArticleHot Script Clone Script Classified 3.1 Cross Site Scripting
Hot Scripts Clone Script Classified version 3.1 suffers from a cross site scripting vulnerability.MD5 |...
View ArticleOnline Test Script 2.0.7 SQL Injection
Online Test Script version 2.0.7 suffers from a remote SQL injection vulnerability.MD5 | 06ba3c5e5e249db267655e898dca94b8Download# Exploit Title: Online Test Script 2.0.7 - 'cid' SQL Injection# Dork:...
View Article