InfoZip UnZip 6.00 / 6.1c22 Buffer Overflow
InfoZip UnZip versions 6.00 and below and 6.1c22 and below suffer from multiple buffer overflow vulnerabilities.MD5 | bdf125c9b1ccf7ea7ce8e8e8062e3d85DownloadSEC Consult Vulnerability Lab Security...
View ArticleNaukri Clone Script 3.0.3 Cross Site Scripting
Naukri Clone Script version 3.0.3 suffers from a persistent cross site scripting vulnerability.MD5 |...
View ArticleMalwareFox AntiMalware 2.74.0.150 Privilege Escalation
MalwareFox AntiMalware version 2.74.0.150 suffers from a local privilege escalation vulnerability.MD5 | 498a3b3acaf5c7ca458b06dc7061d0dcDownload/*Title: MalwareFox AntiMalware 2.74.0.150 - Local...
View ArticleCisco ASA Crash Proof Of Concept
Cisco ASA crash proof of concept exploit.MD5 | 49a72c843e58b62bc3926abab78f08edDownload## Cisco ASA CVE-2018-0101 Crash PoC## We basically just read:#...
View ArticleAsterisk 13.17.2 chan_skinny Remote Memory Corruption
Asterisk version 13.17.2 chan_skinny remote memory corruption exploit.MD5 | 3b1c78eff3f3c7398a3f857e84fd7446Download# Exploit Author: Juan Sacco <jsacco@exploitpack.com> - http://exploitpack.com#...
View ArticleHPE iLO4 < 2.53 - Add New Administrator User
EDB-ID: 44005Author: skelsecPublished: 2018-02-05CVE: CVE-2017-12542 Type: RemotePlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A """ Exploit trigger was presented...
View ArticleMarked2 - Local File Disclosure
EDB-ID: 44006Author: Corben LeoPublished: 2018-02-06CVE: N/A Type: LocalPlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A <script> var file = "file:///etc/passwd";...
View ArticleMarked2 Local File Disclosure
Marked2 suffers from a local file disclosure vulnerability.MD5 | b4f74b1272ff2ea1ecb3b528ef704c4dDownload<body><script>var file = "file:///etc/passwd";var extract =...
View ArticleHPE iLO4 Add New Administrator User
HPE iLO4 versions prior to 2.54 add new administrator user exploit.MD5 | dad171f6ad6ef46cbcae5e002666ac46Download#!/usr/bin/env python"""Exploit trigger was presented @reconbrx 2018Vulnerability found...
View ArticlemacOS AppleEmbeddedOSSupportHostClient::registerNotificationPort Use-After-Free
The macOS kernel suffers from a use-after-free issue due to a lack of locking in AppleEmbeddedOSSupportHostClient::registerNotificationPort.MD5 |...
View ArticleSonatype Nexus Repository Manager OSS/Pro 2.14.5 / 3.7.1 XSS
Sonatype Nexus Repository Manager OSS/Pro versions 2.14.5 and below and 3.7.1 and below suffer from multiple cross site scripting vulnerabilities.MD5 | d8db6bf44d8c74387012dc1f924a979aDownloadSEC...
View ArticlephpMyAdmin Cross Site Request Forgery Vulnerability
phpMyAdmin is prone to a cross-site request-forgery vulnerability because it does not properly validate HTTP requests. Exploiting this issue may allow a remote attacker to perform certain unauthorized...
View ArticlemacOS Kernel - Use-After-Free Due to Lack of Locking in...
EDB-ID: 44007Author: Google Security ResearchPublished: 2018-02-09CVE: CVE-2018-4083 Type: DosPlatform: macOSAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A...
View ArticleNaukri Clone Script 3.0.3 - 'indus' SQL Injection
EDB-ID: 44008Author: L0RDPublished: 2018-02-10CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Dork: N/A # Date: 2018-02-08 # Exploit Author: Borna nematzadeh (L0RD) or...
View ArticleJBoss 4.2.x/4.3.x - Information Disclosure
EDB-ID: 44009Author: JameelNabboPublished: 2018-02-10CVE: CVE-2010-1429 Type: RemotePlatform: MultipleVulnerable App: N/A # Date: 02/08/2018 # Exploit Author: JameelNabbo # Vendor Homepage:...
View ArticleSchools Alert Management Script 2.0.2 - Arbitrary File Upload
EDB-ID: 44011Author: Prasenjit Kanti PaulPublished: 2018-02-10CVE: CVE-2018-6860 Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Schools Alert Management Script - 2.0.2 - Arbitrary File...
View ArticleFacebook Clone Script 1.0.5 - Cross-Site Scripting
EDB-ID: 44010Author: Prasenjit Kanti PaulPublished: 2018-02-10CVE: CVE-2018-6858 Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Facebook Clone Script 1.0.5 - Stored XSS # Date:...
View ArticleSelect Your College Script 2.0.2 - Authentication Bypass
EDB-ID: 44014Author: Prasenjit Kanti PaulPublished: 2018-02-10CVE: CVE-2018-6863 Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Select Your College Script - 2.0.2 - Authentication...
View ArticleLawyer Search Script 1.0.2 - Cross-Site Scripting
EDB-ID: 44012Author: Prasenjit Kanti PaulPublished: 2018-02-10CVE: CVE-2018-6861 Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Lawyer Search Script - 1.0.2 - Stored XSS # Date:...
View ArticleBitcoin MLM Software 1.0.2 - Cross-Site Scripting
EDB-ID: 44013Author: Prasenjit Kanti PaulPublished: 2018-02-10CVE: CVE-2018-6862 Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Bitcoin MLM Software 1.0.2 - Stored XSS # Date:...
View Article