Easy Hosting Control Panel 0.37.12.b Unverified Password Change
Easy Hosting Control Panel version 0.37.12.b suffers from an unverified password change vulnerability.MD5 | 791e45e8fcd14b89a834a308b18cccdeDownload[+] Credits: hyp3rlinx[+] Website:...
View ArticleMicrosoft Windows FxCop 12 XXE Injection
Microsoft FxCop versions 10 through 12 are vulnerable to XML injection attacks allowing local file ex-filtration and or NTLM hash theft. Tested in Windows 7 and Windows 10 download SDK it works in...
View ArticleMantis manage_proj_page PHP Code Execution
Mantis versions 1.1.3 and earlier are vulnerable to a post-authentication remote code execution vulnerability in the sort parameter of the manage_proj_page.php page.MD5 |...
View ArticleAllok Video Splitter 3.1.12.17 - Denial of Service
EDB-ID: 44605Author: AchillesPublished: 2018-05-09CVE: N/A Type: DosPlatform: WindowsVulnerable App: N/A # Exploit Title: Allok Video Splitter 3.1.1217 # Date: 2018-05-09 # Exploit Author: Achilles #...
View ArticleFastweb FASTGate 0.00.47 - Cross-site Request Forgery
EDB-ID: 44606Author: Raffaele SabatoPublished: 2018-05-10CVE: CVE-2018-6023 Type: WebappsPlatform: HardwareVulnerable App: N/A # Date: 09-05-2018 # Exploit Authors: Raffaele Sabato # Contact:...
View ArticleModbusPal 1.6b - XML External Entity Injection
EDB-ID: 44607Author: Trent GordonPublished: 2018-05-10CVE: CVE-2018-10832 Type: WebappsPlatform: JavaVulnerable App: [+] Date: 05-08-2018 [+] Exploit Author: Trent Gordon [+] Vendor Homepage:...
View ArticleMyBB Latest Posts on Profile Plugin 1.1 - Cross-Site Scripting
EDB-ID: 44608Author: 0xB9Published: 2018-05-10CVE: CVE-2018-10580 Type: WebappsPlatform: PHPVulnerable App: # Date: 4/20/2018 # Author: 0xB9 # Contact: luxorforums.com/User-0xB9 or 0xB9[at]pm.me #...
View ArticleAllok Video Splitter 3.1.12.17 Denial Of Service
Allok Video Splitter version 3.1.12.17 suffers from a denial of service vulnerability.MD5 |...
View ArticlephpVirtualBox 5.2 Cross Site Request Forgery / Cross Site Scripting
phpVirtualBox versions 5.2 and below suffer from cross site request forgery and cross site scripting vulnerabilities.MD5 | 6f277017b55f2e0f361b3b4855a39fdeDownload# Title: phpVirtualBox / CSRF - Stored...
View ArticleFastweb FASTGate 0.00.47 Cross Site Request Forgery
Fastweb FASTGate version 0.00.47 suffers from a cross site request forgery vulnerability.MD5 | 898f5c68093313dc70d83aa182a4da9bDownload# Exploit Title: Fastweb FASTgate 0.00.47 CSRF# Date: 09-05-2018#...
View ArticleModbusPal 1.6b XML External Entity Injection
ModbusPal version 1.6b suffers from an XML external entity injection vulnerability.MD5 | e271d1dc162e958b416d60b8016cb760Download[+] Exploit Title: ModbusPal XXE Injection[+] Date: 05-08-2018[+]...
View ArticleMyBB Latest Posts On Profile 1.1 Cross Site Scripting
MyBB Latest Posts on Profile plugin version 1.1 suffers from a cross site scripting vulnerability.MD5 | a3b41e73e4ce85c1ab47d3554dff49f3Download# Exploit Title: MyBB Latest Posts on Profile Plugin v1.1...
View ArticleLinux/x86 - Read /etc/passwd Shellcode (62 bytes)
EDB-ID: 44609Author: Nuno FreitasPublished: 2018-05-10CVE: N/A Type: ShellcodePlatform: Linux_x86Shellcode: Download / View Raw Shellcode Size: 62 bytes ; Title : Linux/x86 - Read /etc/passwd Shellcode...
View ArticleDell Touchpad - 'ApMsgFwd.exe' Denial of Service
EDB-ID: 44610Author: Souhail HammouPublished: 2018-05-10CVE: CVE-2018-10828 Type: DosPlatform: WindowsVulnerable App: N/A Title: Dell Touchpad - ApMsgFwd.exe Denial Of Service Author: Souhail Hammou...
View ArticleMantis 1.1.3 - manage_proj_page PHP Code Execution (Metasploit)
EDB-ID: 44611Author: MetasploitPublished: 2018-05-10CVE: CVE-2008-4687 Type: RemotePlatform: PHPAliases: N/AAdvisory/Source: LinkTags: Metasploit Framework (MSF)Vulnerable App: # This module requires...
View ArticleDell Touchpad ApMsgFwd.exe Denial Of Service
Dell Touchpad ApMsgFwd.exe suffers from a denial of service vulnerability.MD5 | 45d63e35402ea4ab4377b717de0e2b34Download/*Title: Dell Touchpad - ApMsgFwd.exe Denial Of ServiceAuthor: Souhail...
View ArticleLinux/x86 Read /etc/passwd Shellcode
62 bytes small Linux/x86 read /etc/passwd shellcode.MD5 | 22d749d25bebf4705648c7f284a33b44Download/*; Title : Linux/x86 - Read /etc/passwd Shellcode (62 bytes); Date : May, 2018; Author : Nuno Freitas;...
View ArticleOpen-AudIT Community - 2.2.0 – Cross-Site Scripting
EDB-ID: 44613Author: Tejesh KolisettyPublished: 2018-05-11CVE: CVE-2018-10314 Type: WebappsPlatform: WindowsVulnerable App: N/A # Exploit Author: Tejesh Kolisetty # # Vendor Homepage:...
View ArticleOpen-AudIT Professional - 2.1.1 - Cross-Site Scripting
EDB-ID: 44612Author: Tejesh KolisettyPublished: 2018-05-11CVE: CVE-2018-9155 Type: WebappsPlatform: WindowsVulnerable App: N/A # Exploit Author: Tejesh Kolisetty # Vendor Homepage:...
View ArticleEMC RecoverPoint 4.3 - 'Admin CLI' Command Injection
EDB-ID: 44614Author: Paul TaylorPublished: 2018-05-11CVE: CVE-2018-1185 Type: LocalPlatform: WindowsVulnerable App: N/A # Version: RecoverPoint prior to 5.1.1 RecoverPoint for VMs prior to 5.0.1.3 #...
View Article