Quantcast
Channel: Exploit Collector
Browsing all 13315 articles
Browse latest View live
↧

Image may be NSFW.
Clik here to view.

Justdial Clone Script - 'fid' Parameter SQL Injection

EDB-ID: 42717Author: Ihsan SencanPublished: 2017-09-14CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Justdial Clone Script - SQL Injection # Dork: N/A # Date: 14.09.2017 #...

View Article


Image may be NSFW.
Clik here to view.

Google Android CVE-2017-0781 Heap Buffer Overflow Vulnerability

Google Android is prone to a heap-based buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied data before copying it into an insufficiently sized buffer. Attackers...

View Article


Image may be NSFW.
Clik here to view.

EMC AlphaStor Library Manager < 4.0 build 910 - Opcode 0x4f Buffer Overflow...

EDB-ID: 42719Author: James FittsPublished: 2017-09-14CVE: CVE-2013-0946 Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule...

View Article

Image may be NSFW.
Clik here to view.

EMC AlphaStor Device Manager - Opcode 0x72 Buffer Overflow (Metasploit)

EDB-ID: 42720Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsVulnerable App: N/A class MetasploitModule < Msf::Exploit::Remote Rank = GreatRanking include...

View Article

Image may be NSFW.
Clik here to view.

Lockstep Backup for Workgroups 4.0.3 - Buffer Overflow (Metasploit)

EDB-ID: 42721Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule <...

View Article


Image may be NSFW.
Clik here to view.

Cloudview NMS 2.00b - Writable Directory Traversal Execution (Metasploit)

EDB-ID: 42725Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule <...

View Article

Image may be NSFW.
Clik here to view.

KingScada AlarmServer 3.1.2.13 - Stack Buffer Overflow (Metasploit)

EDB-ID: 42724Author: James FittsPublished: 2017-09-14CVE: CVE-2014-0787 Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule...

View Article

Image may be NSFW.
Clik here to view.

haneWIN DNS Server 1.5.3 - Buffer Overflow (Metasploit)

EDB-ID: 42723Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule <...

View Article


Image may be NSFW.
Clik here to view.

Microsoft Windows Bluetooth Driver CVE-2017-8628 Man in the Middle Spoofing...

Microsoft Windows is prone to a security vulnerability that may allow attackers to conduct spoofing attacks. An attacker can exploit this issue to conduct spoofing attacks and perform unauthorized...

View Article


Image may be NSFW.
Clik here to view.

Disk Pulse Server 2.2.34 Buffer Overflow

This Metasploit module exploits a buffer overflow vulnerability found in libpal.dll of Disk Pulse Server version 2.2.34. The overflow is triggered when sending an overly long 'GetServerInfo' request to...

View Article

Image may be NSFW.
Clik here to view.

haneWIN DNS Server 1.5.3 Buffer Overflow

This Metasploit module exploits a buffer overflow vulnerability found in haneWIN DNS Server versions 1.5.3 and below. The vulnerability is triggered by sending an overly long packet to the victim...

View Article

Image may be NSFW.
Clik here to view.

KingScada AlarmServer 3.1.2.13 Buffer Overflow

This Metasploit module exploits a stack based buffer overflow found in KingScada versions prior to 3.1.2.13. The vulnerability is triggered when sending a specially crafted packet to the 'AlarmServer'...

View Article

Image may be NSFW.
Clik here to view.

Carlo Gavazzi Powersoft 2.1.1.1 Directory Traversal

This Metasploit module exploits a directory traversal vulnerability found in Carlo Gavazzi Powersoft versions 2.1.1.1 and below. The vulnerability is triggered when sending a specially crafted GET...

View Article


Image may be NSFW.
Clik here to view.

Indusoft Web Studio Directory Traversal

This Metasploit module exploits a flaw found in Indusoft Web Studio versions 7.1 and below before SP2 Patch 4. This specific flaw allows users to browse outside of the webroot to download files found...

View Article

Image may be NSFW.
Clik here to view.

ICAffiliateTracking 1.1 SQL Injection

ICAffiliateTracking version 1.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass.MD5 | 7ff1d8471864cdeecf50b71e06b12c98Download# # # # # # Exploit Title:...

View Article


Image may be NSFW.
Clik here to view.

ICSiteBuilder 1.1 SQL Injection

ICSiteBuilder version 1.1 suffers from a remote SQL injection vulnerability.MD5 | 32974bbbeebe4f8e198e37a8d0b9de36Download# # # # # # Exploit Title: Website Builder Script With e-Commerce 1.1 - SQL...

View Article

Image may be NSFW.
Clik here to view.

Carel PlantVisor 2.4.4 Directory Traversal

Carel PlantVisor version 2.4.4 suffers from a directory traversal vulnerability.MD5 | 53c47349d004a5da5be6c028fec32469Downloadrequire 'msf/core'class MetasploitModule < Msf::Auxiliary Rank =...

View Article


Image may be NSFW.
Clik here to view.

Dameware Mini Remote Control 4.0 Username Stack Buffer Overflow

This Metasploit module exploits a stack based buffer overflow vulnerability found in Dameware Mini Remote Control v4.0. The overflow is caused when sending an overly long username to the DWRCS...

View Article

Image may be NSFW.
Clik here to view.

Cloudview NMS File Upload

This Metasploit module exploits a file upload vulnerability found within Cloudview NMS versions prior to 2.00b. The vulnerability is triggered by sending specialized packets to the server with...

View Article

Image may be NSFW.
Clik here to view.

Alienvault OSSIM av-centerd Util.pm sync_rserver Command Execution

This Metasploit module exploits a command injection vulnerability found within the sync_rserver function in Util.pm. The vulnerability is triggered due to an incomplete blacklist during the parsing of...

View Article
Browsing all 13315 articles
Browse latest View live