Justdial Clone Script - 'fid' Parameter SQL Injection
EDB-ID: 42717Author: Ihsan SencanPublished: 2017-09-14CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: Justdial Clone Script - SQL Injection # Dork: N/A # Date: 14.09.2017 #...
View ArticleGoogle Android CVE-2017-0781 Heap Buffer Overflow Vulnerability
Google Android is prone to a heap-based buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied data before copying it into an insufficiently sized buffer. Attackers...
View ArticleEMC AlphaStor Library Manager < 4.0 build 910 - Opcode 0x4f Buffer Overflow...
EDB-ID: 42719Author: James FittsPublished: 2017-09-14CVE: CVE-2013-0946 Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule...
View ArticleEMC AlphaStor Device Manager - Opcode 0x72 Buffer Overflow (Metasploit)
EDB-ID: 42720Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsVulnerable App: N/A class MetasploitModule < Msf::Exploit::Remote Rank = GreatRanking include...
View ArticleLockstep Backup for Workgroups 4.0.3 - Buffer Overflow (Metasploit)
EDB-ID: 42721Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule <...
View ArticleCloudview NMS 2.00b - Writable Directory Traversal Execution (Metasploit)
EDB-ID: 42725Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule <...
View ArticleKingScada AlarmServer 3.1.2.13 - Stack Buffer Overflow (Metasploit)
EDB-ID: 42724Author: James FittsPublished: 2017-09-14CVE: CVE-2014-0787 Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule...
View ArticlehaneWIN DNS Server 1.5.3 - Buffer Overflow (Metasploit)
EDB-ID: 42723Author: James FittsPublished: 2017-09-14CVE: N/A Type: RemotePlatform: WindowsAliases: N/AAdvisory/Source: N/ATags: Metasploit FrameworkVulnerable App: N/A class MetasploitModule <...
View ArticleMicrosoft Windows Bluetooth Driver CVE-2017-8628 Man in the Middle Spoofing...
Microsoft Windows is prone to a security vulnerability that may allow attackers to conduct spoofing attacks. An attacker can exploit this issue to conduct spoofing attacks and perform unauthorized...
View ArticleDisk Pulse Server 2.2.34 Buffer Overflow
This Metasploit module exploits a buffer overflow vulnerability found in libpal.dll of Disk Pulse Server version 2.2.34. The overflow is triggered when sending an overly long 'GetServerInfo' request to...
View ArticlehaneWIN DNS Server 1.5.3 Buffer Overflow
This Metasploit module exploits a buffer overflow vulnerability found in haneWIN DNS Server versions 1.5.3 and below. The vulnerability is triggered by sending an overly long packet to the victim...
View ArticleKingScada AlarmServer 3.1.2.13 Buffer Overflow
This Metasploit module exploits a stack based buffer overflow found in KingScada versions prior to 3.1.2.13. The vulnerability is triggered when sending a specially crafted packet to the 'AlarmServer'...
View ArticleCarlo Gavazzi Powersoft 2.1.1.1 Directory Traversal
This Metasploit module exploits a directory traversal vulnerability found in Carlo Gavazzi Powersoft versions 2.1.1.1 and below. The vulnerability is triggered when sending a specially crafted GET...
View ArticleIndusoft Web Studio Directory Traversal
This Metasploit module exploits a flaw found in Indusoft Web Studio versions 7.1 and below before SP2 Patch 4. This specific flaw allows users to browse outside of the webroot to download files found...
View ArticleICAffiliateTracking 1.1 SQL Injection
ICAffiliateTracking version 1.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass.MD5 | 7ff1d8471864cdeecf50b71e06b12c98Download# # # # # # Exploit Title:...
View ArticleICSiteBuilder 1.1 SQL Injection
ICSiteBuilder version 1.1 suffers from a remote SQL injection vulnerability.MD5 | 32974bbbeebe4f8e198e37a8d0b9de36Download# # # # # # Exploit Title: Website Builder Script With e-Commerce 1.1 - SQL...
View ArticleCarel PlantVisor 2.4.4 Directory Traversal
Carel PlantVisor version 2.4.4 suffers from a directory traversal vulnerability.MD5 | 53c47349d004a5da5be6c028fec32469Downloadrequire 'msf/core'class MetasploitModule < Msf::Auxiliary Rank =...
View ArticleDameware Mini Remote Control 4.0 Username Stack Buffer Overflow
This Metasploit module exploits a stack based buffer overflow vulnerability found in Dameware Mini Remote Control v4.0. The overflow is caused when sending an overly long username to the DWRCS...
View ArticleCloudview NMS File Upload
This Metasploit module exploits a file upload vulnerability found within Cloudview NMS versions prior to 2.00b. The vulnerability is triggered by sending specialized packets to the server with...
View ArticleAlienvault OSSIM av-centerd Util.pm sync_rserver Command Execution
This Metasploit module exploits a command injection vulnerability found within the sync_rserver function in Util.pm. The vulnerability is triggered due to an incomplete blacklist during the parsing of...
View Article