IKARUS anti.virus 2.16.7 - 'ntguard_x64' Privilege Escalation
EDB-ID: 43139Author: Parvez AnwarPublished: 2017-11-13CVE: CVE-2017-14961 Type: LocalPlatform: WindowsVulnerable App: N/A Exploit Title - IKARUS anti.virus Arbitrary Write Privilege Escalation Date -...
View ArticleWeb Viewer 1.0.0.193 (Samsung SRN-1670D) - Unrestricted File Upload
EDB-ID: 43138Author: 0xFFFFFFPublished: 2017-11-13CVE: CVE-2017-16524 Type: WebappsPlatform: PHPVulnerable App: N/A # Date: 2017-06-19 # Exploit Author: Omar MEZRAG - 0xFFFFFF /...
View ArticleSymantec Endpoint Protection 12.1.6 Tamper Protection Bypass
Symantec Endpoint Protection version 12.1.6 suffers from a tamper protection bypass vulnerability.MD5 | a388095559ccdfc375dc8c0bc9cc2a2cDownload[+] Credits: John Page a.k.a hyp3rlinx [+] Website:...
View ArticleWeb Viewer 1.0.0.193 (Samsung SRN-1670D) File Upload
Web Viewer version 1.0.0.193 on Samsung SRN-1670D suffers from an unrestricted file upload vulnerability.MD5 | d9d0141c75c8720896498290d78b9503Download# Exploit Title: Unrestricted file upload...
View ArticleIKARUS AntiVirus 2.16.7 Privilege Escalation
IKARUS AntiVirus version 2.16.7 suffers from an ntguard_x64 privilege escalation vulnerability.MD5 | 434c81ff2cd4c040f4946babfa4ec998Download/*Exploit Title - IKARUS anti.virus Arbitrary Write...
View ArticleMonstra CMS 3.0.4 Cross Site Scripting
Monstra CMS version 3.0.4 suffers from a cross site scripting vulnerability.MD5 | 41a4c2a8ca6763bd8a884f748040aeb3Download ___________________________________________________|| Exploit Title: Monstra...
View ArticleKirbyCMS Cross Site Scripting
KirbyCMS versions prior to 2.5.7 suffer from a persistent cross site scripting vulnerability.MD5 | ab1434ceb1cd9757d687ad7f73ee0ccaDownload# Exploit Title: KirbyCMS <2.5.7 Stored Cross Site...
View ArticleXlight FTP Server 3.8.8.5 Buffer Overflow
Xlight FTP Server version 3.8.8.5 buffer overflow proof of concept exploit.MD5 | 04ca2efc16ac86410b0b8ec54d0cf44aDownload#!/usr/bin/python## Exploit Author: bzyo# Twitter: @bzyo_# Exploit Title: Xlight...
View ArticleWordPress Appointments 2.2.2.2 Cross Site Scripting
WordPress Appointments plugin version 2.2.2.2 suffers from a persistent cross site scripting vulnerability.MD5 | 31979d5711c68659f005497416506bc2DownloadClass Input Validation ErrorRemote YesCredit...
View ArticleWordPress Cartogiraffe Map 1.0 Cross Site Scripting
WordPress Cartogiraffe Map version 1.0 suffers from a persistent cross site scripting vulnerability.MD5 | c027d61cf82d7dae53de898da6436d15DownloadClass Input Validation ErrorRemote YesCredit Ricardo...
View ArticleWordPress Boozang 1.0.0 Cross Site Scripting
WordPress Boozang plugin version 1.0.0 suffers from a cross site scripting vulnerability.MD5 | 07790d7c65071a3b9f6564d2737b13aaDownloadClass Input Validation ErrorRemote YesCredit Ricardo...
View ArticlePSFTPd Windows FTP Server 10.0.4 Build 729 Use-After-Free / Log Injection
PSFTPd Windows FTP Server version 10.0.4 Build 729 suffers from use-after-free, log injection, and various other vulnerabilities.MD5 | a6b220a3915564ca47ef1ce14c453651DownloadX41 D-Sec GmbH Security...
View ArticleSingTel / Aztech DSL8900GR(AC) Authentication Bypass
SingTel / Aztech DSL8900GR(AC) router suffers from an authentication bypass vulnerability.MD5 | ee8b1ae2927dbcc35863ed13ddae584fDownloadCredit: CortDate: 5 Aug 2017CVE: Not assignedVendor: Aztech...
View ArticleD-Link DIR-850L Unauthenticated Command Execution
This Metasploit module leverages an unauthenticated credential disclosure vulnerability to execute arbitrary commands on DIR-850L routers as an authenticated user.MD5 |...
View ArticleKirby CMS < 2.5.7 - Cross-Site Scripting
EDB-ID: 43140Author: Ishaq MohammedPublished: 2017-11-13CVE: CVE-2017-16807 Type: WebappsPlatform: PHPVulnerable App: N/A # Vendor Homepage: https://getkirby.com/ # Software Link:...
View ArticleUlterius Server < 1.9.5.0 - Directory Traversal
EDB-ID: 43141Author: Rick OsgoodPublished: 2017-11-13CVE: CVE-2017-16806 Type: RemotePlatform: WindowsVulnerable App: N/A # Date: 11/13/2017 # Exploit Author: Rick Osgood # Vendor Homepage:...
View ArticleWordPress Affiliate Ads For Clickbank Products 1.3 XSS
WordPress Affiliate Ads for Clickbank Products plugin version 1.3 suffers from a cross site scripting vulnerability.MD5 | da711e4a4333cb8623f2939e09c9f31aDownloadClass Input Validation ErrorRemote...
View ArticleWordPress AMP Toolbox 1.9.4 Cross Site Scripting
WordPress AMP Toolbox plugin version 1.9.4 suffers from a cross site scripting vulnerability.MD5 | b6a83e59a1a7fb15d444d25ce7eab902DownloadClass Input Validation ErrorRemote YesCredit Ricardo...
View ArticleWordPress DFD Reddcoin Tips 1.1.1 Cross Site Scripting
WordPress DFD Reddcoin Tips plugin version 1.1.1 suffers from a cross site scripting vulnerability.MD5 | 1b70914b34048eb9b0dc996a52585241DownloadClass Input Validation ErrorRemote YesCredit Ricardo...
View ArticleSiemens SICAM RTUs SM-2556 COM Modules XSS / Bypass / Code Execution
Siemens SICAM RTUs SM-2556 COM modules (firmware variants ENOS00, ERAC00, ETA2, ETLS00, MODi00, and DNPi00) suffer from authentication bypass, code execution, and cross site scripting...
View Article