Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Delta Electronics DX-2100-L1-CN 1.5.0.10 Command Injection / XSS

0
Authored by T. Weber | Site cyberdanube.com Delta Electronics DX-2100-L1-CN version 1.5.0.10 suffers from command injection and cross site scripting vulnerabilities. Change Mirror Download CyberDanube Security Research 20221130-0------------------------------------------------------------------------------- ...

Delta Electronics DVW-W02W2-E2 2.42 Command Injection

0
Authored by T. Weber | Site cyberdanube.com Delta Electronics DVW-W02W2-E2 version 2.42 suffers from an authenticated command injection vulnerability. Change Mirror Download CyberDanube Security Research 20221130-1------------------------------------------------------------------------------- ...

Planet eStream Code Execution / SQL Injection / XSS / Broken Control

0
Authored by Philipp Espernberger, Timon Vogel, Hrvoje Filakovic | Site sec-consult.com Planet eStream versions prior to 6.72.10.07 suffer from shell upload, account takeover, broken access control, SQL injection, both persistent...

Backdoor.Win32.Delf.gj MVID-2022-0663 Information Disclosure

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.Delf.gj malware suffers from an information leakage vulnerability. Change Mirror Download Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2022Original source: https://malvuln.com/advisory/8872c2ec49ff3382240762a029631684.txtContact: [email protected]: twitter.com/malvulnBackup media:...

Packet Storm New Exploits For November, 2022

0
Authored by Todd J. | Site packetstormsecurity.com This archive contains all of the 69 exploits added to Packet Storm in November, 2022.

Zillya Total Security 3.0.2367.0 / 3.0.2368.0 Local Privilege Escalation

0
Authored by M. Akil Gundogan Zillya Total Security versions 3.0.2367.0 and 3.0.2368.0 suffer from a local privilege escalation vulnerability via a symlink vulnerability when using the quarantine module. Change Mirror Download #...

Automotive Shop Management System 1.0 SQL Injection

0
Authored by nu11secur1ty Automotive Shop Management System version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download ## Title: ASMS - PHP (by: oretnom23 ) v1.0 SQLi## Author: nu11secur1ty## Date:...

Drupal H5P Module 2.0.0 Zip Slip Traversal

0
Authored by EgiX | Site karmainsecurity.com Drupal H5P Module versions 2.0.0 and below suffer from a traversal vulnerability when handling a zipped filename on windows. Change Mirror Download ------------------------------------------------------------------Drupal H5P Module <=...

Senayan Library Management System 9.5.1 SQL Injection

0
Authored by nu11secur1ty Senayan Library Management System version 9.5.1 suffers from a remote SQL injection vulnerability. Change Mirror Download ## Title: Senayan Library Management System v9.5.1 a.k.a SLIMS 9 SQLi## Author: nu11secur1ty##...

VMware vCenter vScalation Privilege Escalation

0
Authored by h00die, Yuval Lazar | Site metasploit.com This Metasploit module exploits a privilege escalation in vSphere/vCenter due to improper permissions on the /usr/lib/vmware-vmon/java-wrapper-vmon file. It is possible for anyone...