Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

CosaNostra Builder WebPanel Insecure Cryptographic Storage

0
Authored by malvuln | Site malvuln.com CosaNostra Builder WebPanel malware only uses straight MD5 to store passwords without any salt. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2022Original source:...

FAUST iServer 9.0.018.018.4 Local File Inclusion

0
Authored by Mario Keck | Site sec-consult.com Land Software's FAUST iServer versions 9.0.017.017.1-3 through 9.0.018.018.4 suffer from a local file inclusion vulnerability. advisories | CVE-2021-34805 Change Mirror Download SEC Consult Vulnerability Lab Security...

Ametys CMS 4.4.1 Cross Site Scripting

0
Authored by Vulnerability Laboratory | Site vulnerability-lab.com Ametys CMS version 4.4.1 suffers from a cross site scripting vulnerability. Change Mirror Download Document Title:===============Ametys v4.4.1 CMS - Cross Site Scripting VulnerabilityReferences (Source):====================https://www.vulnerability-lab.com/get_content.php?id=2275Release Date:=============2022-01-12Vulnerability...

Backdoor.Win32.DRA.c Weak Hardcoded Password

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.DRA.c malware suffers from a weak hardcoded password vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2022Original source: https://malvuln.com/advisory/5ff832ce6af4b03a709eaf380672cf34.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.DRA.cVulnerability: Weak...

CosaNostra Builder Insecure Permissions

0
Authored by malvuln | Site malvuln.com CosaNostra Builder malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2022Original source: https://malvuln.com/advisory/61285c988de52b7c067fb2e703f2ab83.txtContact: [email protected]: twitter.com/malvulnThreat: CosaNostra Builder...

Xerox Versalink Denial Of Service

0
Authored by Mahmoud Al-Qudsi Xerox Versalink printers suffer from a remote denial of service vulnerability using a specially crafted TIFF payload. Change Mirror Download Credits: Mahmoud Al-Qudsi Website: https://neosmart.net/ Source: https://neosmart.net/blog/?p=4865...

Backdoor.Win32.Wisell Remote Command Execution

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.Wisell malware suffers from a remote command execution vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2022Original source: https://malvuln.com/advisory/57bda78cc5fd6a06017148bae28e8e39.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.WisellVulnerability: Unauthenticated...

Ransomware Builder Babuk Insecure Permissions

0
Authored by malvuln | Site malvuln.com Ransomware Builder Babuk malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2022Original source: https://malvuln.com/advisory/5dfa998f62612e10d5d28d26948dd50f.txtContact: [email protected]: twitter.com/malvulnThreat: Ransomware...

VMware vCenter Server Unauthenticated Log4Shell JNDI Injection Remote Code Execution

0
Authored by Spencer McIntyre, RageLtMan, jbaines-r7, w3bd3vil | Site metasploit.com VMware vCenter Server is affected by the Log4Shell vulnerability whereby a JNDI string can be sent to the server that...

Grandstream GXV3175 Unauthenticated Command Execution

0
Authored by Brendan Coles, alhazred, Brendan Scarvell | Site metasploit.com This Metasploit module exploits a command injection vulnerability in Grandstream GXV3175 IP multimedia phones. The settimezone action does not validate...