Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

F5 BIG-IP TMUI AJP Smuggling Remote Command Execution

0
Authored by Spencer McIntyre, Sandeep Singh, Thomas Hendrickson, Michael Weber | Site metasploit.com This Metasploit module exploits a flaw in F5's BIG-IP Traffic Management User Interface (TMU) that enables an...

Backdoor.Win32.MoonPie.40 Man-In-The-Middle

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.MoonPie.40 malware suffers from a man-in-the-middle vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/9dbb6d56bc9a7813305883acd0f9a355_B.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.MoonPie.40Vulnerability: Port Bounce ScanDescription:...

Trojan.Win32.Hotkeychick.d Insecure Permissions

0
Authored by malvuln | Site malvuln.com Trojan.Win32.Hotkeychick.d malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/aff493ed1f98ed05c360b462192d2853.txtContact: [email protected]: twitter.com/malvulnThreat: Trojan.Win32.Hotkeychick.dVulnerability: Insecure PermissionsDescription:...

Apache RocketMQ 5.1.0 Arbitrary Code Injection

Authored by h00die, jheysel-r7, Malayke | Site metasploit.com RocketMQ versions 5.1.0 and below are vulnerable to arbitrary code injection. Broker component of RocketMQ is leaked on the extranet and lack...

GetSimple CMS 3.3.4 Information Disclosure

Authored by Ron Jost GetSimple CMS version 3.3.4 suffers from an information disclosure vulnerability. advisories | CVE-2014-8722 Change Mirror Download # Exploit Title: GetSimple CMS 3.3.4 - Information Disclosure# Date 01.06.2021# Exploit Author:...

WordPress WPvivid Backup Path Traversal

0
Authored by Rodolfo Tavares | Site tempest.com.br WordPress WPvivid Backup plugin versions prior to 0.9.76 suffer from a path traversal vulnerability. advisories | CVE-2022-2863 Change Mirror Download ===============================Wordpress plugin - WPvivid Backup -...

OpenCart So Listing Tabs 2.2.0 Unsafe Deserialization

Authored by Daniil Sigalov, Maxim Malkov, Denis Mironov, Dmitry Pavlov, Alexey Smirnov OpenCart So Listing Tabs component versions 2.2.0 and below suffer from a deserialization vulnerability that can allow for...

Infix LMS 4.3.0 IFRAME Injection

0
Authored by th3d1gger Infix LMS version 4.3.0 suffers from an iframe injection vulnerability. Change Mirror Download # Exploit Title: Infix LMS - Learning Management System IFRAME Injection# Exploit Author: th3d1gger# Vendor Homepage:...

Datalife Engine 10 SQL Injection

0
Authored by indoushka Datalife Engine version 10 suffers from a remote SQL injection vulnerability. Change Mirror Download ====================================================================================================================================| # Title : Datalife Engine v10 (ir) SQl injection Vulnerability...

YahooPOPs 1.6 Denial Of Service

0
Authored by Fernando Mengali YahooPOPs version 1.6 remote denial of service exploit. Change Mirror Download use IO::Socket; sub intro { print q { ...
Error decoding the Instagram API json