Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Microsoft Exchange AD Schema Misconfiguration Privilege Escalation

0
Authored by James Forshaw, Google Security Research The msExchStorageGroup schema class added during Exchange installation can be used to create almost any AD object including users, groups or domain trusts...

ObjectPlanet Opinio 7.12 Cross Site Scripting

0
Authored by Ang Kar Min ObjectPlanet Opinio version 7.12 suffers from reflective and persistent cross site scripting vulnerabilities. advisories | CVE-2020-26563 Change Mirror Download # Exploit Title: ObjectPlanet Opinio 7.12 allows Cross-Site Scripting#...

Denver IP Camera SHO-110 Snapshot Disclosure

0
Authored by Ivan Nikolsky Denver IP Camera SHO-110 suffers from an unauthenticated disclosure of a snapshot. Change Mirror Download # Exploit Title: Denver IP Camera SHO-110 - Unauthenticated Snapshot# Date: 28 July...

Longjing Technology BEMS API 1.21 Remote Arbitrary File Download

0
Authored by LiquidWorm | Site zeroscience.mk Longjing Technology BEMS API version 1.21 suffers from an unauthenticated arbitrary file download vulnerability. Input passed through the fileName parameter through downloads endpoint is...

Oracle Fatwire 6.3 Cross Site Scripting / SQL Injection

0
Authored by J. Francisco Bolivar Oracle Fatwire version 6.3 suffers from cross site scripting and remote SQL injection vulnerabilities. Change Mirror Download # Exploit Title: Oracle Fatwire 6.3 - Multiple Vulnerabilities# Date:...

Event Registration System With QR Code 1.0 Shell Upload

Authored by Javier Olmedo Event Registration System with QR Code version 1.0 suffers from authentication bypass and shell upload vulnerabilities. Change Mirror Download # Exploit Title: Event Registration System with QR Code...

Backdoor.Win32.WinShell.40 Code Execution

Authored by malvuln | Site malvuln.com Backdoor.Win32.WinShell.40 malware suffers from a code execution vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/c98e23742807f3cb5a095f34e0eb0e52.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.WinShell.40Vulnerability: Unauthenticated Remote...

IntelliChoice eFORCE Software Suite 2.5.9 Username Enumeration

Authored by LiquidWorm | Site zeroscience.mk IntelliChoice eFORCE Software Suite version 2.5.9 allows for username enumeration. Change Mirror Download IntelliChoice eFORCE Software Suite v2.5.9 Username EnumerationVendor: IntelliChoice, Inc.Product web page: https://www.eforcesoftware.comAffected version:...

Care2x Integrated Hospital Info System 2.7 SQL Injection

Authored by securityforeveryone.com Care2x Integrated Hospital Info System version 2.7 suffers from multiple remote SQL injection vulnerabilities. Change Mirror Download # Exploit Title: Care2x Integrated Hospital Info System 2.7 - 'Multiple' SQL...

CloverDX 5.9.0 Code Execution / Cross Site Request Forgery

Authored by niebardzo CloverDX version 5.9.0 cross site request forgery to remote code execution exploit. advisories | CVE-2021-29995 Change Mirror Download # Exploit Title: CloverDX 5.9.0 - Cross-Site Request Forgery (CSRF) to Remote...