Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Backdoor.Win32.Agent.bjev Insecure Permissions

Authored by malvuln | Site malvuln.com Backdoor.Win32.Agent.bjev malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/ca40998b5d62ee7f936537ff3de7993d.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Agent.bjev Vulnerability: Insecure...

Dolibarr ERP/CRM 10.0.6 Login Brute Forcer

Authored by Creamy Chicken Soup Dolibarr ERP/CRM version 10.0.6 login brute forcing exploit. advisories | CVE-2020-7995 Change Mirror Download # Exploit Title: Dolibarr ERP/CRM 10.0.6 - Login Brute Force# Date:2020-01-18# Exploit Author: Creamy...

Trojan-Spy.Win32.SpyEyes.abdb Insecure Permissions

Authored by malvuln | Site malvuln.com Trojan-Spy.Win32.SpyEyes.abdb malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/9185538b01ad700603f38fb0eb8b6e3b.txtContact: [email protected]: twitter.com/malvulnThreat: Trojan-Spy.Win32.SpyEyes.abdbVulnerability: Insecure Permissions...

WordPress Popular Posts 5.3.2 Shell Upload

Authored by Simone Cristofaro WordPress Popular Posts plugin version 5.3.2 suffers from a remote shell upload vulnerability. Change Mirror Download # Exploit Title: WordPress Plugin Popular Posts 5.3.2 - Remote Code Execution...

Tor Half-Closed Connection Stream Confusion

Authored by Jann Horn, Google Security Research Tor suffers from an issue where half-closed connection tracking ignores layer_hint and due to this, entry/middle relays can spoof RELAY_END cells on half-closed...

VMware ThinApp DLL Hijacking

Authored by houjingyi VMware ThinApp suffered from a dll hijacking vulnerability. advisories | CVE-2021-22000 Change Mirror Download A few months ago I disclosed IBM(R) Db2(R) Windows client DLLHijacking Vulnerability(0day) I found:https://seclists.org/fulldisclosure/2021/Feb/73In that post...

Aruba Instant (IAP) Remote Code Execution

Authored by Aleph Security Aruba Instant (IAP) remote code execution exploit. advisories | CVE-2021-25155, CVE-2021-25156, CVE-2021-25157, CVE-2021-25158, CVE-2021-25159, CVE-2021-25160, CVE-2021-25161, CVE-2021-25162 Change Mirror Download import socketimport sysimport structimport timeimport threadingimport urllib3import reimport telnetlibimport...

Seagate BlackArmor NAS sg2000-2000.1331 Command Injection

Authored by Metin Yunus Kandemir Seagate BlackArmor NAS version sg2000-2000.1331 remote command injection exploit. Change Mirror Download # Exploit Title: Seagate BlackArmor NAS sg2000-2000.1331 - Command Injection# Date: 15.07.2021# Discovered by: Jeroen...

Aruba Instant 8.7.1.0 Arbitrary File Modification

Authored by Gr33nh4t Aruba Instant version 8.7.1.0 arbitrary file modification exploit. advisories | CVE-2021-25155 Change Mirror Download # Exploit Title: Aruba Instant 8.7.1.0 - Arbitrary File Modification# Date: 15/07/2021# Exploit Author: Gr33nh4t# Vendor...

ForgeRock Access Manager/OpenAM 14.6.3 Remote Code Execution

Authored by Photubias ForgeRock Access Manager/OpenAM version 14.6.3 unauthenticated remote code execution exploit. advisories | CVE-2021-35464 Change Mirror Download # Exploit Title: ForgeRock Access Manager/OpenAM 14.6.3 - Remote Code Execution (RCE) (Unauthenticated)# Date:...