Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Remote Mouse GUI 3.008 Privilege Escalation

Authored by Salman Asad Remote Mouse GUI version 3.008 suffers from a local privilege escalation vulnerability. Change Mirror Download # Exploit Title: Remote Mouse GUI 3.008 - Local Privilege Escalation# Exploit Author:...

WordPress Admin Columns Cross Site Scripting

Authored by Johannes Lauinger WordPress Admin Columns plugin versions below 5.5.2 Pro and 4.3.2 Pro suffers from a cross site scripting vulnerability. advisories | CVE-2021-24365 Change Mirror Download Advisory ID: ...

Zoho ManageEngine ServiceDesk Plus 9.4 User Enumeration

Authored by Ricardo Jose Ruiz Fernandez Zoho ManageEngine ServiceDesk Plus version 9.4 suffers from a user enumeration vulnerability. advisories | CVE-2021-31159 Change Mirror Download # Exploit Title: Zoho ManageEngine ServiceDesk Plus MSP -...

VX Search 13.5.28 Unquoted Service Path

Authored by Brian Rodriguez VX Search version 13.5.28 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: VX Search 13.5.28 - 'Multiple' Unquoted Service Path# Discovery by: Brian...

VeryFitPro 3.2.8 Insecure Transit

Authored by Nick Decker | Site trovent.io VeryFitPro version 3.2.8 sends unencrypted cleartext transmission of sensitive information. Change Mirror Download # Trovent Security Advisory 2105-01 ######################################Unencrypted cleartext transmission of sensitive information###########################################################Overview########Advisory ID:...

Samsung NPU npu_session_format Out-Of-Bounds Write

Authored by Google Security Research, hawkes Samsung NPU (Neural Processing Unit) suffers from an out-of-bounds write vulnerability in npu_session_format. advisories | CVE-2021-25407

Unified Office Total Connect Now 1.0 SQL Injection

Authored by Ajaikumar Nadar Unified Office Total Connect Now version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: Unified Office Total Connect Now 1.0 – 'data'...

Trojan.Win32.Alien.erf Buffer Overflow

Authored by malvuln | Site malvuln.com Trojan.Win32.Alien.erf malware suffers from a buffer overflow vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/57ab194d8c60ee97914eda22e4d71b68_B.txtContact: [email protected]: twitter.com/malvulnThreat: Trojan.Win32.Alien.erfVulnerability: Remote Stack...

Dup Scout 13.5.28 Unquoted Service Path

Authored by Brian Rodriguez Dup Scout version 13.5.28 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: Dup Scout 13.5.28 - 'Multiple' Unquoted Service Path# Discovery by: Brian...

Cisco HyperFlex HX Data Platform File Upload / Remote Code Execution

Authored by wvu, Mikhail Klyuchnikov, jheysel-r7, Nikita Abramov | Site metasploit.com This Metasploit module exploits an unauthenticated file upload vulnerability in Cisco HyperFlex HX Data Platform's /upload endpoint to upload...