Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

SAP Netweaver JAVA 7.50 Missing Authorization

Authored by Ignacio D. Favro | Site onapsis.com A malicious unauthenticated user could abuse the lack of authentication check on SAP Java P2P cluster communication in order to connect to...

Backdoor.Win32.Pazus.18 Authentication Bypass / Code Execution

Authored by malvuln | Site malvuln.com Backdoor.Win32.Pazus.18 malware suffers from bypass and code execution vulnerabilities. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/5be13eb16018ab69157f8c8e96e7d6bf.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Pazus.18Vulnerability: Authentication...

Accela Civic Platform 21.1 Cross Site Scripting / Open Redirection

Authored by Abdulazeez Alaseeri Accela Civic Platform version 21.1 suffers from cross site scripting and open redirection vulnerabilities. advisories | CVE-2021-34370 Change Mirror Download # Exploit Title: Accela Civic Platform 21.1 - 'successURL'...

Accela Civic Platform 21.1 Insecure Direct Object Reference

Authored by Abdulazeez Alaseeri Accela Civic Platform version 21.1 suffers from an insecure direct object reference vulnerability. advisories | CVE-2021-34369 Change Mirror Download # Exploit Title: Accela Civic Platform 21.1 - 'contactSeqNumber' Insecure...

GLPI 9.4.5 Remote Code Execution

Authored by Brian Peters GLPI version 9.4.5 remote code execution exploit. advisories | CVE-2020-11060 Change Mirror Download # Exploit Title: GLPI 9.4.5 - Remote Code Execution (RCE)# Exploit Author: Brian Peters# Vendor Homepage:...

Backdoor.Win32.Zombam.gen Information Disclosure

Authored by malvuln | Site malvuln.com Backdoor.Win32.Zombam.gen malware suffers from an information leakage vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/ff6516c881dee555b0cd253408b64404_D.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Zombam.genVulnerability: Information DisclosureDescription:...

Stock Management System 1.0 SQL Injection

Authored by Riadh Benlamine Stock Management System version 1.0 suffers from a remote blind SQL injection vulnerability. This is a variant to the original discovery of SQL injection in this...

Small CRM 3.0 SQL Injection

Authored by BHAVESH KAUL Small CRM version 3.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Change Mirror Download # Exploit Title: Small CRM 3.0 - 'Authentication Bypass'...

TextPattern CMS 4.8.7 Remote Command Execution

Authored by Mert Das TextPattern CMS version 4.8.7 suffers from an authenticated remote command execution vulnerability. Change Mirror Download # Exploit Title : TextPattern CMS 4.8.7 - Remote Command Execution (Authenticated)# Date...

Backdoor.Win32.VB.pld Code Execution

Authored by malvuln | Site malvuln.com Backdoor.Win32.VB.pld malware suffers from a code execution vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/6ff35087d789f7aca6c0e3396984894e_B.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.VB.pldVulnerability: Unauthenticated Remote...