Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

WordPress PayPlus Payment Gateway SQL Injection

0
Authored by j3r1ch0123 | Site github.com WordPress PayPlus Payment Gateway plugin versions prior to 6.6.9 suffer from a remote SQL injection vulnerability. advisories | CVE-2024-6205 Change Mirror Download #!/usr/bin/env python3.11import requestsimport timedef exploit(url):...

Firebeam CVE-2024-26229 Plugin

0
Authored by Cracked5pider | Site github.com A small firebeam (kaine's risc-v vm) plugin to exploit the CVE-2024-26229 vulnerability that utilizes a vulnerable IOCTL in csc.sys. The vulnerability is used to...

Mailcow TFA Authentication Bypass

0
Authored by Patrik Mayor | Site github.com This is a proof of concept exploit to bypass two factor authentication in Mailcow versions prior to 2024-07. advisories | CVE-2024-41958

Dolphin 7.4.2 Blind SQL Injection

0
Authored by Andrey Stoykov Dolphin version 7.4.2 suffers from a remote blind SQL injection vulnerability. Change Mirror Download # Exploit Title: Blind SQL Injection - dolphinv7.4.2.# Date: 8/2024# Exploit Author: Andrey Stoykov#...

Online Shopping Portal Project 2.0 SQL Injection

0
Authored by OoN_Boy Online Shopping Portal Project version 2.0 suffers from a remote SQL injection vulnerability. Change Mirror Download ======================================================================================================================================== | Title : Online Shopping...

Linux DRM drm_file_update_pid() Race Condition / Use-After-Free

0
Authored by Jann Horn, Google Security Research Linux DRM has drm_file_update_pid() call to get_pid() too late, which creates a race condition that can lead to use-after-free issue of a struct...

Blog Site 1.0 Cross Site Scripting

0
Authored by indoushka Blog Site version 1.0 suffers from a cross site scripting vulnerability. Change Mirror Download =============================================================================================================================================| # Title : Blog Site 1.0 XSS Vulnerability ...

Codeprojects E-Commerce 1.0 Cross Site Scripting

0
Authored by indoushka Codeprojects E-Commerce version 1.0 suffers from a cross site scripting vulnerability. Change Mirror Download =============================================================================================================================================| # Title : Codeprojects E-Commerce v1.0 XSS Vulnerability ...

Computer Laboratory Management System 1.0 Insecure Settings

0
Authored by indoushka Computer Laboratory Management System version 1.0 suffers from an ignored default credential vulnerability. Change Mirror Download =============================================================================================================================================| # Title : Computer Laboratory Management System v1.0...

Concert Ticket Reservation System 1.0 SQL Injection

0
Authored by indoushka Concert Ticket Reservation System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Change Mirror Download ======================================================================================================================================================| # Title :...