Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

ERPNext 12.18.0 / 13.0.0 Cross Site Scripting

Authored by Stefan Pietsch, Nick Decker | Site trovent.io ERPNext versions 12.18.0 and 13.0.0 suffer from reflective and persistent cross site scripting vulnerabilities. Change Mirror Download # Trovent Security Advisory 2103-02 ######################################Multiple...

Hexagon G!nius Auskunftsportal SQL Injection

Authored by Marcel Keiffenheim Hexagon G!nius Auskunftsportal versions prior to 5.0.0.0 suffer from a remote SQL injection vulnerability. advisories | CVE-2021-32051 Change Mirror Download CVE-2021-32051 Hexagon G!nius Auskunftsportal before 5.0.0.0 allows SQL injection...

Customer Relationship Management (CRM) System 1.0 SQL Injection

Authored by Richard Jones Customer Relationship Management (CRM) System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Change Mirror Download # Exploit Title: Customer Relationship Management...

Customer Relationship Management (CRM) System 1.0 Cross Site Scripting

Authored by Richard Jones Customer Relationship Management (CRM) System version 1.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: Customer Relationship Management (CRM) System 1.0 -...

Customer Relationship Management (CRM) System 1.0 Shell Upload

Authored by Richard Jones Customer Relationship Management (CRM) System version 1.0 suffers from a remote shell upload vulnerability. Change Mirror Download # Exploit Title: Customer Relationship Management (CRM) Unrestricted File Upload (unauthenticated)#...

PHP Timeclock 1.04 SQL Injection

Authored by Tyler Butler PHP Timeclock version 1.04 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: PHP Timeclock 1.04 - Time and Boolean Based Blind SQL Injection#...

DHCP Broadband 4.1.0.1503 Unquoted Service Path

Authored by Erick Galindo DHCP Broadband version 4.1.0.1503 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: DHCP Broadband 4.1.0.1503 - 'dhcpt.exe' Unquoted Service Path# Discovery by: Erick...

BOOTP Turbo 2.0.0.1253 Unquoted Service Path

Authored by Erick Galindo BOOTP Turbo version 2.0.0.1253 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: BOOTP Turbo 2.0.0.1253 - 'bootpt.exe' Unquoted Service Path# Discovery by: Erick...

TFTP Broadband 4.3.0.1465 Unquoted Service Path

Authored by Erick Galindo TFTP Broadband version 4.3.0.1465 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: TFTP Broadband 4.3.0.1465 - 'tftpt.exe' Unquoted Service Path# Discovery by: Erick...

Backdoor.Win32.MotivFTP.12 Authentication Bypass / Code Execution

Authored by malvuln | Site malvuln.com Backdoor.Win32.MotivFTP.12 malware suffers from bypass and code execution vulnerabilities. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/88785a093b8fa00893214dd220ac255d.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.MotivFTP.12Vulnerability: Authentication...