Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Document Management System 1.0 SQL Injection / Remote Code Execution

0
Authored by Richard Jones Document Management System version 1.0 remote SQL injection exploit that deploys a web shell. Change Mirror Download # Exploit Title: Document Management System - SQL Injection to RCE...

DzzOffice 2.02.1 Cross Site Scripting

0
Authored by nu11secur1ty DzzOffice version 2.02.1 suffers from a cross site scripting vulnerability. advisories | CVE-2021-3318 Change Mirror Download # Exploit Title: XSS attack (app/setting) in DzzOffice-2.02.1# Author: @nu11secur1ty# Testing and Debugging: @nu11secur1ty,...

Sipwise C5 NGCP CSC Cross Site Scripting

0
Authored by LiquidWorm | Site zeroscience.mk Sipwise software platform suffers from multiple authenticated stored and reflected cross site scripting vulnerabilities when input passed via several parameters to several scripts is...

Sipwise C5 NGCP CSC Cross Site Request Forgery

0
Authored by LiquidWorm | Site zeroscience.mk The Sipwise application interface allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. This can...

Backdoor.Win32.DarkKomet.artr Insecure Permissions

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.DarkKomet.artr malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/d2ee6046fd47de321d1310dccacca92b.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.DarkKomet.artrVulnerability: Insecure PermissionsDescription:...

OTRS 6.0.1 Remote Command Execution

0
Authored by Hex_26 OTRS version 6.0.1 remote command execution exploit. advisories | CVE-2017-16921 Change Mirror Download # Exploit Title: OTRS 6.0.1 - Remote Command Execution (2)# Date: 21-04-2021# Exploit Author: Hex_26# Vendor Homepage:...

Packed.Win32.Black.d Unauthenticated Open Proxy

0
Authored by malvuln | Site malvuln.com Packed.Win32.Black.d malware has an unauthenticated open proxy vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/17e3836682ffb0913459ece7c3f0786d.txtContact: [email protected]: twitter.com/malvulnThreat: Packed.Win32.Black.dVulnerability: Unauthenticated Open...

BMD BMDWeb 2.0 Cross Site Scripting

0
Authored by Stefan Viehbock | Site sec-consult.com BMD BMDWeb 2.0 versions prior to 24.01.21 suffer from persistent cross site scripting vulnerabilities. Change Mirror Download SEC Consult Vulnerability Lab Security Advisory < 20210422-0...

Moodle 3.10.3 Cross Site Scripting

0
Authored by UVision Moodle version 3.10.3 suffers from a persistent cross site scripting vulnerability. Original discovery of persistent cross site scripting in this version is attributed to Vincent666 ibn Winnie...

CMS Made Simple 2.2.15 Cross Site Scripting

0
Authored by bt0 CMS Made Simple version 2.2.15 suffers from a reflective cross site scripting vulnerability. advisories | CVE-2021-28935 Change Mirror Download # Exploit Title: CMS Made Simple 2.2.15 - 'title' Cross-Site Scripting...