Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Horde Groupware Webmail 5.2.22 Cross Site Scripting

0
Authored by nu11secur1ty, Ventsislav Varbanovski, Alex Birnberg Horde Groupware Webmail version 5.2.22 suffers from a persistent cross site scripting vulnerability. advisories | CVE-2021-26929 Change Mirror Download # Exploit Title: Horde Groupware Webmail 5.2.22...

htmly 2.8.0 Cross Site Scripting

0
Authored by nu11secur1ty, G.Dzhankushev htmly version 2.8.0 suffers from a persistent cross site scripting vulnerability. advisories | CVE-2021-30637 Change Mirror Download # Exploit Title: htmly 2.8.0 allows stored XSS# Authors: @nu11secur1ty & G.Dzhankushev#...

Backdoor.Win32.Zombam.h Buffer Overflow

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.Zombam.h malware suffers from a buffer overflow vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/55feab480a43727c8a08feb7344afb4a.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Zombam.hVulnerability: Remote Stack...

Nagios XI Remote Code Execution

0
Authored by Haboob Team, Erik Wynter | Site metasploit.com This Metasploit module exploits a command injection vulnerability in the /admin/monitoringplugins.php page of Nagios XI versions prior to 5.8.0 when uploading...

glFTPd 2.11a Denial Of Service

0
Authored by xynmaps glFTPd version 2.11a remote denial of service exploit. Change Mirror Download # Exploit Title: glFTPd 2.11a - Remote Denial of Service# Date: 15/05/2021# Exploit Author: xynmaps# Vendor Homepage: https://glftpd.io/#...

GetSimple CMS My SMTP Contact 1.1.1 CSRF / Remote Code Execution

0
Authored by Bobby Cooke GetSimple CMS My SMTP Contact plugin versions 1.1.1 and below cross site request forgery to remote code execution exploit. Change Mirror Download # Exploit Title: GetSimple CMS My...

CITSmart ITSM 9.1.2.27 SQL Injection

0
Authored by skys CITSmart ITSM version 9.1.2.27 suffers from a remote time-based blind SQL injection vulnerability. advisories | CVE-2021-28142 Change Mirror Download # Exploit Title: CITSmart ITSM 9.1.2.27 - 'query' Time-based Blind SQL...

HEUR.Hoax.Win32.FrauDrop.gen Insecure Permissions

0
Authored by malvuln | Site malvuln.com HEUR.Hoax.Win32.FrauDrop.gen malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/1d40e72fb8cf300298df4b828b48ec29.txtContact: [email protected]: twitter.com/malvulnThreat: HEUR.Hoax.Win32.FrauDrop.genVulnerability: Insecure PermissionsDescription:...

Digital Crime Report Management System 1.0 SQL Injection

0
Authored by Galuh Muhammad Iman Akbar Digital Crime Report Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Change Mirror Download # Exploit Title: Digital...

Trojan.Win32.Jorik.qje Insecure Permissions

0
Authored by malvuln | Site malvuln.com Trojan.Win32.Jorik.qje malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/982479ad10ff048d566516254051e17e.txtContact: [email protected]: twitter.com/malvulnThreat: Trojan.Win32.Jorik.qjeVulnerability: Insecure PermissionsDescription:...