Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Zoom 4.6.239.20200613 Meeting Connector Post-Auth Remote Root

0
Authored by Jeremy Brown Zoom version 4.6.239.20200613 suffers from a Meeting Connector post-authentication remote root code execution vulnerability via the proxy server functionality. The latest Zoom client has this issue...

Packet Storm New Exploits For December, 2020

0
Authored by Todd J. | Site packetstormsecurity.com This archive contains all of the 225 exploits added to Packet Storm in December, 2020.

Packet Storm New Exploits For 2020

0
Authored by Todd J. | Site packetstormsecurity.com Complete comprehensive archive of all 1,949 exploits added to Packet Storm in 2020.

URVE Software Build 24.03.2020 Missing Authorization

0
Authored by Erik Steltzner | Site sec-consult.com URVE Software build version 24.03.2020 suffers from a missing authorization vulnerability. advisories | CVE-2020-29551 Change Mirror Download -----BEGIN PGP SIGNED MESSAGE-----Hash: SHA512Advisory ID: ...

URVE Software Build 24.03.2020 Information Disclosure

0
Authored by Erik Steltzner | Site sec-consult.com URVE Software build version 24.03.2020 suffers from an information disclosure vulnerability that leaks passwords. advisories | CVE-2020-29550 Change Mirror Download -----BEGIN PGP SIGNED MESSAGE-----Hash: SHA512Advisory ID:...

Apache Struts 2 Forced Multi OGNL Evaluation

0
Authored by Matthias Kaiser, Spencer McIntyre, Alvaro Munoz, ka1n4t | Site metasploit.com The Apache Struts framework, when forced, performs double evaluation of attribute values assigned to certain tags attributes such...

URVE Software Build 24.03.2020 Authentication Bypass / Remote Code Execution

0
Authored by Erik Steltzner | Site sec-consult.com URVE Software build version 24.03.2020 suffers from an authentication bypass that allows for remote code execution. advisories | CVE-2020-29552 Change Mirror Download -----BEGIN PGP SIGNED MESSAGE-----Hash:...

Philips Hue Denial Of Service

0
Authored by Ilia Shnaidman Philips Hue hubs suffer from a denial of service vulnerability via simple SYN floods. advisories | CVE-2018-7580 Change Mirror Download Credits: Ilia Shnaidman @0x496c on Twitter https://www.iliashn.comVendor:=============Philips Lighting...

Arteco Web Client DVR/NVR Session Hijacking

0
Authored by LiquidWorm | Site zeroscience.mk The session identifier used by Arteco Web Client DVR/NVR is of an insufficient length and can be brute forced, allowing a remote attacker to...

Online Learning Management System 1.0 SQL Injection

0
Authored by Aakash Madaan Online Learning Management System version 1.0 suffers from multiple remote SQL injection vulnerabilities. Change Mirror Download # Exploit Title: Online Learning Management System 1.0 - Authentication Bypass# Exploit...