Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Faculty Evaluation System 1.0 Cross Site Scripting

0
Authored by Vijay Sachdeva Faculty Evaluation System version 1.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: Faculty Evaluation System 1.0 - Stored XSS# Exploit Author:...

SUPREMO 4.1.3.2348 Privilege Escalation

0
Authored by Victor Gil, Adan Alvarez SUPREMO version 4.1.3.2348 suffers from a privilege escalation vulnerability. advisories | CVE-2020-25106 Change Mirror Download Details=======Subject: Local Privilege EscalationProduct: SUPREMO by Nanosystems S.r.l.Vendor Homepage: https://www.supremocontrol.com/Vendor Status:...

Artworks Gallery Management System 1.0 SQL Injection

0
Authored by Vijay Sachdeva Artworks Gallery Management System version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: Artworks Gallery Management System 1.0 - 'id' SQL Injection#...

Android Studio Privilege Escalation

0
Authored by houjingyi Android Studio has an issue where a malicious project can execute a custom cmd.exe allowing for privilege escalation. Google does not believe this is an issue. Change Mirror...

CSE Bookstore 1.0 SQL Injection

0
Authored by Musyoka Ian CSE Bookstore version 1.0 suffers from multiple remote SQL injection vulnerabilities. Original discovery of SQL injection in this version is attributed to Alper Basaran in October...

WordPress W3 Total Cache 0.9.3 File Read / Directory Traversal

0
Authored by SunCSR, Hoa Nguyen, VinhJAXT | Site metasploit.com This Metasploit module exploits an unauthenticated directory traversal vulnerability in WordPress plugin W3 Total Cache version 0.9.2.6 through 0.9.3, allowing arbitrary...

Webmin 1.962 Remote Command Execution

0
Authored by AkkuS | Site metasploit.com This Metasploit module exploits an arbitrary command execution vulnerability in Webmin 1.962 and lower versions. Any user authorized to the Package Updates module can...

Library Management System 3.0 Cross Site Scripting

0
Authored by Kislay Kumar Library Management System version 3.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: Library Management System 3.0 - "Add Category" Stored...

Multi Branch School Management System 3.5 Cross Site Scripting

0
Authored by Kislay Kumar Multi Branch School Management System version 3.5 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: Multi Branch School Management System 3.5 -...

Linux TIOCSPGRP Broken Locking

0
Authored by Jann Horn, Google Security Research Linux suffers from broken locking in TIOCSPGRP that can lead to a corrupted refcount. advisories | CVE-2020-29661 Change Mirror Download Linux: Broken locking in TIOCSPGRP leads...