Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

WordPress Total Upkeep 1.14.9 Backup Disclosure

0
Authored by Wadeek WordPress Total Upkeep plugin version 1.14.9 suffers from a backup disclosure vulnerability. Change Mirror Download # Exploit Title: WordPress Plugin Total Upkeep 1.14.9 - Database and Files Backup Download#...

MiniWeb HTTP Server 0.8.19 Buffer Overflow

0
Authored by securityforeveryone.com MiniWeb HTTP Server version 0.8.19 buffer overflow proof of concept exploit. Change Mirror Download # Exploit Title: MiniWeb HTTP Server 0.8.19 - Buffer Overflow (PoC)# Date: 13.12.2020# Exploit Author:...

System Explorer 7.0.0 Unquoted Service Path

0
Authored by Mohammed Alshehri System Explorer version 7.0.0 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: System Explorer 7.0.0 - 'SystemExplorerHelpService' Unquoted Service Path# Date: 2020-10-14# Exploit...

Rumble Mail Server 0.51.3135 Cross Site Scripting

0
Authored by Mohammed Alshehri Rumble Mail Server version 0.51.3135 suffers from multiple persistent cross site scripting vulnerabilities. Change Mirror Download # Exploit Title: Rumble Mail Server 0.51.3135 - 'servername' Stored XSS# Date:...

Macally WIFISD2-2A82 2.000.010 Privilege Escalation

0
Authored by Maximilian Barz, Daniel Schwendner Macally WIFISD2-2A82 version 2.000.010 guest to root privilege escalation exploit. advisories | CVE-2020-29669 Change Mirror Download # Exploit Title: Macally WIFISD2-2A82 2.000.010 - Guest to Root Privilege...

LibreNMS 1.46 SQL Injection

0
Authored by Hodorsec LibreNMS version 1.46 suffers from an authenticated remote SQL injection vulnerability in the MAC Account Graph. Original discovery of SQL injection in this version is attributed to...

usrsctp pending_reply_queue Out-Of-Bounds Access

0
Authored by Google Security Research, Felix Wilhelm usrsctp suffers from a usrsctp pending_reply_queue out-of-bounds access vulnerability.

usrsctp HMAC Generation Out-Of-Bounds Access

0
Authored by Google Security Research, Felix Wilhelm usrsctp suffers from insecure HMAC generation that can lead to out-of-bounds access.

Rukovoditel 2.6.1 Shell Upload / Local File Inclusion

0
Authored by coiffeur Rukovoditel version 2.6.1 remote code execution exploit that leverages shell upload and local file inclusion vulnerabilities. Change Mirror Download # Exploit Title: Rukovoditel v2.6.1, RCE# Date: 2020-06-11# Exploit Author:...

Aerospike Database UDF Lua Code Execution

0
Authored by Brendan Coles, b4ny4n | Site metasploit.com Aerospike Database versions before 5.1.0.3 permitted user-defined functions (UDF) to call the os.execute Lua function. This Metasploit module creates a UDF utilizing...