Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Rapid7 Metasploit Framework msfvenom APK Template Command Injection

0
Authored by Justin Steven | Site metasploit.com This Metasploit module exploits a command injection vulnerability in Metasploit Framework's msfvenom payload generator when using a crafted APK file as an Android...

Kik Messenger XMPP Stanza Smuggling

Authored by Ivan Fratric, Google Security Research There is a vulnerability in Kik Messenger for Android that allows an attacker to send arbitrary XMPP stanzas (XMPP control messages) to another...

Solaris SunSSH 11.0 x86 libpam Remote Root

0
Authored by Hacker Fantastic Solaris SunSSH versions 10 through 11.0 on x86 libpam remote root exploit. advisories | CVE-2020-14871 Change Mirror Download # Exploit Title: Solaris SunSSH 11.0 x86 - libpam Remote Root...

Textpattern CMS 4.8.3 Remote Code Execution

Authored by Richard Ruiz Textpattern CMS version 4.8.3 remote code execution exploit. Change Mirror Download # Exploit Title: Textpattern 4.8.3 - Remote code execution (Authenticated) (2)# Date: 03/03/2021# Exploit Author: Ricardo Ruiz...

Backdoor.Win32.Wollf.15 Missing Authentication

0
Authored by malvuln | Site malvuln.com Backdoor.Win32.Wollf.15 malware suffers from a missing authentication vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/ffa917e74406b8b77252be2c4f71f6d3.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Wollf.15Vulnerability: Missing AuthenticationDescription:...

FUDForum 3.1.0 Cross Site Scripting

Authored by Piyush Patil FUDForum version 3.1.0 suffers from a cross site scripting vulnerability. advisories | CVE-2021-27519, CVE-2021-27520 Change Mirror Download # Exploit Title: FUDForum 3.1.0 - 'srch' Reflected XSS# Exploit Author: Piyush...

Park Ticketing Management System 1 SQL Injection

0
Authored by Zeyad Azima Park Ticketing Management System version 1 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: Park Ticketing Management System v1 authenticatedBlind SQL Injection# Google...

WordPress Age Gate 2.13.4 Open Redirect

0
Authored by Ilca Lucian Florin WordPress Age Gate plugin versions 2.13.4 and below suffer fro an open redirection vulnerability. Change Mirror Download # Exploit Title: URL Redirection to Untrusted Site ('Open Redirect')...

Wondershare Driver Install Service Help 10.7.1.321 Unquoted Service Path

0
Authored by Luis Sandoval Wondershare Driver Install Service Help version 10.7.1.321 suffers from an unquoted service path vulnerability. Change Mirror Download # Exploit Title: Wondershare Driver Install Service help 10.7.1.321 - 'ElevationService'...

ScadaBR 1.0 / 1.1CE Windows Shell Upload

Authored by Fellipe Oliveira ScadaBR versions 1.0 and 1.1CE authenticated shell upload exploit written for Windows targets. advisories | CVE-2021-26828 Change Mirror Download #!/usr/bin/python# Exploit Title: Authenticated Arbitrary File Upload (Remote Code Execution)#...
Error decoding the Instagram API json