Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Citadel WebCit Session Hijacking

0
Authored by Simone Quatrini Citadel WebCit versions prior to 926 suffer from a session hijacking vulnerability. Change Mirror Download # Exploit Title: Citadel WebCit < 926 - Session Hijacking Exploit# Exploit Author:...

Wondershare Dr.Fone 3.0.0 Unquoted Service Path

0
Authored by Andrea Intilangelo Wondershare Dr.Fone version 3.0.0 suffers from an unquoted service path vulnerability. advisories | CVE-2020-27992 Change Mirror Download # Exploit Title: Wondershare Dr.Fone DriverInstall.exe - "WsDrvInst" Unquoted Service Path# Date:...

Simple College Website 1.0 Code Execution / SQL Injection

0
Authored by yunaranyancat Simple College Website version 1.0 suffers from code execution and remote SQL injection vulnerabilities. Change Mirror Download # Exploit Title: Simple College Website 1.0 - SQL Injection / Remote...

Microsoft Windows Kernel cng.sys Buffer Overflow

0
Authored by Mateusz Jurczyk, Google Security Research, hawkes The Microsoft Windows Kernel Cryptography Driver (cng.sys) exposes a DeviceCNG device to user-mode programs and supports a variety of IOCTLs with non-trivial...

Oracle Business Intelligence Enterprise Edition 5.5.0.0.0 / 12.2.1.3.0 / 12.2.1.4.0 LFI

0
Authored by Ivo Palazzolo Oracle Business Intelligence Enterprise Edition versions 5.5.0.0.0, 12.2.1.3.0, and 12.2.1.4.0 suffer from local file inclusion and directory traversal vulnerabilities. advisories | CVE-2020-14864 Change Mirror Download # Exploit Title: Oracle...

FreeType Load_SBit_Png Heap Buffer Overflow

0
Authored by Google Security Research, Glazvunov FreeType suffers from a heap buffer overflow vulnerability due to integer truncation in Load_SBit_Png. advisories | CVE-2020-15999

Point Of Sales 1.0 Cross Site Scripting

0
Authored by Ankita Pal Point of Sales version 1.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download #Exploit Title: Point of Sales 1.0 - Stored Cross Site Scripting#Date: 2020-10-22#Exploit...

Mailman 2.1.23 Cross Site Scripting

0
Authored by Valerio Alessandroni Mailman versions 1.x up through 2.1.23 suffer from a cross site scripting vulnerability. advisories | CVE-2018-5950 Change Mirror Download # Title: Mailman 1.x > 2.1.23 - Cross Site Scripting...

Icewarp WebMail 11.4.5.0 Cross Site Scripting

0
Authored by Harun Karakis Icewarp WebMail version 11.4.5.0 suffers from a cross site scripting vulnerability. advisories | CVE-2020-27982 Change Mirror Download Title: IceWarp WebMail Cross-Site Scripting Vulnerability Date: 2020/10/25 Author: Harun Karakış...

Lot Reservation Management System 1.0 SQL Injection

0
Authored by Ankita Pal Lot Reservation Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Change Mirror Download #Exploit Title: lot reservation management system 1.0...