Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

GhostRace: Exploiting And Mitigating Speculative Race Conditions

Site github.com This archive is a GhostRace proof of concept exploit exemplifying the concept of a speculative race condition in a step-by-step single-threaded fashion. Coccinelle scripts are used to scan...

Rocket LMS 1.9 Cross Site Scripting

Authored by Sergio Medeiros Rocket LMS version 1.9 suffers from a persistent cross site scripting vulnerability. advisories | CVE-2024-34241 Change Mirror Download # Title: Rocket LMS 1.9 - Persistent Cross Site Scripting (XSS)#...

PopojiCMS 2.0.1 Remote Command Execution

Authored by Ahmet Umit Bayram PopojiCMS version 2.0.1 remote command execution exploit that requires an administrative login. This vulnerability was originally reported by tmrswrr in November of 2023. Change Mirror Download #...

Chyrp 2.5.2 Cross Site Scripting

Authored by Ahmet Umit Bayram Chryp version 2.5.2 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Chyrp 2.5.2 - Stored Cross-Site Scripting (XSS)# Date: 2024-04-24# Exploit Author: Ahmet...

Apache mod_proxy_cluster Cross Site Scripting

Authored by Mohamed Mounir Boudjema Apache mod_proxy_cluster suffers from a cross site scripting vulnerability. advisories | CVE-2023-6710 Change Mirror Download import requestsimport argparsefrom bs4 import BeautifulSoupfrom urllib.parse import urlparse, parse_qs, urlencode, urlunparsefrom requests.exceptions...

Backdoor.Win32.AsyncRat MVID-2024-0683 Code Execution

Authored by malvuln | Site malvuln.com Backdoor.Win32.AsyncRat malware suffers from a code execution vulnerability. Change Mirror Download Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2024Original source: https://malvuln.com/advisory/2337b9a12ecf50b94fc95e6ac34b3ecc.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.AsyncRatVulnerability:...

Plantronics Hub 3.25.1 Arbitrary File Read

Authored by Alaa Kachouh, Farid Zerrouk Plantronics Hub version 3.25.1 suffers from an arbitrary file read vulnerability. advisories | CVE-2024-27460 Change Mirror Download # Exploit Title: Plantronics Hub 3.25.1 – Arbitrary File Read#...

TrojanSpy.Win64.EMOTET.A MVID-2024-0684 Code Execution

Authored by malvuln | Site malvuln.com TrojanSpy.Win64.EMOTET.A malware suffers from a code execution vulnerability. Change Mirror Download Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2024Original source: https://malvuln.com/advisory/f917c77f60c3c1ac6dbbadbf366ddd30.txtContact: [email protected]: twitter.com/malvulnThreat: TrojanSpy.Win64.EMOTET.A...

CrushFTP Directory Traversal

Authored by Abdualhadi Khalifa CrushFTP versions prior to 11.1.0 suffers from a directory traversal vulnerability. Change Mirror Download ## Exploit Title: CrushFTP Directory Traversal## Google Dork: N/A# Date: 2024-04-30# Exploit Author: {2,6}.?|{2,}.?)|'...

Leafpub 1.1.9 Cross Site Scripting

Authored by Ahmet Umit Bayram Leafpub version 1.1.9 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Leafpub 1.1.9 - Stored Cross-Site Scripting (XSS)# Date: 2024-04-24# Exploit Author: Ahmet...