Home Tools Page 348

Tools

The latest hacking and hacker tools. Open source offensive and defensive security tools. Browse interactive maps of offensive security tools used by malicious actors and cybercriminals. Check out some live threat maps and malware intelligence databases.

This will be a curated list of mostly open source hacking tools. These can range from Red Teaming offensive security tools to fuzzers and debuggers for malware analysis. We are always looking for new state of the art tools that can be used for security professionals. Please feel free to send us a tool via email or one of our social media accounts.

SAP Netweaver IUUC_RECON_RC_COUNT_TABLE_BIG ABAP Code Injection

0
Authored by Raschin Tavakoli | Site sec-consult.com SAP Netweaver version SAP DMIS 2011_1_731 SP 0013 suffers from a remote ABAP code injection vulnerability in IUUC_RECON_RC_COUNT_TABLE_BIG. advisories | CVE-2021-33701 Change Mirror Download SEC Consult...

SAP Netweaver IUUC_GENERATE_ACPLAN_DELIMITER ABAP Code Injection

0
Authored by Raschin Tavakoli | Site sec-consult.com SAP Netweaver versions SAP DMIS in at least 2011_1_731 SP versions 0013 and below suffer from a remote ABAP code injection vulnerability in...

L4sh Log4j Remote Code Execution

0
Authored by cyberstruggle | Site github.com Fully independent log4j exploit that does not require any 3rd party binaries. The exploit sprays the payload to all possible logged HTTP Headers such...

Booked Scheduler 2.7.5 Shell Upload

0
Authored by 0sunday Booked Scheduler version 2.75 authenticated remote shell upload exploit. advisories | CVE-2019-9581 Change Mirror Download # Exploit Title: Booked Scheduler 2.7.5 - Remote Command Execution (RCE) (Authenticated)# Vulnerability founder: AkkuS#...

AbanteCart Arbitrary File Upload / Cross Site Scripting

0
Authored by Ian Chong, Daniel Teo | Site sec-consult.com AbanteCart e-commerce platform versions prior to 1.3.2 suffer from cross site scripting and file upload vulnerabilities. advisories | CVE-2021-42050, CVE-2021-42051 Change Mirror Download SEC...

Zucchetti Axess CLOKI Access Control 1.64 Cross Site Request Forgery

0
Authored by LiquidWorm | Site zeroscience.mk Zucchetti Axess CLOKI Access Control version 1.64 suffers from a cross site request forgery vulnerability. Change Mirror Download <!--Zucchetti Axess CLOKI Access Control 1.64 CSRF Disable...

Ticket Booking 1.0 SQL Injection

0
Authored by nu11secur1ty Ticket Booking version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download ## Title: Ticket Booking 1.0 suffer from SQL - Injenction## Author: nu11secur1ty## Date: 12.14.2021## Vendor:...

Apache Log4j2 2.14.1 Remote Code Execution

0
Authored by z9fr, kozmer, svmorris Apache Log4j2 versions 2.0-beta-9 and 2.14.1 remote code execution exploit. advisories | CVE-2021-44228 Change Mirror Download # Exploit Title: Apache Log4j 2 - Remote Code Execution (RCE)# Date:...

Online Thesis Archiving System 1.0 SQL Injection / Cross Site Scripting

0
Authored by Yehia Elghaly Online Thesis Archiving System version 1.0 suffers from remote SQL injection and persistent cross site scripting vulnerabilities. Change Mirror Download # Exploit Title: Online Thesis Archiving System 1.0...

meterN 1.2.3 Remote Command Execution

0
Authored by LiquidWorm | Site zeroscience.mk meterN version 1.2.3 suffers from an authenticated remote command execution vulnerability. Change Mirror Download <!--meterN v1.2.3 Authenticated Remote Command Execution VulnerabilityVendor: Jean-Marc LouviauxProduct web page: https://www.metern.orgAffected...