Exploitdb Exploits

4,728 exploits tracked across all sources.

Sort: Activity Stars
CVE-2017-13696 EXPLOITDB CRITICAL python
Flexense Dupscout - Memory Corruption
A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterprise 9.9.16 where an attacker can craft a malicious GET request and exploit the web server component. Successful exploitation of the software will allow an attacker to gain complete access to the system with NT AUTHORITY / SYSTEM level privileges. The vulnerability lies due to improper handling and sanitization of the incoming request.
by Nipun Jaswal
CVSS 9.8
CVE-2017-13696 EXPLOITDB CRITICAL python
Flexense Dupscout - Memory Corruption
A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterprise 9.9.16 where an attacker can craft a malicious GET request and exploit the web server component. Successful exploitation of the software will allow an attacker to gain complete access to the system with NT AUTHORITY / SYSTEM level privileges. The vulnerability lies due to improper handling and sanitization of the incoming request.
by Nipun Jaswal
CVSS 9.8
CVE-2017-13696 EXPLOITDB CRITICAL python VERIFIED
Flexense Dupscout - Memory Corruption
A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterprise 9.9.16 where an attacker can craft a malicious GET request and exploit the web server component. Successful exploitation of the software will allow an attacker to gain complete access to the system with NT AUTHORITY / SYSTEM level privileges. The vulnerability lies due to improper handling and sanitization of the incoming request.
by Nipun Jaswal
CVSS 9.8
EIP-2026-117658 EXPLOITDB python VERIFIED
My Video Converter 1.5.24 - Local Buffer Overflow (SEH)
by Anurag Srivastava
EIP-2026-117642 EXPLOITDB python VERIFIED
MP3 WAV to CD Burner 1.4.24 - Local Buffer Overflow (SEH)
by Anurag Srivastava
EIP-2026-117111 EXPLOITDB python VERIFIED
Easy Video to iPod/MP4/PSP/3GP Converter 1.5.20 - Local Buffer Overflow (SEH)
by Anurag Srivastava
EIP-2026-117090 EXPLOITDB python VERIFIED
Easy AVI DivX Converter 1.2.24 - Local Buffer Overflow (SEH)
by Anurag Srivastava
CVE-2017-8770 EXPLOITDB HIGH python
Twsz Wifi Repeater Firmware - Information Disclosure
There is LFD (local file disclosure) on BE126 WIFI repeater 1.0 devices that allows attackers to read the entire filesystem on the device via a crafted getpage parameter.
by Hay Mizrachi
CVSS 7.5
EIP-2026-118088 EXPLOITDB python
VX Search Enterprise 9.9.12 - 'Import Command' Local Buffer Overflow
by Anurag Srivastava
EIP-2026-117049 EXPLOITDB python
Disk Savvy Enterprise 9.9.14 - 'Import Command' Local Buffer Overflow
by Anurag Srivastava
EIP-2026-117046 EXPLOITDB python VERIFIED
Disk Pulse Enterprise 9.9.16 - 'Import Command' Local Buffer Overflow
by Anurag Srivastava
CVE-2017-9650 EXPLOITDB HIGH python
ALC WebCTRL <6.5 - RCE
An Unrestricted Upload of File with Dangerous Type issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL, i-Vu, SiteScan Web 6.5 and prior; ALC WebCTRL, SiteScan Web 6.1 and prior; ALC WebCTRL, i-Vu 6.0 and prior; ALC WebCTRL, i-Vu, SiteScan Web 5.5 and prior; and ALC WebCTRL, i-Vu, SiteScan Web 5.2 and prior. An authenticated attacker may be able to upload a malicious file allowing the execution of arbitrary code.
by LiquidWorm
CVSS 7.8
EIP-2026-117092 EXPLOITDB python
Easy DVD Creater 2.5.11 - Local Buffer Overflow (SEH)
by Anurag Srivastava
EIP-2026-115622 EXPLOITDB python
MessengerScan 1.05 - Local Buffer Overflow (PoC)
by Anurag Srivastava
EIP-2026-115168 EXPLOITDB python
DSScan 1.0 - Local Buffer Overflow (PoC)
by Anurag Srivastava
EIP-2026-115886 EXPLOITDB python VERIFIED
MyDoomScanner 1.00 - Local Buffer Overflow (PoC)
by Anurag Srivastava
EIP-2026-111806 EXPLOITDB python
RPi Cam Control < 6.3.14 - Multiple Vulnerabilities
by Alexander Korznikov
EIP-2026-117336 EXPLOITDB python
Internet Download Manager 6.28 Build 17 - Local Buffer Overflow (SEH Unicode)
by f3ci
EIP-2026-116768 EXPLOITDB python VERIFIED
ALLPlayer 7.4 - Local Buffer Overflow (SEH Unicode)
by f3ci
EIP-2026-111807 EXPLOITDB python
RPi Cam Control < 6.3.14 - Remote Command Execution
by Alexander Korznikov
EIP-2026-116415 EXPLOITDB python VERIFIED
Tomabo MP4 Converter 3.19.15 - Denial of Service
by Andy Bowden
CVE-2017-12763 EXPLOITDB HIGH python
Nomachine < 5.3.9 - Incorrect Default Permissions
An unspecified server utility in NoMachine before 5.3.10 on Mac OS X and Linux allows authenticated users to gain privileges by gaining access to local files.
by Daniele Linguaglossa
CVSS 8.8
EIP-2026-102475 EXPLOITDB python
DALIM SOFTWARE ES Core 5.0 build 7184.1 - User Enumeration
by LiquidWorm
CVE-2017-0781 EXPLOITDB HIGH python
Android <8.0 - RCE
A remote code execution vulnerability in the Android system (bluetooth). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63146105.
by Kert Ojasoo
CVSS 8.8
CVE-2017-11154 EXPLOITDB HIGH python VERIFIED
Synology Photo Station < 6.7.2-3429 - Unrestricted File Upload
Unrestricted file upload vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to create arbitrary PHP scripts via the type parameter.
by Kacper Szurek
CVSS 7.2