Exploitdb Exploits

49,996 exploits tracked across all sources.

Sort: Activity Stars
CVE-2016-4656 EXPLOITDB HIGH ruby VERIFIED
Apple Iphone OS < 9.3.5 - Out-of-Bounds Write
The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
by Metasploit
CVSS 7.8
CVE-2016-4655 EXPLOITDB MEDIUM ruby VERIFIED
WebKit not_number defineProperties UAF
The kernel in Apple iOS before 9.3.5 allows attackers to obtain sensitive information from memory via a crafted app.
by Metasploit
CVSS 5.5
EIP-2026-119508 EXPLOITDB python
10-Strike Network Scanner 3.0 - Local Buffer Overflow (SEH)
by Hashim Jawad
EIP-2026-119507 EXPLOITDB python
10-Strike Network Inventory Explorer 8.54 - Local Buffer Overflow (SEH)
by Hashim Jawad
EIP-2026-119506 EXPLOITDB python
10-Strike Network Inventory Explorer 8.54 - 'Registration Key' Buffer Overflow (SEH)
by Hashim Jawad
EIP-2026-116963 EXPLOITDB python
Clone2GO Video converter 2.8.2 - Buffer Overflow
by Gokul Babu
CVE-2018-11564 EXPLOITDB MEDIUM python
Pagekit < 1.0.13 - XSS
Stored XSS in YOOtheme Pagekit 1.0.13 and earlier allows a user to upload malicious code via the picture upload feature. A user with elevated privileges could upload a photo to the system in an SVG format. This file will be uploaded to the system and it will not be stripped or filtered. The user can create a link on the website pointing to "/storage/poc.svg" that will point to http://localhost/pagekit/storage/poc.svg. When a user comes along to click that link, it will trigger a XSS attack.
by DEEPIN2
CVSS 4.8
CVE-2018-11715 EXPLOITDB MEDIUM text VERIFIED
Recent Threads < 1.1 - XSS
The Recent Threads plugin before 1.1 for MyBB allows XSS via a thread subject.
by 0xB9
CVSS 5.4
CVE-2018-8718 EXPLOITDB HIGH python
Mailer Plugin 1.20 for Jenkins 2.111 - CSRF
Cross-site request forgery (CSRF) vulnerability in the Mailer Plugin 1.20 for Jenkins 2.111 allows remote authenticated users to send unauthorized mail as an arbitrary user via a /descriptorByName/hudson.tasks.Mailer/sendTestMail request.
by Kl3_GMjq6
CVSS 8.0
CVE-2018-11646 EXPLOITDB HIGH text
WebKitGTK+ <2.21.3 - Use After Free
webkitFaviconDatabaseSetIconForPageURL and webkitFaviconDatabaseSetIconURLForPageURL in UIProcess/API/glib/WebKitFaviconDatabase.cpp in WebKit, as used in WebKitGTK+ through 2.21.3, mishandle an unset pageURL, leading to an application crash.
by Dhiraj Mishra
CVSS 7.5
CVE-2018-11412 EXPLOITDB MEDIUM text
Linux Kernel < 4.16.11 - Use After Free
In the Linux kernel 4.13 through 4.16.11, ext4_read_inline_data() in fs/ext4/inline.c performs a memcpy with an untrusted length value in certain circumstances involving a crafted filesystem that stores the system.data extended attribute value in a dedicated inode.
by Google Security Research
CVSS 5.9
CVE-2016-4657 EXPLOITDB HIGH ruby VERIFIED
Apple Iphone OS < 9.3.5 - Out-of-Bounds Write
WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
by Metasploit
CVSS 8.8
CVE-2018-16302 EXPLOITDB HIGH python
Mc1soft Zip-n-go < 4.95 - Memory Corruption
MediaComm Zip-n-Go before 4.95 has a Buffer Overflow via a crafted file.
by Hashim Jawad
CVSS 7.8
EIP-2026-117538 EXPLOITDB ruby VERIFIED
Microsoft Windows - UAC Protection Bypass (Via Slui File Handler Hijack) (Metasploit)
by Metasploit
EIP-2026-117537 EXPLOITDB ruby VERIFIED
Microsoft Windows - UAC Protection Bypass (Via Slui File Handler Hijack) (Metasploit)
by Metasploit
CVE-2018-9842 EXPLOITDB MEDIUM python
Cyberark Password Vault < 9.7 - Information Disclosure
CyberArk Password Vault before 9.7 allows remote attackers to obtain sensitive information from process memory by replaying a logon message.
by Thomas Zuk
CVSS 5.3
CVE-2018-11586 EXPLOITDB CRITICAL text
Searchblox - SSRF
XML external entity (XXE) vulnerability in api/rest/status in SearchBlox 8.6.7 allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request.
by Ahmet Gurel
CVSS 9.8
CVE-2018-11581 EXPLOITDB MEDIUM
Brother Hl-l2340d Firmware < 1.16 - XSS
Cross-site scripting (XSS) vulnerability on Brother HL series printers allows remote attackers to inject arbitrary web script or HTML via the url parameter to etc/loginerror.html.
by Huy Kha
CVSS 4.8
CVE-2018-11628 EXPLOITDB MEDIUM text
Emssoftware Ems Master Calendar < 8.0.0.201805210 - XSS
Data input into EMS Master Calendar before 8.0.0.201805210 via URL parameters is not properly sanitized, allowing malicious attackers to send a crafted URL for XSS.
by Chris Barretto
CVSS 6.1
EIP-2026-112248 EXPLOITDB html
Smartshop 1 - Cross-Site Request Forgery
by L0RD
EIP-2026-112247 EXPLOITDB text
Smartshop 1 - 'id' SQL Injection
by L0RD
CVE-2018-11670 EXPLOITDB HIGH html
Njtech Greencms - CSRF
An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that allows attackers to execute arbitrary PHP code via the content parameter to index.php?m=admin&c=media&a=fileconnect.
by xichao
CVSS 8.8
CVE-2018-11671 EXPLOITDB HIGH html
Njtech Greencms - CSRF
An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that can add an admin account via index.php?m=admin&c=access&a=adduserhandle.
by xichao
CVSS 8.8
EIP-2026-103460 EXPLOITDB text
Epiphany 3.28.2.1 - Denial of Service
by Dhiraj Mishra
CVE-2018-8133 EXPLOITDB HIGH javascript VERIFIED
Microsoft Edge - Memory Corruption
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-0943, CVE-2018-8130, CVE-2018-8145, CVE-2018-8177.
by Google Security Research
CVSS 7.5