Exploitdb Exploits
50,076 exploits tracked across all sources.
Certec EDV atvise SCADA Server 2.5.9 - Local Privilege Escalation
by LiquidWorm
RPCScan 2.03 - Hostname/IP Field Overwrite (SEH) (PoC)
by Nipun Jaswal
i.FTP 2.21 - Host Address / URL Field (SEH)
by Tantaryu MING
EIP-2026-114940
EXPLOITDB
ASUS Memory Mapping Driver (ASMMAP/ASMMAP64) - Physical Memory Read/Write
by slipstream
Ruby on Rails - Development Web Console (v2) Code Execution (Metasploit)
by Metasploit
ImageMagick <6.9.3-10 & <7.0.1-1 - RCE
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
by Metasploit
CVSS 8.4
RPCScan 2.03 - Hostname/IP Field Crash (PoC)
by Irving Aguilar
CIScan 1.00 - Hostname/IP Field Crash (PoC)
by Irving Aguilar
Adobe Flash Player < 18.0.0.343, 19.x-21.x < 21.0.0.213, < 11.2.202.616 - Use-After-Free
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1013, CVE-2016-1016, CVE-2016-1017, and CVE-2016-1031.
by Google Security Research
CVSS 8.8
Adobe Flash Player < 18.0.0.343, 19.x-21.x < 21.0.0.213, < 11.2.202.616 - Use-After-Free
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1011, CVE-2016-1016, CVE-2016-1017, and CVE-2016-1031.
by Google Security Research
CVSS 8.8
ManageEngine Applications Manager Build 12700 - Multiple Vulnerabilities
by Saif El-Sherei
DotNetNuke < 7.4.1 - Unauthenticated Application Reinstallation and Privilege Escalation via Install Wizard
The installation wizard in DotNetNuke (DNN) before 7.4.1 allows remote attackers to reinstall the application and gain SuperUser access via a direct request to Install/InstallWizard.aspx.
by Marios Nicolaides
CVSS 9.8
Baidu Spark Browser 43.23.1000.476 - Address Bar URL Spoofing
by liu zhu
TRN 3.6-23 Stack Buffer Overflow Local Code Execution
TRN 3.6-23 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the application. Attackers can craft a malicious command-line argument with 156 bytes of padding followed by a return address to overwrite the instruction pointer and execute shellcode with user privileges.
by Juan Sacco
CVSS 8.4
IPFire < 2.19 Core Update 101 - Authenticated Remote Command Execution via proxy.cgi NCSA User Creation Form
A remote command execution vulnerability exists in IPFire before version 2.19 Core Update 101 via the 'proxy.cgi' CGI interface. An authenticated attacker can inject arbitrary shell commands through crafted values in the NCSA user creation form fields, leading to command execution with web server privileges.
by Yann CAM
ImageMagick <6.9.3-10, <7.0.1-1 - Info Disclosure
The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image.
by Nikolay Ermishkin
CVSS 5.5
ImageMagick <7.0.1-1 - Path Traversal
The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image.
by Nikolay Ermishkin
CVSS 3.3
ImageMagick <6.9.3-10, <7.0.1-1 - Remote Code Execution
The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image.
by Nikolay Ermishkin
CVSS 5.5
ImageMagick <6.9.3-10 & <7.0.1-1 - RCE
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
by Nikolay Ermishkin
CVSS 8.4
NetCommWireless HSPA 3G10WVE - Auth Bypass
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote attackers to bypass intended access restrictions via a direct request. NOTE: this issue can be combined with CVE-2015-6024 to execute arbitrary commands.
by Bhadresh Patel
CVSS 7.3
McAfee LiveSafe 14.0 - Denial of Service via Crafted Packed Executable
Integer signedness error in the AV engine before DAT 8145, as used in McAfee LiveSafe 14.0, allows remote attackers to cause a denial of service (memory corruption and crash) via a crafted packed executable.
by Google Security Research
CVSS 7.5
WordPress Plugin Acunetix WP Security Plugin 3.0.3 - Cross-Site Scripting
by Johto Robbie
By Source