Exploit the possiblities
Showing 1 - 25 of 139 RSS Feed

Files

Packet Storm New Exploits For 2016
Posted Jan 2, 2017
Authored by Todd J. | Site packetstormsecurity.org

Complete comprehensive archive of all 2,465 exploits added to Packet Storm in 2016.

tags | exploit
MD5 | 701da78b75a437de41ee749a0a7719b1
Packet Storm New Exploits For December, 2016
Posted Jan 2, 2017
Authored by Todd J. | Site packetstormsecurity.com

This archive contains all of the 137 exploits added to Packet Storm in December, 2016.

tags | exploit
MD5 | 35d31328a8e3079ace52e84606d24208
AContent CMS 1.3 Cross Site Scripting
Posted Dec 31, 2016
Authored by M.R.S.L.Y

AContent CMS version 1.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | 1e41f1f0d3acedad385caa58b0da75c8
Dell SonicWALL Secure Mobile Access SMA 8.1 CSRF / XSS
Posted Dec 30, 2016
Authored by LiquidWorm | Site zeroscience.mk

Dell SonicWALL Secure Mobile Access SMA version 8.1 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
MD5 | 5c7358499d27722b3095956c0a8714ad
Dell SonicWALL Network Security Appliance NSA 6600 XSS
Posted Dec 30, 2016
Authored by LiquidWorm | Site zeroscience.mk

Dell SonicWALL Network Security Appliance NSA 6600 suffers from a reflective cross site scripting vulnerability. Versions affected include NSA 6600 running SonicOS Enhanced 6.2.4.3-31n, WXA 4000 running 1.3.2.0-07, and SafeMode 6.1.0.11.

tags | exploit, xss
MD5 | 83f8a5727ef2ed418c78d3daed6a4fd9
Dell SonicWALL Global Management System GMS 8.1 Adobe Flex SOP Bypass
Posted Dec 30, 2016
Authored by LiquidWorm | Site zeroscience.mk

Dell SonicWALL GMS versions 8.1 and below are compiled with a vulnerable version of Adobe Flex SDK allowing for same-origin request forgery and cross-site content hijacking.

tags | exploit
MD5 | e2ae401ca70813ec975322c262263f86
Dell SonicWALL Global Management System GMS 8.1 Cross Site Scripting
Posted Dec 30, 2016
Authored by LiquidWorm | Site zeroscience.mk

Dell SonicWALL Global Management System GMS version 8.1 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
MD5 | 6732088f4f82523c4f3021b63a0d0a53
Dell SonicWALL Global Management System GMS 8.1 Blind SQL Injection
Posted Dec 30, 2016
Authored by LiquidWorm | Site zeroscience.mk

Dell SonicWALL Global Management System GMS version 8.1 suffers from multiple blind SQL Injection vulnerabilities.

tags | exploit, vulnerability, sql injection
MD5 | 004a0a4ed5111381354f831f5c8a72f7
WordPress Templatic 2.3.6 File Upload
Posted Dec 30, 2016
Authored by r3m1ck

WordPress Templatic plugin versions 2.3.6 and below suffer from a remote file upload vulnerability.

tags | exploit, remote, file upload
MD5 | e45b4f800f6995870bca7805f7df6a0f
SwiftMailer Remote Code Execution
Posted Dec 29, 2016
Authored by Dawid Golunski

SwiftMailer versions prior to 5.4.5-DEV suffers from a remote code execution vulnerability.

tags | exploit, remote, code execution
advisories | CVE-2016-10074
MD5 | 867421c2ab76adf20394234a4a466e45
Joomla aWeb Cart Watching System For Virtuemart 2.6.0 SQL Injection
Posted Dec 29, 2016
Authored by Javi Espejo

Joomla aWeb Cart Watching System for Virtuemart component version 2.6.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | aead8f37750de3b2307d18b731017bd7
PHPMailer Remote Code Execution
Posted Dec 29, 2016
Authored by anarc0der

PHPMailer versions prior to 5.2.18 remote code execution exploit. Written in python.

tags | exploit, remote, code execution, python
advisories | CVE-2016-10033
MD5 | 1071a3999c4f3f2e365fb7bb03a8bb35
WordPress Simply Poll 1.4.1 SQL Injection
Posted Dec 28, 2016
Authored by TAD GROUP

WordPress Simply Poll plugin version 1.4.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | d19cc32d5cc4bb9208b7bf3623b29b63
PHPMailer Remote Code Execution
Posted Dec 28, 2016
Authored by Dawid Golunski

PHPMailer versions prior to 5.2.20 zero day remote code execution exploit. This bypasses the CVE-2016-10033 patch.

tags | exploit, remote, code execution
advisories | CVE-2016-10033, CVE-2016-10045
MD5 | 866aa935950ebe6d9acfd7e53a16846c
Popcorn Time 5.6 DLL Hijacking
Posted Dec 28, 2016
Authored by ZwX

Popcorn Time version 5.6 suffers from a dll hijacking vulnerability.

tags | exploit
systems | windows
MD5 | 498e4f8db0379f2cefd4f711989df828
WordPress Image Slider 1.1.41 / 1.1.89 Arbitrary File Deletion
Posted Dec 27, 2016
Authored by Tom Adams

WordPress Image Slider plugin versions 1.1.41 and 1.1.89 suffer from an arbitrary file deletion vulnerability.

tags | exploit, arbitrary
MD5 | 5109c25926e1824051415b8e15c0bb8e
PHPMailer 5.2.17 Remote Code Execution
Posted Dec 27, 2016
Authored by Dawid Golunski

PHPMailer versions prior to 5.2.18 suffer from a remote code execution vulnerability. This archive consists of the full advisory and also the proof of concept code.

tags | exploit, remote, code execution, proof of concept
advisories | CVE-2016-10033
MD5 | fd1e17cbce43e18c7ccf541988b20ac8
PHPMailer 5.2.17 Remote Code Execution
Posted Dec 26, 2016
Authored by Dawid Golunski

PHPMailer version 5.2.17 suffers from a remote code execution vulnerability.

tags | exploit, remote, code execution
advisories | CVE-2016-10033
MD5 | e93465ebb2db8952d96d4915153e3e69
Wampserver 3.0.6 Privilege Escalation
Posted Dec 26, 2016
Authored by Heliand Dema

Wampserver version 3.0.6 suffers from an insecure file permissions privilege escalation vulnerability.

tags | exploit
MD5 | 5706d2f1bcd9a9c57340694723d5d1af
Joomla! Blog Calendar SQL Injection
Posted Dec 26, 2016
Authored by X-Cisadane

Joomla! Blog Calendar versions prior to 1.2.5 suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | a85de579743a212eeb4a49d5fcfdb46d
Android get_user/put_user Exploit
Posted Dec 26, 2016
Authored by timwr, fi01, cubeundcube | Site metasploit.com

This Metasploit module exploits a missing check in the get_user and put_user API functions in the linux kernel before 3.5.5. The missing checks on these functions allow an unprivileged user to read and write kernel memory. This exploit first reads the kernel memory to identify the commit_creds and ptmx_fops address, then uses the write primitive to execute shellcode as uid 0. The exploit was first discovered in the wild in the vroot rooting application.

tags | exploit, kernel, root, shellcode
systems | linux
advisories | CVE-2013-6282
MD5 | 6ac7470332daea5b3fb0c0b2de23f30c
FTPShell Server 6.36 Denial Of Service
Posted Dec 26, 2016
Authored by sultan albalawi

FTPShell Server version 6.36 .csv local denial of service vulnerability.

tags | exploit, denial of service, local
MD5 | 5b356fbd5c4fed25460f128637fdd40f
XAMPP Control Panel Denial Of Service
Posted Dec 24, 2016
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org

XAMPP Control Panel suffers from a denial of service vulnerability.

tags | exploit, denial of service
MD5 | 51f7cca4873cac28f767803b148c81e7
Apache mod_session_crypt 2.5 Padding Oracle
Posted Dec 23, 2016
Site redteam-pentesting.de

Apache mod_session_crypto versions 2.3 through 2.5 suffer form a padding oracle vulnerability.

tags | exploit
advisories | CVE-2016-0736
MD5 | 0498842b115e690715efc7725c240fdb
ASP.NET Core 5-RC1 HTTP Header Injection
Posted Dec 23, 2016
Authored by Reto Schadler

ASP.NET Core version 5.-RC1 suffers from an HTTP header injection vulnerability.

tags | exploit, web, asp
MD5 | 28fbb855c6805f6d739cc89ce38fed04
Page 1 of 6
Back12345Next

Top Authors In Last 30 Days

packet storm

© 2016 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close