The Exploit Database – ultimate archive of Exploits, Shellcode, and Security Papers. New to the site? Learn about the Exploit Database.
This exploit category includes exploits for remote services or applications, including client side exploits.
| Date | D | A | V | Description | Platform | Author |
|---|---|---|---|---|---|---|
| 2015-04-27 |
|
- |
|
Legend Perl IRC Bot - Remote Code Execution PoC | multiple | Jay Turla |
| 2015-04-27 |
|
- |
|
MiniUPnPd 1.0 - Stack Overflow RCE for AirTies RT Series (MIPS) | multiple | Onur Alanbel (. |
| 2015-04-21 |
|
- |
|
ProFTPd 1.3.5 (mod_copy) - Remote Command Execution | windows | R-73eN |
| 2015-04-21 |
|
- |
|
Adobe Flash Player copyPixelsToByteArray Integer Overflow | windows | metasploit |
| 2015-04-21 |
|
- |
|
Wordpress Reflex Gallery Upload Vulnerability | php | metasploit |
| 2015-04-21 |
|
- |
|
Wordpress N-Media Website Contact Form Upload Vulnerability | php | metasploit |
| 2015-04-21 |
|
- |
|
Wordpress Creative Contact Form Upload Vulnerability | php | metasploit |
This exploit category includes exploits for web applications.
| Date | D | A | V | Description | Platform | Author |
|---|---|---|---|---|---|---|
| 2015-04-23 |
|
- |
|
Ultimate Product Catalogue Wordpress Plugin - Unauthenticated SQLi | php | Felipe Molina |
| 2015-04-23 |
|
- |
|
Ultimate Product Catalogue Wordpress Plugin - Unauthenticated SQLi #2 | php | Felipe Molina |
| 2015-04-27 |
|
- |
|
WordPress <= 4.2 - Stored XSS | php | klikki |
| 2015-04-27 |
|
- |
|
OTRS < 3.1.x & < 3.2.x & < 3.3.x - Stored Cross-Site Scripting (XSS) | php | Adam Ziaja |
| 2015-04-23 |
|
- |
|
WebUI 1.5b6 - Remote Code Execution Vulnerability | php | TUNISIAN CYBER |
| 2015-04-22 |
|
- |
|
Open-Letters - Remote PHP Code Injection Vulnerability | php | TUNISIAN CYBER |
| 2015-04-22 |
|
|
|
Wolf CMS 0.8.2 - Arbitrary File Upload Exploit | php | CWH Undergroun. |
This exploit category includes local exploits or privilege escalation exploits.
| Date | D | A | V | Description | Platform | Author |
|---|---|---|---|---|---|---|
| 2015-04-24 |
|
|
|
Free MP3 CD Ripper 2.6 2.8 (.wav) - SEH Based Buffer Overflow (W7 - DEP Bypass) | windows | naxxo |
| 2015-04-27 |
|
- |
|
UniPDF Version 1.2 - 'xml' Buffer Overflow Crash PoC | windows | Avinash Thapa |
| 2015-04-23 |
|
|
|
Quick Search 1.1.0.189 - 'search textbox' Unicode SEH egghunter Buffer Overflow | windows | Tomislav Paska. |
| 2015-04-23 |
|
- |
|
Ubuntu usb-creator 0.2.x - Local Privilege Escalation | linux | Tavis Ormandy |
| 2015-04-23 |
|
|
|
Free MP3 CD Ripper 2.6 2.8 (.wav) - SEH Based Buffer Overflow | windows | ThreatActor |
| 2015-04-22 |
|
|
|
MooPlayer 1.3.0 - 'm3u' SEH Buffer Overflow | windows | Tomislav Paska. |
| 2015-04-13 |
|
- |
|
Apple MAC OS X < 10.9/10 - Local Root Exploit | osx | mu-b |
This exploit category includes proof of concept code or code that results in a denial of service or application crash.
| Date | D | A | V | Description | Platform | Author |
|---|---|---|---|---|---|---|
| 2015-04-23 |
|
- |
|
ZYXEL P-660HN-T1H_IPv6 Remote Configuration Editor / Web Server DoS | hardware | Koorosh Ghorba. |
| 2015-04-21 |
|
- |
|
Mac OS X Local Denial of Service | osx | Maxime Villard |
| 2015-04-17 |
|
- |
|
Oracle Hyperion Smart View for Office 11.1.2.3.000 - Crash PoC | windows | sajith |
| 2015-04-17 |
|
- |
|
Oracle Outside-In DOCX File Parsing Memory Corruption | windows | Francis Proven. |
| 2015-04-16 |
|
- |
|
MS Windows (HTTP.sys) HTTP Request Parsing DoS (MS15-034) | windows | laurent gaffie |
| 2015-04-15 |
|
- |
|
Microsoft Window - HTTP.sys PoC (MS15-034) | windows | rhcp011235 |
| 2015-04-13 |
|
- |
|
Samba < 3.6.2 x86 - PoC | linux | sleepya |
This category includes archived shellcode.
| Date | D | Description | Platform | Author |
|---|---|---|---|---|
| 2015-04-03 |
|
Disable ASLR in Linux (84 bytes) | lin_x86 | Mohammad Reza . |
| 2015-04-14 |
|
linux/x86 setreuid(0, 0) + execve("/sbin/halt") + exit(0) (49 bytes) | lin_x86-64 | Febriyanto Nug. |
| 2015-04-17 |
|
Linux/x86 execve "/bin/sh" - shellcode (35 bytes) | lin_x86 | Mohammad Reza . |
| 2015-04-17 |
|
win32/xp sp3 Create ("file.txt") (83 bytes) | win32 | TUNISIAN CYBER |
| 2015-04-17 |
|
win32/xp sp3 - Restart computer | win32 | TUNISIAN CYBER |
| 2015-04-17 |
|
Linux custom execve-shellcode Encoder/Decoder | lin_x86 | Konstantinos A. |
| 2015-04-10 |
|
Create 'my.txt' Working Directory (37 Bytes) | lin_x86 | Mohammad Reza . |
Archived security papers in all languages.
| Date | D | Description | Author |
|---|---|---|---|
| 2015-04-21 |
|
Developing MIPS Exploits to Hack Routers | Onur Alanbel (. |
| 2015-04-03 |
|
[Hebrew] Digital Whisper Security Magazine #60 | cp77fk4r & Und. |
| 2015-03-22 |
|
PoC || GTFO 0x07 | Rt. Revd. Dr. |
| 2015-03-09 |
|
[Hebrew] Digital Whisper Security Magazine #59 | cp77fk4r & Und. |
| 2015-03-04 |
|
[TURKISH] Penetration and Security Testing on Microsoft SQL Server | Halil Dalabasm. |
| 2015-02-13 |
|
[Hebrew] Digital Whisper Security Magazine #58 | cp77fk4r & Und. |
| 2015-02-09 |
|
Exploit-Sources (Part One) | Flor Ian |