exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 52,849 RSS Feed

Exploit Files

ESET NOD32 Antivirus 17.0.16.0 Unquoted Service Path
Posted Apr 3, 2024
Authored by Milad Karimi

ESET NOD32 Antivirus version 17.0.16.0 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | c01018fc639218a2b0196c36f11c118e26034225a9e9bec571d087dfe03af615
Computer Laboratory Management System 1.0 SQL Injection
Posted Apr 3, 2024
Authored by nu11secur1ty

Computer Laboratory Management System version 1.0 suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 1d0c177652350dd1598803c48c5741b17359e328ac93e414c5c3edf51473fc06
Computer Laboratory Management System 1.0 Cross Site Scripting
Posted Apr 2, 2024
Authored by SoSPiro

Computer Laboratory Management System version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2024-3140
SHA-256 | bf5815c0f1d58d3958bef3adb0e854fe8a2586b75a2f18b16645f513f75c79a1
Computer Laboratory Management System 1.0 Insecure Direct Object Reference
Posted Apr 2, 2024
Authored by SoSPiro

Computer Laboratory Management System version 1.0 suffers from an insecure direct object reference vulnerability.

tags | exploit
advisories | CVE-2024-3139
SHA-256 | b5f987918b9d2242034cb3cfce143ca22eb5711d723578856d21b0e5fbbf07e5
Hospital Management System 1.0 Cross Site Scripting
Posted Apr 2, 2024
Authored by Sandeep Vishwakarma

Hospital Management System version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2024-29412
SHA-256 | b0b5ba54aa37873d47d36df07fd16afcfb575f17d07da9cdcd5d7b51d3cb12e1
PowerVR RGXCreateZSBufferKM2 Use-After-Free
Posted Apr 2, 2024
Authored by Jann Horn, Google Security Research

PowerVR has an issue where the RGXCreateZSBufferKM2 error path frees object while on list.

tags | exploit
SHA-256 | b77c7757a3ce5ef36d49453304cff99bfbbd56c1ff428ecdf3cd2b4c3033e628
E-Insurance 1.0 Cross Site Scripting
Posted Apr 2, 2024
Authored by Sandeep Vishwakarma

E-Insurance version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2024-29411
SHA-256 | 2406f7a2a5b0e1d7a42e0a17b9b16051a07748a1a40df70eaddfa04ad1ec98fd
GL-iNet MT6000 4.5.5 Arbitrary File Download
Posted Apr 2, 2024
Authored by Bandar Alharbi

GL-iNet MT6000 version 4.5.5 suffers from an arbitrary file download vulnerability.

tags | exploit, arbitrary
advisories | CVE-2024-27356
SHA-256 | e3ac85e1aa3ca84b8c1cb8ba2f06777fa8a4ef188ab561304e9fe0ce4f1732cc
Rapid7 Nexpose 6.6.240 Unquoted Service Path
Posted Apr 2, 2024
Authored by Saud Alenazi

Rapid7 Nexpose version 6.6.240 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | bd66c5b0bd02e2c88afcc8696040621293f023ddcf7cd49b4df89984f1b1deed
Blood Bank 1.0 Cross Site Scripting
Posted Apr 2, 2024
Authored by Ersin Erenler

Blood Bank version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2023-46020
SHA-256 | ba0ad0ae015b32793ff56d721804fc5356cd2254b484e026f743cfee280d208a
Backdoor.Win32.Agent.ju (PSYRAT) MVID-2024-0677 Bypass / Command Execution
Posted Apr 2, 2024
Authored by malvuln | Site malvuln.com

The PsyRAT 0.01 malware listens on random high TCP ports 53297, 53211, 532116 and so forth. Connecting to an infected host returns a logon prompt for PASS. However, you can enter anything or nothing at all and execute commands made available by the backdoor.

tags | exploit, tcp
SHA-256 | 49c1a96716eb6676ee82286681b7ec240f24504e592bcf642a8225b45349d927
Daily Habit Tracker 1.0 Broken Access Control
Posted Apr 2, 2024
Authored by Yevhenii Butenko

Daily Habit Tracker version 1.0 suffers from an access control vulnerability.

tags | exploit
advisories | CVE-2024-24496
SHA-256 | 41fffd804f16c75eac78837bfdfd6a20b0fa6cc6d55f44cf072a40546e836709
Daily Habit Tracker 1.0 SQL Injection
Posted Apr 2, 2024
Authored by Yevhenii Butenko

Daily Habit Tracker version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2024-24495
SHA-256 | cd7b10f9c3d3198234448508b8bd3971e255165331cb45675cc34ec55a085e1c
Daily Habit Tracker 1.0 Cross Site Scripting
Posted Apr 2, 2024
Authored by Yevhenii Butenko

Daily Habit Tracker version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2024-24494
SHA-256 | 465774e1e015b47c2df3f4655c8cba2863933ca17aa6baec9c048f8810cb89ff
Employee Management System 1.0 SQL Injection
Posted Apr 2, 2024
Authored by Yevhenii Butenko

Employee Management System version 1.0 suffers from additional remote SQL injection vulnerabilities. Original discovery of this finding is attributed to Ozlem Balci in January of 2024.

tags | exploit, remote, vulnerability, sql injection
advisories | CVE-2024-24499
SHA-256 | 0c0393923d3df1c0633d25e433d1f3d236c329b41f5056207cc820b47be87eae
WordPress Simple Backup Path Traversal / Arbitrary File Download
Posted Apr 2, 2024
Authored by Ven3xy

WordPress Simple Backup plugin versions prior to 2.7.10 suffer from file download and path traversal vulnerabilities.

tags | exploit, vulnerability, file inclusion
SHA-256 | f57a12da9297027e3773452968be51ac7ced5f4c62bc2a03d3a8a87db3b83fae
OpenCart Core 4.0.2.3 SQL Injection
Posted Apr 2, 2024
Authored by Saud Alenazi

OpenCart Core version 4.0.2.3 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 4e62c24dfb4857453f8503bda030c60fd230c642a59bc3d770a2f4bd0cab12e2
Online Hotel Booking In PHP 1.0 SQL Injection
Posted Apr 2, 2024
Authored by Gian Paris C. Agsam

Online Hotel Booking in PHP version 1.0 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, php, sql injection
SHA-256 | dba5f6da9bbb1db4830270fe91b72c0f36ec37923f4911d24100811a4c3c40db
ASUS Control Center Express 01.06.15 Unquoted Service Path
Posted Apr 2, 2024
Authored by Alaa Kachouh

ASUS Control Center Express version 01.06.15 suffers from an unquoted service path vulnerability.

tags | exploit
advisories | CVE-2024-27673
SHA-256 | 46266851a73ecc2b82bae221982b47e9b0424f7ba04367b4b5248bec99f9f696
Microsoft Windows 10.0.17763.5458 Privilege Escalation
Posted Apr 2, 2024
Authored by E1.Coders

Microsoft Windows version 10.0.17763.5458 kernel IOCTL privilege escalation exploit.

tags | exploit, kernel
systems | windows
advisories | CVE-2024-21338
SHA-256 | 8707efbb61bde9a6bad7e9f41e2e2aa406ec325770b5e4cf2822308facf677cb
Elementor Website Builder SQL Injection
Posted Apr 2, 2024
Authored by E1.Coders

Elementor Website Builder versions prior to 3.12.2 suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2023-0329
SHA-256 | 13eccba4a879951b450e58d70bb5dec815e2134f0c7159328e6dd22fc57f3881
Packet Storm New Exploits For March, 2024
Posted Apr 1, 2024
Authored by Todd J. | Site packetstormsecurity.com

This archive contains all of the 137 exploits added to Packet Storm in March, 2024.

tags | exploit
SHA-256 | e7a370f1c0f29e8e8ae9cca342ae253f8f3991c7912112bd243ee527dbcf759f
ARIS: Business Process Management 10.0.21.0 Cross Site Scripting
Posted Apr 1, 2024
Authored by Seid Yassin

ARIS: Business Process Management version 10.0.21.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | f556b08c262d4eefeffbc7480af913d8678c83024c7fa85a7107803af466a801
Linux nf_tables Local Privilege Escalation
Posted Apr 1, 2024
Authored by Notselwyn | Site github.com

A use-after-free vulnerability exists in the Linux kernel netfilter: nf_tables component. This is a universal local privilege escalation proof of concept exploit working on Linux kernels between 5.14 and 6.6, including Debian, Ubuntu, and KernelCTF.

tags | exploit, kernel, local, proof of concept
systems | linux, debian, ubuntu
advisories | CVE-2024-1086
SHA-256 | e98b20acc52d06c63e173b3fafc4a334699f028d1db4b0de3512cf556c197cd9
BioTime Directory Traversal / Remote Code Execution
Posted Apr 1, 2024
Authored by w3bd3vil

BioTime versions 8.5.5 and 9.0.1 suffer from directory traversal and file write vulnerabilities. This exploit also achieves remote code execution on version 8.5.5.

tags | exploit, remote, vulnerability, code execution
SHA-256 | 559624309c6e53a8b2b0a2a02ff69a214f19c0f9c1031ae40784ea114742841e
Page 5 of 2,114
Back34567Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    16 Files
  • 26
    Apr 26th
    14 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close