header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

PhpMesFilms 1.8 SQL Injection Vulnerability

An attacker can exploit this vulnerability by sending a maliciously crafted HTTP request to the vulnerable application. The malicious request contains an SQL query that is appended to the vulnerable parameter. This allows the attacker to gain access to the database and execute arbitrary SQL commands.

Bild Flirt <= version 1.0 SQL Injection Vulnerability Exploit

Bild Flirt <= version 1.0 is vulnerable to a SQL injection vulnerability. An attacker can exploit this vulnerability by sending a malicious SQL query to the vulnerable parameter 'id' in the URL. The malicious query will return the username and password of the user with the user_id of 1.

almnzm 2.1 <= SQL Injection Vulnerability

An attacker can exploit this vulnerability by injecting malicious SQL queries into the vulnerable parameter of the application. This can be done by appending a malicious SQL query to the vulnerable parameter of the application. For example, an attacker can append a malicious SQL query to the vulnerable parameter of the application by using the following URL: index.php?a=pages&id=3' and 1=0 UnIon aLL Select 1,2,concat(username,0x3a,password),4,5,6,7 from almnzm_customers--%20

Mp3 Online Id Tag Editor RFI Vulnerability

The vulnerability exists due to insufficient sanitization of user-supplied input in the 'determined_format[include]' parameter of the 'getid3.php' and 'module.archive.gzip.php' scripts. This can be exploited to include arbitrary remote files by using directory traversal sequences and a null byte to terminate the include statement.

Micropoint Proactive Denfense Mp110013.sys <= 1.3.10123.0 Local Privilege Escalation Exploit

mp110013.sys handles DeviceIoControl request which tells driver PspCreateProcessNotifyRoutine/PspCreateProcessNotifyRoutineCount offset, Attacker can use this interface write kernel memory. Exploit code is written in C language which uses ZwQuerySystemInformation to get the kernel base address and then write shellcode to kernel memory.

Magneto Software Net Resource ActiveX NetConnectionEnum SEH Overwrite POC

This exploit is related to Magneto Software Net Resource ActiveX Control. It is a SEH overwrite vulnerability which can be exploited by passing a long string of 12334 'A' characters as an argument to the NetConnectionEnum function. This can lead to arbitrary code execution.

Magneto Software Net Resource ActiveX NetShareEnum SEH Overwrite POC

This exploit is related to the Magneto Software Net Resource ActiveX control. It is possible to overwrite the Structured Exception Handler (SEH) by passing a long string of 1044 'A' characters as the first argument to the NetShareEnum function. This can lead to arbitrary code execution.

Recent Exploits: