Blog RSSExploits RSSFacebook

REMOTE

Date D   Description Plat. Author
2020-04-16   Apache Solr - Remote Code Execution via Velocity Template (Metasploit) 1 REMOTE Metasploit
2020-04-16   DotNetNuke - Cookie Deserialization Remote Code Execution (Metasploit) 1 REMOTE Metasploit
2020-04-16   PlaySMS - index.php Unauthenticated Template Injection Code Execution (Metasploit) 2 REMOTE Metasploit
2020-04-16   Pandora FMS - Ping Authenticated Remote Code Execution (Metasploit) 2 REMOTE Metasploit
2020-04-16   ThinkPHP - Multiple PHP Injection RCEs (Metasploit) 1 REMOTE Metasploit
2020-04-16   Liferay Portal - Java Unmarshalling via JSONWS RCE (Metasploit) 2 REMOTE Metasploit
2020-04-16   TP-Link Archer A7/C7 - Unauthenticated LAN Remote Code Execution (Metasploit) 1 REMOTE Metasploit
2020-03-31   SharePoint Workflows - XOML Injection (Metasploit) 2 REMOTE Metasploit
2020-03-31   DLINK DWL-2600 - Authenticated Remote Command Injection (Metasploit) 2 REMOTE Metasploit
2020-03-31   IBM TM1 / Planning Analytics - Unauthenticated Remote Code Execution (Metasploit) 2 REMOTE Metasploit
2020-03-31   Redis - Replication Code Execution (Metasploit) 1 REMOTE Metasploit
2020-03-30   Multiple DrayTek Products - Pre-authentication Remote Root Code Execution 1 REMOTE 0xsha
2020-03-23   CyberArk PSMP 10.9.1 - Policy Restriction Bypass 1 REMOTE LAHBAL Said
2020-03-18   Broadcom Wi-Fi Devices - 'KR00K Information Disclosure 2 REMOTE Maurizio S
2020-03-17   ManageEngine Desktop Central - Java Deserialization (Metasploit) 1 REMOTE Metasploit
2020-03-17   Rconfig 3.x - Chained Remote Code Execution (Metasploit) 1 REMOTE Metasploit
2020-03-13   Drobo 5N2 4.1.1 - Remote Command Injection 2 REMOTE Ian Sindermann
2020-03-11   CTROMS Terminal OS Port Portal - 'Password Reset' Authentication Bypass (Metasploit) 2 REMOTE AkkuS
2020-03-11   CoreFTP 2.0 Build 674 MDTM - Directory Traversal (Metasploit) 2 REMOTE Kevin Randall
2020-03-11   CoreFTP 2.0 Build 674 SIZE - Directory Traversal (Metasploit) 1 REMOTE Kevin Randall
2020-03-10   PHPStudy - Backdoor Remote Code execution (Metasploit) 1 REMOTE Metasploit
2020-03-10   Nagios XI - Authenticated Remote Command Execution (Metasploit) 3 REMOTE Metasploit
2020-03-09   Google Chrome 80 - JSCreate Side-effect Type Confusion (Metasploit) 1 REMOTE Metasploit
2020-03-09   Google Chrome 67_ 68 and 69 - Object.create Type Confusion (Metasploit) 1 REMOTE Metasploit
2020-03-09   Google Chrome 72 and 73 - Array.map Out-of-Bounds Write (Metasploit) 2 REMOTE Metasploit
2020-03-09   PHP-FPM - Underflow Remote Code Execution (Metasploit) 2 REMOTE Metasploit
2020-03-09   Apache ActiveMQ 5.x-5.11.1 - Directory Traversal Shell Upload (Metasploit) 1 REMOTE Metasploit
2020-03-02   netkit-telnet-0.17 telnetd (Fedora 31) - 'BraveStarr' Remote Code Execution 1 REMOTE Immunity
2020-03-05   EyesOfNetwork - AutoDiscovery Target Command Execution (Metasploit) 2 REMOTE Metasploit
2020-03-05   Exchange Control Panel - Viewstate Deserialization (Metasploit) 2 REMOTE Metasploit
2020-03-02   CA Unified Infrastructure Management Nimsoft 7.80 - Remote Buffer Overflow 2 REMOTE wetw0rk
2020-03-02   Microsoft Exchange 2019 15.2.221.12 - Authenticated Remote Code Execution 1 REMOTE Photubias
2020-02-26   OpenSMTPD < 6.6.3p1 - Local Privilege Escalation + Remote Code Execution 2 REMOTE Qualys Corporation
2020-02-26   OpenSMTPD 6.6.3 - Arbitrary File Read 2 REMOTE Qualys Corporation
2020-02-24   Apache James Server 2.3.2 - Insecure User Creation Arbitrary File Write (Metasploit) 1 REMOTE Metasploit
2020-02-17   Anviz CrossChex - Buffer Overflow (Metasploit) 2 REMOTE Metasploit
2020-01-21   Microsoft SharePoint - Deserialization Remote Code Execution 1 REMOTE Voulnet
2020-02-11   OpenSMTPD 6.4.0 < 6.6.1 - Local Privilege Escalation + Remote Code Execution 2 REMOTE Marco Ivaldi
2020-02-10   OpenSMTPD - MAIL FROM Remote Code Execution (Metasploit) 1 REMOTE Metasploit
2020-02-10   D-Link Devices - Unauthenticated Remote Command Execution in ssdpcgi (Metasploit) 1 REMOTE Metasploit
2020-02-05   HiSilicon DVR/NVR hi3520d firmware - Remote Backdoor Account 1 REMOTE Snawoot
2020-01-30   OpenSMTPD 6.6.1 - Remote Code Execution 1 REMOTE 1F98D
2020-01-23   Pachev FTP Server 1.0 - Path Traversal 2 REMOTE 1F98D
2020-01-15   Sagemcom F@ST 3890 (50_10_19-T1) Cable Modem - 'Cable Haunt' Remote Code Execution 1 REMOTE Lyrebirds
2020-01-15   Barco WePresent - file_transfer.cgi Command Injection (Metasploit) 2 REMOTE Metasploit
2020-01-08   JetBrains TeamCity 2018.2.4 - Remote Code Execution 1 REMOTE hantwister
2020-01-08   ASTPP VoIP 4.0.1 - Remote Code Execution 1 REMOTE Fabien AUNAY
2020-01-08   EBBISLAND EBBSHAVE 6100-09-04-1441 - Remote Buffer Overflow 2 REMOTE hantwister
2020-01-08   Cisco DCNM JBoss 10.4 - Credential Leakage 2 REMOTE hantwister
2020-01-01   nostromo 1.9.6 - Remote Code Execution 1 REMOTE Kr0ff
2019-12-20   FreeSWITCH 1.10.1 - Command Execution 2 REMOTE 1F98D
2019-12-18   OpenMRS - Java Deserialization RCE (Metasploit) 2 REMOTE Metasploit
2019-12-06   Integard Pro NoJs 2.2.0.9026 - Remote Buffer Overflow 1 REMOTE purpl3f0xsecur1ty
2019-12-06   Integard Pro NoJs 2.2.0.9026 - Remote Buffer Overflow 1 REMOTE purpl3f0xsecur1ty
2019-11-20   Pulse Secure VPN - Arbitrary Command Execution (Metasploit) 2 REMOTE Metasploit
2019-11-20   Bludit - Directory Traversal Image File Upload (Metasploit) 2 REMOTE Metasploit
2019-11-20   FreeSWITCH - Event Socket Command Execution (Metasploit) 2 REMOTE Metasploit
2019-11-20   FusionPBX - Operator Panel exec.php Command Execution (Metasploit) 2 REMOTE Metasploit
2019-05-17   Cisco Prime Infrastructure Health Monitor HA TarArchive - Directory Traversal / Remote Code Executio 2 REMOTE mr_me
2019-11-19   Microsoft Windows 7 (x86) - 'BlueKeep' Remote Desktop Protocol (RDP) Remote Windows Kernel Use After 1 REMOTE 0xeb-bp
2019-11-18   nipper-ng 0.11.10 - Remote Buffer Overflow (PoC) 1 REMOTE Guy Levin
2019-11-12   CBAS-Web 19.0.0 - Information Disclosure 2 REMOTE LiquidWorm
2019-11-12   eMerge E3 Access Controller 4.6.07 - Remote Code Execution (Metasploit) 2 REMOTE LiquidWorm
2019-11-12   eMerge E3 Access Controller 4.6.07 - Remote Code Execution 2 REMOTE LiquidWorm
2019-11-08   rConfig - install Command Execution (Metasploit) 2 REMOTE Metasploit
2019-11-04   Ayukov NFTP client 1.71 - 'SYST' Buffer Overflow 2 REMOTE SYANiDE
2019-11-04   Ayukov NFTP client 1.71 - 'SYST' Buffer Overflow 2 REMOTE SYANiDE
2019-11-01   Nostromo - Directory Traversal Remote Command Execution (Metasploit) 2 REMOTE Metasploit
2019-10-31   MikroTik RouterOS 6.45.6 - DNS Cache Poisoning 2 REMOTE Jacob Baines
2019-10-29   Microsoft Windows Server 2012 - 'Group Policy' Security Feature Bypass (MS15-014) 2 REMOTE Thomas Zuk
2019-10-29   Microsoft Windows Server 2012 - 'Group Policy' Remote Code Execution (MS15-011) 2 REMOTE Thomas Zuk
2019-10-29   Win10 MailCarrier 2.51 - 'POP3 User' Remote Buffer Overflow 2 REMOTE Lance Biggerstaff
2019-10-22   Moxa EDR-810 - Command Injection / Information Disclosure 2 REMOTE RandoriSec
2019-10-22   Total.js CMS 12 - Widget JavaScript Code Injection (Metasploit) 1 REMOTE Metasploit
2019-10-17   ThinVNC 1.0b1 - Authentication Bypass 1 REMOTE Nikhith Tumamlapalli
2019-10-16   Whatsapp 2.19.216 - Remote Code Execution 1 REMOTE Valerio Brussani
2019-10-15   Podman & Varlink 1.5.1 - Remote Code Execution 2 REMOTE Jeremy Brown
2019-10-07   freeFTP 1.0.8 - 'PASS' Remote Buffer Overflow 1 REMOTE Chet Manly
2019-10-02   DOUBLEPULSAR - Payload Execution and Neutralization (Metasploit) 1 REMOTE Metasploit
2019-10-02   DOUBLEPULSAR - Payload Execution and Neutralization (Metasploit) 1 REMOTE Metasploit
2019-09-30   Cisco Small Business 220 Series - Multiple Vulnerabilities 2 REMOTE bashis
2019-09-30   GoAhead 2.5.0 - Host Header Injection 2 REMOTE Ramikan
2019-09-24   Microsoft Windows - BlueKeep RDP Remote Windows Kernel Use After Free (Metasploit) 2 REMOTE Metasploit
2019-09-24   Microsoft Windows - BlueKeep RDP Remote Windows Kernel Use After Free (Metasploit) 1 REMOTE Metasploit
2019-09-24   File Sharing Wizard 1.5.0 - POST SEH Overflow 2 REMOTE x00pwn
2019-09-23   HPE Intelligent Management Center < 7.3 E0506P09 - Information Disclosure 2 REMOTE Lazy Hacker
2019-09-23   Hisilicon HiIpcam V100R003 Remote ADSL - Credentials Disclosure 2 REMOTE Todor Donev
2019-09-16   Inteno IOPSYS Gateway - Improper Access Restrictions 2 REMOTE Gerard Fuguet
2019-09-10   October CMS - Upload Protection Bypass Code Execution (Metasploit) 2 REMOTE Metasploit
2019-09-10   LibreNMS - Collectd Command Injection (Metasploit) 2 REMOTE Metasploit
2019-09-10   LibreNMS - Collectd Command Injection (Metasploit) 2 REMOTE Metasploit
2019-09-06   FusionPBX 4.4.8 - Remote Code Execution 1 REMOTE Askar
2019-09-06   Pulse Secure 8.1R15.1/8.2/8.3/9.0 SSL VPN - Remote Code Execution 2 REMOTE Justin Wagner
2019-09-05   AwindInc SNMP Service - Command Injection (Metasploit) 2 REMOTE Metasploit
2019-09-05   AwindInc SNMP Service - Command Injection (Metasploit) 1 REMOTE Metasploit
2019-09-03   Cisco RV110W/RV130(W)/RV215W Routers Management Interface - Remote Command Execution (Metasploit) 2 REMOTE Metasploit
2019-09-03   Cisco RV110W/RV130(W)/RV215W Routers Management Interface - Remote Command Execution (Metasploit) 2 REMOTE Metasploit
2019-09-03   Cisco Data Center Network Manager - Unauthenticated Remote Code Execution (Metasploit) 3 REMOTE Metasploit
2019-09-03   Cisco Data Center Network Manager - Unauthenticated Remote Code Execution (Metasploit) 2 REMOTE Metasploit
2019-09-03   Cisco UCS Director - default scpuser password (Metasploit) 3 REMOTE Metasploit
2019-09-02   IntelBras TELEFONE IP TIP200/200 LITE 60.61.75.15 - Arbitrary File Read 2 REMOTE Todor Donev
2019-09-02   Cisco Email Security Appliance (IronPort) C160 - 'Host' Header Injection 2 REMOTE Todor Donev
2019-08-21   Cisco UCS Director_ Cisco Integrated Management Controller Supervisor and Cisco UCS Director Express 2 REMOTE Pedro Ribeiro
2019-08-21   LibreOffice < 6.2.6 Macro - Python Code Execution (Metasploit) 2 REMOTE LoadLow
2019-08-14   Agent Tesla Botnet - Arbitrary Code Execution (Metasploit) 2 REMOTE Ege Balci
2019-08-13   AZORult Botnet - SQL Injection 2 REMOTE prsecurity
2019-08-13   Agent Tesla Botnet - Arbitrary Code Execution 1 REMOTE prsecurity
2019-08-12   Webmin 1.920 - Unauthenticated Remote Code Execution (Metasploit) 2 REMOTE AkkuS
2019-08-12   ManageEngine OpManager 12.4x - Unauthenticated Remote Command Execution (Metasploit) 2 REMOTE AkkuS
2019-08-12   ManageEngine Application Manager 14.2 - Privilege Escalation / Remote Command Execution (Metasploit) 2 REMOTE AkkuS
2019-08-12   ManageEngine OpManager 12.4x - Privilege Escalation / Remote Command Execution (Metasploit) 2 REMOTE AkkuS
2019-08-08   Baldr Botnet Panel - Arbitrary Code Execution (Metasploit) 3 REMOTE Ege Balci
2019-08-05   ARMBot Botnet - Arbitrary Code Execution 2 REMOTE prsecurity
2019-08-05   Apache Tika 1.15 - 1.17 - Header Command Injection (Metasploit) 2 REMOTE Metasploit
2019-07-30   Redis 4.x / 5.x - Unauthenticated Code Execution (Metasploit) 2 REMOTE Metasploit
2019-07-29   WordPress Plugin Database Backup < 5.2 - Remote Code Execution (Metasploit) 2 REMOTE Metasploit
2019-07-29   Schneider Electric Pelco Endura NET55XX Encoder - Authentication Bypass (Metasploit) 2 REMOTE Metasploit
2019-07-29   Schneider Electric Pelco Endura NET55XX Encoder - Authentication Bypass (Metasploit) 2 REMOTE Metasploit
2019-07-24   Android 7 < 9 - Remote Code Execution 2 REMOTE Marcin Kozlowski
2019-07-24   Trend Micro Deep Discovery Inspector IDS - Security Bypass 2 REMOTE hyp3rlinx
2019-07-19   MAPLE Computer WBT SNMP Administrator 2.0.195.15 - Remote Buffer Overflow (EggHunter) 2 REMOTE sasaga92
2019-07-17   MAPLE Computer WBT SNMP Administrator 2.0.195.15 - Remote Buffer Overflow 2 REMOTE hyp3rlinx
2019-07-17   MAPLE Computer WBT SNMP Administrator 2.0.195.15 - Remote Buffer Overflow 2 REMOTE hyp3rlinx
2019-07-16   PHP Laravel Framework 5.5.40 / 5.6.x < 5.6.30 - token Unserialize Remote Command Execution (Metasplo 2 REMOTE Metasploit
2019-07-12   Xymon 4.3.25 - useradm Command Execution (Metasploit) 2 REMOTE Metasploit