- [web applications] - WordPress SolveMedia 1.1.0 CSRF Vulnerability
- [dos / poc] - Aloaha PDF Crypter (3.5.0.1164) ActiveX Arbitrary File Overwrite
- [shellcode] - Allwin URLDownloadToFile + WinExec + ExitProcess Shellcode
- [webapps] - ImageCMS 4.0.0b Multiple Vulnerabilities
- [webapps] - WordPress SolveMedia 1.1.0 CSRF Vulnerability
- [local] - Windows Manage Memory Payload Injection
- [webapps] - SQLiteManager 1.2.4 Remote PHP Code Injection Vulnerability
- [web applications] - Wordpress theme sandbox Arbitrary File Upload Vulnerability
- [web applications] - X AutoDealer XSS/SQL Injection Vulnerabilities
- [remote exploits] - SQLiteManager 1.2.4 Remote PHP Code Injection Vulnerability
- [local exploits] - Windows Manage Memory Payload Injection Exploit
- [web applications] - ImageCMS 4.0.0b SQL injection/ CSRF Vulnerabilities
- [remote exploits] - Microsoft Office 2003/2007/2010 Command Execution 0day
- [web applications] - iCart Pro version 4.0.1 SQL Injection Vulnerability
- [web applications] - PHP Weby Directory Software 1.2 SQL Injection / CSRF Vulnerabili
- [remote exploits] - ZTE ZXV10 W300 series (Djaweb router) vulnerability
- [web applications] - Wordpress sem WYSIWYG Arbitrary File Upload Vulnerability
- [remote exploits] - Wordpress theme sandbox Arbitrary File Upload Vulnerability (msf)
- [web applications] - Wordpress plugins - slidedeck2 pro XSS/File Upload Vulnerabilit
- [web applications] - Wordpress Dynamic Font Replacement 1.3 plugin SQL Injection Vuln
- [web applications] - miniBB 3.x Addon preview Remote File Include Vulnerability
- [web applications] - counterSen 1.1.0 Admin Bypass Vulnerability
- [remote exploits] - CoolPlayerPlusPortable 2.19.4 (M3U File) Stack Buffer Overflow
- [web applications] - Raidbooking v.1.1
- [web applications] - PhpYellow Pro Edition XSS/SQL Injection Vulnerabilities
- [web applications] - Tkpcms Remote Code Execution Vulnerability
- [web applications] - Tkpcms Remote Code Execution Exploit 0day
- [webapps] - PHP Weby Directory Software 1.2 Multiple Vulnerabilities
- [local exploits] - Photodex ProShow Producers 5.0.3297 Local Buffer Overflow Vulnerab
- [webapps] - PFsense UTM Platform 2.0.1 XSS Vulnerability
- [webapps] - DataLife Engine 9.7 (preview.php) PHP Code Injection Vulnerability
- [dos] - Apple Quick Time Player (Windows) Version 7.7.3 Out of Bound Read
- [webapps] - Kohana Framework v2.3.3 Directory Traversal Vulnerability
- [webapps] - Fortinet FortiMail 400 IBE Multiple Vulnerabilities
- [remote] - Ruby on Rails JSON Processor YAML Deserialization Code Execution
- [web applications] - PFsense
- [remote exploits] - Ruby on Rails JSON Processor YAML Deserialization Code Execution
- [dos / poc] - Apple Quick Time Player (Windows) Version 7.7.3 Out of Bound Read
- [web applications] - DataLife Engine 9.7 (preview.php) PHP Code Injection Vulnerabili
- [web applications] - Wordpress plugins wp-levoslideshow Arbitrary File Upload Vulnera
- [web applications] - Wordpress plugins powerzoomer Arbitrary File Upload Vulnerabilit
- [web applications] - Wordpress plugins wp-powerplaygallery Arbitrary File Upload Vuln
- [web applications] - Wordpress plugins wp-explorer-gallery Arbitrary File Upload Vuln
- [web applications] - Wordpress plugins wp-catpro Arbitrary File Upload Vulnerability
- [web applications] - Wordpress plugins wp-3dflick-slideshow Arbitrary File Upload Vul
- [web applications] - Wordpress plugins accordion Arbitrary File Upload Vulnerability
- [remote exploits] - D-Link DCS Cameras Authentication Bypass / Command Execution
- [remote exploits] - Ruby on Rails JSON Processor YAML Deserialization Code Execution
- [web applications] - Joomla Component - smartshop SQL Injection Vulnerability
- [web applications] - Wordpress plugin wp-royal-gallery Arbitrary File Upload Vulnerab
- [web applications] - Wordpress plugin wp-homepage-slideshow Arbitrary File Upload Vul
- [web applications] - Wordpress plugin wp-image-news-slider Arbitrary File Upload Vuln
- [webapps] - Wordpress RLSWordPressSearch plugin SQL Injection
- [web applications] - ASMAX AR 1004g Authentication Bypass Vulnerability
- [web applications] - WordPress plugin Attack Scanner Bypass vulnerability
- [web applications] - Wordpress RLSWordPressSearch plugin SQL Injection Vulnerability
- [webapps] - Netgear SPH200D Multiple Vulnerabilities
- [webapps] - Buffalo TeraStation TS-Series - Multiple Vulnerabilities
- [webapps] - D-Link DCS Cameras - Multiple Vulnerabilities
- [web applications] - Netgear SPH200D Multiple Vulnerabilities
- [web applications] - D-Link DCS Cameras - Remote command execution, bypass
- [web applications] - Buffalo TeraStation TS-Series multiple vulnerabilities
- [web applications] - WordPress p1m media manager plugin SQL Injection Vulnerability
- [web applications] - Coyote cms_site Sql injection
- [web applications] - Buffalo TeraStation TS-Series - Multiple Vulnerabilities
- [web applications] - Netgear SPH200D Multiple Vulnerabilities
- [web applications] - Coyote cms_site Sql injection Vulnerability
- [remote] - DataLife Engine preview.php PHP Code Injection
- [remote exploits] - DataLife Engine preview.php PHP Code Injection
- [web applications] - osCommerce CRE Loaded 6.2 Pro Create & Authenticate as Admin
- [web applications] - Wordpress plugins ForumConverter SQL Injection Vulnerability
- [remote exploits] - Apple Safari 6.0.2 (OS X) file:// Multiple Vulnerabilities
- [web applications] - AdaptCMS 2.0.4 SQL Injection Vulnerability
- [web applications] - ArrowChat 1.5.61 Cross Site Scripting / Local File Inclusion
- [web applications] - Joomla Component com_facileforms shell upload Vulnerability
- [web applications] - WordPress Flash News theme Multiple Vulnerabilities
- [web applications] - debliteckservices SQL Injection vulnerability
- [remote exploits] - MS12-020 Remote Desk Top denial of service vulnerability (metaspl
- [local exploits] - Adobe Reader *.PDF command line execution exploit
- [web applications] - Joomla Components lms SQL Injection Vulnerability
- [web applications] - Joomla Components custompages SQL Injection Vulnerability
- [web applications] - WordPress plugins Newsletter SQL Injection Vulnerability
- [web applications] - Free Monthly Websites 2.0 Multiple Vulnerabilities
- [web applications] - Nagios XI 2012R1.5b XSS / Command Execution / SQL Injection / CS
- [web applications] - Glossword 1.8.3 SQL Injection Vulnerability
- [web applications] - Glossword 1.8.12 XSS / CSRF / Shell Upload / Database Disclosure
- [web applications] - D-Link DIR-600 / DIR-300 Command Execution / Bypass / Disclosure
- [remote exploits] - Portable UPnP SDK unique_service_name() Remote Code Execution
- [web applications] - EasyITSP 2.0.7 Directory Traversal Vulnerability
- [dos] - FreeBSD 9.1 ftpd Remote Denial of Service
- [webapps] - Cisco Unity Express Multiple Vulnerabilities
- [papers] - [Hebrew] Digital Whisper Security Magazine #39
- [webapps] - Glossword 1.8.3 SQL Injection Vulnerability
- [webapps] - Glossword 1.8.12 Multiple Vulnerabilities
- [remote] - Portable UPnP SDK unique_service_name() Remote Code Execution
- [webapps] - Free Monthly Websites v2.0 Multiple Vulnerabilities
- [webapps] - D-Link DIR-600 and DIR-300 (rev B) Multiple Vulnerabilities
- [webapps] - AdaptCMS 2.0.4 (config.php, question parameter) SQL Injection Vulnerabili
- [webapps] - ArrowChat 1.5.61 Multiple Vulnerabilities
- [local] - Oracle Automated Service Manager 1.3 Installation Local Privilege Escalatio
- [web applications] - Cisco Unity Express Multiple Vulnerabilities
- [dos] - Linux Kernel /dev/ptmx Key Stroke Timing Local Disclosure
- [web applications] - Wordpress plugin dynamic-font-replacement-4wp Arbitrary File Upl
- [web applications] - Hiverr v2.2 Multiple Vulnerabilities
- [web applications] - SERENDIPITY-1.7-RC2 Multiple Xss Vulnerability
- [web applications] - Facebook Privacy Vulnerability Create Private Messages from Anyo
- [dos / poc] - Opera SVG Use After Free Vulnerability
- [dos / poc] - FreeBSD 9.1 ftpd Remote Denial of Service
- [dos / poc] - Linux Kernel /dev/ptmx Key Stroke Timing Local Disclosure
- [web applications] - ezStats For Battlefield 3 0.91 XSS / Local File Inclusion
- [web applications] - ezStats2 For Playstation Network 1.10 Local File Inclusion
- [web applications] - ezStats2 For Medal Of Honor Warfighter 1.0 Local File Inclusion
- [web applications] - ezStats2 Serverviewer 0.62 Local File Inclusion Vulnerability
- [web applications] - Linksys E1500 / E2500 CSRF / XSS / Command Execution / Traversal
- [web applications] - Lorex LNC116 / LNC104 IP Camera Authentication Bypass Vulnerabil
- [webapps] - Simple Machine Forum 2.0.x < 2.0.4 File Disclosure/Path Traversal
- [web applications] - Simple Machine Forum 2.0.x < 2.0.4 File Disclosure/Path Traversa
- [remote] - VMWare OVF Tools Format String Vulnerability
- [web applications] - WordPress Wysija Newsletters 2.2 SQL Injection Vulnerability
- [web applications] - WordPress CommentLuv 2.92.3 Cross Site Scripting Vulnerability
- [web applications] - CubeCart 5.2.0 PHP Object Injection Vulnerability
- [remote exploits] - ActFax 5.01 RAW Server Buffer Overflow Vulnerability
- [remote exploits] - VMWare OVF Tools Format String Vulnerability
- [dos] - Cool PDF Reader 3.0.2.256 Buffer Overflow
- [remote] - ActFax 5.01 RAW Server Exploit
- [webapps] - WirelessFiles v1.1 iPad iPhone - Multiple Vulnerabilities
- [webapps] - CubeCart 5.2.0 (cubecart.class.php) PHP Object Injection Vulnerability
- [webapps] - Netgear DGN1000B - Multiple Vulnerabilities
- [web applications] - Netgear DGN1000B - Multiple Vulnerabilities
- [web applications] - Wordpress privates themes (download.php) - Local File Inclusion
- [web applications] - Wordpress plugin CKEditor 4.0 Arbitrary File Upload Exploit
- [web applications] - Easy Live Shop System SQL Injection Vulnerability
- [web applications] - SiteGo Local File Inclusion / Cross Site Scripting Vulnerabiliti
- [web applications] - Wordpress privates themes (download.php) - Local File Inclusion
- [web applications] - Bohemian Arbitary File Upload vulnerability
- [web applications] - webAssist Sql Injection Vulnerability
- [dos / poc] - MS13-005 Proof Of Concept
- [remote exploits] - cURL Buffer Overflow Vulnerability
- [remote exploits] - Mozilla Firefox 18.0.2/Opera 12.12/Internet Explorer 9 Memory Cor
- [local exploits] - VLC Player 2.0.4
- [web applications] - phpVibe 3.1 Persistent XSS Vulnerability
- [remote exploits] - D-LINK DIR-300 / DIR-600 Remote Root Exploit
- [remote exploits] - MS12-037 Internet Explorer 8 Same ID Property Deleted Object Hand
- [dos / poc] - Windows Media Player 9.0.0 Local Proof Of Concept Exploit
- [dos / poc] - RealPlayer 16.0.0.282 (.html) Memory Corruption
- [dos / poc] - Schneider Electric Accutech Manager Heap Overflow PoC
- [dos] - Schneider Electric Accutech Manager Heap Overflow PoC
- [web applications] - Wordpress Funny4You plugin 1.0 Local File Include Vulnerability
- [local exploits] - Windows Service Pack 2 (explorer.exe) Memory Corruption
- [dos / poc] - Windows Media Player 9.0.0 .wav (quartz.dll) Stack Over Flow
- [webapps] - Linksys WRT160N - Multiple Vulnerabilities
- [webapps] - D-Link DIR-615 rev H - Multiple Vulnerabilities
- [webapps] - Linksys WAG200G - Multiple Vulnerabilities
- [webapps] - Linksys E1500/E2500 - Multiple Vulnerabilities
- [webapps] - Air Disk Wireless 1.9 iPad iPhone - Multiple Vulnerabilities
- [webapps] - TP-LINK Admin Panel Multiple CSRF Vulnerabilities
- [papers] - Manipulating Memory for Fun & Profit
- [webapps] - IP.Gallery 4.2.x and 5.0.x Persistent XSS Vulnerability
- [webapps] - IRIS Citations Management Tool (post auth) Remote Command Execution
- [dos / poc] - Google Chrome Silent HTTP Authentication
- [remote exploits] - FreeFloat FTP 1.0 Raw Commands Buffer Overflow
- [dos] - cURL Buffer Overflow Vulnerability
- [dos] - Google Chrome Silent HTTP Authentication
- [dos] - MS13-005 HWND_BROADCAST PoC
- [remote] - FreeFloat FTP 1.0 Raw Commands Buffer Overflow
- [web applications] - TP-LINK Admin Panel Multiple CSRF Vulnerabilities
- [web applications] - IP.Gallery 4.2.x and 5.0.x Persistent XSS Vulnerability
- [web applications] - Linksys WRT160N - Multiple Vulnerabilities
- [web applications] - D-Link DIR-615 rev H - Multiple Vulnerabilities
- [web applications] - Linksys WAG200G - Multiple Vulnerabilities
- [web applications] - Linksys E1500/E2500 - Multiple Vulnerabilities
- [web applications] - phpBB highlight Arbitrary File Upload Vulnerability
- [web applications] - PayPal XSS + Cookie Stealer Exploit
- [dos / poc] - Schneider Electric Accutech Manager Heap Overflow PoC
- [dos / poc] - Microsoft Wuindows Movie Maker 5.1 (wav/mpeg) Memory Corruption
- [web applications] - HTTP File Server - v2.x XSS And File Upload Vulnerability
- [dos / poc] - MS13-005 HWND_BROADCAST PoC
- [remote] - Novell GroupWise Client gwcls1.dll ActiveX Remote Code Execution
- [remote exploits] - Novell GroupWise Client gwcls1.dll ActiveX Remote Code Execution
- [remote] - VMWare OVF Tools Format String Vulnerability
- [remote exploits] - VMWare OVF Tools Format String Vulnerability
- [remote exploits] - Polycom HDX Telnet Authorization Bypass Vulnerability
- [web applications] - Yahoo.com XSS Persistent + Cookie Exploit
- [web applications] - PostNuke Module phProfession
- [web applications] - Umbra Loader Botnet all version Blind Sql Injection
- [web applications] - Wordpress NextGEN Gallery 1.9.10 Arbitrary File Upload Exploit (
- [dos / poc] - iRobosoft Internet Browser Memory Corruption
- [web applications] - OpenEMR 4.1.1 Shell Upload
- [web applications] - AbanteCart 1.1.3 Cross Site Scripting
- [remote] - Foxit Reader Plugin URL Processing Buffer Overflow
- [webapps] - Ultra Light Forum Persistant XSS Vulnerability
- [webapps] - Sonicwall OEM Scrutinizer v9.5.2 - Multiple Vulnerabilities
- [webapps] - Raidsonic IB-NAS5220 and IB-NAS4220-B - Multiple Vulnerabilities
- [webapps] - OpenPLI v3.0 beta (OpenPLi-beta-dm7000-20130127-272) - Multiple Vulnerabi
- [webapps] - Transferable Remote v1.1 iPad iPhone - Multiple Vulnerabilities
- [webapps] - Sonicwall Scrutinizer v9.5.2 - SQL Injection Vulnerability
- [remote] - Microsoft Internet Explorer SLayoutRun Use-After-Free (MS13-009)
- [remote] - Polycom HDX Telnet Authorization Bypass
- [papers] - A Short Guide on ARM Exploitation
- [remote exploits] - Microsoft Internet Explorer SLayoutRun Use-After-Free (MS13-009)
- [web applications] - jibberbook Bypass Admin Vulnerability
- [remote exploits] - Foxit Reader Plugin URL Processing Buffer Overflow
- [web applications] - OpenPLI v3.0 beta (OpenPLi-beta-dm7000-20130127-272) - Multiple
- [web applications] - Raidsonic IB-NAS5220 and IB-NAS4220-B - Multiple Vulnerabilities
- [web applications] - Ultra Light Forum Persistant XSS Vulnerability
- [web applications] - BlackNova Traders SQL Injection Vulnerability
- [local] - Photodex ProShow Producer v5.0.3297 (.pxs) Memory Corruption Exploit
- [webapps] - TP-Link TL-WA701N / TL-WA701ND - Multiple Vulnerabilities
- [webapps] - Edimax EW-7206-APg and EW-7209APg - Multiple Vulnerabilities
- [web applications] - TP-Link TL-WA701N / TL-WA701ND - Multiple Vulnerabilities
- [web applications] - chillyCMS 1.3.0 - Multiple Vulnerabilities
- [web applications] - Cometchat - Multiple Vulnerabilities
- [web applications] - Edimax EW-7206-APg and EW-7209APg - Multiple Vulnerabilities
- [local exploits] - Photodex ProShow Producer v5.0.3297 (.pxs) Memory Corruption Explo
- [webapps] - chillyCMS 1.3.0 - Multiple Vulnerabilities
- [webapps] - Cometchat - Multiple Vulnerabilities
- [webapps] - OpenEMR 4.1.1 (ofc_upload_image.php) Arbitrary File Upload Vulnerability
- [webapps] - Hiverr v2.2 - Multiple Vulnerabilities
- [web applications] - PHP-Nuke module (League 2.4) XSS Vulnerability
- [web applications] - PHP-Nuke Module Nukequiz
- [remote exploits] - xMatters Alarmpoint BoF-0day
- [remote exploits] - EChat Server 3.1 BoF-0day
- [web applications] - Ajax File Manager Remote Code Execution Exploit
- [web applications] - A4tech Bloody2 Mouse Activation
- [remote exploits] - MyBB (All Versions) File Upload 0day
- [web applications] - Dimofinf cms version 3.0.0 Sql Injection Vulnerability
- [remote exploits] - SAP Netweaver Message Server Buffer Overflow Vulnerability
- [web applications] - Sonar 3.4.1 Cross Site Scripting Vulnerability
- [web applications] - ARASTAR Sql Injection Vulnerability
- [local exploits] - Apple iPhone iOS Default SSH Password Exploit (.py)
- [webapps] - Scripts Genie Games Site Script (index.php, id param) - SQL Injection Vul
- [dos] - SAP Netweaver Message Server Multiple Vulnerabilities
- [webapps] - Scripts Genie Domain Trader (catalog.php, id param) - SQL Injection Vulne
- [webapps] - Scripts Genie Gallery Personals (gallery.php, L param) - SQL Injection Vu
- [remote exploits] - MyBB (All Versions) SQL Injection / File Upload 0day
- [webapps] - Scripts Genie Top Sites (out.php, id param) - SQL Injection Vulnerability
- [web applications] - Scripts Genie Gallery Personals SQL Injection Vulnerability
- [web applications] - Scripts Genie Domain Trader SQL Injection Vulnerability
- [web applications] - Scripts Genie Games Site Script SQL Injection Vulnerability
- [web applications] - Scripts Genie Top Sites SQL Injection Vulnerability
- [dos / poc] - VLC 2.0.5 (.bmp) Heap Overflow PoC
- [webapps] - USB Sharp v1.3.4 iPad iPhone - Multiple Vulnerabilities
- [webapps] - Scripts Genie Hot Scripts Clone (showcategory.php, cid param) - SQL Injec
- [webapps] - Cometchat Application - Multiple Vulnerabilities
- [webapps] - Scripts Genie Pet Rate Pro - Multiple Vulnerabilities
- [webapps] - Netgear DGN2200B - Multiple Vulnerabilities
- [web applications] - Cometchat Application - Multiple Vulnerabilities
- [web applications] - Scripts Genie Pet Rate Pro SQL injection Vulnerability
- [web applications] - Scripts Genie Hot Scripts Clone SQL Injection Vulnerability
- [web applications] - Netgear DGN2200B - Multiple Vulnerabilities