Skip to main content
Fortra Data Classification Core Security Logo
Secondary Navigation
  • Fortra.com
  • Contact Us
  • Support
  • PRICING
    • Column 1
      • Core Solutions
        • Core Impact
        • Penetration Testing Services
    • Column 2
      • Interoperable Solutions
        • Cobalt Strike
        • Outflank Security Tooling (OST)
        • Bundles and Suites
    • View all Solutions
    • Column 1
      • Healthcare
      • Financial Services
      • Federal Government
    • View all Industries
    • Blogs
    • Guides
    • Training
    • Webinars & Events
    • View all Resources
    • Exploits
    • Impacket
    • View all
  • About

Read more about CORSAIR iCUE Driver Local Privilege Escalation Exploit
The CorsairLLAccess64.sys driver before 3.25.60 in CORSAIR iCUE exposes functionality that allows low-privileged users to read and write arbitrary physical memory via specially crafted IOCTL requests and elevate system privileges.
Read more about Delta Industrial Automation CNCSoft ScreenEditor DPB File Parsing Buffer Overflow Exploit
Delta Automation CNCSoft Screen Editor is prone to a buffer-overflow vulnerability that occurs because it fails to perform adequate boundary checks on user-supplied data via a crafted .DPB document. This module runs a malicious web server on the Core Impact Console and waits for an unsuspecting user to trigger the exploit by connecting to it.
Read more about rConfig ajaxServerSettingsChk and search_crud Remote OS Command Injection Exploit
This module exploits an unauthenticated OS command injection vulnerability in rConfig using the rootUname parameter present in ajaxServerSettingsChk.php. Also, this module exploits an authenticated OS command injection vulnerability using the catCommand parameter present in search.crud.php.
Read more about Kibana Timelion Visualizer Remote Javascript OS Command Injection Exploit
This module exploits a javascript command injection vulnerability in Kibana, in the Timelion application.
Read more about Apache Solr Velocity Template Remote OS Command Injection Exploit
This module exploits an OS command injection vulnerability in Apache Solr, via the Velocity Template.
Read more about SolarWinds Dameware Mini Remote Control Unauthenticated RCE Exploit
Tenable found an unauthenticated remote code execution vulnerability in the SolarWinds Dameware Remote Mini Remote Client Agent Service (DWRCS.exe) version 12.1.0.89.
Read more about Microsoft Windows Remote Desktop Protocol BlueKeep Remote Code Execution Exploit
This module triggers a use after free vulnerability in the Remote Desktop Service by sending a malformed packet.
Read more about MAPLE Computer SNMP Administrator Exploit
Maple Computer SNMP Asministrator is prone to a buffer-overflow vulnerability when handling a crafted packet.
Read more about File Sharing Wizard POST Method Exploit
File Share Wizard is prone to a buffer-overflow vulnerability when handling a crafted POST packet.
Read more about AVEVA InduSoft Web Studio Remote Command Injection Exploit
AVEVA InduSoft Web Studio is prone to a remote vulnerability that allows attackers to execute commands under the context of the program user.

Pagination

  • Previous page ‹‹
  • Page 36
  • Next page ››
Subscribe to Exploits
Fortra logo
  • Email Core Security Email Us
  • X Find us on X
  • LinkedIn Find us on LinkedIn
  • YouTube Find us on YouTube
  • Reddit Find us on Reddit
Footer

AREAS OF EXPERTISE

  • Penetration Testing
  • Offensive Cybersecurity
  • Red Teaming
  • Compliance

IDENTITY SOLUTIONS

  • Access Assurance Suite
  • Core Password & Secure Reset
  • Core Privileged Access Manager (BoKS)

EXPERIENCE CORE

  • Watch our Core Impact Demo
  • Give Core Impact a Try
  • Compare Core Impact Pricing
  • Explore Core Impact Bundles & Suites

TOP RESOURCES

  • Must Read Blog
  • Must Read Guide
  • Must Read Case Study
  • Must Watch Webinar

ABOUT

  • About Us
  • Partners
  • Careers
  • [email protected]

Privacy Policy

Cookie Policy

Terms of Service

Accessibility

Impressum

Copyright © Fortra, LLC and its group of companies. Fortra®, the Fortra® logos, and other identified marks are proprietary trademarks of Fortra, LLC.