Exploit Database

The Rapid7 Exploit Database is an archive of Metasploit modules for publicly known exploits, 0days, remote exploits, shellcode, and more for researches and penetration testers to review. 3,000 plus modules are all available with relevant links to other technical documentation and source code. All of the modules included in the Exploit Database are also included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro.


Displaying module details 41 - 50 of 3326 in total

NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel) Exploit

Disclosed: June 14, 2016

This module listens for a NetBIOS name request and then continuously spams NetBIOS responses to a target for given hostname, causing the target to cache a malicious address for this name. On high-speed networks, the PPSRATE value should be increased to speed up this attack. As an example, a value of around 30,000 ...

ClamAV Remote Command Transmitter Exploit

Disclosed: June 08, 2016

In certain configurations, ClamAV will bind to all addresses and listen for commands. This module sends properly-formatted commands to the ClamAV daemon if it is in such a configuration.

Tiki-Wiki CMS Calendar Command Execution Exploit

Disclosed: June 06, 2016

Tiki-Wiki CMS's calendar module contains a remote code execution vulnerability within the viewmode GET parameter. The calendar module is NOT enabled by default. If enabled, the default permissions are set to NOT allow anonymous users to access. Vulnerable versions: <=14.1, <=12.4 LTS, <=9.10 LT...

Linux Kernel 4.6.3 Netfilter Privilege Escalation Exploit

Disclosed: June 03, 2016

This module attempts to exploit a netfilter bug on Linux Kernels befoe 4.6.3, and currently only works against Ubuntu 16.04 (not 16.04.1) with kernel 4.4.0-21-generic. Several conditions have to be met for successful exploitation: Ubuntu: 1. ip_tables.ko (ubuntu), iptable_raw (fedora) has to be l...

Poison Ivy 2.1.x C2 Buffer Overflow Exploit

Disclosed: June 03, 2016

This module exploits a stack buffer overflow in the Poison Ivy 2.1.x C&C server. The exploit does not need to know the password chosen for the bot/server communication.

Apache Struts REST Plugin With Dynamic Method Invocation Remote Code Execution Exploit

Disclosed: June 01, 2016

This module exploits a remote command execution vulnerability in Apache Struts version between 2.3.20 and 2.3.28 (except 2.3.20.2 and 2.3.24.2). Remote Code Execution can be performed when using REST Plugin with ! operator when Dynamic Method Invocation is enabled.

Magento 2.0.6 Unserialize Remote Code Execution Exploit

Disclosed: May 17, 2016

This module exploits a PHP object injection vulnerability in Magento 2.0.6 or prior.

Internet Explorer 11 VBScript Engine Memory Corruption Exploit

Disclosed: May 10, 2016

This module exploits the memory corruption vulnerability (CVE-2016-0189) present in the VBScript engine of Internet Explorer 11.

WordPress Ninja Forms Unauthenticated File Upload Exploit

Disclosed: May 04, 2016

Versions 2.9.36 to 2.9.42 of the Ninja Forms plugin contain an unauthenticated file upload vulnerability, allowing guests to upload arbitrary PHP code that can be executed in the context of the web server.

IPFire proxy.cgi RCE Exploit

Disclosed: May 04, 2016

IPFire, a free linux based open source firewall distribution, version < 2.19 Update Core 101 contains a remote command execution vulnerability in the proxy.cgi page.