0day.today - Biggest Exploit Database in the World.
Things you should know about 0day.today:
Administration of this site uses the official contacts. Beware of impostors!
- We use one main domain: http://0day.today
- Most of the materials is completely FREE
- If you want to purchase the exploit / get V.I.P. access or pay for any other service,
you need to buy or earn GOLD
Administration of this site uses the official contacts. Beware of impostors!
We DO NOT use Telegram or any messengers / social networks!
Please, beware of scammers!
Please, beware of scammers!
- Read the [ agreement ]
- Read the [ Submit ] rules
- Visit the [ faq ] page
- [ Register ] profile
- Get [ GOLD ]
- If you want to [ sell ]
- If you want to [ buy ]
- If you lost [ Account ]
- Any questions [ admin@0day.today ]
- Authorisation page
- Registration page
- Restore account page
- FAQ page
- Contacts page
- Publishing rules
- Agreement page
Mail:
Facebook:
Twitter:
Telegram:
We DO NOT use Telegram or any messengers / social networks!
You can contact us by:
Mail:
Facebook:
Twitter:
Telegram:
We DO NOT use Telegram or any messengers / social networks!
Search results for exploits by request: session
[ remote exploits ]
Remote exploits and vulnerabilities category
A "remote exploit" works over a network and exploits the security vulnerability without any prior access to the vulnerable system.
-::DATE
-::DESCRIPTION
-::TYPE
-::HITS
-::RISK
-::GOLD
-::AUTHOR
Whatsapp Desktop (session hijacking) Payload 0day Exploit
Rate up:
0
Rate down:
0
Comments:
0
17 525
Security Risk Critical
D
Download
-
Verified by 0day Admin
0.033
Open this exploit for 0.033 BTC
Open this exploit for 3 000 GOLD
0day Today Team
Exploits:
293
BusinessLevel:
31
Telegram Desktop (session hijacking) Payload Exploit
Rate up:
0
Rate down:
0
Comments:
0
19 604
Security Risk Critical
D
Download
-
Verified by 0day Admin
0.016
Open this exploit for 0.016 BTC
Open this exploit for 1 500 GOLD
cy4n
Exploits:
1
BusinessLevel:
3
15 169
Security Risk High
D
Download
C
CVE-2017-15944
Verified by 0day Admin
free
You can open this exploit for free
metasploit
Exploits:
1663
BusinessLevel:
94
6 493
Security Risk Critical
D
Download
C
CVE-2017-0298
Verified by 0day Admin
free
You can open this exploit for free
James Forshaw
Exploits:
6
BusinessLevel:
5
6 956
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Matthew Bergin
Exploits:
43
BusinessLevel:
10
Trend Micro Threat Discovery Appliance 2.6.1062r1 Session Generation Authentication Bypass Exploit
Comments:
0
6 488
Security Risk High
D
Download
C
CVE-2016-8584
Verified by 0day Admin
free
You can open this exploit for free
mr_me
Exploits:
109
BusinessLevel:
13
4 196
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
metasploit
Exploits:
1663
BusinessLevel:
94
4 902
Security Risk High
D
Download
C
CVE-2015-2284
Verified by 0day Admin
free
You can open this exploit for free
metasploit
Exploits:
1663
BusinessLevel:
94
5 552
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
metasploit
Exploits:
1663
BusinessLevel:
94
unsorted
4 014
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Grzegorz Stachowiak
Exploits:
2
BusinessLevel:
7
5 370
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Guido Landi
Exploits:
25
BusinessLevel:
10
3 309
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Adrian "pagvac" Pastor
Exploits:
4
BusinessLevel:
10
4 315
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Yaroslav Polyakov
Exploits:
1
BusinessLevel:
10
[ local exploits ]
Local exploits and vulnerabilities category
A "local exploit" requires prior access to the vulnerable system and usually increases the privileges of the person running the exploit past those granted by the system administrator. Exploits against client applications also exist, usually consisting of modified servers that send an exploit if accessed with client application.
-::DATE
-::DESCRIPTION
-::TYPE
-::HITS
-::RISK
-::GOLD
-::AUTHOR
5 998
Security Risk High
D
Download
Verified by 0day Admin
free
You can open this exploit for free
DEFCESCO
Exploits:
4
BusinessLevel:
1
5 921
Security Risk High
D
Download
C
CVE-2024-25003
Verified by 0day Admin
free
You can open this exploit for free
DEFCESCO
Exploits:
4
BusinessLevel:
1
10 682
Security Risk Critical
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
usiegl00
Exploits:
1
BusinessLevel:
1
8 761
Security Risk Medium
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
LiquidWorm
Exploits:
761
BusinessLevel:
48
5 481
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Social Engineering Neo
Exploits:
8
BusinessLevel:
3
9 150
Security Risk High
D
Download
C
CVE-2019-0566
Verified by 0day Admin
free
You can open this exploit for free
Google Security Research
Exploits:
1019
BusinessLevel:
56
Microsoft Windows 10 - SSPI Network Authentication Session 0 Privilege Escalation Exploit
Comments:
0
9 175
Security Risk High
D
Download
C
CVE-2019-0543
Verified by 0day Admin
free
You can open this exploit for free
Google Security Research
Exploits:
1019
BusinessLevel:
56
6 901
Security Risk Medium
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Micha Borrmann
Exploits:
9
BusinessLevel:
4
5 613
Security Risk High
D
Download
C
CVE-2017-0100
Verified by 0day Admin
free
You can open this exploit for free
Google Security Research
Exploits:
1019
BusinessLevel:
56
3 553
Security Risk Medium
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Felipe Xavier Oliveira
Exploits:
4
BusinessLevel:
4
KiTTY Portable 0.65.1.1p - Local Saved Session Overflow (Egghunter XP, Denial of Service 7/8.1/10)
Comments:
0
3 723
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Guillaume Kaddouch
Exploits:
11
BusinessLevel:
5
3 189
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
LiquidWorm
Exploits:
761
BusinessLevel:
48
Mod_Auth_OpenID Session Stealing Vulnerability
Comments:
0
4 522
Security Risk Medium
D
Download
-
Not verified yet
free
You can open this exploit for free
Peter Ellehauge
Exploits:
1
BusinessLevel:
6
4 570
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
sinn3r
Exploits:
15
BusinessLevel:
8
unsorted
3 701
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Marsh Ray
Exploits:
1
BusinessLevel:
8
unsorted
4 049
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
zec
Exploits:
1
BusinessLevel:
8
3 962
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Stefan Esser
Exploits:
31
BusinessLevel:
11
4 159
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Stefan Esser
Exploits:
31
BusinessLevel:
11
3 884
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Stefan Esser
Exploits:
31
BusinessLevel:
11
4 012
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Stefan Esser
Exploits:
31
BusinessLevel:
11
[ web applications ]
Webapplication (webapps) exploits and vulnerabilities category
This category is full with vulnerabilities, which was found in web projects and web applications.
-::DATE
-::DESCRIPTION
-::TYPE
-::HITS
-::RISK
-::GOLD
-::AUTHOR
3 253
Security Risk Medium
D
Download
C
CVE-2023-38357
Verified by 0day Admin
free
You can open this exploit for free
RedTeam
Exploits:
62
BusinessLevel:
9
CmsMadeSimple v2.2.17 - session hijacking via Server-Side Template Injection Vulnerability
Comments:
0
3 064
Security Risk Medium
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Mirabbas Ağalarov
Exploits:
51
BusinessLevel:
3
3 536
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
nu11secur1ty
Exploits:
215
BusinessLevel:
13
3 613
Security Risk Medium
D
Download
C
CVE-2023-30056
CVE-2023-30057
CVE-2023-30057
Verified by 0day Admin
free
You can open this exploit for free
Matei Josephs
Exploits:
1
BusinessLevel:
1
3 899
Security Risk Medium
D
Download
C
CVE-2023-22620
Verified by 0day Admin
free
You can open this exploit for free
Julien Ahrens
Exploits:
66
BusinessLevel:
10
3 241
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
nu11secur1ty
Exploits:
215
BusinessLevel:
13
bgERP v22.31 (Orlovets) - Cookie Session vulnerability / Cross-Site Scripting Vulnerabilities
Comments:
0
3 025
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
nu11secur1ty
Exploits:
215
BusinessLevel:
13
Osprey Pump Controller 1.0.1 Predictable Session Token / Session Hijacking Vulnerabilities
Comments:
0
2 653
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
LiquidWorm
Exploits:
761
BusinessLevel:
48
3 183
Security Risk Medium
D
Download
C
CVE-2022-38756
Verified by 0day Admin
free
You can open this exploit for free
Stefan Pietsch
Exploits:
4
BusinessLevel:
2
3 266
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
nu11secur1ty
Exploits:
215
BusinessLevel:
13
3 991
Security Risk High
D
Download
C
CVE-2022-31325
Verified by 0day Admin
free
You can open this exploit for free
nu11secur1ty
Exploits:
215
BusinessLevel:
13
3 102
Security Risk High
D
Download
C
CVE-2021-44151
Verified by 0day Admin
free
You can open this exploit for free
Andreas Fyhn Andersen
Exploits:
5
BusinessLevel:
2
2 714
Security Risk High
D
Download
C
CVE-2021-29011
CVE-2021-29012
CVE-2021-29012
Verified by 0day Admin
free
You can open this exploit for free
bnu1s
Exploits:
1
BusinessLevel:
2
2 656
Security Risk High
D
Download
C
CVE-2021-39289
CVE-2021-39290
CVE-2021-39290
Verified by 0day Admin
free
You can open this exploit for free
Gerhard Hechenberger
Exploits:
6
BusinessLevel:
2
2 334
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Faisal Alhadlaq
Exploits:
1
BusinessLevel:
2
ICE Hrm 29.0.0.OS - (Account Takeover) Cross-Site Scripting and Session Fixation Vulnerability
Comments:
0
1 844
Security Risk Medium
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Piyush Patil
Exploits:
13
BusinessLevel:
2
1 516
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
LiquidWorm
Exploits:
761
BusinessLevel:
48
1 446
Security Risk Medium
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
bot
Exploits:
156
BusinessLevel:
13
Citadel WebCit < 926 - Session Hijacking Exploit
Comments:
0
1 524
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Simone Quatrini
Exploits:
1
BusinessLevel:
3
2 046
Security Risk Medium
D
Download
C
CVE-2019-19199
Verified by 0day Admin
free
You can open this exploit for free
Micha Borrmann
Exploits:
9
BusinessLevel:
4
[ dos / poc ]
DOS exploits and vulnerabilities category
PoC DoS (denial of service exploit) it exploits remote steps to check the resistance on the affected server or software denial of service vulnerability. The purpose of these attacks is to check the server or the software for resistance.
PoC (Proof Of Concept exploit) An attack against a computer or network that is performed only to prove that it can be done. It generally does not cause any harm, but shows how a hacker can take advantage of a vulnerability in the software or possibly the hardware.
-::DATE
-::DESCRIPTION
-::TYPE
-::HITS
-::RISK
-::GOLD
-::AUTHOR
5 039
Security Risk Medium
D
Download
C
CVE-2022-38152
Verified by 0day Admin
free
You can open this exploit for free
Maximilian Ammann
Exploits:
3
BusinessLevel:
1
systemd - Lack of Seat Verification in PAM Module Permits Spoofing Active Session to polkit Exploit
Comments:
0
12 196
Security Risk Medium
D
Download
C
CVE-2019-3842
Verified by 0day Admin
free
You can open this exploit for free
Google Security Research
Exploits:
1019
BusinessLevel:
56
Microsoft Windows - CSRSS BaseSrvCheckVDM Session 0 Process Creation Privilege Escalation (MS16-048)
Comments:
0
3 239
Security Risk High
D
Download
C
CVE-2016-0151
Verified by 0day Admin
free
You can open this exploit for free
Google Security Research
Exploits:
1019
BusinessLevel:
56
3 788
Security Risk High
D
Download
-
Verified by 0day Admin
free
You can open this exploit for free
Taoguang Chen
Exploits:
11
BusinessLevel:
6
Heartbleed User Session Extraction Exploit
Comments:
0
8 480
Security Risk Medium
D
Download
C
CVE-2014-0160
Verified by 0day Admin
free
You can open this exploit for free
Jared Stafford
Exploits:
2
BusinessLevel:
5
4 137
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
LiquidWorm
Exploits:
761
BusinessLevel:
48
4 030
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
s4squatch
Exploits:
14
BusinessLevel:
8
3 913
Security Risk Unsored
D
Download
-
Not verified yet
free
You can open this exploit for free
Stefan Esser
Exploits:
31
BusinessLevel:
11
[ shellcode ]
Shellcode category
In computer security, a shellcode is a small piece of code used as the payload in the exploitation of a software vulnerability. It is called "shellcode" because it typically starts a command shell from which the attacker can control the compromised machine, but any piece of code that performs a similar task can be called shellcode. Because the function of a payload is not limited to merely spawning a shell, some have suggested that the name shellcode is insufficient. Shellcode is commonly written in machine code.
Classification:
There are several methods of classifying exploits. The most common is by how the exploit contacts the vulnerable software. A remote exploit works over a network and exploits the security vulnerability without any prior access to the vulnerable system. A local exploit requires prior access to the vulnerable system and usually increases the privileges of the person running the exploit past those granted by the system administrator. Exploits against client applications also exist, usually consisting of modified servers that send an exploit if accessed with a client application. Exploits against client applications may also require some interaction with the user and thus may be used in combination with the social engineering method. Another classification is by the action against the vulnerable system; unauthorized data access, arbitrary code execution, and denial of service are examples. Many exploits are designed to provide superuser-level access to a computer system. However, it is also possible to use several exploits, first to gain low-level access, then to escalate privileges repeatedly until one reaches root. Normally a single exploit can only take advantage of a specific software vulnerability. Often, when an exploit is published, the vulnerability is fixed through a patch and the exploit becomes obsolete until newer versions of the software become available Shellcodes any types.
-::DATE
-::DESCRIPTION
-::TYPE
-::HITS
-::RISK
-::GOLD
-::AUTHOR