Drok3r: Best Exploits phpMoAdmin Remote Code Execution (CVE-2015-2208) LotusCMS Remote Code Execution (OSVDB-75095) ElasticSearch Remote Code Execution (CVE-2015-1427) ShellShock (httpd) Remote Code Execution (CVE-2014-6271) IISlap - http.sys Denial of Service/RCE PoC (DoS only). (MS-15-034) se0wned - Seowintech Router diagnostic.cgi remote root WPsh0pwn - Wordpress WPShop eCommerce Shell Upload (WPVDB-7830) nmediapwn - Wordpress N-Media Website Contact Form with File Upload 1.3.4 Shell Upload pwnflow - Wordpress Work the flow file upload 2.5.2 Shell Upload delusions - Wordpress InfusionSoft Gravity Forms Shell Upload (CVE-2014-6446) suiteshell - SuiteCRM Post-Auth Remote Code Execution (CVE-2015-NOTYET) suiteracer - SuiteCRM Post-Auth Remote Code Execution Race Condition (CVE-2015-xxxx) unsanitary - Address Sanitizer + Setuid Binary = Local Root exploit (LD_PRELOAD vector) DiamondFox - DiamondFox Botnet C&C Panel Shell Upload DoubtfullyMalignant - BenignCertain...
THE BEST IS YET TO COME!!!