Alex Hernandez

40 exploits Active since Apr 2001
CVE-2002-0288 EXPLOITDB perl WORKING POC
Bbshareware.com Phusion Webserver - Path Traversal
Directory traversal vulnerability in Phusion web server 1.0 allows remote attackers to read arbitrary files via a ... (triple dot dot) in the HTTP request.
CVE-2002-0288 EXPLOITDB perl WORKING POC
Bbshareware.com Phusion Webserver - Path Traversal
Directory traversal vulnerability in Phusion web server 1.0 allows remote attackers to read arbitrary files via a ... (triple dot dot) in the HTTP request.
EIP-2026-117979 EXPLOITDB c WORKING POC
Symantec Altiris Client Service 6.8.378 - Local Privilege Escalation
CVE-2002-0448 EXPLOITDB text WORKING POC
Xerver < 2.10 - Denial of Service
Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request that contains many "C:/" sequences.
CVE-2002-0289 EXPLOITDB perl WORKING POC
Bbshareware.com Phusion Webserver - Buffer Overflow
Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary code via a long HTTP request.
CVE-2009-4118 EXPLOITDB text WORKING POC
Cisco VPN client for Windows <5.0.06.0100 - DoS
The StartServiceCtrlDispatcher function in the cvpnd service (cvpnd.exe) in Cisco VPN client for Windows before 5.0.06.0100 does not properly handle an ERROR_FAILED_SERVICE_CONTROLLER_CONNECT error, which allows local users to cause a denial of service (service crash and VPN connection loss) via a manual start of cvpnd.exe while the cvpnd service is running.
CVE-2001-0932 EXPLOITDB perl WORKING POC
Cooolsoft Powerftp - Buffer Overflow
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command.
CVE-2002-0201 EXPLOITDB perl WORKING POC
Cyberstop Web Server - Buffer Overflow
Cyberstop Web Server for Windows 0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request, possibly triggering a buffer overflow.
CVE-2001-0932 EXPLOITDB perl WORKING POC
Cooolsoft Powerftp - Buffer Overflow
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command.
EIP-2026-107707 EXPLOITDB text WRITEUP
IBM Proventia Sensor Appliance - Multiple Input Validation Vulnerabilities
CVE-2001-1442 EXPLOITDB c WORKING POC
ISC InterNetNews <2.3.0 - Privilege Escalation
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privileges via a long -c command line argument.
CVE-2007-6638 EXPLOITDB perl WORKING POC
March Networks DVR 3204 - Info Disclosure
March Networks DVR 3204 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, passwords, device names, and IP addresses via a direct request for scripts/logfiles.tar.gz.
CVE-2008-4380 EXPLOITDB perl WORKING POC
Samsung Dvr Shr2040 - Improper Input Validation
The web interface in Samsung DVR SHR2040 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, related to the filter for configuration properties and "/x" characters.
CVE-2004-2549 EXPLOITDB c WORKING POC
Nortel WLAN AP - DoS
Nortel Wireless LAN (WLAN) Access Point (AP) 2220, 2221, and 2225 allow remote attackers to cause a denial of service (service crash) via a TCP request with a large string, followed by 8 newline characters, to (1) the Telnet service on TCP port 23 and (2) the HTTP service on TCP port 80, possibly due to a buffer overflow.
CVE-2007-5036 EXPLOITDB perl WORKING POC
Airdefense Airsensor - Memory Corruption
Multiple buffer overflows in the AirDefense Airsensor M520 with firmware 4.3.1.1 and 4.4.1.4 allow remote authenticated users to cause a denial of service (HTTPS service outage) via a crafted query string in an HTTPS request to (1) adLog.cgi, (2) post.cgi, or (3) ad.cgi, related to the "files filter."