Laurent Gaffié
24 exploits
Active since Nov 2006
Microsoft Windows - Remote Code Execution via Crafted SMB Response
Windows 7 and Windows Server 2008 - Remote Code Execution via Crafted SMB Transaction Response
Microsoft Windows SMB Client - Remote Code Execution via Crafted SMB Transaction Response
BlogMe 3.0 - Stored Cross-Site Scripting via Name URL or Comments Field
otterware letterit2 - Remote File Inclusion via lang Parameter
Soulseek 156 and 157 NS - Stack-Based Buffer Overflow via Long Search Query
Soulseek 156 and 157 NS - Stack-Based Buffer Overflow via Long Search Query
Microsoft Windows - Authenticated Denial of Service via LSASS Crafted Request
CVSS 6.5
Windows Vista and Server 2008 - Remote Code Execution via SMBv2 Negotiate Protocol Request
Windows 7 and Windows Server 2008 - Remote Code Execution via Crafted SMB Response Packet
Windows Vista and Server 2008 - Remote Code Execution via SMBv2 Negotiate Protocol Request
Apple QuickTime < 7.4.1 - Stack-Based Buffer Overflow via QTPlugin.ocx ActiveX Methods
jetAudio Basic < 7.0.5 - Stack-based Buffer Overflow via Long URL in ASX File
Apple QuickTime Player 7.5.5-8.0.2.20 - Buffer Overflow
WordPress < 2.8.3 - Unauthenticated Password Reset via Array Parameter Bypass
Guernion Sylvain Portail Web Php <2.5.1.1 - RCE
aBitWhizzy - Directory Traversal via f Parameter
Novell Netware < 6.5 - Remote Code Execution via SMB Sessions Setup AndX Packet
VMware Workstation/Player/ACE/Server/Fusion DoS via Long USER/PASS Command
Ruby <=1.8.5, 1.8.6-1.8.6-p286, 1.8.7-1.8.7-p71, 1.9-r18423 DoS via Regex
Snort < 2.8.5.1 - Denial of Service via Crafted IPv6 Packet
Samba 3.4.7/3.5.1 - Denial of Service
Hpecs Shopping Cart - SQL Injection via Username, Password, or Search Parameter
BlogMe 3.0 - SQL Injection via Username or Password Field