hdm
397 exploits
Active since Jan 1997
awstats < 6.3 - Remote Code Execution via configdir Parameter
Barracuda Spam Firewall <3.1.17 - Command Injection
HP-UX 10.20-11.11 - Buffer Overflow in lp Subsystem
PAJAX 0.5.1 - Remote Code Execution via pajax_call_dispatcher.php Method and Args Parameters
Juniper ScreenOS 6.2.0r15-6.2.0r18, 6.3.0r12-6.3.0r20 - Remote Admin Access via Hardcoded Password
CVSS 9.8
W3 Total Cache < 0.9.2.8 - Remote PHP Code Execution
CVSS 9.8
HP OmniBackII <A.03.50 - Privilege Escalation
phpMyAdmin 3.5.2.2 - Remote Code Execution via Trojaned server_sync.php
libupnp < 1.6.18 - Remote Code Execution via SSDP Unique Service Name Parsing
Ruby on Rails JSON Processor YAML Deserialization Code Execution
PHP < 5.3.12 and 5.4.x < 5.4.2 - Remote Code Execution via CGI Query String
CVSS 9.8
PHP < 4.4.4 - Remote Code Execution via Long String to unserialize Function
Apple Darwin Streaming Administration Server <4.1.2 - RCE
WordPress <1.5.1.3 - Code Injection
phpBB <= 2.0.15 - Remote File Inclusion in viewtopic.php
PEAR XML_RPC < 1.3.0 and PHPXMLRPC < 1.1 - Remote Code Execution via Unsanitized XML Input
Exim4 string_format Function Heap Buffer Overflow
CVSS 7.8
HP OpenView Network Node Manager <7.50 - RCE
CVSS 9.8
Ghostscript Type Confusion Arbitrary Command Execution
CVSS 7.8
vsftpd 2.3.4 - Backdoor Command Execution
CVSS 9.8
Google Mini Search Appliance - Remote Code Execution via XSLT Style Sheet Select Attribute
TrackerCam <= 5.12 - Buffer Overflow via Long User-Agent Header or PHP Script Argument
rubyonrails/web_console < 2.1.2 and rubygems/web-console < 2.1.3 - Improper Access Control via X-Forwarded-For Header
Firefox 3.5 - Remote Code Execution via TraceMonkey JIT Escape Function
Mozilla Firefox <1.5, Thunderbird <1.5 - RCE