str0ke
106 exploits
Active since May 1997
FubarForum 1.6 - Authentication Bypass Change User Password
PHP <4.2 - Remote Code Execution
FunkBoard CF0.71 - Unauthenticated Arbitrary Password Change via Profile Edit UID Parameter
F3Site <= 2.1 - Authenticated Arbitrary PHP File Upload via uplf Parameter
e107 <= 0.617 - Cross-Site Scripting via Nested URL BBCode Tags
Drupal < 5.1 - Post Comments Remote Command Execution
Drupal < 4.7.6 - Post Comments Remote Command Execution
DaZPHPNews 0.1-1 - Path Traversal via makepost.php prefixdir Parameter
Rejected
AJ Auction Pro Platinum 2 - Cross-Site Scripting via search.php product parameter
Basic Analysis and Security Engine <= 1.2.4 - Remote Code Execution via BASE_path Parameter
barnraiser AROUNDMe 0.7.7 - Remote File Inclusion via Language Path Parameter
Oracle Database Server 10g Release 2 - SQL Injection
ELOG - Buffer Overflow via Long Attachment Filename
vim 6.3 < 6.3.082 - 'modlines' Local Command Execution
Caldera OpenLinux - Local Buffer Overflow in mount/umount via Long Relative Pathname
Half-Life CSTRIKE Dedicated Server < 1.6_linux - Authenticated Denial of Service via Backslash in Connection String
Mozilla Firefox 1.0.7 (Mozilla 1.7.12) - Denial of Service
Matt Johnston Dropbear SSH server <0.47 - DoS
ClamAV < 0.88.5 - Denial of Service via Crafted CHM File
Apple Safari (webkit) (iPhone/OSX/Windows) - Remote Denial of Service
ncpfs 2.2.6 - Symlink Attack via ncpmount and ncpumount
Aeon 0.2a - Buffer Overflow via HOME Environment Variable
wu-ftpd 2.6.1-2.6.2 - Denial of Service via Glob Pattern Recursion
e-cart 2004 1.1 - Remote Command Execution via Shell Metacharacters in art Parameter