Exploitdb Exploits

459 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-102795 EXPLOITDB bash VERIFIED
Calibre E-Book Reader - Local Privilege Escalation (2)
by zx2c4
EIP-2026-102794 EXPLOITDB bash VERIFIED
Calibre E-Book Reader - Local Privilege Escalation (1)
by zx2c4
CVE-2011-4062 EXPLOITDB bash VERIFIED
FreeBSD <9.0-RC1 - Buffer Overflow
Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX socket.
by Shaun Colley
CVE-2011-0923 EXPLOITDB bash
HP Data Protector - Improper Input Validation
The client in HP Data Protector does not properly validate EXEC_CMD arguments, which allows remote attackers to execute arbitrary Perl code via a crafted command, related to the "local bin directory."
by SZ
CVE-2011-0923 EXPLOITDB bash
HP Data Protector - Improper Input Validation
The client in HP Data Protector does not properly validate EXEC_CMD arguments, which allows remote attackers to execute arbitrary Perl code via a crafted command, related to the "local bin directory."
by Adrian Puente Z.
EIP-2026-101427 EXPLOITDB bash VERIFIED
Sagem F@st 3304 Routers - PPPoE Credentials Information Disclosure
by securititracker
CVE-2011-0751 EXPLOITDB bash VERIFIED
Nazgul Nostromo < 1.9.3 - Path Traversal
Directory traversal vulnerability in nhttpd (aka Nostromo webserver) before 1.9.4 allows remote attackers to execute arbitrary programs or read arbitrary files via a ..%2f (encoded dot dot slash) in a URI.
by RedTeam Pentesting GmbH
EIP-2026-104081 EXPLOITDB bash VERIFIED
SMC Networks SMCD3G Session Management - Authentication Bypass
by Zack Fasel & Matthew Jakubowski
CVE-2010-4170 EXPLOITDB bash VERIFIED
Systemtap - Access Control
The staprun runtime tool in SystemTap 1.3 does not properly clear the environment before executing modprobe, which allows local users to gain privileges by setting the MODPROBE_OPTIONS environment variable to specify a malicious configuration file.
by Tavis Ormandy
CVE-2010-20109 EXPLOITDB HIGH bash VERIFIED
Barracuda <October 2010 - Path Traversal
Barracuda products, confirmed in Spam & Virus Firewall, SSL VPN, and Web Application Firewall versions prior to October 2010, contain a path traversal vulnerability in the view_help.cgi endpoint. The locale parameter fails to properly sanitize user input, allowing attackers to inject traversal sequences and null-byte terminators to access arbitrary files on the underlying system. By exploiting this flaw, unauthenticated remote attackers can retrieve sensitive configuration files such as /mail/snapshot/config.snapshot, potentially exposing credentials, internal settings, and other critical data.
by ShadowHatesYou
CVE-2010-2961 EXPLOITDB bash VERIFIED
mountall <2.15.2 - Privilege Escalation
mountall.c in mountall before 2.15.2 uses 0666 permissions for the root.rules file, which allows local users to gain privileges by modifying this file.
by fuzz
CVE-2010-4898 EXPLOITDB bash
Gantry 3.0.10 - SQL Injection
SQL injection vulnerability in the Gantry (com_gantry) component 3.0.10 for Joomla! allows remote attackers to execute arbitrary SQL commands via the moduleid parameter to index.php.
by jdc
CVE-2010-2384 EXPLOITDB bash VERIFIED
Oracle Solaris 9-10 - Info Disclosure
Unspecified vulnerability in Oracle Solaris 9 and 10 allows local users to affect confidentiality and integrity via unknown vectors related to Solaris Management Console.
by Frank Stuart
CVE-2010-2382 EXPLOITDB bash VERIFIED
Oracle Solaris <10 - Info Disclosure
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality and integrity via unknown vectors.
by Frank Stuart
CVE-2010-0832 EXPLOITDB bash VERIFIED
libpam-modules <1.1.0-2ubuntu1.1/1.1.1-2ubuntu5 - Privilege Escalation
pam_motd (aka the MOTD module) in libpam-modules before 1.1.0-2ubuntu1.1 in PAM on Ubuntu 9.10 and libpam-modules before 1.1.1-2ubuntu5 in PAM on Ubuntu 10.04 LTS allows local users to change the ownership of arbitrary files via a symlink attack on .cache in a user's home directory, related to "user file stamps" and the motd.legal-notice file.
by anonymous
CVE-2010-0832 EXPLOITDB bash VERIFIED
libpam-modules <1.1.0-2ubuntu1.1/1.1.1-2ubuntu5 - Privilege Escalation
pam_motd (aka the MOTD module) in libpam-modules before 1.1.0-2ubuntu1.1 in PAM on Ubuntu 9.10 and libpam-modules before 1.1.1-2ubuntu5 in PAM on Ubuntu 10.04 LTS allows local users to change the ownership of arbitrary files via a symlink attack on .cache in a user's home directory, related to "user file stamps" and the motd.legal-notice file.
by Kristian Erik Hermansen
EIP-2026-102773 EXPLOITDB bash VERIFIED
Altair Engineering PBS Pro 10.x - 'pbs_mom' Insecure Temporary File Creation
by Bartlomiej Balcerek
EIP-2026-104519 EXPLOITDB bash
NetBSD 5.0 - Hack PATH Environment Overflow (PoC)
by JMIT
EIP-2026-104518 EXPLOITDB bash
NetBSD 5.0 - Hack GENOCIDE Environment Overflow (PoC)
by JMIT
EIP-2026-113278 EXPLOITDB bash VERIFIED
webessence 1.0.2 - Multiple Vulnerabilities
by r00t
EIP-2026-114989 EXPLOITDB bash VERIFIED
BitComet 1.19 - Remote Denial of Service
by Pierre Nogues
CVE-2010-1183 EXPLOITDB bash VERIFIED
Oracle Solaris - Info Disclosure
Certain patch-installation scripts in Oracle Solaris allow local users to append data to arbitrary files via a symlink attack on the /tmp/CLEANUP temporary file, related to use of Update Manager.
by Larry W. Cashdollar
EIP-2026-103760 EXPLOITDB bash VERIFIED
(Tod Miller's) Sudo/SudoEdit 1.6.9p21/1.7.2p4 - Local Privilege Escalation
by kingcope
CVE-2010-0411 EXPLOITDB bash VERIFIED
Systemtap - Numeric Error
Multiple integer signedness errors in the (1) __get_argv and (2) __get_compat_argv functions in tapset/aux_syscalls.stp in SystemTap 1.1 allow local users to cause a denial of service (script crash, or system crash or hang) via a process with a large number of arguments, leading to a buffer overflow.
by Josh Stone
EIP-2026-107889 EXPLOITDB bash VERIFIED
Interspire Knowledge Manager 5 - 'callback.snipshot.php' Arbitrary File Creation
by Cory Marsh