Exploitdb Exploits

237 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-1979 EXPLOITDB c++ VERIFIED
Oracle Database <10.2.0.4 - Info Disclosure
Unspecified vulnerability in the Network Authentication component in Oracle Database 10.1.0.5 and 10.2.0.4 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the October 2009 CPU. Oracle has not commented on claims from an independent researcher that this is related to improper validation of the AUTH_SESSKEY parameter length that leads to arbitrary code execution.
by Dennis Yurichev
CVE-2009-3338 EXPLOITDB c++ VERIFIED
Effectmatrix Magic Morph - Memory Corruption
Stack-based buffer overflow in EffectMatrix (E.M.) Magic Morph 1.95b allows remote attackers to execute arbitrary code via a long string in a .mor file.
by fl0 fl0w
EIP-2026-118946 EXPLOITDB c++ VERIFIED
NaviCOPA Web Server 3.01 - Remote Buffer Overflow
by SimO-s0fT
EIP-2026-115398 EXPLOITDB c++ VERIFIED
HTML Email Creator & Sender 2.3 - Local Buffer Overflow (PoC) (SEH)
by fl0 fl0w
EIP-2026-115215 EXPLOITDB c++ VERIFIED
Embedthis Appweb 3.0b.2-4 - Remote Buffer Overflow (PoC)
by fl0 fl0w
EIP-2026-115264 EXPLOITDB c++ VERIFIED
FlyHelp - '.CHM' Local Buffer Overflow (PoC)
by fl0 fl0w
CVE-2009-1019 EXPLOITDB c++ VERIFIED
Oracle Database - Info Disclosure
Unspecified vulnerability in the Network Authentication component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
by Dennis Yurichev
EIP-2026-117960 EXPLOITDB c++ VERIFIED
Star Downloader Free 1.45 - '.dat' Universal Overwrite (SEH)
by dun
EIP-2026-117286 EXPLOITDB c++ VERIFIED
HTML Email Creator 2.1b668 - html Local Overwrite (SEH)
by dun
CVE-2009-1370 EXPLOITDB c++ VERIFIED
Xilisoft Video Converter - Memory Corruption
Stack-based buffer overflow in ape_plugin.plg in Xilisoft Video Converter 3.1.53.0704n and 5.1.23.0402 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .cue file.
by fl0 fl0w
CVE-2008-5735 EXPLOITDB c++ VERIFIED
CoolPlayer <2.19 - Buffer Overflow
Stack-based buffer overflow in skin.c in CoolPlayer 2.17 through 2.19 allows remote attackers to execute arbitrary code via a large PlaylistSkin value in a skin file.
by r0ut3r
CVE-2008-5659 EXPLOITDB c++ VERIFIED
GNU Classpath <0.97.2 - Info Disclosure
The gnu.java.security.util.PRNG class in GNU Classpath 0.97.2 and earlier uses a predictable seed based on the system time, which makes it easier for context-dependent attackers to conduct brute force attacks against cryptographic routines that use this class for randomness, as demonstrated against DSA private keys.
by Jack Lloyd
CVE-2008-4779 EXPLOITDB c++ VERIFIED
Tguzip - Memory Corruption
Stack-based buffer overflow in TUGzip 3.5.0.0 allows remote attackers to denial of service (crash) or execute arbitrary code via a long filename in a .zip file.
by fl0 fl0w
CVE-2008-3957 EXPLOITDB c++ VERIFIED
Microsoft Windows Image Acquisition Logger ActiveX - RCE
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the Save method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by Ciph3r
CVE-2008-4470 EXPLOITDB c++ VERIFIED
Numark Cue - Memory Corruption
Stack-based buffer overflow in Numark CUE 5.0 rev2 allows user-assisted attackers to cause a denial of service (application crash) or execute arbitrary code via an M3U playlist file that contains a long absolute pathname.
by fl0 fl0w
EIP-2026-118324 EXPLOITDB c++ VERIFIED
BlazeVideo HDTV Player 3.5 - '.PLF' File Stack Buffer Overflow
by fl0 fl0w
CVE-2008-4193 EXPLOITDB c++ VERIFIED
Alt-n Securitygateway - Memory Corruption
Stack-based buffer overflow in SecurityGateway.dll in Alt-N Technologies SecurityGateway 1.0.1 allows remote attackers to execute arbitrary code via a long username parameter.
by Heretic2
CVE-2008-0871 EXPLOITDB c++ VERIFIED
NOW Sms Mms Gateway < 2007.06.27 - Memory Corruption
Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute arbitrary code via a (1) long password in an Authorization header to the HTTP service or a (2) large packet to the SMPP service.
by Heretic2
CVE-2008-1491 EXPLOITDB c++ VERIFIED
ASUS Remote Console <2.0.0.19,2.0.0.24 - Buffer Overflow
Stack-based buffer overflow in the DPC Proxy server (DpcProxy.exe) in ASUS Remote Console (aka ARC or ASMB3) 2.0.0.19 and 2.0.0.24 allows remote attackers to execute arbitrary code via a long string to TCP port 623.
by Heretic2
CVE-2008-1912 EXPLOITDB c++ VERIFIED
DivX Player <6.7.0.22 - Buffer Overflow
Stack-based buffer overflow in DivX Player 6.7 build 6.7.0.22 and earlier allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long subtitle in a .SRT file.
by lhoang8500
CVE-2008-1083 EXPLOITDB HIGH c++ VERIFIED
Microsoft Windows - Buffer Overflow
Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EMF or WMF image file with a malformed header that triggers an integer overflow, aka "GDI Heap Overflow Vulnerability."
by Lamhtz
CVSS 8.1
EIP-2026-118647 EXPLOITDB c++ VERIFIED
HP OpenView Network Node Manager (OV NNM) 7.5.1 - 'ovalarmsrv.exe' Remote Overflow
by Heretic2
CVE-2008-1087 EXPLOITDB c++ VERIFIED
Microsoft Windows - Buffer Overflow
Stack-based buffer overflow in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EMF image file with crafted filename parameters, aka "GDI Stack Overflow Vulnerability."
by Lamhtz
CVE-2008-1881 EXPLOITDB c++ VERIFIED
VLC 0.8.6e - Buffer Overflow
Stack-based buffer overflow in the ParseSSA function (modules/demux/subtitle.c) in VLC 0.8.6e allows remote attackers to execute arbitrary code via a long subtitle in an SSA file. NOTE: this issue is due to an incomplete fix for CVE-2007-6681.
by Mai Xuan Cuong
CVE-2007-0949 EXPLOITDB c++ VERIFIED
iTinySoft Studio Total Video Player <1.03 - Buffer Overflow
Stack-based buffer overflow in iTinySoft Studio Total Video Player 1.03, and possibly earlier, allows remote attackers to execute arbitrary code via a M3U playlist file that contains a long file name. NOTE: it was later reported that 1.20 and 1.30 are also affected.
by fl0 fl0w