C++ Exploits

255 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-117960 EXPLOITDB c++ VERIFIED
Star Downloader Free 1.45 - '.dat' Universal Overwrite (SEH)
by dun
EIP-2026-117286 EXPLOITDB c++ VERIFIED
HTML Email Creator 2.1b668 - html Local Overwrite (SEH)
by dun
CVE-2009-1370 EXPLOITDB c++ VERIFIED
Xilisoft Video Converter 3.1.53.0704n and 5.1.23.0402 - Stack-Based Buffer Overflow via .cue File
Stack-based buffer overflow in ape_plugin.plg in Xilisoft Video Converter 3.1.53.0704n and 5.1.23.0402 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .cue file.
by fl0 fl0w
CVE-2008-5735 EXPLOITDB c++ VERIFIED
CoolPlayer 2.17-2.19 - Stack-based Buffer Overflow via PlaylistSkin in Skin File
Stack-based buffer overflow in skin.c in CoolPlayer 2.17 through 2.19 allows remote attackers to execute arbitrary code via a large PlaylistSkin value in a skin file.
by r0ut3r
CVE-2008-5659 EXPLOITDB c++ VERIFIED
GNU Classpath <0.97.2 - Info Disclosure
The gnu.java.security.util.PRNG class in GNU Classpath 0.97.2 and earlier uses a predictable seed based on the system time, which makes it easier for context-dependent attackers to conduct brute force attacks against cryptographic routines that use this class for randomness, as demonstrated against DSA private keys.
by Jack Lloyd
CVE-2008-4779 EXPLOITDB c++ VERIFIED
Tguzip - Memory Corruption
Stack-based buffer overflow in TUGzip 3.5.0.0 allows remote attackers to denial of service (crash) or execute arbitrary code via a long filename in a .zip file.
by fl0 fl0w
CVE-2008-3957 EXPLOITDB c++ VERIFIED
Microsoft Windows Image Acquisition Logger ActiveX - RCE
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the Save method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by Ciph3r
CVE-2008-4470 EXPLOITDB c++ VERIFIED
Numark CUE 5.0 rev2 - Stack-based Buffer Overflow via M3U Playlist Absolute Pathname
Stack-based buffer overflow in Numark CUE 5.0 rev2 allows user-assisted attackers to cause a denial of service (application crash) or execute arbitrary code via an M3U playlist file that contains a long absolute pathname.
by fl0 fl0w
EIP-2026-118324 EXPLOITDB c++ VERIFIED
BlazeVideo HDTV Player 3.5 - '.PLF' File Stack Buffer Overflow
by fl0 fl0w
CVE-2008-4193 EXPLOITDB c++ VERIFIED
Alt-N SecurityGateway 1.0.1 - Stack-Based Buffer Overflow via Long Username Parameter
Stack-based buffer overflow in SecurityGateway.dll in Alt-N Technologies SecurityGateway 1.0.1 allows remote attackers to execute arbitrary code via a long username parameter.
by Heretic2
CVE-2008-0871 EXPLOITDB c++ VERIFIED
Now SMS/MMS Gateway < 2007.06.27 - Stack-Based Buffer Overflow via HTTP Authorization Header or SMPP Packet
Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute arbitrary code via a (1) long password in an Authorization header to the HTTP service or a (2) large packet to the SMPP service.
by Heretic2
CVE-2008-1491 EXPLOITDB c++ VERIFIED
ASUS Remote Console <2.0.0.19,2.0.0.24 - Buffer Overflow
Stack-based buffer overflow in the DPC Proxy server (DpcProxy.exe) in ASUS Remote Console (aka ARC or ASMB3) 2.0.0.19 and 2.0.0.24 allows remote attackers to execute arbitrary code via a long string to TCP port 623.
by Heretic2
CVE-2008-1912 EXPLOITDB c++ VERIFIED
DivX Player <6.7.0.22 - Buffer Overflow
Stack-based buffer overflow in DivX Player 6.7 build 6.7.0.22 and earlier allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long subtitle in a .SRT file.
by lhoang8500
CVE-2008-1083 EXPLOITDB HIGH c++ VERIFIED
Microsoft Windows - Buffer Overflow
Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EMF or WMF image file with a malformed header that triggers an integer overflow, aka "GDI Heap Overflow Vulnerability."
by Lamhtz
CVSS 8.1
EIP-2026-118647 EXPLOITDB c++ VERIFIED
HP OpenView Network Node Manager (OV NNM) 7.5.1 - 'ovalarmsrv.exe' Remote Overflow
by Heretic2
CVE-2008-1087 EXPLOITDB c++ VERIFIED
Microsoft Windows - Buffer Overflow
Stack-based buffer overflow in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EMF image file with crafted filename parameters, aka "GDI Stack Overflow Vulnerability."
by Lamhtz
CVE-2008-1881 EXPLOITDB c++ VERIFIED
VLC - Stack-based Buffer Overflow in SSA Subtitle Parser
Stack-based buffer overflow in the ParseSSA function (modules/demux/subtitle.c) in VLC 0.8.6e allows remote attackers to execute arbitrary code via a long subtitle in an SSA file. NOTE: this issue is due to an incomplete fix for CVE-2007-6681.
by Mai Xuan Cuong
CVE-2007-0949 EXPLOITDB c++ VERIFIED
iTinySoft Studio Total Video Player <1.03 - Buffer Overflow
Stack-based buffer overflow in iTinySoft Studio Total Video Player 1.03, and possibly earlier, allows remote attackers to execute arbitrary code via a M3U playlist file that contains a long file name. NOTE: it was later reported that 1.20 and 1.30 are also affected.
by fl0 fl0w
EIP-2026-118607 EXPLOITDB c++ VERIFIED
GlobalLink 'GLChat.ocx' 2.5.1 - ActiveX Control 'ChatRoom()' Remote Buffer Overflow
by Knell
CVE-2007-3039 EXPLOITDB c++ VERIFIED
Microsoft Message Queuing - Stack-based Buffer Overflow via RPC Opnum 0x06
Stack-based buffer overflow in the Microsoft Message Queuing (MSMQ) service in Microsoft Windows 2000 Server SP4, Windows 2000 Professional SP4, and Windows XP SP2 allows attackers to execute arbitrary code via a long string in an opnum 0x06 RPC call to port 2103. NOTE: this is remotely exploitable on Windows 2000 Server.
by axis
CVE-2007-6166 EXPLOITDB c++ VERIFIED
Apple QuickTime <7.3.1 - Buffer Overflow
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.
by InTeL
CVE-2007-5094 EXPLOITDB c++ VERIFIED
Ipswitch IMail Server 8.01-8.11 - Remote Code Execution via Malformed Email Header
Heap-based buffer overflow in iaspam.dll in the SMTP Server in Ipswitch IMail Server 8.01 through 8.11 allows remote attackers to execute arbitrary code via a set of four different e-mail messages with a long boundary parameter in a certain malformed Content-Type header line, the string "MIME" by itself on a line in the header, and a long Content-Transfer-Encoding header line.
by axis
CVE-2004-2513 EXPLOITDB c++ VERIFIED
Mercury (Pegasus) Mail 4.01 - Remote Code Execution via IMAP SELECT Command
Buffer overflow in the IMAP service of Mercury (Pegasus) Mail 4.01 allows remote attackers to execute arbitrary code via a long SELECT command.
by Heretic2
CVE-2007-4440 EXPLOITDB c++ VERIFIED
MercuryS SMTP <4.51 - Buffer Overflow
Stack-based buffer overflow in the MercuryS SMTP server in Mercury Mail Transport System, possibly 4.51 and earlier, allows remote attackers to execute arbitrary code via a long AUTH CRAM-MD5 string. NOTE: this might overlap CVE-2006-5961.
by ZhenHan.Liu
CVE-2007-4375 EXPLOITDB c++ VERIFIED
Diskeeper - Information Disclosure and Denial of Service via RPC Memory Comparison Function
The administrative interface (aka DkService.exe) in Diskeeper 9 Professional, 2007 Pro Premier, and probably other versions exposes a memory comparison function via RPC over TCP, which allows remote attackers to (1) obtain sensitive information (process memory contents), as demonstrated by an attack that obtains module base addresses to defeat Address Space Layout Randomization (ASLR); or (2) cause a denial of service (application crash) via an out-of-bounds address.
by Pravus