C Exploits

3,564 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-103070 EXPLOITDB c VERIFIED
Athttpd 0.4b - GET Remote Buffer Overrun
by r-code
CVE-2003-0865 EXPLOITDB c VERIFIED
mpg123 <0.59 - Buffer Overflow
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a long request.
by V9
CVE-2003-0831 EXPLOITDB c VERIFIED
ProFTPD <1.2.9rc2 - Buffer Overflow
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to execute arbitrary code via a buffer overflow using certain files.
by netris
CVE-2003-0783 EXPLOITDB c VERIFIED
hztty 2.0 - Buffer Overflow
Multiple buffer overflows in hztty 2.0 allow local users to gain root privileges.
by c0wboy
CVE-2003-0605 EXPLOITDB c VERIFIED
Windows 2000 SP3-SP4 - DoS
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function.
by Flashsky
CVE-2005-0491 EXPLOITDB c VERIFIED
Knox Software Arkeia Server Backup - Buffer Overflow
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a long type 77 request.
by anonymous
CVE-2003-0826 EXPLOITDB c VERIFIED
lsh daemon - Buffer Overflow
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack.
by m00 security
CVE-2003-0826 EXPLOITDB c VERIFIED
lsh daemon - Buffer Overflow
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack.
by Carl Livitt
CVE-2003-0681 EXPLOITDB c VERIFIED
Sendmail 8.12.9 - Buffer Overflow
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.
by Gyan Chawdhary
CVE-2003-0352 EXPLOITDB c VERIFIED
Microsoft Windows - Buffer Overflow
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.
by ey4s
CVE-2003-0720 EXPLOITDB c VERIFIED
PINE <4.58 - RCE
Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-body MIME type.
by sorbo
EIP-2026-103159 EXPLOITDB c VERIFIED
Liquid War 5.4.5/5.5.6 - HOME Environment Variable Buffer Overflow
by Angelo Rosiello
EIP-2026-115044 EXPLOITDB c VERIFIED
ChatZilla 0.8.23 - Remote Denial of Service
by D4rkGr3y
CVE-2003-0780 EXPLOITDB c VERIFIED
MySQL <4.0.14 & <3.23.x - RCE
Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privileges to execute arbitrary code via a long Password field.
by bkbll
CVE-2003-0605 EXPLOITDB c VERIFIED
Windows 2000 SP3-SP4 - DoS
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function.
by Doke Scott
EIP-2026-104609 EXPLOITDB c VERIFIED
4D WebSTAR FTP Server Suite - Remote Buffer Overflow
by B-r00t
CVE-2003-0767 EXPLOITDB c VERIFIED
RogerWilco graphical server <1.4.1.6 - Buffer Overflow
Buffer overflow in RogerWilco graphical server 1.4.1.6 and earlier, dedicated server 0.32a and earlier for Windows, and 0.27 and earlier for Linux and BSD, allows remote attackers to cause a denial of service and execute arbitrary code via a client request with a large length value.
by Luigi Auriemma
EIP-2026-102968 EXPLOITDB c VERIFIED
RealPlayer 9 *nix - Local Privilege Escalation
by Jon Hart
EIP-2026-102967 EXPLOITDB c VERIFIED
RealOne Player for Linux 2.2 Alpha - Insecure Configuration File Permission Privilege Escalation
by Jon Hart
EIP-2026-102777 EXPLOITDB c VERIFIED
Apache::Gallery 0.4/0.5/0.6 - Insecure File Storage Privilege Escalation
by Jon Hart
EIP-2026-103589 EXPLOITDB c VERIFIED
MyServer 0.4.3 - Denial of Service
by badpack3t
EIP-2026-102692 EXPLOITDB c VERIFIED
MyServer 0.5 - GET Argument Buffer Overflow
by badpack3t
EIP-2026-102691 EXPLOITDB c VERIFIED
MyServer 0.4.3 - GET Argument Buffer Overflow
by badpack3t
CVE-2003-0705 EXPLOITDB c VERIFIED
mah-jong <1.5.6 - RCE
Buffer overflow in mah-jong 1.5.6 and earlier allows remote attackers to execute arbitrary code.
by V9
CVE-2003-0666 EXPLOITDB c VERIFIED
Microsoft Wordperfect Converter - RCE
Buffer overflow in Microsoft Wordperfect Converter allows remote attackers to execute arbitrary code via modified data offset and data size parameters in a Corel WordPerfect file.
by valgasu