C Exploits

3,564 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-102880 EXPLOITDB c VERIFIED
ISDNRep 4.56 - Command Line Argument Local Buffer Overflow (2)
by snooq
EIP-2026-102879 EXPLOITDB c VERIFIED
ISDNRep 4.56 - Command Line Argument Local Buffer Overflow (1)
by ace
EIP-2026-102857 EXPLOITDB c VERIFIED
GNU Chess 5.0 - Local Buffer Overflow
by ace
EIP-2026-102854 EXPLOITDB c VERIFIED
GNU AN - Command Line Option Local Buffer Overflow
by ace
CVE-2001-1078 EXPLOITDB c VERIFIED
eXtremail <1.1.9 - RCE
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format specifiers in the SMTP commands (1) HELO, (2) EHLO, (3) MAIL FROM, or (4) RCPT TO, and the POP3 commands (5) USER and (6) other commands that can be executed after POP3 authentication.
by B-r00t
CVE-2003-0349 EXPLOITDB c VERIFIED
Microsoft Windows Media Services <5.0 - RCE
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.
by firew0rker
CVE-2003-0510 EXPLOITDB c VERIFIED
Ezbounce <1.50 - RCE
Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sessions" command.
by V9
EIP-2026-110961 EXPLOITDB c VERIFIED
phpBB 2.0.4 - PHP Remote File Inclusion
by Spoofed
CVE-2003-0487 EXPLOITDB c VERIFIED
Kerio MailServer 5.6.3 - Buffer Overflow
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a long showuser parameter in the do_subscribe module, (2) a long folder parameter in the add_acl module, (3) a long folder parameter in the list module, and (4) a long user parameter in the do_map module.
by B-r00t
CVE-2003-0478 EXPLOITDB c VERIFIED
Bahamut IRCd <1.4.35 - RCE
Format string vulnerability in (1) Bahamut IRCd 1.4.35 and earlier, and other IRC daemons based on Bahamut including (2) digatech 1.2.1, (3) methane 0.1.1, (4) AndromedeIRCd 1.2.3-Release, and (5) ircd-RU, when running in debug mode, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request containing format strings.
by Dinos
CVE-2003-0462 EXPLOITDB c VERIFIED
Linux 2.4 - DoS
A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash).
by IhaQueR
CVE-2003-0349 EXPLOITDB c VERIFIED
Microsoft Windows Media Services <5.0 - RCE
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.
by firew0rker
CVE-2003-0471 EXPLOITDB c VERIFIED
Alt-N WebAdmin - Buffer Overflow via USER Argument
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to WebAdmin.dll with a long USER argument.
by Mark Litchfield
CVE-2003-0471 EXPLOITDB c VERIFIED
Alt-N WebAdmin - Buffer Overflow via USER Argument
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to WebAdmin.dll with a long USER argument.
by Mark Litchfield
EIP-2026-118034 EXPLOITDB c VERIFIED
Tripbit Secure Code Analizer 1.0 - 'fgets()' Local Buffer Overrun
by posidron
EIP-2026-103154 EXPLOITDB c VERIFIED
LBreakout2 2.x - Login Remote Format String
by V9
CVE-2002-0031 EXPLOITDB c VERIFIED
Yahoo Messenger - Buffer Overflow
Buffer overflows in Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary code via a ymsgr URI with long arguments to (1) call, (2) sendim, (3) getimv, (4) chat, (5) addview, or (6) addfriend.
by Rave
EIP-2026-114932 EXPLOITDB c VERIFIED
Armida Databased Web Server 1.0 - GET Remote Denial of Service
by posidron
EIP-2026-102858 EXPLOITDB c VERIFIED
GNU GNATS 3.113 - Environment Variable Buffer Overflow
by Xpl017Elz
CVE-2003-0501 EXPLOITDB c VERIFIED
Linux - Info Disclosure
The /proc filesystem in Linux allows local users to obtain sensitive information by opening various entries in /proc/self before executing a setuid program, which causes the program to fail to change the ownership and permissions of those entries.
by IhaQueR
EIP-2026-100678 EXPLOITDB c VERIFIED
Abuse-SDL 0.7 - Command Line Argument Buffer Overflow
by Matrix_DK
EIP-2026-103102 EXPLOITDB c VERIFIED
Dune 0.6.7 - GET Remote Buffer Overrun
by V9
CVE-2003-0449 EXPLOITDB c VERIFIED
Progress Database 9.1-9.1D06 - Privilege Escalation
Progress Database 9.1 to 9.1D06 trusts user input to find and load libraries using dlopen, which allows local users to gain privileges via (1) a PATH environment variable that points to malicious libraries, as demonstrated using libjutil.so in_proapsv, or (2) the -installdir command line parameter, as demonstrated using librocket_r.so in _dbagent.
by kf
CVE-2003-0391 EXPLOITDB c VERIFIED
Magic WinMail Server <2.x - DoS/RCE
Format string vulnerability in Magic WinMail Server 2.3, and possibly other 2.x versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the PASS command.
by ThreaT
EIP-2026-114930 EXPLOITDB c VERIFIED
ArGoSoft Mail Server 1.8.3.5 - GET Multiple Denial of Service Vulnerabilities
by posidron