C Exploits

3,565 exploits tracked across all sources.

Sort: Activity Stars
CVE-2003-0127 EXPLOITDB c VERIFIED
Linux kernel <2.2.25-2.4.21 - Privilege Escalation
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.
by Wojciech Purczynski
CVE-2003-0161 EXPLOITDB c VERIFIED
Hp-ux - Buffer Overflow
The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337.
by sorbo
CVE-2003-0109 EXPLOITDB c VERIFIED
Microsoft Windows 2000 - Buffer Overflow
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote attackers to execute arbitrary code, as demonstrated via a WebDAV request to IIS 5.0.
by RoMaNSoFt
EIP-2026-100976 EXPLOITDB c VERIFIED
3Com SuperStack II RAS 1500 - IP Header Denial of Service
by Piotr Chytla
CVE-2003-0109 EXPLOITDB c VERIFIED
Microsoft Windows 2000 - Buffer Overflow
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote attackers to execute arbitrary code, as demonstrated via a WebDAV request to IIS 5.0.
by kralor
EIP-2026-115628 EXPLOITDB c VERIFIED
Microsoft ActiveSync 3.5 - Null Pointer Dereference Denial of Service
by Andy Davis
CVE-2003-0127 EXPLOITDB c VERIFIED
Linux kernel <2.2.25-2.4.21 - Privilege Escalation
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.
EIP-2026-100871 EXPLOITDB c VERIFIED
Outblaze Webmail - Cookie Authentication Bypass
by dong-h0un U
CVE-2003-0085 EXPLOITDB c VERIFIED
Samba - Buffer Overflow
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.
by flatline
EIP-2026-103207 EXPLOITDB c VERIFIED
PXE Server 2.0 - Remote Buffer Overrun
by CrZ
EIP-2026-103192 EXPLOITDB c VERIFIED
PGP4Pine 1.75.6/1.76 - 'Message Line' Remote Buffer Overflow
by Eric AUGE
CVE-2003-0143 EXPLOITDB c VERIFIED
Qualcomm Qpopper - Buffer Overflow
The pop_msg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprintf, which could allow authenticated users to execute arbitrary code via a buffer overflow in a mdef command with a long macro name.
by Florian Heinz
EIP-2026-117579 EXPLOITDB c VERIFIED
Microsoft Windows Server 2000 - Help Facility '.CNT' File :Link Buffer Overflow
by s0h
EIP-2026-103082 EXPLOITDB c VERIFIED
BitchX 1.0 - Remote 'Send_CTCP()' Memory Corruption
by eSDee
CVE-2003-1092 EXPLOITDB c VERIFIED
Unknown AFCTR Tool <3.41 - Info Disclosure
Unknown vulnerability in the "Automatic File Content Type Recognition (AFCTR) Tool version of the file package before 3.41, related to "a memory allocation problem," has unknown impact.
by CrZ
CVE-2003-0102 EXPLOITDB c VERIFIED
File - Buffer Overflow
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly via a large entity size value in an ELF header (elfhdr.e_shentsize).
by lem0nxx
CVE-2003-0102 EXPLOITDB c VERIFIED
File - Buffer Overflow
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly via a large entity size value in an ELF header (elfhdr.e_shentsize).
by lem0n
EIP-2026-116979 EXPLOITDB c VERIFIED
CoffeeCup Software Password Wizard 4.0 - HTML Source Password Retrieval
by THR
EIP-2026-103042 EXPLOITDB c VERIFIED
XFree86 4.2 - 'XLOCALEDIR' Local Buffer Overflow (4)
by axis
EIP-2026-103041 EXPLOITDB c VERIFIED
XFree86 4.2 - 'XLOCALEDIR' Local Buffer Overflow (3)
by omega
EIP-2026-103040 EXPLOITDB c VERIFIED
XFree86 4.2 - 'XLOCALEDIR' Local Buffer Overflow (2)
by Guilecool & deka
EIP-2026-103039 EXPLOITDB c VERIFIED
XFree86 4.2 - 'XLOCALEDIR' Local Buffer Overflow (1)
by dcryptr && tarranta
CVE-2002-1337 EXPLOITDB c VERIFIED
Sendmail <8.12.7 - RCE
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
by bysin
CVE-2002-1337 EXPLOITDB c VERIFIED
Sendmail <8.12.7 - RCE
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
by Last Stage of Delirium
CVE-2003-0108 EXPLOITDB c VERIFIED
LBL Tcpdump - Denial of Service
isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop.
by The Salvia Twist