C Exploits

3,632 exploits tracked across all sources.

Sort: Activity Stars
CVE-2001-0597 EXPLOITDB c VERIFIED
Zetetic STRIP <0.5 - Info Disclosure
Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIP's use of SysRandom, which is seeded by TimeGetTicks, and an implementation flaw which vastly reduces the password 'search space'.
by Thomas Roessler
CVE-2001-0594 EXPLOITDB c VERIFIED
Solaris 7 and 8 - Local Privilege Escalation via kcms_configure Command Line Argument Buffer Overflow
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
by Adam Slattery
CVE-2001-0594 EXPLOITDB c VERIFIED
Solaris 7 and 8 - Local Privilege Escalation via kcms_configure Command Line Argument Buffer Overflow
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
by Riley Hassell
CVE-2001-0414 EXPLOITDB c VERIFIED
ntpd < 4.0.99k - Buffer Overflow via Long readvar Argument
Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long readvar argument.
by babcia padlina ltd
CVE-2001-0565 EXPLOITDB c VERIFIED
Solaris <= 8 - Buffer Overflow via mailx -F Option
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option.
by Pablo Sor
CVE-2001-0401 EXPLOITDB c VERIFIED
Solaris <= 8 - Local Buffer Overflow via HOME Environment Variable
Buffer overflow in tip in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.
by Pablo Sor
CVE-2001-0317 EXPLOITDB c VERIFIED
Linux kernel <2.5 - Privilege Escalation
Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and modify a running setuid process.
by Wojciech Purczynski
CVE-2001-0317 EXPLOITDB c VERIFIED
Linux kernel <2.5 - Privilege Escalation
Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and modify a running setuid process.
by Wojciech Purczynski
CVE-2001-0369 EXPLOITDB c VERIFIED
Digital Unix - Buffer Overflow
Buffer overflow in lpsched on DGUX version R4.20MU06 and MU02 allows a local attacker to obtain root access via a long command line argument (non-existent printer name).
by Luciano Rocha
CVE-2001-0236 EXPLOITDB c VERIFIED
Solaris - Remote Code Execution via SNMP to DMI Mapper Daemon Buffer Overflow
Buffer overflow in Solaris snmpXdmid SNMP to DMI mapper daemon allows remote attackers to execute arbitrary commands via a long "indication" event.
by Last Stage of Delirium
CVE-2001-0459 EXPLOITDB c VERIFIED
AfterStep ascdc - Local Privilege Escalation via Long Command Line Option
Buffer overflows in ascdc Afterstep while running setuid allows local users to gain root privileges via a long (1) -d option, (2) -m option, or (3) -f option.
by the itch
CVE-2001-0459 EXPLOITDB c VERIFIED
AfterStep ascdc - Local Privilege Escalation via Long Command Line Option
Buffer overflows in ascdc Afterstep while running setuid allows local users to gain root privileges via a long (1) -d option, (2) -m option, or (3) -f option.
by anonymous
EIP-2026-103809 EXPLOITDB c VERIFIED
Progress Database Server 8.3b - 'prodb' Local Privilege Escalation
by the itch
CVE-2000-0284 EXPLOITDB c VERIFIED
University of Washington imapd 4.7 - Authenticated Buffer Overflow via LIST Command
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.
by SkyLaZarT
EIP-2026-102999 EXPLOITDB c VERIFIED
Slackware 7.1 - '/usr/bin/mail' Local Privilege Escalation
by kengz
CVE-2001-0221 EXPLOITDB c VERIFIED
ja-xklock < 2.7.1 - Local Buffer Overflow
Buffer overflow in ja-xklock 2.7.1 and earlier allows local users to gain root privileges.
by dethy
CVE-2001-0220 EXPLOITDB c VERIFIED
ja-elvis and ko-helvis - Local Buffer Overflow
Buffer overflow in ja-elvis and ko-helvis ports of elvis allow local users to gain root privileges.
by dethy
CVE-2002-1614 EXPLOITDB c VERIFIED
HP Tru64 UNIX - Buffer Overflow via Long Argument to /usr/bin/at
Buffer overflow in HP Tru64 UNIX allows local users to execute arbitrary code via a long argument to /usr/bin/at.
by Cody Tubbs
CVE-2001-0010 EXPLOITDB c VERIFIED
BIND 8 - Buffer Overflow in TSIG Handling
Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.
by Multiple
CVE-2001-0010 EXPLOITDB c VERIFIED
BIND 8 - Buffer Overflow in TSIG Handling
Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.
by LSD-PLaNET
CVE-2001-0010 EXPLOITDB c VERIFIED
BIND 8 - Buffer Overflow in TSIG Handling
Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.
by LSD-PLaNET
CVE-2001-0010 EXPLOITDB c VERIFIED
BIND 8 - Buffer Overflow in TSIG Handling
Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.
by Gneisenau
CVE-2001-0280 EXPLOITDB c VERIFIED
MERCUR SMTP Server 3.30 - Remote Code Execution via EXPN Command Buffer Overflow
Buffer overflow in MERCUR SMTP server 3.30 allows remote attackers to execute arbitrary commands via a long EXPN command.
by Martin Rakhmanoff
CVE-2001-0279 EXPLOITDB c VERIFIED
Debian Linux - Buffer Overflow in sudo
Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.
by MaXX
CVE-2001-0270 EXPLOITDB c VERIFIED
Marconi ASX-1000 - Denial of Service via Malformed SYN-FIN Packet
Marconi ASX-1000 ASX switches allow remote attackers to cause a denial of service in the telnet and web management interfaces via a malformed packet with the SYN-FIN and More Fragments attributes set.
by J.K. Garvey