Exploitdb Exploits

3,149 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-118770 EXPLOITDB c VERIFIED
MDG Web Server 4D 3.6 - HTTP Command Buffer Overflow
by badpack3t
CVE-2003-0276 EXPLOITDB c VERIFIED
Pi3Web 2.0.1 - Buffer Overflow
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GET request with a large number of / characters.
by aT4r
CVE-2003-1452 EXPLOITDB c VERIFIED
Qualcomm qpopper <4.05 - Code Injection
Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by modifying the PATH environment variable to reference a malicious smbpasswd program.
by Xpl017Elz
CVE-2003-0276 EXPLOITDB c VERIFIED
Pi3Web 2.0.1 - Buffer Overflow
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GET request with a large number of / characters.
by Angelo Rosiello
CVE-2003-0213 EXPLOITDB c VERIFIED
Poptop Pptp Server - Buffer Overflow
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
by blightninjas
CVE-2003-0390 EXPLOITDB c VERIFIED
Options Parsing Tool <3.18 - Buffer Overflow
Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi.
by kf
EIP-2026-102765 EXPLOITDB c VERIFIED
Xeneo Web Server 2.2.10 - Undisclosed Buffer Overflow (PoC)
by badpack3t
EIP-2026-114440 EXPLOITDB c VERIFIED
XMB Forum 1.8 - 'member.php' SQL Injection
EIP-2026-115048 EXPLOITDB c VERIFIED
Chindi Server 1.0 - Denial of Service
by Luca Ercoli
CVE-2003-0171 EXPLOITDB c VERIFIED
DirectoryServices - Local Command Execution
DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows local users to execute arbitrary commands by modifying the PATH to point to a directory containing a malicious touch program.
by Neeko Oni
CVE-2003-0213 EXPLOITDB c VERIFIED
Poptop Pptp Server - Buffer Overflow
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
by einstein
EIP-2026-103685 EXPLOITDB c VERIFIED
TW-WebServer 1.0 - Denial of Service (2)
by Shashank pandey
EIP-2026-103220 EXPLOITDB c VERIFIED
SheerDNS 1.0 - Information Disclosure
by Jedi/Sector One
CVE-2003-0127 EXPLOITDB c VERIFIED
Linux kernel <2.2.25-2.4.21 - Privilege Escalation
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.
by KuRaK
CVE-2003-0201 EXPLOITDB c VERIFIED
Samba - Buffer Overflow
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.
by Xpl017Elz
CVE-2003-0132 EXPLOITDB c VERIFIED
Apache HTTP Server < 2.0.44 - Resource Leak
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.
by Daniel Nystram
EIP-2026-104561 EXPLOITDB c VERIFIED
Apple Mac OSX 10.x - DirectoryService Denial of Service
by Neeko Oni
CVE-2003-0201 EXPLOITDB c VERIFIED
Samba - Buffer Overflow
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.
by eSDee
CVE-2003-0127 EXPLOITDB c VERIFIED
Linux kernel <2.2.25-2.4.21 - Privilege Escalation
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.
by Wojciech Purczynski
EIP-2026-117578 EXPLOITDB c VERIFIED
Microsoft Windows Server 2000 - 'RegEdit.exe' Registry Key Value Buffer Overflow
by ThreaT
CVE-2003-0132 EXPLOITDB c VERIFIED
Apache HTTP Server < 2.0.44 - Resource Leak
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.
by Matthew Murphy
CVE-2003-0213 EXPLOITDB c VERIFIED
Poptop Pptp Server - Buffer Overflow
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
by John Leach
CVE-2003-1118 EXPLOITDB c VERIFIED
University OF California Seti AT Home - Buffer Overflow
Buffer overflow in the SETI@home client 3.03 and other versions allows remote attackers to cause a denial of service (client crash) and execute arbitrary code via a spoofed server response containing a long string followed by a \n (newline) character.
by zillion
CVE-2003-0201 EXPLOITDB c VERIFIED
Samba - Buffer Overflow
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.
by c0wboy
CVE-2002-0082 EXPLOITDB c VERIFIED
Apache-ssl - Buffer Overflow
The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly initialize memory using the i2d_SSL_SESSION function, which allows remote attackers to use a buffer overflow to execute arbitrary code via a large client certificate that is signed by a trusted Certificate Authority (CA), which produces a large serialized session.
by spabam