C Exploits

3,560 exploits tracked across all sources.

Sort: Activity Stars
CVE-2004-2111 EXPLOITDB c VERIFIED
Serv-U FTP Server <4.2 - Buffer Overflow
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.
by Skylined
CVE-2004-2111 EXPLOITDB c VERIFIED
Serv-U FTP Server <4.2 - Buffer Overflow
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.
by lion
CVE-2004-2111 EXPLOITDB c VERIFIED
Serv-U FTP Server <4.2 - Buffer Overflow
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.
CVE-2004-2111 EXPLOITDB c VERIFIED
Serv-U FTP Server <4.2 - Buffer Overflow
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.
by mandragore
CVE-2004-2099 EXPLOITDB c VERIFIED
Need for Speed Hot Pursuit 2.0 <242 - Buffer Overflow
Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands.
by Luigi Auriemma
CVE-2004-0095 EXPLOITDB c VERIFIED
Mcafee Epolicy Orchestrator - Buffer Overflow
McAfee ePolicy Orchestrator agent allows remote attackers to cause a denial of service (memory consumption and crash) and possibly execute arbitrary code via an HTTP POST request with an invalid Content-Length value, possibly triggering a buffer overflow.
by cyber_flash
CVE-2004-0064 EXPLOITDB c VERIFIED
SuSE 9.0 - Local Privilege Escalation
The SuSEconfig.gnome-filesystem script for YaST in SuSE 9.0 allows local users to overwrite arbitrary files via a symlink attack on files within the tmp.SuSEconfig.gnome-filesystem.$RANDOM temporary directory.
by l0om
CVE-2003-0985 EXPLOITDB c VERIFIED
Linux Kernel - Denial of Service
The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.
by Paul Starzetz
EIP-2026-103972 EXPLOITDB c VERIFIED
lionmax software www file share pro 2.4x - Multiple Vulnerabilities (2)
by Luigi Auriemma
EIP-2026-103971 EXPLOITDB c VERIFIED
lionmax software www file share pro 2.4x - Multiple Vulnerabilities (1)
by Luigi Auriemma
CVE-2003-0963 EXPLOITDB c VERIFIED
Alexander V. Lukyanov Lftp - Buffer Overflow
Buffer overflows in (1) try_netscape_proxy and (2) try_squid_eplf for lftp 2.6.9 and earlier allow remote HTTP servers to execute arbitrary code via long directory names that are processed by the ls or rels commands.
by Li0n7
CVE-2004-0164 EXPLOITDB c VERIFIED
KAME IKE daemon - RCE
KAME IKE daemon (racoon) does not properly handle hash values, which allows remote attackers to delete certificates via (1) a certain delete message that is not properly handled in isakmp.c or isakmp_inf.c, or (2) a certain INITIAL-CONTACT message that is not properly handled in isakmp_inf.c.
by Thomas Walpuski
CVE-2004-0069 EXPLOITDB c VERIFIED
HD Soft Windows FTP Server <1.6 - RCE
Format string vulnerability in HD Soft Windows FTP Server 1.6 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username, which is processed by the wscanf function.
by mandragore
EIP-2026-115531 EXPLOITDB c VERIFIED
Kroum Grigorov KpyM Telnet Server 1.0 - Remote Denial of Service
by NoRpiuS
CVE-2003-0985 EXPLOITDB c VERIFIED
Linux Kernel - Denial of Service
The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.
by Christophe Devine
CVE-2003-0985 EXPLOITDB c VERIFIED
Linux Kernel - Denial of Service
The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.
by Christophe Devine
CVE-2004-1793 EXPLOITDB c VERIFIED
Yatsoft Switch Off - Buffer Overflow
Stack-based buffer overflow in swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote authenticated users to execute arbitrary code via a long message parameter in a SendMsg action to action.htm.
by MrNice
CVE-2004-0074 EXPLOITDB c VERIFIED
Michael Bischoff Xsok - Buffer Overflow
Multiple buffer overflows in xsok 1.02 allows local users to gain privileges via (1) a long LANG environment variable, or (2) a long -xsokdir command line argument, a different vulnerability than CVE-2003-0949.
by c0wboy
EIP-2026-104562 EXPLOITDB c VERIFIED
Apple Mac OSX 10.x - SecurityServer Daemon Local Denial of Service
by Matt Burnett
CVE-2004-0074 EXPLOITDB c VERIFIED
Michael Bischoff Xsok - Buffer Overflow
Multiple buffer overflows in xsok 1.02 allows local users to gain privileges via (1) a long LANG environment variable, or (2) a long -xsokdir command line argument, a different vulnerability than CVE-2003-0949.
by N2n-Hacker
EIP-2026-118709 EXPLOITDB c VERIFIED
Jordan Windows Telnet Server 1.0/1.2 - 'Username' Stack Buffer Overrun (2)
by D4rkGr3y
CVE-2003-1200 EXPLOITDB c VERIFIED
Alt-n Mdaemon - Buffer Overflow
Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.
by Rosiello Security
CVE-2003-1200 EXPLOITDB c VERIFIED
Alt-n Mdaemon - Buffer Overflow
Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.
by Behrang Fouladi
EIP-2026-103093 EXPLOITDB c VERIFIED
Cyrus IMSPD 1.7 - 'abook_dbname' Remote Code Execution
by SpikE
CVE-2003-1307 EXPLOITDB c VERIFIED
Apache mod_php - Local Privilege Escalation
The mod_php module for the Apache HTTP Server allows local users with write access to PHP scripts to send signals to the server's process group and use the server's file descriptors, as demonstrated by sending a STOP signal, then intercepting incoming connections on the server's TCP port. NOTE: the PHP developer has disputed this vulnerability, saying "The opened file descriptors are opened by Apache. It is the job of Apache to protect them ... Not a bug in PHP.
by frauk\x41ser