C Exploits

3,560 exploits tracked across all sources.

Sort: Activity Stars
CVE-2003-1307 EXPLOITDB c VERIFIED
Apache mod_php - Local Privilege Escalation
The mod_php module for the Apache HTTP Server allows local users with write access to PHP scripts to send signals to the server's process group and use the server's file descriptors, as demonstrated by sending a STOP signal, then intercepting incoming connections on the server's TCP port. NOTE: the PHP developer has disputed this vulnerability, saying "The opened file descriptors are opened by Apache. It is the job of Apache to protect them ... Not a bug in PHP.
by Steve Grubb
CVE-2003-0717 EXPLOITDB c VERIFIED
Messenger Service - Buffer Overflow
The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers to execute arbitrary code via a buffer overflow attack.
by MrNice
CVE-2003-1030 EXPLOITDB c VERIFIED
Dameware Development Mini Remote Control Server - Buffer Overflow
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long pre-authentication request to TCP port 6129.
by kralor
CVE-2003-1030 EXPLOITDB c VERIFIED
Dameware Development Mini Remote Control Server - Buffer Overflow
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long pre-authentication request to TCP port 6129.
by kralor
CVE-2003-1030 EXPLOITDB c VERIFIED
Dameware Development Mini Remote Control Server - Buffer Overflow
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long pre-authentication request to TCP port 6129.
by Adik
CVE-2003-0090 EXPLOITDB c VERIFIED
Rejected
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-0844. Reason: This candidate is a duplicate of CVE-2000-0844. Notes: All CVE users should reference CVE-2000-0844 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage
by watercloud
EIP-2026-103092 EXPLOITDB c VERIFIED
Cyrus IMSP Daemon 1.x - Remote Buffer Overflow
by Carlos Barros
EIP-2026-103060 EXPLOITDB c VERIFIED
Apache 1.3.x < 2.0.48 mod_userdir - Remote Users Disclosure
by m00
EIP-2026-103197 EXPLOITDB c VERIFIED
PLD Software Ebola 0.1.4 - Remote Buffer Overflow
by c0wboy
CVE-2003-0961 EXPLOITDB c VERIFIED
Linux kernel <2.4.22 - Privilege Escalation
Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to gain root privileges.
by Wojciech Purczynski
CVE-2003-0812 EXPLOITDB c VERIFIED
Windows Workstation Service - Buffer Overflow
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the NetAddAlternateComputerName API.
by fiNis
EIP-2026-100837 EXPLOITDB c VERIFIED
Jason Maloney's Guestbook 3.0 - Remote Command Execution
by shaun2k2
CVE-2003-0974 EXPLOITDB c VERIFIED
Applied Watch Command Center - CSRF
Applied Watch Command Center allows remote attackers to conduct unauthorized activities without authentication, such as (1) add new users to a console, as demonstrated using appliedsnatch.c, or (2) add spurious IDS rules to sensors, as demonstrated using addrule.c.
by Bugtraq Security
CVE-2003-0974 EXPLOITDB c VERIFIED
Applied Watch Command Center - CSRF
Applied Watch Command Center allows remote attackers to conduct unauthorized activities without authentication, such as (1) add new users to a console, as demonstrated using appliedsnatch.c, or (2) add spurious IDS rules to sensors, as demonstrated using addrule.c.
by Bugtraq Security
EIP-2026-101094 EXPLOITDB c VERIFIED
Thomson Cablemodem TCM315 - Denial of Service
by Shell security group
EIP-2026-102605 EXPLOITDB c VERIFIED
GEdit 2.0/2.2 - Large IOStream File Memory Corruption
by MegaHz
EIP-2026-104542 EXPLOITDB c VERIFIED
OpenBSD 3.3/3.4 - semctl/semop Local Unexpected Array Indexing
by anonymous
CVE-2003-0842 EXPLOITDB c VERIFIED
mod_gzip 1.3.26.1a - Buffer Overflow
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.
by xCrZx
EIP-2026-104541 EXPLOITDB c VERIFIED
OpenBSD 3.3/3.4 - 'sysctl' Local Denial of Service
by anonymous
CVE-2003-0955 EXPLOITDB c VERIFIED
Openbsd - Buffer Overflow
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code in 3.4 via a program with an invalid header that is not properly handled by (1) ibcs2_exec.c in the iBCS2 emulation (compat_ibcs2) or (2) exec_elf.c, which leads to a stack-based buffer overflow.
by Sinan Eren
CVE-2003-0812 EXPLOITDB c VERIFIED
Windows Workstation Service - Buffer Overflow
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the NetAddAlternateComputerName API.
by snooq
CVE-2003-0659 EXPLOITDB c VERIFIED
Windows NT-Server 2003 - Buffer Overflow
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.
by xCrZx
CVE-2003-0822 EXPLOITDB c VERIFIED
Microsoft FrontPage Server Extensions <2002 - RCE
Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to execute arbitrary code via a crafted chunked encoded request.
by Adik
EIP-2026-103017 EXPLOITDB c VERIFIED
TerminatorX 3.81 - Local Stack Overflow / Local Privilege Escalation
by Li0n7
CVE-2003-0812 EXPLOITDB c VERIFIED
Windows Workstation Service - Buffer Overflow
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the NetAddAlternateComputerName API.
by eEYe