Perl Exploits

2,854 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-115907 EXPLOITDB perl
NCH Software Express Burn Plus 4.68 - '.EBP' Project File Buffer Overflow
by LiquidWorm
CVE-2013-7260 EXPLOITDB perl VERIFIED
RealNetworks RealPlayer <17.0.4.61 - Windows/Mac - Buffer Overflow
Multiple stack-based buffer overflows in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allow remote attackers to execute arbitrary code via a long (1) version number or (2) encoding declaration in the XML declaration of an RMP file, a different issue than CVE-2013-6877.
by Gabor Seljan
CVE-2013-6356 EXPLOITDB perl VERIFIED
Rejected
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue because of dependency on the victim's direct involvement in modifying the Windows registry to enable the attack. Notes: none
by Mike Czumak
EIP-2026-111219 EXPLOITDB perl VERIFIED
PHPThumb - 'PHPThumb.php' Arbitrary File Upload
by DevilScreaM
EIP-2026-114945 EXPLOITDB perl VERIFIED
Audacious Player 3.4.2/3.4.1 - '.mp3' Crash (PoC)
by Akin Tosunlar
EIP-2026-116334 EXPLOITDB perl VERIFIED
Static HTTP Server 1.0 - Denial of Service
by GalaxyAndroid
EIP-2026-118021 EXPLOITDB perl VERIFIED
Total Video Player 1.3.1 - 'Settings.ini' Local Buffer Overflow (SEH)
by Mike Czumak
CVE-2013-7409 EXPLOITDB perl
ALLPlayer <5.8.1 - Buffer Overflow
Buffer overflow in ALLPlayer 5.6.2 through 5.8.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .m3u (playlist) file.
by Mike Czumak
EIP-2026-101918 EXPLOITDB perl
Pirelli Discus DRG A125g - Remote Change WiFi Password
by Sebastián Magof
EIP-2026-101915 EXPLOITDB perl
Pirelli Discus DRG A125g - Local Password Disclosure
by Sebastián Magof
EIP-2026-115002 EXPLOITDB perl VERIFIED
Boilsoft RM TO MP3 Converter 1.72 - '.wav' Crash (PoC)
by Akin Tosunlar
CVE-2013-6874 EXPLOITDB perl VERIFIED
Vortexgroup Light Alloy < 4.7.3 - Memory Corruption
Stack-based buffer overflow in Vortex Light Alloy before 4.7.4 allows remote attackers to execute arbitrary code via a long URL in a .m3u file.
by Mike Czumak
CVE-2013-7409 EXPLOITDB perl
ALLPlayer <5.8.1 - Buffer Overflow
Buffer overflow in ALLPlayer 5.6.2 through 5.8.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .m3u (playlist) file.
by Mike Czumak
EIP-2026-107141 EXPLOITDB perl
Flatpress 1.0 - Remote Code Execution
by Wireghoul
EIP-2026-116076 EXPLOITDB perl VERIFIED
Plogue Sforzando 1.665 - Buffer Overflow (SEH) (PoC)
by Mike Czumak
EIP-2026-116842 EXPLOITDB perl VERIFIED
AudioCoder 0.8.22 - '.m3u' Local Buffer Overflow (SEH)
by Mike Czumak
CVE-2013-6021 EXPLOITDB perl
Watchguard Fireware < 11.7.4 - Memory Corruption
Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code via a long sessionid value in a cookie.
by st3n
CVE-2006-6199 EXPLOITDB perl VERIFIED
Blazevideo Blaze Dvd - Memory Corruption
Stack-based buffer overflow in BlazeVideo BlazeDVD Standard and Professional 5.0, and possibly earlier, allows remote attackers to execute arbitrary code via a long filename in a PLF playlist.
by Mike Czumak
EIP-2026-101916 EXPLOITDB perl
Pirelli Discus DRG A125g - Password Disclosure
by Sebastián Magof
EIP-2026-117765 EXPLOITDB perl VERIFIED
Photodex ProShow Producer 5.0.3310 - Local Buffer Overflow (SEH)
by Mike Czumak
CVE-2013-6129 EXPLOITDB perl VERIFIED
Vbulletin - Access Control
The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the customerid, htmldata[password], htmldata[confirmpassword], and htmldata[email] parameters, as exploited in the wild in October 2013.
by Joshua Rogers
EIP-2026-103425 EXPLOITDB perl VERIFIED
Blast XPlayer - Local Buffer Overflow (PoC)
by flux77
EIP-2026-116398 EXPLOITDB perl VERIFIED
TeraCopy 2.3 - 'default.mo' Language File Integer Overflow
by LiquidWorm
CVE-2013-10042 EXPLOITDB CRITICAL perl VERIFIED
freeFTPd <1.0.10 - Buffer Overflow
A stack-based buffer overflow vulnerability exists in freeFTPd version 1.0.10 and earlier in the handling of the FTP PASS command. When an attacker sends a specially crafted password string, the application fails to validate input length, resulting in memory corruption. This can lead to denial of service or arbitrary code execution. Exploitation requires the anonymous user account to be enabled.
by Wireghoul
CVSS 9.8
EIP-2026-101575 EXPLOITDB perl
Broadkam PJ871 - Authentication Bypass
by d3c0der