Perl Exploits

2,849 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-114497 EXPLOITDB perl VERIFIED
YABB SE 0.8/1.4/1.5 - 'Packages.php' Remote File Inclusion
by spabam
EIP-2026-102556 EXPLOITDB perl VERIFIED
Apache Web Server 2.0.x - MS-DOS Device Name Denial of Service
by Matthew Murphy
CVE-2003-1530 EXPLOITDB perl VERIFIED
phpBB <= 2.0.3 - SQL Injection via privmsg.php mark[] Parameter
SQL injection vulnerability in privmsg.php in phpBB 2.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the mark[] parameter.
by Ulf Harnhammar
EIP-2026-103886 EXPLOITDB perl VERIFIED
CSO Lanifex Outreach Project Tool 0.946b - Request Origin Spoofing
by Martin Eiszner
EIP-2026-100885 EXPLOITDB perl VERIFIED
Psunami Bulletin Board 0.x - 'Psunami.cgi' Remote Command Execution (2)
by spabam
EIP-2026-100884 EXPLOITDB perl VERIFIED
Psunami Bulletin Board 0.x - 'Psunami.cgi' Remote Command Execution (1)
by dodo
CVE-2001-0797 EXPLOITDB perl VERIFIED
SGI IRIX - Buffer Overflow in Login via Telnet/Rlogin Arguments
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.
by snooq
EIP-2026-100897 EXPLOITDB perl VERIFIED
Smart Search 4.25 - Remote Command Execution
by knight420
CVE-2003-1266 EXPLOITDB perl VERIFIED
etype eserv 2.92-2.98 - Denial of Service via Large Data Input
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.
by D4rkGr3y
CVE-2003-1266 EXPLOITDB perl VERIFIED
etype eserv 2.92-2.98 - Denial of Service via Large Data Input
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.
by D4rkGr3y
CVE-2003-1266 EXPLOITDB perl VERIFIED
etype eserv 2.92-2.98 - Denial of Service via Large Data Input
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.
by D4rkGr3y
CVE-2003-1266 EXPLOITDB perl VERIFIED
etype eserv 2.92-2.98 - Denial of Service via Large Data Input
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.
by D4rkGr3y
CVE-2002-2219 EXPLOITDB perl VERIFIED
chetcpasswd < 2.1 - Unauthenticated Shadow File Information Disclosure via Long User Field
chetcpasswd.cgi in Pedro Lineu Orso chetcpasswd before 2.1 allows remote attackers to read the last line of the shadow file via a long user (userid) field.
by Victor Pereira
CVE-2002-1349 EXPLOITDB perl VERIFIED
PC-cillin <2003 - RCE
Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arbitrary code via a long input string to TCP port 110 (POP3).
by Joel Soderberg
CVE-2002-2232 EXPLOITDB perl VERIFIED
Enceladus Server Suite 3.9 - Remote Code Execution via Long CD Command
Buffer overflow in Enceladus Server Suite 3.9 allows remote attackers to execute arbitrary code via a long CD (CWD) command.
by Tamer Sahin
CVE-2002-2272 EXPLOITDB perl VERIFIED
Apache Tomcat 4.0-4.1.12 with mod_jk 1.2.1 - Denial of Service via Invalid Chunked Transfer-Encoding
Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a denial of service (desynchronized communications) via an HTTP GET request with a Transfer-Encoding chunked field with invalid values.
by Sapient2003
EIP-2026-103205 EXPLOITDB perl VERIFIED
Pserv 2.0 - User-Agent HTTP Header Buffer Overflow (1)
by Sapient2003
CVE-2002-1317 EXPLOITDB perl VERIFIED
XFS font server <9 - Buffer Overflow
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
by TESO Security
EIP-2026-103247 EXPLOITDB perl VERIFIED
WSMP3 0.0.1/0.0.2 - Remote Heap Corruption (1)
by Damian Myerscough
CVE-2002-2416 EXPLOITDB perl VERIFIED
Zeroo http_server 1.5 - Path Traversal via URL GET Request
Directory traversal vulnerability in Zeroo web server 1.5 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL GET request.
by mattmurphy
CVE-2002-2226 EXPLOITDB perl VERIFIED
tftpd32 < 2.21 - Remote Code Execution via Long Filename
Buffer overflow in tftpd of TFTP32 2.21 and earlier allows remote attackers to execute arbitrary code via a long filename argument.
by Aviram Jenik
CVE-2002-2404 EXPLOITDB perl VERIFIED
IISPop 1.161 and 1.181 - Denial of Service via Long POP3 Request
Buffer overflow in IISPop email server 1.161 and 1.181 allows remote attackers to cause a denial of service (crash) via a long request to the POP3 port (TCP port 110).
by securma massine
CVE-2002-1986 EXPLOITDB perl VERIFIED
Perception LiteServe <2.0.1 - Info Disclosure
Perception LiteServe 2.0 through 2.0.1 allows remote attackers to obtain the source code of CGI scripts via an HTTP request with a trailing dot (".").
by mattmurphy
CVE-2002-2403 EXPLOITDB perl VERIFIED
KeyFocus kf_web_server 1.0.8 - Path Traversal via Multiple Dot Sequences
Directory traversal vulnerability in KeyFocus web server 1.0.8 allows remote attackers to read arbitrary files for recognized MIME type files via "...", "....", ".....", and other multiple dot sequences.
by mattmurphy
EIP-2026-102720 EXPLOITDB perl VERIFIED
Pserv 2.0 - HTTP Request Parsing Buffer Overflow
by Matthew Murphy