Exploitdb Exploits
2,809 exploits tracked across all sources.
APC Web/SNMP Management Card < 3.0 - Denial of Service via Repeated Failed Logon Attempts
APC Web/SNMP Management Card prior to Firmware 310 only supports one telnet connection, which allows a remote attacker to create a denial of service via repeated failed logon attempts which temporarily locks the card.
by altomo
AdCycle 0.78b - Privilege Escalation
AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.
by Neil K
Netscape Enterprise Server and FastTrack Server - Buffer Overflow via Long HTTP GET Request
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.
by Fyodor
iomega jaZip - Buffer Overflow via DISPLAY Environment Variable
Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environmental variable.
by teleh0r
University of Washington imapd 4.7 - Authenticated Buffer Overflow via LIST Command
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.
by teleh0r
Linux - Buffer Overflow via MANPAGER Environmental Variable
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.
by teleh0r
Lotus Domino 5.0.5 - Path Traversal
Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a .. attack.
by Michael Smith
FreeBSD seyon - Privilege Escalation
FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.
by teleh0r
Fastgraf's whois.cgi - Remote Command Execution
by Marco van Berkum
Technote - Directory Traversal via Filename Parameter
Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot dot) attack in the filename parameter.
by Ksecurity
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by lwc
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by Shane Hird
Solaris - Local Privilege Escalation
patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
by Larry W. Cashdollar
Cisco Catalyst 4000 5000 6000 - Denial of Service via SSH Protocol Mismatch
Cisco Catalyst 6000, 5000, or 4000 switches allow remote attackers to cause a denial of service by connecting to the SSH service with a non-SSH client, which generates a protocol mismatch error.
by blackangels
rp-pppoe - Denial of Service via Clamp MSS Option
rp-pppoe PPPoE client allows remote attackers to cause a denial of service via the Clamp MSS option and a TCP packet with a zero-length TCP option.
by dethy
WatchGuard SOHO FireWall <2.2.1 - DoS
WatchGuard SOHO FireWall 2.2.1 and earlier allows remote attackers to cause a denial of service via a large number of GET requests.
by Filip Maertens
Cisco CatOS - Denial of Service via Failed Telnet Authentication Attempts
Memory leak in Cisco Catalyst 4000, 5000, and 6000 series switches allows remote attackers to cause a denial of service via a series of failed telnet authentication attempts.
by blackangels
RedHat 6.2 /usr/bin/rcp - 'SUID' Local Privilege Escalation
by Tlabs
Microsys CyberPatrol - Info Disclosure
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information.
by Joey Maier
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by Vapid Labs
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by Vapid Labs
Internet Information Server 4.0-5.0 - Path Traversal and Remote Code Execution via Unicode-Encoded URL
IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the "Web Server Folder Traversal" vulnerability.
by Roelof Temmingh
Internet Information Server 4.0-5.0 - Path Traversal and Remote Code Execution via Unicode-Encoded URL
IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the "Web Server Folder Traversal" vulnerability.
by steeLe
By Source