Perl Exploits
2,854 exploits tracked across all sources.
University OF Washington Imap - Buffer Overflow
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.
by teleh0r
Redhat Linux - Buffer Overflow
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.
by teleh0r
Lotus Domino 5.0.5 - Path Traversal
Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a .. attack.
by Michael Smith
FreeBSD seyon - Privilege Escalation
FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.
by teleh0r
Fastgraf's whois.cgi - Remote Command Execution
by Marco van Berkum
Technote - Path Traversal
Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot dot) attack in the filename parameter.
by Ksecurity
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by lwc
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by Shane Hird
Solaris - Local Privilege Escalation
patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
by Larry W. Cashdollar
Cisco Catalyst 4000 - Denial of Service
Cisco Catalyst 6000, 5000, or 4000 switches allow remote attackers to cause a denial of service by connecting to the SSH service with a non-SSH client, which generates a protocol mismatch error.
by blackangels
rp-pppoe - DoS
rp-pppoe PPPoE client allows remote attackers to cause a denial of service via the Clamp MSS option and a TCP packet with a zero-length TCP option.
by dethy
WatchGuard SOHO FireWall <2.2.1 - DoS
WatchGuard SOHO FireWall 2.2.1 and earlier allows remote attackers to cause a denial of service via a large number of GET requests.
by Filip Maertens
Cisco Catalyst - DoS
Memory leak in Cisco Catalyst 4000, 5000, and 6000 series switches allows remote attackers to cause a denial of service via a series of failed telnet authentication attempts.
by blackangels
RedHat 6.2 /usr/bin/rcp - 'SUID' Local Privilege Escalation
by Tlabs
Microsys CyberPatrol - Info Disclosure
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information.
by Joey Maier
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by Vapid Labs
Solaris 2.7-2.8 - Local Privilege Escalation
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
by Vapid Labs
IIS 4.0-5.0 - Path Traversal
IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the "Web Server Folder Traversal" vulnerability.
by Roelof Temmingh
IIS 4.0-5.0 - Path Traversal
IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the "Web Server Folder Traversal" vulnerability.
by steeLe
UtilMind Mail List 1.7 - Users Can Execute Commands
by teleh0r
Red Hat Linux 6.2 - Privilege Escalation
restore 0.4b15 and earlier in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.
by Tlabs
Poll It <2.01 - Auth Bypass
pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.
by keelis
DCForum - RCE
DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed "forum" variable.
by steeLe
By Source