Exploitdb Exploits

2,809 exploits tracked across all sources.

Sort: Activity Stars
CVE-2010-2343 EXPLOITDB perl VERIFIED
D.R. Software Audio Converter 8.1, 2007, and 8.05 - Stack-based Buffer Overflow via PLS Playlist File
Stack-based buffer overflow in D.R. Software Audio Converter 8.1, 2007, and 8.05 allows remote attackers to execute arbitrary code via a crafted pls playlist file.
by sud0
EIP-2026-114544 EXPLOITDB perl
YourArcadeScript 2.0b1 - Blind SQL Injection
by DNX
CVE-2010-1296 EXPLOITDB perl VERIFIED
Adobe Photoshop CS4 <11.0.2 - Buffer Overflow
Multiple buffer overflows in Adobe Photoshop CS4 before 11.0.2 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) .ASL, (2) .ABR, or (3) .GRD file.
by LiquidWorm
CVE-2010-2099 EXPLOITDB perl VERIFIED
e107 < 0.7.20 - Remote PHP Code Execution via BBCode Tag in Contact Form
bbcode/php.bb in e107 0.7.20 and earlier does not perform access control checks for all inputs that could contain the php bbcode tag, which allows remote attackers to execute arbitrary PHP code, as demonstrated using the toEmail method in contact.php, related to invocations of the toHTML method.
by McFly
EIP-2026-116550 EXPLOITDB perl VERIFIED
WinDirectAudio 1.0 - '.wav' (PoC)
by ahwak2000
CVE-2010-2115 EXPLOITDB perl VERIFIED
SolarWinds TFTP Server 10.4.0.10 - Denial of Service via Crafted Read Request
SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted read request.
by Nullthreat
EIP-2026-107803 EXPLOITDB perl VERIFIED
IMEDIA - 'index.php' SQL Injection
by kannibal615
EIP-2026-105825 EXPLOITDB perl
ChillyCMS - Blind SQL Injection
by IHTeam
EIP-2026-117907 EXPLOITDB perl VERIFIED
Shellzip 3.0 Beta 3 - '.zip' Local Stack Buffer Overflow
by sud0
EIP-2026-116598 EXPLOITDB perl VERIFIED
Xitami 5.0 - '/AUX' Request Remote Denial of Service
by Usman Saeed
EIP-2026-115410 EXPLOITDB perl VERIFIED
Hyplay 1.2.326.1 - '.asx' Local Denial of Service Crash (PoC)
by Steve James
EIP-2026-115409 EXPLOITDB perl VERIFIED
Hyplay 1.2.0326.1 - '.asx' Remote Denial of Service
by Steve James
EIP-2026-109894 EXPLOITDB perl VERIFIED
Netvidade engine 1.0 - Multiple Vulnerabilities
by pwndomina
EIP-2026-115323 EXPLOITDB perl
GeoHttpServer - Remote Denial of Service
by aviho1
EIP-2026-116858 EXPLOITDB perl VERIFIED
AVCON H323Call - Local Buffer Overflow
by Dillon Beresford
CVE-2010-0028 EXPLOITDB perl VERIFIED
Microsoft Paint - Remote Code Execution via Crafted JPEG File
Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted JPEG (.JPG) file, aka "MS Paint Integer Overflow Vulnerability."
by unsign
EIP-2026-119057 EXPLOITDB perl VERIFIED
ProSSHD 1.2 - (Authenticated) Remote (ASLR + DEP Bypass)
by Alexey Sintsov
EIP-2026-116542 EXPLOITDB perl VERIFIED
Winamp 5.572 - Local Crash (PoC)
by R3d-D3V!L
EIP-2026-114847 EXPLOITDB perl VERIFIED
Acoustica 3.32 CD/DVD Label Maker - '.m3u' (PoC)
by chap0
CVE-2010-1656 EXPLOITDB perl VERIFIED
Airiny ABC 1.1.7 - SQL Injection via Sectionid Parameter
SQL injection vulnerability in the Airiny ABC (com_abc) component 1.1.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the sectionid parameter in an abc action to index.php.
by AntiSecurity
EIP-2026-119123 EXPLOITDB perl VERIFIED
Serenity Audio Player 3.2.3 - '.m3u' Remote Buffer Overflow
by Madjix
CVE-2008-5821 EXPLOITDB perl VERIFIED
Apple Safari 3.2 - Denial of Service via Long ALINK Attribute
Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows remote attackers to cause a denial of service (memory consumption and browser crash) via a long ALINK attribute in a BODY element in an HTML document.
by Xss mAn
EIP-2026-119096 EXPLOITDB perl VERIFIED
Rumba FTP Client 4.2 - PASV Buffer Overflow (SEH)
by zombiefx
CVE-2010-1685 EXPLOITDB perl VERIFIED
CursorArts ZipWrangler 1.20 - Stack-Based Buffer Overflow via Long Filename in ZIP File
Stack-based buffer overflow in CursorArts ZipWrangler 1.20 allows user-assisted remote attackers to execute arbitrary code via a ZIP file containing a file with a long filename.
by TecR0c & Sud0
EIP-2026-112592 EXPLOITDB perl VERIFIED
Template Seller Pro 3.25 - 'tempid' SQL Injection
by v3n0m