Perl Exploits

2,849 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-3253 EXPLOITDB perl VERIFIED
TriceraSoft Swift Ultralite 1.032 - Stack-Based Buffer Overflow via Long String in M3U Playlist File
Stack-based buffer overflow in TriceraSoft Swift Ultralite 1.032 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long string in a .M3U playlist file.
by hack4love
CVE-2009-3115 EXPLOITDB perl VERIFIED
SolarWinds TFTP Server <= 9.2.0.111 - Denial of Service via Crafted OACK Request
SolarWinds TFTP Server 9.2.0.111 and earlier allows remote attackers to cause a denial of service (service stop) via a crafted Option Acknowledgement (OACK) request. NOTE: some of these details are obtained from third party information.
by Gaurav Baruah
CVE-2009-3214 EXPLOITDB perl VERIFIED
Photodex ProShow Gold 4.0.2549 - Stack-Based Buffer Overflow via Crafted Slideshow Project File
Multiple stack-based buffer overflows in Photodex ProShow Gold 4.0.2549 allow remote attackers to execute arbitrary code via a crafted Slideshow project (.psh) file, related to the (1) cell[n].images[m].image and (2) cell[n].sound.file fields.
by hack4love
EIP-2026-117449 EXPLOITDB perl VERIFIED
Media Jukebox 8 - '.m3u' Universal Local Buffer (SEH)
by hack4love
CVE-2009-4089 EXPLOITDB perl VERIFIED
telepark.wiki <2.4.23 - Auth Bypass
telepark.wiki 2.4.23 and earlier allows remote attackers to bypass authorization and (1) delete arbitrary pages via a modified pageID parameter to ajax/deletePage.php or (2) delete arbitrary comments via a modified pageID parameter to ajax/deleteComment.php.
by corelanc0d3r
CVE-2009-4088 EXPLOITDB perl VERIFIED
telepark.wiki <2.4.23 - Path Traversal
Multiple directory traversal vulnerabilities in telepark.wiki 2.4.23 and earlier allow remote attackers to read arbitrary files via directory traversal sequences in the css parameter to (1) getjs.php and (2) getcsslocal.php; and include and execute arbitrary local files via the (3) group parameter to upload.php.
by corelanc0d3r
CVE-2009-3214 EXPLOITDB perl VERIFIED
Photodex ProShow Gold 4.0.2549 - Stack-Based Buffer Overflow via Crafted Slideshow Project File
Multiple stack-based buffer overflows in Photodex ProShow Gold 4.0.2549 allow remote attackers to execute arbitrary code via a crafted Slideshow project (.psh) file, related to the (1) cell[n].images[m].image and (2) cell[n].sound.file fields.
by corelanc0d3r
CVE-2009-4964 EXPLOITDB perl VERIFIED
KSP 2006 FINAL - Stack-Based Buffer Overflow via M3U Playlist File
Stack-based buffer overflow in KSP 2006 FINAL allows remote attackers to execute arbitrary code via a long string in a .M3U playlist file.
by hack4love
CVE-2009-4962 EXPLOITDB perl VERIFIED
Fat Player 0.6b - Remote Code Execution via Long String in WAV File
Stack-based buffer overflow in Fat Player 0.6b allows remote attackers to execute arbitrary code via a long string in a .wav file. NOTE: some of these details are obtained from third party information.
by ahwak2000
EIP-2026-115262 EXPLOITDB perl VERIFIED
FLIP Flash Album Deluxe 1.8.407.1 - '.fft' Crash (PoC)
by the_Edit0r
CVE-2009-3969 EXPLOITDB perl VERIFIED
Faslo Player 7.0 - Stack-Based Buffer Overflow via Long String in M3U Playlist File
Stack-based buffer overflow in Faslo Player 7.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .m3u playlist file.
by hack4love
EIP-2026-114879 EXPLOITDB perl VERIFIED
AiO (All into One) Flash Mixer 3 - '.afp' Crash (PoC)
by the_Edit0r
CVE-2009-3968 EXPLOITDB perl VERIFIED
ITechBids 8.0 - SQL Injection via User ID, Category ID, News ID, or Product ID Parameter
Multiple SQL injection vulnerabilities in ITechBids 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) user_id parameter to feedback.php, (2) cate_id parameter to category.php, (3) id parameter to news.php, and (4) productid parameter to itechd.php. NOTE: the sellers_othersitem.php, classifieds.php, and shop.php vectors are already covered by CVE-2008-3238.
by Mr.SQL
EIP-2026-118179 EXPLOITDB perl VERIFIED
Xenorate Media Player 2.6.0.0 - '.xpl' Universal Local Buffer (SEH)
by hack4love
EIP-2026-117776 EXPLOITDB perl VERIFIED
Playlistmaker 1.51 - '.m3u' Local Buffer Overflow (SEH)
by blake
CVE-2009-2961 EXPLOITDB perl VERIFIED
KOL Player 1.0 - Stack-Based Buffer Overflow via Long URL in MP3 Playlist
Stack-based buffer overflow in Thaddy de Konng KOL Player 1.0 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long URL in a .MP3 playlist file.
by Evil.Man
CVE-2009-3213 EXPLOITDB perl VERIFIED
broid 1.0 Beta 3a - Stack-Based Buffer Overflow via MP3 File Processing
Stack-based buffer overflow in broid 1.0 Beta 3a allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .mp3 file.
by hack4love
EIP-2026-105225 EXPLOITDB perl VERIFIED
Arcadem Pro 2.8 - 'article' Blind SQL Injection
by Mr.SQL
CVE-2009-3203 EXPLOITDB perl VERIFIED
AJ Auction Pro OOPD 2.x - SQL Injection via store.php id Parameter
SQL injection vulnerability in store.php in AJ Auction Pro OOPD 2.x allows remote attackers to execute arbitrary SQL commands via the id parameter.
by NoGe
CVE-2009-2934 EXPLOITDB perl VERIFIED
Programmed Integration PIPL 2.5.0 and 2.5.0D - Remote Code Execution via Long String in Playlist File
Multiple stack-based buffer overflows in xaudio.dll in Programmed Integration PIPL 2.5.0 and 2.5.0D allow remote attackers to execute arbitrary code via a long string in a (1) .pls or (2) .pl playlist file.
by hack4love
EIP-2026-108070 EXPLOITDB perl VERIFIED
JBLOG 1.5.1 - SQL Table Backup
by Ams
CVE-2009-3428 EXPLOITDB perl VERIFIED
Easy Music Player 1.0.0.2 - Remote Code Execution via Crafted WAV File
Stack-based buffer overflow in Easy Music Player 1.0.0.2 allows remote attackers to execute arbitrary code via a crafted .wav file.
by hack4love
EIP-2026-115836 EXPLOITDB perl VERIFIED
Microsoft Wordpad on winXP SP3 - Local Crash
by murderkey
CVE-2009-3428 EXPLOITDB perl VERIFIED
Easy Music Player 1.0.0.2 - Remote Code Execution via Crafted WAV File
Stack-based buffer overflow in Easy Music Player 1.0.0.2 allows remote attackers to execute arbitrary code via a crafted .wav file.
by ThE g0bL!N
CVE-2009-3428 EXPLOITDB perl VERIFIED
Easy Music Player 1.0.0.2 - Remote Code Execution via Crafted WAV File
Stack-based buffer overflow in Easy Music Player 1.0.0.2 allows remote attackers to execute arbitrary code via a crafted .wav file.
by ahwak2000