Perl Exploits

2,854 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-116407 EXPLOITDB perl VERIFIED
Thomson mp3PRO Player/Encoder - '.m3u' Crash (PoC)
by Hakxer
EIP-2026-114897 EXPLOITDB perl VERIFIED
Amaya Web Editor 11.0 - Remote Buffer Overflow (PoC)
by Stack
EIP-2026-110553 EXPLOITDB perl VERIFIED
Personal Site Manager 0.3 - Remote Command Execution
by darkjoker
EIP-2026-100875 EXPLOITDB perl VERIFIED
PerlSoft Gästebuch 1.7b - 'admincenter.cgi' Remote Command Execution
by Perforin
CVE-2004-0964 EXPLOITDB perl VERIFIED
Zinf <2.2.1 - RCE
Buffer overflow in Zinf 2.2.1 on Windows, and other older versions for Linux, allows remote attackers or local users to execute arbitrary code via certain values in a .pls file.
by Houssamix
CVE-2004-0964 EXPLOITDB perl VERIFIED
Zinf <2.2.1 - RCE
Buffer overflow in Zinf 2.2.1 on Windows, and other older versions for Linux, allows remote attackers or local users to execute arbitrary code via certain values in a .pls file.
by Hakxer
EIP-2026-116645 EXPLOITDB perl VERIFIED
Zinf Audio Player 2.2.1 - '.m3u' Local Heap Overflow (PoC)
by Hakxer
EIP-2026-116644 EXPLOITDB perl VERIFIED
Zinf Audio Player 2.2.1 - '.gqmpeg' Buffer Overflow (PoC)
by Hakxer
CVE-2009-0321 EXPLOITDB perl VERIFIED
Apple Safari 3.2.1 - DoS
Apple Safari 3.2.1 (aka AppVer 3.525.27.1) on Windows allows remote attackers to cause a denial of service (infinite loop or access violation) via a link to an http URI in which the authority (aka hostname) portion is either a (1) . (dot) or (2) .. (dot dot) sequence.
by Lostmon
CVE-2009-0348 EXPLOITDB perl VERIFIED
Sun Java System Access Manager - Info Disclosure
The login module in Sun Java System Access Manager 6 2005Q1 (aka 6.3), 7 2005Q4 (aka 7.0), and 7.1 responds differently to a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.
by Marco Mella
CVE-2009-0351 EXPLOITDB perl VERIFIED
WinFTP 2.3.0 - Buffer Overflow
Stack-based buffer overflow in WFTPSRV.exe in WinFTP 2.3.0 allows remote authenticated users to execute arbitrary code via a long LIST argument beginning with an * (asterisk) character.
by joe walko
CVE-2009-0371 EXPLOITDB perl VERIFIED
SiteXS CMS <0.1.1 - Path Traversal
Directory traversal vulnerability in post.php in SiteXS CMS 0.1.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the type parameter.
by darkjoker
EIP-2026-117124 EXPLOITDB perl VERIFIED
Elecard MPEG Player - '.m3u' Local Stack Overflow
by AlpHaNiX
CVE-2009-0350 EXPLOITDB perl VERIFIED
Merak Media Player 3.2 - Buffer Overflow
Stack-based buffer overflow in Merak Media Player 3.2 allows remote attackers to execute arbitrary code via a long string in a .m3u playlist file, related to the status bar icon's tooltip. NOTE: some of these details are obtained from third party information.
by Houssamix
EIP-2026-115608 EXPLOITDB perl VERIFIED
MediaMonkey 3.0.6 - '.m3u' Local Buffer Overflow (PoC)
by AlpHaNiX
CVE-2009-0372 EXPLOITDB perl VERIFIED
Miltenovik Manojlo MemHT Portal <4.0.1 - RCE
Unrestricted file upload vulnerability in index.php in Miltenovik Manojlo MemHT Portal 4.0.1 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension and an image content type via a users editProfile action, then accessing this file via a direct request to the file in images/avatar/uploaded/.
by StAkeR
EIP-2026-116928 EXPLOITDB perl VERIFIED
Browser3D 3.5 - '.sfs' Local Stack Overflow
by AlpHaNiX
CVE-2009-0349 EXPLOITDB perl VERIFIED
FTPShell Server 4.3 - Buffer Overflow
Stack-based buffer overflow in FTPShell Server 4.3 allows user-assisted remote attackers to cause a denial of service (persistent daemon crash) and possibly execute arbitrary code via a long string in a licensing key (aka .key) file.
by LiquidWorm
CVE-2009-0381 EXPLOITDB perl VERIFIED
Joomla! com_prod 5.0 - SQL Injection
SQL injection vulnerability in the BazaarBuilder Ecommerce Shopping Cart (com_prod) 5.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter in a products action to index.php.
by XaDoS
EIP-2026-109164 EXPLOITDB perl VERIFIED
LinPHA Photo Gallery 2.0 - Remote Command Execution
by Osirys
CVE-2009-0329 EXPLOITDB perl VERIFIED
PcCookBook - Joomla! - SQL Injection
SQL injection vulnerability in the PcCookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php, a different vector than CVE-2008-0844.
by InjEctOr5
EIP-2026-107081 EXPLOITDB perl VERIFIED
Fhimage 1.2.1 - Remote Index Change
by Osirys
EIP-2026-107080 EXPLOITDB perl VERIFIED
Fhimage 1.2.1 - Remote Command Execution (mq = off)
by Osirys
EIP-2026-115967 EXPLOITDB perl VERIFIED
Novell Netware 6.5 - 'ICEbrowser' Remote System Denial of Service
by Jeremy Brown
EIP-2026-103580 EXPLOITDB perl VERIFIED
MPlayer 1.0rc2 - TwinVQ Stack Buffer Overflow (PoC)
by sCORPINo