Exploitdb Exploits

2,809 exploits tracked across all sources.

Sort: Activity Stars
CVE-2005-1013 EXPLOITDB perl VERIFIED
MailEnable Enterprise <= 1.04 and Professional <= 1.54 - Denial of Service via SMTP EHLO Unicode String
The SMTP service in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to cause a denial of service (server crash) via an EHLO command with a Unicode string.
by CorryL
CVE-2005-1019 EXPLOITDB perl VERIFIED
Aeon 0.2a - Buffer Overflow via HOME Environment Variable
Buffer overflow in the getConfig function in Aeon 0.2a and earlier allows local users to gain privileges via a long HOME environment variable.
by lammat
EIP-2026-110946 EXPLOITDB perl VERIFIED
phpBB 2.0.13 - 'Calendar Pro' mod Get Hash
by CereBrums
EIP-2026-110947 EXPLOITDB perl VERIFIED
phpBB 2.0.13 - 'downloads.php' mod Get Hash
by CereBrums
EIP-2026-111581 EXPLOITDB perl VERIFIED
PunBB 1.2.2 - Authentication Bypass
by RusH
EIP-2026-116281 EXPLOITDB perl VERIFIED
SPECTral Personal SMTP Server 0.4.2 - Denial of Service
by GreenwooD
CVE-2005-2323 EXPLOITDB perl VERIFIED
Class-1 Forum 0.23.2-0.24.4 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allow remote attackers to modify SQL statements via the (1) id parameter to viewattach.php, (2) viewuser_id parameter to users.php, or the (3) id or (4) forum parameter to viewforum.php.
by basher13
CVE-2005-0847 EXPLOITDB perl VERIFIED
Code Ocean FTP Server 1.0 - Denial of Service via Excessive Connections
Code Ocean FTP server 1.0 allows remote attackers to cause a denial of service via a large number of connections.
by GSS IT
EIP-2026-115595 EXPLOITDB perl VERIFIED
MCPWS Personal WebServer 1.3.21 - Denial of Service
by Nico Spicher
CVE-2005-0614 EXPLOITDB perl VERIFIED
phpBB 2.0.12 - Privilege Escalation
sessions.php in phpBB 2.0.12 and earlier allows remote attackers to gain administrator privileges via the autologinid value in a cookie.
by Kutas
EIP-2026-102955 EXPLOITDB perl VERIFIED
PostScript Utilities - 'psnup' Local Buffer Overflow
by lammat
EIP-2026-116072 EXPLOITDB perl VERIFIED
PlatinumFTP 1.0.18 - Multiple Remote Denial of Service Vulnerabilities
by ports
CVE-2005-0788 EXPLOITDB perl VERIFIED
LimeWire 4.1.2-4.5.6 - Arbitrary File Read via Gnutella GET Request
LimeWire 4.1.2 through 4.5.6 allows remote attackers to read arbitrary files by specifying the full pathname in a Gnutella GET request.
by lammat
EIP-2026-103472 EXPLOITDB perl VERIFIED
Freeciv Server 2.0.0beta8 - Denial of Service
by Nico Spicher
CVE-2005-0385 EXPLOITDB perl VERIFIED
luxman < 0.41 - Buffer Overflow via Long Command Line Argument
Buffer overflow in luxman before 0.41, if used with certain insecure svgalib libraries, allows local users to execute arbitrary code via a long -f command line argument.
by Kevin Finisterre
CVE-2005-0691 EXPLOITDB perl VERIFIED
SocialMPN modules.php - Remote File Inclusion Code Execution
PHP remote file inclusion vulnerability in article mode for modules.php in SocialMPN allows remote attackers to execute arbitrary PHP code by modifying the name parameter to reference a URL on a remote web server that contains the code.
by y3dips
CVE-2005-0709 EXPLOITDB perl VERIFIED
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10 - Authenticated Remote Code Execution via CREATE FUNCTION
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.
by Stefano Di Paola
CVE-2005-0779 EXPLOITDB perl VERIFIED
PlatinumFTP 1.0.18 - Denial of Service via Backslash in Username
PlatinumFTP 1.0.18, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via multiple connection attempts with a \ (backslash) in the username.
by ports
EIP-2026-112418 EXPLOITDB perl VERIFIED
Stadtaus.Com PHP Form Mail Script 2.3 - Remote File Inclusion
by mozako
CVE-2004-0942 EXPLOITDB perl VERIFIED
Apache HTTP Server < 2.0.52 - Denial of Service via MIME Header with Excessive Spaces
Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters.
by GreenwooD
EIP-2026-110967 EXPLOITDB perl VERIFIED
phpBB 2.0.x - Authentication Bypass (2)
by phuket
CVE-2004-0465 EXPLOITDB perl VERIFIED
WebConnect <6.5-6.4.4 - Path Traversal
Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted files via "..//" sequences in the WCP_USER parameter.
by karak0rsan
CVE-2005-0436 EXPLOITDB perl VERIFIED
AWStats 6.3-6.4 - Remote Code Execution via PluginMode Parameter
Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.
by GHC
EIP-2026-104590 EXPLOITDB perl VERIFIED
Apple Mac OSX Adobe Version Cue - Local Privilege Escalation
by 0xdeadbabe
CVE-2005-0342 EXPLOITDB perl VERIFIED
Mac OS X - Arbitrary File Overwrite and Privilege Escalation via .DS_Store Hard Link
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
by vade79