Exploitdb Exploits

2,814 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-110967 EXPLOITDB perl VERIFIED
phpBB 2.0.x - Authentication Bypass (2)
by phuket
CVE-2004-0465 EXPLOITDB perl VERIFIED
WebConnect <6.5-6.4.4 - Path Traversal
Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted files via "..//" sequences in the WCP_USER parameter.
by karak0rsan
CVE-2005-0436 EXPLOITDB perl VERIFIED
AWStats 6.3-6.4 - Code Injection
Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.
by GHC
EIP-2026-104590 EXPLOITDB perl VERIFIED
Apple Mac OSX Adobe Version Cue - Local Privilege Escalation
by 0xdeadbabe
CVE-2005-0342 EXPLOITDB perl VERIFIED
Mac OS X - Privilege Escalation
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
by vade79
CVE-2005-3533 EXPLOITDB perl VERIFIED
Osh < 1.7.14 - Buffer Overflow
Buffer overflow in OSH before 1.7-15 allows local users to execute arbitrary code via a long current working directory and filename.
by Charles Stevenson
CVE-2005-0343 EXPLOITDB perl VERIFIED
Logicnow Perldesk - SQL Injection
SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter.
by deluxe89
CVE-2005-0338 EXPLOITDB perl VERIFIED
Savant Webserver - Buffer Overflow
Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request.
by CorryL
EIP-2026-109172 EXPLOITDB perl VERIFIED
LiteForum 2.1.1 - SQL Injection
by RusH
EIP-2026-116411 EXPLOITDB perl VERIFIED
TinyWeb 1.9 - Denial of Service
by karak0rsan
EIP-2026-103461 EXPLOITDB perl VERIFIED
Eternal Lines Web Server 1.0 - Remote Denial of Service
by Ziv Kamir
CVE-2005-0312 EXPLOITDB perl VERIFIED
War FTP Daemon - Denial of Service
WarFTPD 1.82 RC9, when running as an NT service, allows remote authenticated users to cause a denial of service (access violation) via a CWD command with a crafted pathname, as demonstrated using a large string of "%s" sequences, possibly indicating a format string vulnerability.
by MC.Iglo
EIP-2026-112192 EXPLOITDB perl VERIFIED
Siteman 1.1.10 - Remote Administrative Account Addition
by Noam Rathaus
CVE-2005-0116 EXPLOITDB perl VERIFIED
Awstats < 6.3 - Improper Input Validation
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.
by GHC
CVE-2005-0566 EXPLOITDB perl VERIFIED
Kmint21 Software Golden FTP Server - Buffer Overflow
Buffer overflow in Golden FTP Server Pro (goldenftpd) 2.x allows remote attackers to execute arbitrary code via a long RNTO command.
by Barabas
CVE-2005-0305 EXPLOITDB perl VERIFIED
Siteman <1.1.10 - Code Injection
CRLF injection vulnerability in users.php in Siteman 1.1.10 and earlier allows remote attackers to add arbitrary users and gain privileges via the line parameter in a docreate operation.
by Noam Rathaus
EIP-2026-107977 EXPLOITDB perl VERIFIED
ITA Forum 1.49 - SQL Injection
by RusH
EIP-2026-104129 EXPLOITDB perl VERIFIED
Webmin 1.5 - Web Brute Force (CGI)
by ZzagorR
EIP-2026-104128 EXPLOITDB perl VERIFIED
Webmin 1.5 - Brute Force / Command Execution
by ZzagorR
EIP-2026-102871 EXPLOITDB perl VERIFIED
HTGET 0.9.x - Local Privilege Escalation
by nekd0
EIP-2026-110943 EXPLOITDB perl VERIFIED
phpBB 2.0.10 - 'ssh.D.Worm' Bot Install Altavista
by Severino Honorato
EIP-2026-111888 EXPLOITDB perl VERIFIED
Sanity.b - phpBB 2.0.10 Bot Install (AOL/Yahoo Search)
by anonymous
EIP-2026-111076 EXPLOITDB perl VERIFIED
PHPInclude.Worm - PHP Scripts Automated Arbitrary File Inclusion
by anonymous
CVE-2004-2718 EXPLOITDB perl VERIFIED
PHP Heaven Phpmychat - Access Control
PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request.
by sysbug
EIP-2026-110972 EXPLOITDB perl VERIFIED
phpBB < 2.0.10 - 'Santy.A Worm' 'highlight' Arbitrary File Upload
by anonymous