Exploitdb Exploits
2,814 exploits tracked across all sources.
Lcdproc - Buffer Overflow
Buffer overflow in the parse_all_client_messages function in LCDproc 0.4.x up to 0.4.4 allows remote attackers to execute arbitrary code via a large number of arguments.
by wsxz
Aborior Encore WebForum - Command Injection
display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file variable.
by K-159
Esignal - Buffer Overflow
Stack-based buffer overflow in WinSig.exe in eSignal 7.5 and 7.6 allows remote attackers to execute arbitrary code via a long STREAMQUOTE tag.
by VizibleSoft
Eudora 6.2.0.14 - Info Disclosure
Eudora 6.2.0.14 does not issue a warning when a user forwards an e-mail message that contains base64 or quoted-printable encoded attachments, which makes it easier for remote attackers to read arbitrary files via spoofed "Converted" headers.
by anonymous
WFTPD/WFTPD Pro 3.21 - DoS
The Control Panel applet in WFTPD and WFTPD Pro 3.21 R1 and R2 allows remote authenticated users to cause a denial of service (crash) via a long FTP command.
by Beyond Security
GlobalSCAPE Secure FTP Server <2.0 - Buffer Overflow
Buffer overflow in GlobalSCAPE Secure FTP Server 2.0 B03.11.2004.2 allows remote attackers to cause a denial of service (crash) via a SITE command with a long argument.
by storm
SureCom EP-9510AX/EP-4504AX Network Device - Malformed Web Authorisation Request Denial of Service (1)
by Vasco Costa
GNU Anubis 3.6.0-3.9.93 - RCE
Multiple format string vulnerabilities in GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to execute arbitrary code via format string specifiers in strings passed to (1) the info function in log.c, (2) the anubis_error function in errs.c, or (3) the ssl_error function in ssl.c.
by Ulf Harnhammar
Argosoft FTP Server < 1.4.1.5 - Denial of Service
ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PASS command with a long password parameter, which causes the database to be corrupted.
by Beyond Security
Serv-U ftp <5.0.0.4 - RCE
Buffer overflow in Serv-U ftp before 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time zone argument to the MDTM command.
by saintjmf
MTools Mformat <3.9.9 - Info Disclosure
MTools Mformat before 3.9.9, when installed setuid root, creates files with world-readable and world-writable permissions, which allows local users to read and overwrite files.
by Sebastian Krahmer
Transsoft Broker FTP Server - Denial of Service
TsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a denial of service (CPU consumption) via an open idle connection.
by SecuriTeam
Evolutionx - Buffer Overflow
Multiple buffer overflows in EvolutionX 3921 and 3935 allow remote attackers to cause a denial of service (hang) via (1) a long cd command to the FTP server, or (2) a long dir command to the telnet server.
by Moth7
Francisco Burzi Php-nuke - SQL Injection
SQL injection vulnerability in the "public message" capability (public_message) for Php-Nuke 6.x to 7.1.0 allows remote attackers to obtain the administrator password via the c_mid parameter.
by Janek Vind
Web Crossing - Denial of Service
Web Crossing 4.x and 5.x allows remote attackers to cause a denial of service (crash) by sending a HTTP POST request with a large or negative Content-Length, which causes an integer divide-by-zero.
by Peter Winter-Smith
Cisco Ios - Improper Input Validation
Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allow local users to cause a denial of service (hang or reset) by sending a layer 2 frame packet that encapsulates a layer 3 packet, but has inconsistent length values with that packet.
by blackangels
Oracle toplink mapping workBench - Info Disclosure
Oracle toplink mapping workBench uses a weak encryption algorithm for passwords, which allows local users to decrypt the passwords.
by Pete Finnigan
ProxyNow! <2.75 - Buffer Overflow
Stack-based and heap-based buffer overflows in ProxyNow! 2.75 and earlier allow remote attackers to execute arbitrary code via a GET request with a long ftp:// URL.
by Peter Winter-Smith
Apache 2.0.4x mod_perl - File Descriptor Leakage (3)
by Steve Grubb
Webcam Corp Webcam Watchdog - Buffer Overflow
Buffer overflow in the web server of Webcam Watchdog 3.63 allows remote attackers to execute arbitrary code via a long HTTP GET request.
by Peter Winter-Smith
Jordan Windows Telnet Server 1.0/1.2 - 'Username' Stack Buffer Overrun (1)
by fiNis
Xlight FTP Server 1.25/1.41 - 'PASS' Remote Buffer Overflow
by storm
ProjectForum 8.4.2.1 - Find Request Denial of Service
by Peter Winter-Smith
By Source