Exploitdb Exploits

4,733 exploits tracked across all sources.

Sort: Activity Stars
CVE-2011-5165 EXPLOITDB python VERIFIED
Cleanersoft Free Mp3 CD Ripper < 2.6 - Memory Corruption
Stack-based buffer overflow in Free MP3 CD Ripper 1.1, 2.6 and earlier, when converting a file, allows user-assisted remote attackers to execute arbitrary code via a crafted .wav file.
by TUNISIAN CYBER
EIP-2026-102568 EXPLOITDB python VERIFIED
Brasero CD/DVD Burner 3.4.1 - '.m3u' Buffer Overflow Crash (PoC)
by Avinash Thapa
CVE-2015-1427 EXPLOITDB CRITICAL python VERIFIED
Elasticsearch <1.3.8, <1.4.3 - Command Injection
The Groovy scripting engine in Elasticsearch before 1.3.8 and 1.4.x before 1.4.3 allows remote attackers to bypass the sandbox protection mechanism and execute arbitrary shell commands via a crafted script.
by Xiphos Research Ltd
CVSS 9.8
EIP-2026-101073 EXPLOITDB python
Sagem F@st 3304-V2 - Telnet Crash (PoC)
by Loudiyi Mohamed
CVE-2014-8687 EXPLOITDB CRITICAL python VERIFIED
Seagate Business NAS <2015.00322 - RCE
Seagate Business NAS devices with firmware before 2015.00322 allow remote attackers to execute arbitrary code with root privileges by leveraging use of a static encryption key to create session tokens.
by OJ Reeves
CVSS 9.8
EIP-2026-117590 EXPLOITDB python VERIFIED
Microsoft Word 2007 - RTF Object Confusion (ASLR + DEP Bypass)
by R-73eN
EIP-2026-107447 EXPLOITDB python
GoAutoDial CE 2.0 - Arbitrary File Upload
by R-73eN
EIP-2026-103029 EXPLOITDB python VERIFIED
VFU 4.10-1.1 - Move Entry Buffer Overflow
by Bas van den Berg
CVE-2014-0980 EXPLOITDB python VERIFIED
Publish-It PUI Buffer Overflow (SEH)
Buffer overflow in Poster Software PUBLISH-iT 3.6d allows remote attackers to execute arbitrary code via a crafted PUI file.
by Andrew Smith
CVE-2013-4730 EXPLOITDB python
PCMan's FTP Server 2.0.7 - RCE
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USER command.
by R-73eN
EIP-2026-117626 EXPLOITDB python
MooPlayer 1.3.0 - 'm3u' Local Buffer Overflow (SEH) (1)
by dogo h@ck
EIP-2026-115852 EXPLOITDB python VERIFIED
MooPlayer 1.3.0 - 'm3u' Buffer Overflow (SEH) (PoC)
by Samandeep Singh
CVE-2015-1578 EXPLOITDB python
u5CMS <3.9.4 - Open Redirect
Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) pidvesa cookie to u5admin/pidvesa.php or (2) uri parameter to u5admin/meta2.php.
by KAhara MAnhara
CVE-2014-2623 EXPLOITDB python VERIFIED
HP Storage Data Protector <8 - RCE
Unspecified vulnerability in HP Storage Data Protector 8.x allows remote attackers to execute arbitrary code via unknown vectors.
by Juttikhun Khamchaiyaphum
CVE-2014-4076 EXPLOITDB python
Microsoft Windows Server 2003 SP2 - Privilege Escalation
Microsoft Windows Server 2003 SP2 allows local users to gain privileges via a crafted IOCTL call to (1) tcpip.sys or (2) tcpip6.sys, aka "TCP/IP Elevation of Privilege Vulnerability."
by KoreLogic
EIP-2026-116458 EXPLOITDB python
UniPDF 1.1 - Crash (PoC) (SEH)
by bonze
CVE-2015-0235 EXPLOITDB python
Exim GHOST (glibc gethostbyname) Buffer Overflow
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."
by 1n3
EIP-2026-118368 EXPLOITDB python
ClearSCADA - Remote Authentication Bypass
by Jeremy Brown
EIP-2026-115421 EXPLOITDB python
IceCream Ebook Reader 1.41 - Crash (PoC)
by Kapil Soni
CVE-2015-2055 EXPLOITDB python
Zhone Technologies Gpon 2520 Firmware - Improper Input Validation
Zhone GPON 2520 with firmware R4.0.2.566b allows remote attackers to cause a denial of service via a long string in the oldpassword parameter.
by Kaczinski Ramirez
EIP-2026-117992 EXPLOITDB python VERIFIED
T-Mobile Internet Manager - Local Buffer Overflow (SEH)
by metacom
EIP-2026-116987 EXPLOITDB python VERIFIED
Congstar Internet Manager - Local Buffer Overflow (SEH)
by metacom
CVE-2014-8272 EXPLOITDB python
Dell iDRAC6 modular <3.65, iDRAC6 monolithic <1.98, iDRAC7 <1.57.57...
The IPMI 1.5 functionality in Dell iDRAC6 modular before 3.65, iDRAC6 monolithic before 1.98, and iDRAC7 before 1.57.57 does not properly select session ID values, which makes it easier for remote attackers to execute arbitrary commands via a brute-force attack.
by Yong Chuan_ Koh
EIP-2026-103789 EXPLOITDB python
Ntpdc 4.2.6p3 - Local Buffer Overflow
by drone
CVE-2015-1060 EXPLOITDB python
AdaptCMS 3.0.3 - Open Redirect
Open redirect vulnerability in lib/Cake/Controller/Controller.php in AdaptCMS 3.0.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the HTTP Referer header.
by LiquidWorm