Exploitdb Exploits

4,733 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-105168 EXPLOITDB python
aMSN 0.98.9 Web App - Multiple Vulnerabilities
by drone
CVE-2013-6027 EXPLOITDB python VERIFIED
Dlink Dir-100 - Memory Corruption
Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow remote authenticated administrators to execute arbitrary commands via a long set/runtime/diagnostic/pingIp parameter to Tools/tools_misc.xgi.
by Craig Heffner
EIP-2026-101062 EXPLOITDB python
ONO Hitron CDE-30364 Router - Denial of Service
by Matias Mingorance Svensson
EIP-2026-113413 EXPLOITDB python
WHMCompleteSolution (WHMCS) 5.2.7 - SQL Injection
by localhost.re
EIP-2026-115521 EXPLOITDB python VERIFIED
KMPlayer 3.7.0.109 - '.wav' Crash (PoC)
by xboz
EIP-2026-103385 EXPLOITDB python VERIFIED
Abuse HTTP Server - Remote Denial of Service
by Zico Ekel
EIP-2026-116241 EXPLOITDB python VERIFIED
ShareKM - Remote Denial of Service
by Yuda Prawira
EIP-2026-101273 EXPLOITDB python
FiberHome Modem Router HG-110 - Authentication Bypass To Remote Change DNS Servers
by Javier Perez
EIP-2026-101107 EXPLOITDB python
Vestel TV 42pf9322 - Denial of Service
by HackerSofi
EIP-2026-116385 EXPLOITDB python VERIFIED
Target Longlife Media Player 2.0.2.0 - '.wav' Crash (PoC)
by gunslinger_
EIP-2026-118511 EXPLOITDB python VERIFIED
eM Client e-mail client 5.0.18025.0 - Persistent Cross-Site Scripting
by loneferret
EIP-2026-115483 EXPLOITDB python
jetAudio 8.0.16.2000 Plus VX - '.wav' Crash (PoC)
by ariarat
CVE-2013-5716 EXPLOITDB python VERIFIED
Gomlab Gom Player < 2.2.53.5169 - Improper Input Validation
Gretech GOM Media Player 2.2.53.5169 and possibly earlier allows remote attackers to cause a denial of service (application crash) via a crafted WAV file.
by ariarat
EIP-2026-116081 EXPLOITDB python VERIFIED
PotPlayer 1.5.39036 - '.wav' Crash (PoC)
by ariarat
CVE-2013-1775 EXPLOITDB python VERIFIED
Mac OS X Sudo Password Bypass
sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypass intended time restrictions and retain privileges without re-authenticating by setting the system clock and sudo user timestamp to the epoch.
by David Kennedy (ReL1K)
CVE-2013-4694 EXPLOITDB python VERIFIED
Winamp <5.64 Build 3418 - Buffer Overflow
Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a package with a long Skin directory name. NOTE: a second buffer overflow involving a long GUI Search field to ml_local.dll was also reported. However, since it is only exploitable by the user of the application, this issue would not cross privilege boundaries unless Winamp is running under a highly restricted environment such as a kiosk.
by Ayman Sagy
EIP-2026-118434 EXPLOITDB python VERIFIED
dreamMail e-mail client 4.6.9.2 - Persistent Cross-Site Scripting
by loneferret
CVE-2013-4775 EXPLOITDB python
NETGEAR ProSafe - Info Disclosure
NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS728TPS, GS728TS, and GS725TS with firmware 5.3.0.17; and GS752TXS and GS728TXS with firmware 6.1.0.12 allows remote attackers to read encrypted administrator credentials and other startup configurations via a direct request to filesystem/startup-config.
by Juan J. Guelfo
CVE-2013-4776 EXPLOITDB python
NETGEAR ProSafe - DoS
NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier, GS748Tv4 5.4.1.14, and GS510TP 5.0.4.4 allows remote attackers to cause a denial of service (reboot or crash) via a crafted HTTP request to filesystem/.
by Juan J. Guelfo
EIP-2026-105487 EXPLOITDB python
Bitbot (C2 Web Panel) - 'gate2.php' Multiple Vulnerabilities
by bwall
CVE-2013-4730 EXPLOITDB python VERIFIED
PCMan's FTP Server 2.0.7 - RCE
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USER command.
by Polunchis
CVE-2013-6283 EXPLOITDB python VERIFIED
Videolan Vlc Media Player < 2.0.8 - Improper Input Validation
VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a URL in a m3u file.
by Asesino04
EIP-2026-118905 EXPLOITDB python VERIFIED
MinaliC WebServer 2.0.0 - Remote Buffer Overflow (Egghunter)
by PuN1sh3r
EIP-2026-115992 EXPLOITDB python VERIFIED
OneHTTPD 0.7 - Denial of Service
by superkojiman
EIP-2026-119105 EXPLOITDB python VERIFIED
Sami FTP Server 2.0.1 - MKD Buffer Overflow ASLR Bypass (SEH)
by Polunchis