Exploitdb Exploits

4,733 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-117320 EXPLOITDB python VERIFIED
Inmatrix Ltd. Zoom Player 8.5 - '.jpeg'File Memory Corruption / Arbitrary Code Execution
by Debasish Mandal
EIP-2026-103443 EXPLOITDB python VERIFIED
Colloquy - Remote Denial of Service
by Aph3x
EIP-2026-103428 EXPLOITDB python VERIFIED
BT Home Hub - 'uuid' Buffer Overflow
by Zachary Cutlip
EIP-2026-115291 EXPLOITDB python VERIFIED
FoxPlayer 2.9.0 - Denial of Service
by metacom
CVE-2012-4366 EXPLOITDB python VERIFIED
Belkin N150 Wireless Router - Cryptographic Issue
Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 generate a predictable default WPA2-PSK passphrase based on eight digits of the WAN MAC address, which allows remote attackers to access the network by sniffing the beacon frames.
by ZhaoChunsheng
CVE-2013-10043 EXPLOITDB CRITICAL python
OAstium VoIP PBX astium-confweb-2.1-25399 - Auth Bypass & RCE
A vulnerability exists in OAstium VoIP PBX astium-confweb-2.1-25399 and earlier, where improper input validation in the logon.php script allows an attacker to bypass authentication via SQL injection. Once authenticated as an administrator, the attacker can upload arbitrary PHP code through the importcompany field in import.php, resulting in remote code execution. The malicious payload is injected into /usr/local/astium/web/php/config.php and executed with root privileges by triggering a configuration reload via sudo /sbin/service astcfgd reload. Successful exploitation leads to full system compromise.
by xistence
EIP-2026-102563 EXPLOITDB python
Astium VoIP PBX 2.1 build 25399 - Remote Crash (PoC)
by xistence
EIP-2026-114881 EXPLOITDB python VERIFIED
Aktiv Player 2.80 - Crash (PoC)
by IndonesiaGokilTeam
EIP-2026-103161 EXPLOITDB python VERIFIED
LShell 0.9.15 - Remote Code Execution
by drone
EIP-2026-101488 EXPLOITDB python
Ubiquiti AirOS 5.5.2 - (Authenticated) Remote Command Execution
by xistence
CVE-2012-5967 EXPLOITDB python
Merethis Centreon - SQL Injection
SQL injection vulnerability in menuXML.php in Centreon 2.3.3 through 2.3.9-4 (fixed in Centreon web 2.6.0) allows remote authenticated users to execute arbitrary SQL commands via the menu parameter.
by modpr0be
CVE-2012-5375 EXPLOITDB python VERIFIED
Linux kernel <3.8-rc1 - DoS
The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (prevention of file creation) by leveraging the ability to write to a directory important to the victim, and creating a file with a crafted name that is associated with a specific CRC32C hash value.
by Pascal Junod
CVE-2012-4959 EXPLOITDB python VERIFIED
Novell File Reporter <1.0.2 - Path Traversal
Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to upload and execute files via a 130 /FSF/CMD request with a .. (dot dot) in a FILE element of an FSFUI record.
by Abysssec
EIP-2026-115304 EXPLOITDB python VERIFIED
FreeVimager 4.1.0 - Crash (PoC)
by Jean Pascal Pereira
EIP-2026-115146 EXPLOITDB python VERIFIED
DIMIN Viewer 5.4.0 - Crash (PoC)
by Jean Pascal Pereira
CVE-2012-10023 EXPLOITDB CRITICAL python VERIFIED
FreeFloat FTP Server 1.0.0 - Buffer Overflow
A stack-based buffer overflow vulnerability exists in FreeFloat FTP Server version 1.0.0. The server fails to properly validate input passed to the USER command, allowing remote attackers to overwrite memory and potentially execute arbitrary code. The flaw is triggered by sending an overly long username string, which overflows the buffer allocated for user authentication.
by D35m0nd142
CVSS 9.8
CVE-2013-1627 EXPLOITDB python VERIFIED
Advantech Studio - Path Traversal
Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and earlier and Advantech Studio 7.0 and earlier allows remote attackers to read arbitrary files via a full pathname in an argument to the sub_401A90 CreateFileW function.
by Nin3
EIP-2026-116457 EXPLOITDB python VERIFIED
UMPlayer Portable 0.95 - Crash (PoC)
by p3kok
CVE-2012-6608 EXPLOITDB python VERIFIED
Elastix - XSS
Cross-site scripting (XSS) vulnerability in xmlservices/E_book.php in Elastix 2.3.0 allows remote attackers to inject arbitrary web script or HTML via the Page parameter.
by cheki
CVE-2012-10031 EXPLOITDB HIGH python VERIFIED
BlazeVideo HDTV Player Pro v6.6.0.3 - Buffer Overflow
BlazeVideo HDTV Player Pro v6.6.0.3 is vulnerable to a stack-based buffer overflow due to improper handling of user-supplied input embedded in .plf playlist files. When parsing a crafted .plf file, the MediaPlayerCtrl.dll component invokes PathFindFileNameA() to extract a filename from a URL-like string. The returned value is then copied to a fixed-size stack buffer using an inline strcpy call without bounds checking. If the input exceeds the buffer size, this leads to a stack overflow and potential arbitrary code execution under the context of the user.
by Nezim
EIP-2026-116860 EXPLOITDB python VERIFIED
Aviosoft Digital TV Player Professional 1.x - '.PLF' Direct Retn
by Nezim
CVE-2012-4409 EXPLOITDB python VERIFIED
Mcrypt < 2.6.8 - Memory Corruption
Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to execute arbitrary code via an encrypted file with a crafted header containing long salt data that is not properly handled during decryption.
by _ishikawa
CVE-2012-0698 EXPLOITDB python
TrouSerS <0.3.10 - DoS
tcsd in TrouSerS before 0.3.10 allows remote attackers to cause a denial of service (daemon crash) via a crafted type_offset value in a TCP packet to port 30003.
by Andy Lutomirski
EIP-2026-102210 EXPLOITDB python VERIFIED
Twitter for iPhone - Man in the Middle Security
by Carlos Reventlov
EIP-2026-117175 EXPLOITDB python
FormatFactory 3.0.1 - Profile File Handling Buffer Overflow
by Julien Ahrens