Exploitdb Exploits

4,762 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-1667 EXPLOITDB python VERIFIED
Mini-stream Castripper - Memory Corruption
Stack-based buffer overflow in Mini-stream CastRipper 2.50.70 allows remote attackers to execute arbitrary code via a long entry in a .m3u file, a different vector than CVE-2009-5137.
by Super Cristal
CVE-2009-1674 EXPLOITDB python VERIFIED
Microchip Mplab Ide - Memory Corruption
Stack-based buffer overflow in Microchip MPLAB IDE 8.30 allows user-assisted remote attackers to execute arbitrary code via a long .cof pathname in a [TOOL_SETTINGS] section in a .mcp file, possibly a related issue to CVE-2009-1608.
by His0k4
CVE-2009-1611 EXPLOITDB python VERIFIED
Electrasoft 32bit FTP - Memory Corruption
Stack-based buffer overflow in ElectraSoft 32bit FTP 09.04.24 allows remote FTP servers to execute arbitrary code via a long 257 reply to a CWD command.
by His0k4
CVE-2009-1611 EXPLOITDB python VERIFIED
Electrasoft 32bit FTP - Memory Corruption
Stack-based buffer overflow in ElectraSoft 32bit FTP 09.04.24 allows remote FTP servers to execute arbitrary code via a long 257 reply to a CWD command.
by His0k4
CVE-2009-1592 EXPLOITDB python VERIFIED
Electrasoft 32bit FTP - Memory Corruption
Stack-based buffer overflow in ElectraSoft 32bit FTP 09.04.24 allows remote FTP servers to execute arbitrary code via a long banner. NOTE: this might overlap CVE-2003-1368.
by His0k4
CVE-2009-1469 EXPLOITDB python VERIFIED
Icewarp Email Server < 9.3.0 - Code Injection
CRLF injection vulnerability in the Forgot Password implementation in server/webmail.php in IceWarp eMail Server and WebMail Server before 9.4.2 makes it easier for remote attackers to trick a user into disclosing credentials via CRLF sequences preceding a Reply-To header in the subject element of an XML document, as demonstrated by triggering an e-mail message from the server that contains a user's correct credentials, and requests that the user compose a reply that includes this message.
by RedTeam Pentesting GmbH
CVE-2009-1602 EXPLOITDB python VERIFIED
Pablosoftwaresolutions Quick'n Easy Mail Server - Memory Corruption
Pablo Software Solutions Quick 'n Easy Mail Server 3.3 allows remote attackers to cause a denial of service (daemon outage or CPU consumption) via multiple long SMTP commands, as demonstrated by HELO commands.
by shinnai
CVE-2009-4761 EXPLOITDB python VERIFIED
Mini-stream RM Downloader - Buffer Overflow
Stack-based buffer overflow in Mini-stream RM Downloader allows remote attackers to execute arbitrary code via a long string in a .smi file.
by ThE g0bL!N
CVE-2009-4754 EXPLOITDB python VERIFIED
Mercury Audio Player 1.21 - Buffer Overflow
Stack-based buffer overflow in Mercury Audio Player 1.21 allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file.
by His0k4
CVE-2009-4756 EXPLOITDB python VERIFIED
TraktorBeatport.exe <1.0.0.283 - Buffer Overflow
Stack-based buffer overflow in TraktorBeatport.exe 1.0.0.283 in Beatport Player 1.0.0.0 allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file.
by Encrypt3d.M!nd
CVE-2009-4756 EXPLOITDB python VERIFIED
TraktorBeatport.exe <1.0.0.283 - Buffer Overflow
Stack-based buffer overflow in TraktorBeatport.exe 1.0.0.283 in Beatport Player 1.0.0.0 allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file.
by His0k4
CVE-2009-4753 EXPLOITDB python VERIFIED
Addonics NASU2FW41 - Buffer Overflow
Multiple buffer overflows in the FTP server on the Addonics NAS Adapter NASU2FW41 with loader 1.17 allow remote attackers to cause a denial of service (TCP/IP outage) via long arguments to the (1) XRMD, (2) delete, (3) RNFR, or (4) RNTO command.
by h00die
CVE-2009-4755 EXPLOITDB python VERIFIED
Mercury Audio Player 1.21 - Buffer Overflow
Multiple stack-based buffer overflows in Mercury Audio Player 1.21 allow remote attackers to execute arbitrary code via a long string in a malformed (1) .b4s or (2) .pls playlist file.
by His0k4
CVE-2009-4755 EXPLOITDB python VERIFIED
Mercury Audio Player 1.21 - Buffer Overflow
Multiple stack-based buffer overflows in Mercury Audio Player 1.21 allow remote attackers to execute arbitrary code via a long string in a malformed (1) .b4s or (2) .pls playlist file.
by His0k4
EIP-2026-118309 EXPLOITDB python VERIFIED
Belkin Bulldog Plus - HTTP Server Remote Buffer Overflow
by His0k4
CVE-2009-1627 EXPLOITDB python VERIFIED
SDP Multimedia Streaming Download Project - Memory Corruption
Stack-based buffer overflow in Streaming Download Project (SDP) Downloader 2.3.0 allows remote attackers to execute arbitrary code via a long .asf URL in the HREF attribute of a REF element in a .asx file.
by His0k4
EIP-2026-116164 EXPLOITDB python VERIFIED
RealNetworks RealPlayer Gold 10.0 MP3 - File Handling Remote Denial of Service
by Abdul-Aziz Hariri
CVE-2009-1449 EXPLOITDB python VERIFIED
Coolplayer - Memory Corruption
Stack-based buffer overflow in PortableApps CoolPlayer Portable (aka CoolPlayer+ Portable) 2.19.1 allows remote attackers to execute arbitrary code via a skin file (skin.ini) with a large PlaylistSkin parameter. NOTE: this may overlap CVE-2008-5735.
by Stack
CVE-2009-1647 EXPLOITDB python VERIFIED
Ultrafunk Popcorn - Memory Corruption
Heap-based buffer overflow in popcorn.exe in Ultrafunk Popcorn 1.87 allows remote POP3 servers to cause a denial of service (application crash) via a long string in a +OK response. NOTE: some of these details are obtained from third party information.
by x.CJP.x
EIP-2026-104531 EXPLOITDB python VERIFIED
Recover Data for Novell Netware 1.0 - '.sav' Remote Denial of Service
by AbdulAziz Hariri
CVE-2009-1437 EXPLOITDB python VERIFIED
Coolplayer - Memory Corruption
Stack-based buffer overflow in PortableApps CoolPlayer Portable (aka CoolPlayer+ Portable) 2.19.6 and earlier allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file. NOTE: this may overlap CVE-2008-3408.
by His0k4
EIP-2026-116641 EXPLOITDB python VERIFIED
Zervit Web Server 0.3 - Remote Denial of Service
by shinnai
CVE-2009-0991 EXPLOITDB python VERIFIED
Oracle Database <11.1.0.7 - DoS
Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2009-1970.
by Dennis Yurichev
CVE-2009-1759 EXPLOITDB python VERIFIED
Rahul Dtorrent - Memory Corruption
Stack-based buffer overflow in the btFiles::BuildFromMI function (trunk/btfiles.cpp) in Enhanced CTorrent (aka dTorrent) 3.3.2 and probably earlier, and CTorrent 1.3.4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Torrent file containing a long path.
by Michael Brooks
CVE-2009-1330 EXPLOITDB python VERIFIED
Mini-stream Easy RM TO Mp3 Converter - Memory Corruption
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long filename in a playlist (.pls) file.
by Stack