Exploitdb Exploits

4,759 exploits tracked across all sources.

Sort: Activity Stars
CVE-2007-2373 EXPLOITDB python VERIFIED
WF-Links <1.03 - SQL Injection
SQL injection vulnerability in viewcat.php in the WF-Links (wflinks) 1.03 and earlier module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter.
by ajann
CVE-2007-1675 EXPLOITDB python VERIFIED
IBM Lotus Domino - Buffer Overflow
Buffer overflow in the CRAM-MD5 authentication mechanism in the IMAP server (nimap.exe) in IBM Lotus Domino before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to cause a denial of service via a long username.
by muts
CVE-2007-1842 EXPLOITDB python VERIFIED
Jsboard < 2.0.11 - Path Traversal
Directory traversal vulnerability in login.php in JSBoard before 2.0.12 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the table parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, a related issue to CVE-2006-2019.
by GoLd_M
CVE-2006-5276 EXPLOITDB python VERIFIED
Snort < 2.6.1.2 - Buffer Overflow
Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic.
by Winny Thomas
CVE-2007-1785 EXPLOITDB python VERIFIED
CA BrightStor ARCserve Backup 11.5 SP2 build 4237 - RCE
The RPC service in mediasvr.exe in CA BrightStor ARCserve Backup 11.5 SP2 build 4237 allows remote attackers to execute arbitrary code via crafted xdr_handle_t data in RPC packets, which is used in calculating an address for a function call, as demonstrated using the 191 (0xbf) RPC request.
by Shirkdog
CVE-2007-1675 EXPLOITDB python VERIFIED
IBM Lotus Domino - Buffer Overflow
Buffer overflow in the CRAM-MD5 authentication mechanism in the IMAP server (nimap.exe) in IBM Lotus Domino before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to cause a denial of service via a long username.
by Winny Thomas
EIP-2026-103565 EXPLOITDB python VERIFIED
Mozilla Firefox 2.0.0.3 / Gran Paradiso 3.0a3 - Hang / Crash (Denial of Service)
by shinnai
EIP-2026-115722 EXPLOITDB python VERIFIED
Microsoft Internet Explorer 7 - HTML Denial of Service
by shinnai
CVE-2006-3952 EXPLOITDB python VERIFIED
EFS Software Efs FTP Server - Buffer Overflow
Stack-based buffer overflow in EFS Software Easy File Sharing FTP Server 2.0 allows remote attackers to execute arbitrary code via a long argument to the PASS command. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
by Winny Thomas
CVE-2006-1255 EXPLOITDB python VERIFIED
Mercur Messaging 5.0 SP3 - Buffer Overflow
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long string to the (1) LOGIN or (2) SELECT command, a different set of attack vectors and possibly a different vulnerability than CVE-2003-1177.
by muts
CVE-2007-1579 EXPLOITDB python VERIFIED
Atrium Software Mercur Imapd - Memory Corruption
Stack-based buffer overflow in Atrium MERCUR IMAPD allows remote attackers to have an unknown impact via a certain SUBSCRIBE command.
by Winny Thomas
CVE-2006-6026 EXPLOITDB python VERIFIED
Realnetworks Helix Dna Server < 11.1.2 - Memory Corruption
Heap-based buffer overflow in Real Networks Helix Server and Helix Mobile Server before 11.1.3, and Helix DNA Server 11.0 and 11.1, allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a DESCRIBE request that contains an invalid LoadTestPassword field.
by Winny Thomas
CVE-2007-1580 EXPLOITDB python VERIFIED
Ftpdmin - Memory Corruption
FTPDMIN 0.96 allows remote attackers to cause a denial of service (daemon crash) via a LIST command for a Windows drive letter, as demonstrated using "//A:". NOTE: this has been reported as a buffer overflow by some sources, but there is not a long argument.
by shinnai
CVE-2006-5143 EXPLOITDB python VERIFIED
CA BrightStor ARCserve Backup <r11.5 SP1 - RCE
Multiple buffer overflows in CA BrightStor ARCserve Backup r11.5 SP1 and earlier, r11.1, and 9.01; BrightStor ARCserve Backup for Windows r11; BrightStor Enterprise Backup 10.5; Server Protection Suite r2; and Business Protection Suite r2 allow remote attackers to execute arbitrary code via crafted data on TCP port 6071 to the Backup Agent RPC Server (DBASVR.exe) using the RPC routines with opcode (1) 0x01, (2) 0x02, or (3) 0x18; invalid stub data on TCP port 6503 to the RPC routines with opcode (4) 0x2b or (5) 0x2d in ASCORE.dll in the Message Engine RPC Server (msgeng.exe); (6) a long hostname on TCP port 41523 to ASBRDCST.DLL in the Discovery Service (casdscsvc.exe); or unspecified vectors related to the (7) Job Engine Service.
by Winny Thomas
EIP-2026-100693 EXPLOITDB python VERIFIED
OpenBSD - ICMPv6 Fragment Remote Execution
by Core Security
CVE-2007-1567 EXPLOITDB python VERIFIED
War FTP Daemon < 1.65 - Buffer Overflow
Stack-based buffer overflow in War FTP Daemon 1.65, and possibly earlier, allows remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors, as demonstrated by warftp_165.tar by Immunity. NOTE: this might be the same issue as CVE-1999-0256, CVE-2000-0131, or CVE-2006-2171, but due to Immunity's lack of details, this cannot be certain.
by Winny Thomas
EIP-2026-115780 EXPLOITDB python VERIFIED
Microsoft Windows - DCE-RPC svcctl ChangeServiceConfig2A() Memory Corruption
by h07
CVE-2007-1365 EXPLOITDB python VERIFIED
Openbsd - Buffer Overflow
Buffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets due to "incorrect mbuf handling for ICMP6 packets." NOTE: this was originally reported as a denial of service.
by Alfredo Ortega
CVE-2007-1264 EXPLOITDB python VERIFIED
Enigmail 0.94.2 - Info Disclosure
Enigmail 0.94.2 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Enigmail from visually distinguishing between signed and unsigned portions of OpenPGP messages with multiple components, which allows remote attackers to forge the contents of a message without detection.
by Gerardo Richarte
CVE-2007-1263 EXPLOITDB python VERIFIED
GnuPG <1.4.6 - Info Disclosure
GnuPG 1.4.6 and earlier and GPGME before 1.1.4, when run from the command line, does not visually distinguish signed and unsigned portions of OpenPGP messages with multiple components, which might allow remote attackers to forge the contents of a message without detection.
by Gerardo Richarte
CVE-2007-1266 EXPLOITDB python VERIFIED
Evolution <2.8.1 - Info Disclosure
Evolution 2.8.1 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Evolution from visually distinguishing between signed and unsigned portions of OpenPGP messages with multiple components, which allows remote attackers to forge the contents of a message without detection.
by Gerardo Richarte
CVE-2006-5276 EXPLOITDB python VERIFIED
Snort < 2.6.1.2 - Buffer Overflow
Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic.
by Trirat Puttaraksa
CVE-2007-1192 EXPLOITDB python VERIFIED
Thomas R. Pasawicz HyperBook Guestbook 1.30 - Info Disclosure
Thomas R. Pasawicz HyperBook Guestbook 1.30 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download an admin password hash via a direct request for data/gbconfiguration.dat.
by PeTrO
CVE-2006-5276 EXPLOITDB python VERIFIED
Snort < 2.6.1.2 - Buffer Overflow
Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic.
by Trirat Puttaraksa
EIP-2026-115842 EXPLOITDB python VERIFIED
MiniWebsvr 0.0.6 - Remote Resource Consumption Denial of Service
by shinnai