Python Exploits

5,949 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-118558 EXPLOITDB python VERIFIED
Freefloat FTP Server - 'ALLO' Remote Buffer Overflow
by Black.Spook
EIP-2026-116604 EXPLOITDB python VERIFIED
Xlight FTP Server 3.7 - Remote Buffer Overflow
by KedAns-Dz
EIP-2026-115954 EXPLOITDB python
Notepad++ NppFTP Plugin - 'LIST' Remote Heap Overflow (PoC)
by 0in
EIP-2026-101429 EXPLOITDB python
Sagem Router Fast 3304/3464/3504 - Telnet Authentication Bypass
by Elouafiq Ali
CVE-2011-2900 EXPLOITDB python
Shttpd - Memory Corruption
Stack-based buffer overflow in the (1) put_dir function in mongoose.c in Mongoose 3.0, (2) put_dir function in yasslEWS.c in yaSSL Embedded Web Server (yasslEWS) 0.2, and (3) _shttpd_put_dir function in io_dir.c in Simple HTTPD (shttpd) 1.42 allows remote attackers to execute arbitrary code via an HTTP PUT request, as exploited in the wild in 2011.
by nion
EIP-2026-115980 EXPLOITDB python
NSHC Papyrus 2.0 - Heap Overflow
by wh1ant
CVE-2011-2900 EXPLOITDB python
Shttpd - Memory Corruption
Stack-based buffer overflow in the (1) put_dir function in mongoose.c in Mongoose 3.0, (2) put_dir function in yasslEWS.c in yaSSL Embedded Web Server (yasslEWS) 0.2, and (3) _shttpd_put_dir function in io_dir.c in Simple HTTPD (shttpd) 1.42 allows remote attackers to execute arbitrary code via an HTTP PUT request, as exploited in the wild in 2011.
by G13
EIP-2026-117637 EXPLOITDB python VERIFIED
MP3 CD Converter Professional 5.3.0 - Universal DEP Bypass
by C4SS!0 G0M3S
CVE-1999-1510 EXPLOITDB python VERIFIED
Bisonware FTP Server < 4.1 - Buffer Overflow
Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via long (1) USER, (2) LIST, or (3) CWD commands.
by localh0t
EIP-2026-114848 EXPLOITDB python
Acoustica Mixcraft 1.00 - Local Crash
by NassRawI
EIP-2026-101329 EXPLOITDB python
iphone/ipad phone drive 1.1.1 - Directory Traversal
by Khashayar Fereidani
EIP-2026-115558 EXPLOITDB python
LiteServe 2.81 - 'PASV' Denial of Service
by Craig Freyman
EIP-2026-118361 EXPLOITDB python VERIFIED
CiscoKits 1.0 - TFTP Server Directory Traversal
by SecPod Research
EIP-2026-115055 EXPLOITDB python VERIFIED
CiscoKits 1.0 - TFTP Server 'Write Command' Denial of Service
by SecPod Research
CVE-2010-3609 EXPLOITDB python
Openslp - Denial of Service
The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, allows remote attackers to cause a denial of service (infinite loop) via a packet with a "next extension offset" that references this extension or a previous extension. NOTE: some of these details are obtained from third party information.
by Nicolas Gregoire
EIP-2026-115989 EXPLOITDB python VERIFIED
Omnicom Alpha 4.0e LPD Server - Denial of Service
by Craig Freyman
EIP-2026-115894 EXPLOITDB python VERIFIED
MyWebServer 1.0.3 - Denial of Service
by X-h4ck
EIP-2026-115056 EXPLOITDB python VERIFIED
Ciscokits 1.0 - TFTP Server File Name Denial of Service
by Craig Freyman
EIP-2026-117072 EXPLOITDB python VERIFIED
Download Accelerator Plus (DAP) 9.7 - '.M3U' File Buffer Overflow (SEH Unicode)
by C4SS!0 G0M3S
EIP-2026-108715 EXPLOITDB python VERIFIED
Joomla! Component JE Story Submit - Local File Inclusion
by v3n0m
EIP-2026-118569 EXPLOITDB python VERIFIED
Freefloat FTP Server 1.0 - 'ACCL' Remote Buffer Overflow
by mortis
EIP-2026-118575 EXPLOITDB python VERIFIED
Freefloat FTP Server 1.0 - 'REST' / 'PASV' Remote Buffer Overflow
by C4SS!0 G0M3S
EIP-2026-119157 EXPLOITDB python VERIFIED
Solar FTP Server 2.1.1 - PASV Buffer Overflow
by Craig Freyman
EIP-2026-118559 EXPLOITDB python VERIFIED
Freefloat FTP Server - 'LIST' Remote Buffer Overflow
by Zer0 Thunder
CVE-2011-2506 EXPLOITDB python VERIFIED
Phpmyadmin < 3.3.10.2 - Code Injection
setup/lib/ConfigGenerator.class.php in phpMyAdmin 3.x before 3.3.10.2 and 3.4.x before 3.4.3.1 does not properly restrict the presence of comment closing delimiters, which allows remote attackers to conduct static code injection attacks by leveraging the ability to modify the SESSION superglobal array.
by wofeiwo