Exploitdb Exploits

4,724 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-119486 EXPLOITDB python
Product Key Explorer 4.0.9 - Denial of Service (PoC)
by T3jv1l
EIP-2026-119482 EXPLOITDB python
NetShareWatcher 1.5.8 - Denial of Service (PoC)
by T3jv1l
EIP-2026-119481 EXPLOITDB python
NetShareWatcher 1.5.8 - Denial of Service (PoC)
by T3jv1l
CVE-2018-25262 EXPLOITDB MEDIUM python
Angry IP Scanner for Linux 3.5.3 Denial of Service
Angry IP Scanner for Linux 3.5.3 contains a denial of service vulnerability that allows local attackers to crash the application by supplying malformed input to the port selection field. Attackers can craft a malicious string containing buffer overflow patterns and paste it into the Preferences Ports tab to trigger an application crash.
by Sam
CVSS 6.2
EIP-2026-116788 EXPLOITDB python
AnyBurn 4.3 - Local Buffer Overflow (SEH)
by Matteo Malvica
EIP-2026-116787 EXPLOITDB python
AnyBurn 4.3 - Local Buffer Overflow (SEH)
by Matteo Malvica
EIP-2026-116330 EXPLOITDB python
SQLScan 1.0 - Denial of Service (PoC)
by Rafael Pedrero
EIP-2026-116329 EXPLOITDB python
SQLScan 1.0 - Denial of Service (PoC)
by Rafael Pedrero
CVE-2018-1160 EXPLOITDB CRITICAL python VERIFIED
Netatalk <3.1.12 - RCE
Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.
by Jacob Baines
CVSS 9.8
CVE-2018-1160 EXPLOITDB CRITICAL python VERIFIED
Netatalk <3.1.12 - RCE
Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.
by Tenable NS
CVSS 9.8
CVE-2018-25265 EXPLOITDB HIGH python
LanSpy 2.0.1.159 Local Buffer Overflow
LanSpy 2.0.1.159 contains a local buffer overflow vulnerability in the scan section that allows local attackers to execute arbitrary code by exploiting structured exception handling mechanisms. Attackers can craft malicious payloads using egghunter techniques to locate and execute shellcode, triggering code execution through SEH chain manipulation and controlled jumps.
by bzyo
CVSS 8.4
CVE-2018-19357 EXPLOITDB HIGH python
XMPlay 3.8.3 - Buffer Overflow
XMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted http:// URL in a .m3u file.
by s7acktrac3
CVSS 7.8
EIP-2026-116882 EXPLOITDB python
Base64 Decoder 1.1.2 - Local Buffer Overflow (SEH)
by bzyo
EIP-2026-116881 EXPLOITDB python
Base64 Decoder 1.1.2 - Local Buffer Overflow (SEH)
by bzyo
CVE-2018-25218 EXPLOITDB HIGH python
PassFab RAR Password Recovery 9.3.2 SEH Buffer Overflow
PassFab RAR Password Recovery 9.3.2 contains a structured exception handler (SEH) buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload. Attackers can craft a payload with a buffer overflow, NSEH jump, and shellcode, then paste it into the 'Licensed E-mail and Registration Code' field during registration to trigger code execution.
by Achilles
CVSS 8.4
CVE-2018-25217 EXPLOITDB HIGH python
PDF Explorer 1.5.66.2 Structured Exception Handler Local Code Execution
PDF Explorer 1.5.66.2 contains a structured exception handler (SEH) overflow vulnerability that allows local attackers to execute arbitrary code by overwriting SEH records with malicious data. Attackers can craft a payload with buffer overflow, NSEH jump, and ROP gadget chains that execute when the Custom fields settings dialog processes the malicious input in the Label field.
by Achilles
CVSS 8.4
EIP-2026-117400 EXPLOITDB python
LanSpy 2.0.1.159 - Local Buffer Overflow
by Juan Prescotto
EIP-2026-117399 EXPLOITDB python
LanSpy 2.0.1.159 - Local Buffer Overflow
by Juan Prescotto
CVE-2018-25216 EXPLOITDB MEDIUM python VERIFIED
AnyBurn 4.3 Denial of Service Local Buffer Overflow
AnyBurn 4.3 contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the image file name field. Attackers can paste a 10000-byte payload into the 'Image file name' parameter during the 'Copy disk to Image' operation to trigger a denial of service condition.
by Achilles
CVSS 6.2
CVE-2018-25215 EXPLOITDB MEDIUM python VERIFIED
Excel Password Recovery Professional 8.2.0.0 Local Buffer Overflow DoS
Excel Password Recovery Professional 8.2.0.0 contains a local buffer overflow vulnerability that allows attackers to cause a denial of service by supplying an excessively long string to the 'E-Mail and Registrations Code' field. Attackers can paste a crafted payload containing 5000 bytes of data into the registration field to trigger a crash when the Register button is clicked.
by Achilles
CVSS 5.5
CVE-2018-25214 EXPLOITDB MEDIUM python VERIFIED
MegaPing Local Buffer Overflow Denial of Service
MegaPing contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload to the Destination Address List field in the Finger function. Attackers can paste a crafted buffer exceeding expected input limits into the vulnerable field and trigger the Start button to cause a denial of service crash.
by Achilles
CVSS 6.2
CVE-2018-25213 EXPLOITDB HIGH python VERIFIED
Nsauditor 3.0.28.0 Local SEH Buffer Overflow
Nsauditor 3.0.28.0 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input to the DNS Lookup tool. Attackers can craft a payload with SEH chain overwrite and inject shellcode through the DNS Query field to achieve code execution with application privileges.
by Achilles
CVSS 8.4
EIP-2026-111140 EXPLOITDB python
phpMyAdmin 4.8.4 - 'AllowArbitraryServer' Arbitrary File Read
by VulnSpy
CVE-2018-25267 EXPLOITDB MEDIUM python
UltraISO 9.7.1.3519 Buffer Overflow via Output FileName
UltraISO 9.7.1.3519 contains a local buffer overflow vulnerability in the Output FileName field of the Make CD/DVD Image dialog that allows attackers to overwrite SEH and SE handler records. Attackers can craft a malicious filename string with 304 bytes of data followed by SEH record overwrite values and paste it into the Output FileName field to trigger a denial of service crash.
by Francisco Ramirez
CVSS 6.2
CVE-2018-25266 EXPLOITDB MEDIUM python
Angry IP Scanner 3.5.3 Denial of Service via Preferences Buffer Overflow
Angry IP Scanner 3.5.3 contains a buffer overflow vulnerability in the preferences dialog that allows local attackers to crash the application by supplying an excessively large string. Attackers can generate a file containing a massive buffer of repeated characters and paste it into the unavailable value field in the display preferences to trigger a denial of service.
by Fernando Cruz
CVSS 6.2