Exploitdb Exploits
2,731 exploits tracked across all sources.
Actfax FTP Server 4.27 - 'USER' Stack Buffer Overflow (Metasploit)
by mr_me
Joomla! Component com_virtuemart 1.1.7/1.5 - Blind SQL Injection (Metasploit)
by TecR0c
CA Arcserve D2d - Information Disclosure
BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently execute arbitrary commands, via unspecified vectors.
by Metasploit
Freefloat FTP Server - 'REST' Remote Buffer Overflow (Metasploit)
by KaHPeSeSe
Freefloat FTP Server - 'MKD' Remote Buffer Overflow (Metasploit)
by James Fitts
Iconics GENESIS32 9.21.201.01 - Integer Overflow (Metasploit)
by Metasploit
Freefloat FTP Server 1.0 - 'MKD' Remote Buffer Overflow
by C4SS!0 G0M3S
HP Network Node Manager - Memory Corruption
Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long OvOSLocale cookie, a variant of CVE-2008-0067.
by Metasploit
Oracle Java SE - Info Disclosure
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, 1.4.2_33 and earlier, and JRockit R28.1.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability, related to RMI, a different vulnerability than CVE-2011-3557.
by Metasploit
Mozilla Firefox <3.5.19 & <3.6.17, SeaMonkey <2.0.14 - RCE
Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly use nsTreeRange data structures, which allows remote attackers to execute arbitrary code via unspecified vectors that lead to a "dangling pointer."
by Metasploit
Bluecoat Proxyone - Memory Corruption
Stack-based buffer overflow in the BCAAA component before build 60258, as used by Blue Coat ProxySG 4.2.3 through 6.1 and ProxyOne, allows remote attackers to execute arbitrary code via a large packet to the synchronization port (16102/tcp).
by Metasploit
Freefloat FTP Server - Remote Buffer Overflow (Metasploit)
by James Fitts
MicroP 0.1.1.1600 - Buffer Overflow
Stack-based buffer overflow in MicroP 0.1.1.1600 allows remote attackers to execute arbitrary code via a crafted .mppl file. NOTE: it has been reported that the overflow is in the lpFileName parameter of the CreateFileA function, but the overflow is probably caused by a separate, unnamed function.
by Metasploit
CoolPlayer Portable 2.19.2 - Local Buffer Overflow (Metasploit)
by James Fitts
Wordtrainer 3.0 - '.ord' Local Buffer Overflow (Metasploit)
by James Fitts
Vsftpd - OS Command Injection
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
by Metasploit
CVSS 9.8
HP OpenView Storage Data Protector <6.20 - Buffer Overflow
Multiple stack-based buffer overflows in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allow remote attackers to execute arbitrary code via a request containing crafted parameters.
by Metasploit
Word List Builder 1.0 - Local Buffer Overflow (Metasploit)
by James Fitts
Microsoft IIS 5.0-7.0 - DoS
Stack consumption vulnerability in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows remote authenticated users to cause a denial of service (daemon crash) via a list (ls) -R command containing a wildcard that references a subdirectory, followed by a .. (dot dot), aka "IIS FTP Service DoS Vulnerability."
by Myo Soe
HP OpenView Storage Data Protector <6.20 - Buffer Overflow
Multiple stack-based buffer overflows in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allow remote attackers to execute arbitrary code via a request containing crafted parameters.
by Metasploit
Citrix Provisioning Services 5.6 - 'streamprocess.exe' Remote Buffer Overflow (Metasploit)
by Metasploit
Microsoft Visio - Memory Corruption
Buffer overflow in VISIODWG.DLL before 10.0.6880.4 in Microsoft Office Visio allows user-assisted remote attackers to execute arbitrary code via a crafted DXF file, a different vulnerability than CVE-2010-0254 and CVE-2010-0256.
by Metasploit
Siemens FactoryLink 8 - CSService Logging Path Parameter Buffer Overflow (Metasploit)
by Metasploit
IBM Lotus Notes < 8.5.2.2 - Numeric Error
Integer underflow in lzhsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted header in a .lzh attachment that triggers a stack-based buffer overflow, aka SPR PRAD88MJ2W.
by Metasploit
By Source