Exploit Database
151,987 exploits tracked across all sources.
CVE-2006-2408
EXPLOITDB
Raydium - Remote Code Execution via Large Packet in Log or Console Function
Multiple buffer overflows in Raydium before SVN revision 310 allow remote attackers to execute arbitrary code via a large packet when logged via (1) the raydium_log function in log.c or (2) the raydium_console_line_add function in console.c, possibly from a long player name.
CVE-2006-2409
EXPLOITDB
Raydium - Remote Code Execution via Format String in raydium_log
Format string vulnerability in the raydium_log function in console.c in Raydium before SVN revision 310 allows local users to execute arbitrary code via format string specifiers in the format parameter, which are not properly handled in a call to raydium_console_line_add.
CVE-2006-2410
EXPLOITDB
Raydium - Denial of Service via Malformed Network Packet
raydium_network_netcall_exec function in network.c in Raydium SVN revision 312 and earlier allows remote attackers to cause a denial of service (application crash) via a packet of type 0xFF, which causes a null dereference.
CVE-2006-2411
EXPLOITDB
Raydium - Buffer Overflow via Long Global Variables in Network Packet
Buffer overflow in raydium_network_read function in network.c in Raydium SVN revision 312 and earlier allows remote attackers to execute arbitrary code by sending packets with long global variables to the client.
Qualcomm Eudora 4.x - Improper Link Resolution Before File Access
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file that refers to the attachment, aka "Stealth Attachment."
CVSS 7.5
Quake 3 Engine - Arbitrary File Overwrite via Automatic Downloading
The Automatic Downloading option in the id3 Quake 3 Engine and the Icculus Quake 3 Engine (ioquake3) before revision 804 allows remote attackers to overwrite arbitrary files in the quake3 directory (fs_homepath cvar) via a long string of filenames, as contained in the neededpaks buffer.
id3 Quake 3 Engine 1.32c and Icculus Quake 3 Engine <= 810 - Arbitrary Cvar Overwrite via Server-Sent String
client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus Quake 3 Engine (ioquake3) revision 810 and earlier allows remote malicious servers to overwrite arbitrary write-protected cvars variables on the client, such as cl_allowdownload for Automatic Downloading and fs_homepath for the quake3 path, via a string of cvar names and values sent from the server. NOTE: this can be combined with another vulnerability to overwrite arbitrary files.
CVE-2011-3491
EXPLOITDB
Progea Movicon/PowereHMI <11.2.1085 - Buffer Overflow
Heap-based buffer overflow in Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a negative Content-Length field.
CVE-2011-3498
EXPLOITDB
Progea Movicon/PowereHMI <11.2.1085 - Buffer Overflow
Heap-based buffer overflow in Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long request.
CVE-2012-3792
EXPLOITDB
Pro-face Pro-Server EX < 1.30.000 and WinGP PC Runtime < 3.1.00 - Denial of Service via Crafted Packet
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (out-of-bounds read operation) via a crafted packet that triggers a certain Find Node check attempt.
CVE-2012-3793
EXPLOITDB
Pro-face Pro-Server EX < 1.30.000 and WinGP PC Runtime < 3.1.00 - Denial of Service via Crafted Packet
Integer overflow in Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (daemon crash) via a crafted packet with a certain opcode that triggers an incorrect memory allocation and a buffer overflow.
CVE-2012-3794
EXPLOITDB
Pro-face Pro-Server EX < 1.30.000 and WinGP PC Runtime < 3.1.00 - Denial of Service via Crafted Packet
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (unhandled exception and daemon crash) via a crafted packet with a certain opcode that triggers an invalid attempt to allocate a large amount of memory.
CVE-2012-3795
EXPLOITDB
Pro-face Pro-Server EX < 1.30.000 and WinGP PC Runtime < 3.1.00 - Denial of Service via Crafted Packet
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (daemon crash) via a crafted packet with a certain opcode and a large value in a size field.
CVE-2012-3796
EXPLOITDB
Pro-face Pro-Server EX < 1.30.000 & WinGP PC Runtime < 3.1.00 - Sensitive Info Exposure via Crafted Packet
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to obtain sensitive information from daemon memory via a crafted packet with a certain opcode.
Pragma Systems TelnetServer 2000 4.0 - Denial of Service via Long Null Character Sequence to Rexec Port
Buffer overflow in Pragma Systems TelnetServer 2000 version 4.0 allows remote attackers to cause a denial of service via a long series of null characters to the rexec port.
CVE-1999-0128
EXPLOITDB
Digital Osf 1 - Denial of Service
Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
CVE-2015-3111
EXPLOITDB
Adobe Photoshop CC <16.0 - Buffer Overflow
Heap-based buffer overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary code via unspecified vectors.
CVE-2011-4042
EXPLOITDB
ARC Informatique PcVue 6.0-10.0 - Remote Code Execution via SVUIGrd.ocx ActiveX Control
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.
CVE-2011-4043
EXPLOITDB
ARC Informatique PcVue 6.0-10.0 FrontVue and PlantVue - Remote Code Execution via Integer Overflow in SVUIGrd.ocx
Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow.
CVE-2011-4044
EXPLOITDB
ARC Informatique PcVue 6.0-10.0 FrontVue and PlantVue - Arbitrary File Write via SVUIGrd.ocx ActiveX Control
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify files via calls to unknown methods.
CVE-2006-2399
EXPLOITDB
Outgun < 1.0.3_bot_2 - Stack-Based Buffer Overflow via Long Data File Request
Stack-based buffer overflow in the ServerNetworking::incoming_client_data function in servnet.cpp in Outgun 1.0.3 bot 2 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a data_file_request command with a long (1) type or (2) name string.
CVE-2006-2400
EXPLOITDB
Outgun < 1.0.3_bot_2 - Denial of Service via Large Packet Handling in Leetnet
The leetnet functions (leetnet/rudp.cpp) in Outgun 1.0.3 bot 2 and earlier allow remote attackers to cause a denial of service (game interruption) via large packets, which cause an exception to be thrown.
CVE-2006-2401
EXPLOITDB
Outgun < 1.0.3_bot_2 - Denial of Service via Incorrect Message Size Packet
The leetnet functions (leetnet/rudp.cpp) in Outgun 1.0.3 bot 2 and earlier allow remote attackers to cause a denial of service (application crash) via packets with incorrect message sizes, which triggers a buffer over-read.
CVE-2015-0474
EXPLOITDB
Oracle Fusion Middleware 8.4.1, 8.5.0, 8.5.1 - Denial of Service in Outside In Filters
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.1, 8.5.0, and 8.5.1 allows local users to affect availability via unknown vectors related to Outside In Filters, a different vulnerability than CVE-2015-0493.
CVE-2012-5048
EXPLOITDB
Optimalog Optima PLC < 1.5.2 - Denial of Service via Crafted Packet
APIFTP Server in Optimalog Optima PLC 1.5.2 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted packet.
By Source