View Full Version : Exploits
- Vulnerabilities in DirectX Allows Code Execution (MS08-033)
- Vulnerability in WINS Allows Elevation of Privilege (MS08-034)
- Vulnerability in Active Directory Allows Denial of Service (MS08-035)
- Vulnerabilities in Pragmatic General Multicast (PGM) Allows Denial of Service (MS08-036)
- CitectSCADA ODBC Service Vulnerability
- SNMP Version 3 Authentication Vulnerabilities
- Multiple Vendor X Server Vulnerabilities (SHM, RSE, REG, AllocateGlyph)
- Alt-N SecurityGateway Username Buffer Overflow (Exploit)
- World in Conflict NULL Pointer
- Diigo Toolbar Global XSS and Information Leakage in SSL URLs
- XnView, NConvert, and GFL SDK Sun TAAC Buffer Overflow
- Cisco Intrusion Prevention System Jumbo Frame Denial of Service
- TorrentTrader Multiple SQL Injection Vulnerabilities
- Cisco Unified Communications Manager Denial of Service and Authentication Bypass Vulnerabilities
- Radmin Default Installation Security Vulnerabilities
- Motion "read_client()" HTTP Request Buffer Overflow
- Commtouch Anti-Spam Enterprise Gateway Cross Site Scripting (Allowing Domain Credential Theft)
- VLC Media Player WAV Processing Integer Overflow
- libpoppler Uninitialized Pointer
- Libpoppler Uninitialized Pointer (Technical Details, PoC)
- Multiple Cisco Products Vulnerable to DNS Cache Poisoning Attacks
- Novell GroupWise Messenger Client (GWIM) Remote Stack Overflow
- F5 FirePass 1200 SNMP Daemon DoS
- Vulnerabilities in Microsoft SQL Server Allows Elevation of Privilege (MS08-040)
- Vulnerabilities in Outlook Web Access for Exchange Server Allows Elevation of Privilege (MS08-039)
- Vulnerability in Windows Explorer Allows Code Execution (MS08-038)
- Vulnerabilities in DNS Allows Spoofing (MS08-037)
- Novell eDirectory LDAP Search Request Heap Corruption Vulnerability
- Apple Core Image Fun House BUffer Overflow
- 0-day Ip logger Exploit By 50-1337 CreW
- Oracle Database Local Untrusted Library Path Vulnerability
- Oracle Database DBMS_AQELM Package Buffer Overflow Vulnerability
- Oracle Internet Directory Pre-Authentication LDAP DoS Vulnerability
- Simple DNS Plus Denial of Service
- Novell eDirectory dhost Integer Overflow Code Execution Vulnerability
- Microsoft Outlook Web Access XSS (MS08-039)
- Oracle Database Local Untrusted Library Path Vulnerability (Technical Details)
- Kaminsky DNS Cache Poisoning Flaw Exploit for Domains
- Kaminsky DNS Cache Poisoning Flaw (Exploit)
- EMC Centera Universal Access SQL Injection
- Asterisk IAX 'POKE' Resource Exhaustion
- SAP MaxDB dbmsrv Untrusted Execution Path Vulnerability
- Hewlett-Packard OVIS Probe Builder Arbitrary Process Termination Vulnerability
- Ingres Database for Linux Multiple Vulnerabilities
- Sun xVM VirtualBox Privilege Escalation Vulnerability
- Apple Mac OS X CoreGraphics PDF Type1 Font Integer Overflow Vulnerability
- Apache Tomcat XSS Vulnerability
- Libxslt Heap-Based Buffer Overflow
- America's Army Server Termination
- PuttyHijack - Putty Hijacking Tool
- Wireshark RMI Packet Dissector Information Disclosure
- 8e6 Technologies R3000 Internet Filter Bypass with Host Decoy
- Universal redirect exploiter by p3Lo
- Cisco WebEx Meeting Manager (atucfobj.dll) ActiveX (Exploit)
- Apache Tomcat Directory Traversal Vulnerability
- Powerfuzzer - Automated Web Fuzzer
- Apache Tomcat Directory Traversal Vulnerability (Exploit #2)
- Microsoft Excel FORMAT Record Invalid Array Index Vulnerability (MS08-044)
- Microsoft Excel Chart AxesSet Invalid Array Index Vulnerability (MS08-043)
- Microsoft PowerPoint Viewer 2003 Cstring Integer Overflow Vulnerability (MS08-051)
- Microsoft PowerPoint Viewer 2003 Out of Bounds Array Index Vulnerability
- Microsoft Office WPG Image File Heap Buffer Overflow Vulnerability (MS08-044)
- Solaris snoop SMB Multiple Vulnerabilities
- Vim Netrw FTP User Name and Password Disclosure
- CA HIPS KmxFw.sys Kernel Memory Corruption
- SurfJack - Hijack HTTP Connections to Steal Cookies
- Microsoft Office BMP Input Filter Heap Overflow Vulnerability (MS08-044)
- Alcatel-Lucent OmniSwitch Stack Buffer Overflow
- PartyGaming PartyPoker Malicious Update Vulnerability
- OpenLDAP BER Decoding Remote DoS Vulnerability
- Vulnerability in Cisco WebEx Meeting Manager ActiveX Control
- Symantec Veritas Storage Foundation Scheduler Service NULL Session Authentication Bypass Vulnerability
- MicroWorld MailScan - Multiple Vulnerabilities within Admin-Webinterface
- PorkBind - Nameserver Security Scanner
- Multiple Cisco IOS Shellcodes
- Microsoft Windows Messenger Illegal Access Vulnerability (MS08-050)
- Internet Explorer Zone Elevation Restrictions Bypass and Security Zone Restrictions Bypass (MS08-043)
- VMware Workstation (hcmon.sys) Local DoS Vulnerability
- Windows Media Services (nskey.dll) CallHTMLHelp Buffer Overflow
- Joomla 1.5.x Remote Admin Password Change
- Bytehoard 2.1 Priv Escalation exploit.
- DriveCrypt Security Model Bypass and Incorrect BIOS API Usage
- Intel BIOS Plain Text Password Disclosure
- Calendarix Basic Two SQL Injection Vulnerabilities
- [0day]Comodo Cavutil.dll ActiveX (ExecuteStr) Remote Root Exploit by p3lo
- [0-day] Solaris 10 remote cammand execution exploit
- Multiple Vendor libpurple MSN Protocol SLP Message Heap Overflow Vulnerability
- Novell iPrint Client ActiveX Control Multiple Vulnerabilities
- vBulletin Cross Site Scripting Vulnerability (popup)
- BSQL Hacker - Advanced SQL Injection Framework / Tool
- Kyocera Mita Scanner File Utility (Multiple)
- Multiple Vulnerabilities in AWStats Totals
- Dreambox DM500 Webserver Long URL Request Denial of Service
- Microsoft ASP.NET ValidateRequest Filters Bypassing Allows XSS And HTML Injection Attacks
- Apache HTTP Server mod_proxy_ftp Wildcard Characters Cross-Site Scripting
- Sun Solaris snoop SMB Exploit
- Version-Independent IOS Shellcode
- Postfix local root vulnerability: CVE-2008-2936
- AWStats Totals Multiple Vulnerabilities (Exploit)
- Google Chrome Browser URL Handler Crash
- IP.Board 2.3.5 Multiple exploits.
- Distack - A Framework for Distributed Anomaly-based Attack Detection
- ขอขอบคุณ คุณ clone ที่ช่วย อัพเดต Exploit ว่าแต่ว่าลองเทสดูบ้างมั้ยครับเนี่ย
- Marvell Driver EAPoL-Key Length Overflow
- Remote Access VPN and SIP Vulnerabilities in Cisco PIX and Cisco ASA
- D-Link DIR-100 Long URL Filter Evasion
- Linux Kernel SCTP-AUTH API Information Disclosure Vulnerability and NULL Pointer Dereferences
- Joomla Weak Random Password Reset Token Vulnerability
- Personal FTP Server RETR DoS
- Wordpress user_login Column SQL Truncation Vulnerability
- Microsoft Windows WRITE_ANDX SMB Command Handling Kernel DoS
- Pro2col StingRay FTS Login Username Cross Site Scripting
- Opera Browser Vulnerable To UTF-8 Whitespace Characters
- MySQL Charset Truncation Vulnerability
- Cross-Site Scripting Filter Evasion in Various Frameworks / Applications
- Apple QuickTime IV32 Codec Parsing Stack Overflow Vulnerability
- Windows GDI+ GIF Memory Corruption (MS08-052)
- Apple QuickTime MDAT Frame Parsing Memory Corruption Vulnerability
- Apple QuickTime Player H.264 Parsing Heap Corruption Vulnerability
- QuickTime and iTunes Heap Overflow (Exploit)
- Femitter FTP Server RETR Denial of Service
- WonderWare SiteLink Denial of Service (Exploit)
- fhttpd Malformed Authorization Denial of Service
- Sagem Routers F@ST Remote CSRF Exploit (DHCP Hostname Attack)
- Debian Sarge Multiple IMAP Server DoS (debianimapers.c)
- Postfix Local Denial of Service (PIPE, Exploit)
- Chilkat XML ActiveX Arbitrary File Creation/Execution
- DESlock+ Local Denial of Service (Exploit)
- G DATA AntiVirus/InternetSecurity/TotalCare 2008 GDTdiIcpt.sys Memory Corruption Vulnerability
- McAfee SafeBoot Device Encryption Plain Text Password Disclosure
- InstallShield Update Agent "Rule Script" Code Execution Vulnerability
- strongSwan IKEv2 Denial of Service Vulnerability
- Aruba Mobility Controller Shared Default Certificate
- DATAC RealWin SCADA Software PreaAuth (Exploit)
- WordPress MU wpmu-Blogs.php Crose Site Scrpting Vulnerability
- MPlayer Real Demuxer Heap Overflow
- ABB PCU400 Buffer Overflow
- Google Docs (HTML code) Multiple Cross Site Scripting Vulnerabilities
- vxFtpSrv CWD Command Overflow
- MSN Shadow - Instant Messaging Forensics Tool
- Juniper Netscreen Firewall Cross-Site-Scripting (XSS) Event Log Injection
- VMware Emulation Flaw x64 Guest Privilege Escalation
- Apple CUPS HP-GL/2 filter Code Execution Vulnerability
- CA BrightStor ARCServe BackUp Message Engine Command Injection Vulnerability
- Apache Tomcat Information Disclosure (RemoteFilterValve)
- NoticeWare E-mail Sever (POP3) Pre-Auth DoS
- GuildFTPd CWD and LIST Heap Corruption PoC/DoS (Exploit)
- Token Kidnapping Windows 2003 (Exploit)
- Vulnerability in Active Directory Allows Code Execution (MS08-060)
- Cumulative Security Update for Internet Explorer (MS08-058)
- Sun Java Web Proxy Server FTP Resource Handling Heap-Based Buffer Overflow
- Vulnerability in Host Integration Server RPC Service Allows Code Execution (MS08-059)
- Instant Expert Analysis Command Execution
- Microsoft Visual Basic for Applications Multiple Vulnerabilities (MS08-057)
- Microsoft Windows AFD.sys Privilege Escalation (Kartoffel Plugin, Exploit, MS08-066)
- Vulnerabilities in Microsoft Excel Allows Code Execution (MS08-057)
- Internet Explorer 6 ComponentFromPoint() Memory Disclosure and Code Execution
- Lenovo Rescue and Recovery Local Kernel Overflow
- Novell eDirectory Multiple Vulnerabilities (dhost.exe)
- Sun Solstice AdminSuite sadmind adm_build_path() Buffer Overflow Vulnerability
- VLC Media Player XSPF Memory Corruption
- Telecom Italia Alice Pirelli Routers Backdoor Activates Telnet/FTP/TFTP
- Marvell Driver Malformed Association Request Vulnerability
- Graphviz Buffer Overflow Code Execution
- GearSoftware Powered Products Local Privilege Escalation (IopfCompleteRequest)
- iaxscan - IAX/2 Host Scanner
- Opera Stored Cross Site Scripting Vulnerability
- Vulnerability in Server Service Allows Code Execution (MS08-067)
- Achieving Persistent HTML Injection via SNMP on Embedded Devices
- HP OpenView Products Shared Trace Service Denial of Service
- Veritas Storage Foundation Arbitrary File Read Vulnerability
- Multiple Vulnerabilities in Cisco PIX and Cisco ASA
- EMC NetWorker Denial of Service Vulnerability
- Vulnerability in Server Service Allows Code Execution (MS08-067, PoC)
- File-Find-Object Format String Vulnerability
- Address Bar Spoofing Attacks Against Microsoft Internet Explorer 6
- [spoiler] HTML5 remote root exploit by p3Lo
- PacketTrap TFTPD DoS
- GreenSQL - an Open Source Database Firewall
- SSHFuZZ - Perl Based SSH Fuzzer
- Advanced Application-Level OS Fingerprinting: Practical Approaches and Examples
- Eaton MGE OPS Network Shutdown Module Authentication Bypass Vulnerability and Code Execution
- Trend Micro OfficeScan CGI Parsing Buffer Overflows
- OpenOffice EMF Record Parsing Multiple Integer Overflow Vulnerabilities
- Adobe PageMaker Key Strings Stack Buffer Overflow Vulnerability
- SonicWALL Content-Filtering Universal Script Injection Vulnerability
- Reflective Dll Injection
- CVS Fuzzer
- Oracle WebLogic Apache Connector
- IBM Tivoli Storage Manager Express for Microsoft SQL Heap Overflow Vulnerability
- Novell eDirectory NCP Get Extension Information Request Memory Corruption Vulnerability
- Adobe PageMaker PMD File Processing Buffer Overflows
- GNU Enscript "setfilename" Special Escape Buffer Overflow
- LibSPF2 DNS TXT Record Parsing Bug
- Altiris Deployment Server Agent Privilege Escalation
- VLC Media Player TiVo ty Processing Stack Overflow Vulnerability
- Miranda - UPNP Administration and Audit Tool
- Adobe Acrobat And Reader AcroJS Heap Corruption Vulnerability
- Adobe Reader Embedded Font Handling Out of Bounds Array Indexing Vulnerability
- 2WIRE DSL Router (xslt) Denial of Service Vulnerability
- PDFuzzer - PDF File Standard Fuzzer
- VLC Media Player RealText Processing Stack Overflow Vulnerability
- Orb Media Server Directory Traversal
- Multiple Vendor NOS Microsystems getPlus Downloader Stack Buffer Overflow Vulnerability
- ClamAV get_unicode_name() Off-By-One Buffer Overflow
- Openfire Jabber-Server Multiple Vulnerabilities
- VMware Emulation Flaw x64 Guest Privilege Escalation (IRET)
- Vulnerability in SMB Allows Code Execution (MS08-068)
- Hacking SOHO Routers
- Vulnerabilities in Microsoft XML Core Services Allow Code Execution (MS08-069)
- Stack-Based Buffer Overflow in the Network Manager of Castle Rock Computing (SNMPc)
- Checkpoint VPN-1 PAT Information Disclosure
- Microsoft Windows Active Directory LDAP Server Information Disclosure Vulnerability
- MP3 TAG Fuzzer
- Opera file:// Overflow
- Browser Rider
- iPhone Configuration Web Utility for Windows Directory Traversal
- Streamripper Multiple Buffer Overflows
- Google Chrome MetaCharacter URI Obfuscation Vulnerability
- Amaya URL Bar Stack Overflow Vulnerability
- Exomind
- PHP dba_replace() Arbitrary File Destruction
- Format String Exploitation Demonstration (Linux)
- RSH Fuzzer
- VNC Server Fuzzer
- Frame Pointer Overwrite Demonstration (Linux)
- PHP SAPI php_getuid() Overload
- Multiple listen()s on Same Socket Corrupts the Linux Vcc Table
- Sun Java Multiple Vulnerabilities
- Nokia N70/N73 Bluetooth Stack OBEX Implementation Denial of Service
- Internet Explorer 8.0 Beta 2 Anti-XSS Filter Vulnerabilities
- CA ARCserve Backup RPC "handle_t" Argument Vulnerability
- CA ARCserve Backup LDBserver Vulnerability
- Microsoft Word Malformed FIB Arbitrary Free Vulnerability (MS08-072)
- Microsoft Hierarchical FlexGrid Control Integer Overflows (MS08-070)
- Vinagre show_error() Format String Vulnerability
- Aruba Mobility Controller Malformed EAP Frame DoS Vulnerability
- JPEG Fuzzer
- PHP APC Vulnerable to Local Attacks
- Fujitsu-Siemens WebTransactions Command Injection Vulnerability
- Firefox Cross-Domain Text Theft
- Sun Solaris SIOCGTUNPARAM IOCTL Kernel NULL Pointer Dereference
- PHP mbstring Buffer Overflow Vulnerability
- PGP Desktop PGPwded.sys Denial of Service
- WiFi Router COMTREND Multiple Vulnerabilities
- Qemu and KVM VNC Server Remote DoS
- Trend Micro HouseCall ActiveX Control Arbitrary Code Execution
- Roundcubemail PHP Arbitrary Code Injection
- Microsoft Internet Explorer XML Buffer Overflow (Exploit)
- Zerowine Sandbox
Powered by vBulletin® Version 4.2.5 Copyright © 2025 vBulletin Solutions Inc. All rights reserved.