dos exploits
Page 1 of 2380 exploits
Title Author Platform Source Description Date
win32k!EPATHOBJ::pprFlattenRec Uninitialized Next Pointer Testcase Tavis Ormandy windows exploit-db.com I'm quite proud of this list cycle trick, here's how to turn it into an arbitrary write. First, we create a watchdog thread that will patch the list atomically when we're ready. This is needed because we can't exploit the bug while HeavyAllocPool is failing, because of the early exit in pprFla Tuesday
nginx 1.3.9-1.4.0 DoS PoC Mert SARICA linux exploit-db.com Exploit Title: nginx v1.3.9-1.4.0 DOS POC (CVE-2013-2070) Google Dork: CVE-2013-2070 Date: 16.05.2013 Exploit Author: Mert SARICA - mert [ . ] sarica [ @ ] gmail [ . ] com - http://www.mertsarica.com Vendor Homepage: http://nginx.org/ Software Link: http://nginx.org/download/nginx-1 May 17
Serva 32 TFTP 2.1.0 Denial Of Service Sapling na packetstormsecurity.org Serva 32 TFTP version 2.1.0 suffers from a buffer overflow that can lead to a denial of service vulnerability. May 15
Serva 32 TFTP 2.1.0 - Buffer Overflow Denial of service Sapling windows exploit-db.com Serva 32 TFTP Buffer overflow DoS 05/14/2013 Sapling Vendor homepage http://www.vercot.com/ Software Link: http://www.vercot.com/~serva/download/Serva_Non-Supporter_32_v2.1.0.zip Version 2.1.0 Only prior versions are not vulnerable Tested on Windows 8, Windows 7, Windows XP SP1-3 May 15
Quick Search Version 1.1.0.189 Buffer Overflow Vulnerability (SEH) ariarat windows exploit-db.com Exploit Title: Quick Search Version 1.1.0.189 Buffer Overflow vulnerability(SEH) Date: 14-05-2013 Exploit Author: ariarat Vendor Homepage: http://www.glarysoft.com/ Software Link: http://download.glarysoft.com/qsearchsetup.exe Version: 1.1.0.189 Tested on: [ Windows 7 & windows May 14
MiniWeb MiniWeb HTTP Server (build 300) - Crash PoC dmnt windows exploit-db.com MiniWeb HTTP server (build 300, built on Feb 28 2013) by Stanley Huang http://sourceforge.net/projects/miniweb/files/miniweb/0.8/miniweb-win32-20130309.zip/download Heap corruption PoC - remote DoS Tested on Win7 SP1 RUS (x) dmnt 2013 import socket print 'Mini Web HTTP Server rem May 13
No-IP Dynamic Update Client (DUC) 2.1.9 - Local IP Address Stack Overflow Alberto Ortega linux exploit-db.com !/usr/bin/env python Title: No-IP Dynamic Update Client (DUC) 2.1.9 local IPaddress stack overflow Author: Alberto Ortega @a0rtega alberto[@]pentbox[.]net Date: May 11 2013 (vulnerability discovered) Background: No-IP is probably the most used Dynamic DNS provide May 13
Lan Messenger sending PM Buffer Overflow(UNICODE) - Overwrite SEH Mehdi Esmaeelpour windows exploit-db.com Exploit Title: Lan Messenger Version 1.2 Buffer Overflow vulnerability - UNICODE(POC) Date: 09-05-2013 Exploit Author: ariarat Vendor Homepage: http://lmadhavan.com Software Link: http://lmadhavan.com/software/archive/lanmsg12.zip Version: 1.2 & may be old versions! Tested on: [ May 11
Huawei SNMPv3 Service - Multiple Buffer Overflow Vulnerabilities Roberto Paleari hardware exploit-db.com Multiple buffer overflows on Huawei SNMPv3 service [ADVISORY INFORMATION] Title: Multiple buffer overflows on Huawei SNMPv3 service Discovery date: 11/02/2013 Release date: 06/05/2013 Credits: Roberto Paleari (roberto.paleari@emaze.ne May 7
Easy Icon Maker 5.01 - Crash PoC Asesino04 windows exploit-db.com Exploit Title: Easy Icon Maker Version 5.01 Crash Poc vulnerability Date: 28-04-2013 Exploit Author: Asesino04 Vendor Homepage: [link] Software Link: http://www.icon-maker.com/iconmaker.exe Version: 5.01 & old versions Tested on: [ Windows 7] Introduction : -------------- May 1
WPS Office Wpsio.dll - Stack Buffer Overflow Vulnerability Zhangjiantao windows exploit-db.com WPS Office Wpsio.dll Stack Buffer Overflow Vulnerability PoC: http://www.exploit-db.com/sploits/25140.tgz 1 Summary CVE number: CVE-2012-4886 Impact: High Vendor homepage: http://www.wps.cn Credit: Zhangjiantao of Hangzhou DPtech Technologies 2 Affected Prodects Affected Version: http:// May 1
Syslog Watcher Pro 2.8.0.812 - (Date Parameter) - Cross Site Scripting Vulnerability demonalex windows exploit-db.com Title: Syslog Watcher Pro 'Date' Parameter Cross Site Scripting Vulnerability Software : Syslog Watcher Pro Software Version : v2.8.0.812(Jun 15, 2009) Vendor: http://www.snmpsoft.com/ Vulnerability Published : 2013-04-27 Vulnerability Update Time : Status : Impact : Medium(CVSS2 May 1
Memcached Remote Denial Of Service infodox na packetstormsecurity.org Memcached denial of service exploit for an issue disclosed on their bugtracker two years ago and was never patched. April 29
Cisco Linksys WRT310N 2.0.00 Denial Of Service Carl Benedict na packetstormsecurity.org Cisco Linksys WRT310N version 2.0.00 suffers from a remote denial of service vulnerability. April 24
Flightgear 2.0, 2.4 - Remote Format String Exploit Kurono windows exploit-db.com /* Exploit Title: Flightgear remote format string Date: 21/04/2013 Exploit Author: Kurono email: andresgomezram7@gmail.com Vendor Homepage: http://www.flightgear.org/ Software Link: http://www.flightgear.org/download/ Version: Tested on versions 2.0, 2.4. Tested on: Windows April 22