windows exploits
Page 1 of 4526 exploits
Title Author Platform Source Description Date
win32k!EPATHOBJ::pprFlattenRec Uninitialized Next Pointer Testcase Tavis Ormandy windows exploit-db.com I'm quite proud of this list cycle trick, here's how to turn it into an arbitrary write. First, we create a watchdog thread that will patch the list atomically when we're ready. This is needed because we can't exploit the bug while HeavyAllocPool is failing, because of the early exit in pprFla Tuesday
Ophcrack 3.5.0 - Local Code Execution BOF xis_one windows exploit-db.com Exploit Title: ophcrack v3.5.0 - Local Code Execution BOF Date: 21.05.2013 Exploit Author: xis_one@STM Solutions Vendor Homepage: http://ophcrack.sourceforge.net/ Software Link: http://downloads.sourceforge.net/ophcrack/ophcrack-win32-installer-3.5.0.exe Version: 3.5.0 Tested Tuesday
Serva 32 TFTP 2.1.0 - Buffer Overflow Denial of service Sapling windows exploit-db.com Serva 32 TFTP Buffer overflow DoS 05/14/2013 Sapling Vendor homepage http://www.vercot.com/ Software Link: http://www.vercot.com/~serva/download/Serva_Non-Supporter_32_v2.1.0.zip Version 2.1.0 Only prior versions are not vulnerable Tested on Windows 8, Windows 7, Windows XP SP1-3 May 15
Quick Search Version 1.1.0.189 Buffer Overflow Vulnerability (SEH) ariarat windows exploit-db.com Exploit Title: Quick Search Version 1.1.0.189 Buffer Overflow vulnerability(SEH) Date: 14-05-2013 Exploit Author: ariarat Vendor Homepage: http://www.glarysoft.com/ Software Link: http://download.glarysoft.com/qsearchsetup.exe Version: 1.1.0.189 Tested on: [ Windows 7 & windows May 14
Adrenalin Player 2.2.5.3 - Buffer Overflow Exploit (SEH) seaofglass windows exploit-db.com Exploit Title: Adrenalin Player 2.2.5.3 Buffer Overflow Exploit(SEH) http://software.naver.com/software/summary.nhn?softwareId=MFS_100099 Author: seaofglass (seaofglass@korea.com) Version : 2.2.5.3 Tested on: WinXP3 KOR, Win7 KOR my $file = "adrenalin.m3u"; my $junk = "\x90" x 2172 May 13
MiniWeb MiniWeb HTTP Server (build 300) - Crash PoC dmnt windows exploit-db.com MiniWeb HTTP server (build 300, built on Feb 28 2013) by Stanley Huang http://sourceforge.net/projects/miniweb/files/miniweb/0.8/miniweb-win32-20130309.zip/download Heap corruption PoC - remote DoS Tested on Win7 SP1 RUS (x) dmnt 2013 import socket print 'Mini Web HTTP Server rem May 13
Lan Messenger sending PM Buffer Overflow(UNICODE) - Overwrite SEH Mehdi Esmaeelpour windows exploit-db.com Exploit Title: Lan Messenger Version 1.2 Buffer Overflow vulnerability - UNICODE(POC) Date: 09-05-2013 Exploit Author: ariarat Vendor Homepage: http://lmadhavan.com Software Link: http://lmadhavan.com/software/archive/lanmsg12.zip Version: 1.2 & may be old versions! Tested on: [ May 11
ColdFusion 9-10 - Remote Root Exploit HTP windows exploit-db.com !/usr/bin/env python -*- coding: utf-8 -*- intro=""" _ _ _______ _____ _ _ _______ Cold ,''' Fusion |_____| | |_____] \ / |______ Cold ,''' /-- Fusion | | | | \/ ______|. Cold -,__,' Fusion Name May 8
Microsoft Internet Explorer CGenericElement Object Use-After-Free Vulnerability metasploit windows exploit-db.com This file is part of the Metasploit Framework and may be subject to redistribution and commercial restrictions. Please see the Metasploit Framework web site for more information on licensing and terms of use. http://metasploit.com/framework/ require 'msf/core' class Met May 7
ABBS Audio Media Player v3.1 (.lst) Buffer Overflow Julien Ahrens windows exploit-db.com !/usr/bin/python Exploit Title: ABBS Audio Media Player v3.1 (.lst) Buffer Overflow Version: v3.1 Date: 2013-05-04 Author: Julien Ahrens (@MrTuxracer) Homepage: http://www.inshell.net Software Link: http://abbs.qsnx.net/ Tested on: Windows XP S May 4
AudioCoder 0.8.18 - Buffer Overflow Exploit (SEH) metacom windows exploit-db.com !/usr/bin/env ruby Exploit Title:AudioCoder 0.8.18 Buffer Overflow Exploit (SEH) Download link :http://www.mediacoderhq.com/getfile.htm?site=dl.mediacoderhq.com&file=AudioCoder-0.8.18.exe Vulnerable Product:AudioCoder Date (found): 30.04.2013 Date (publish): 01.05.2013 RST Auth May 2
Easy Icon Maker 5.01 - Crash PoC Asesino04 windows exploit-db.com Exploit Title: Easy Icon Maker Version 5.01 Crash Poc vulnerability Date: 28-04-2013 Exploit Author: Asesino04 Vendor Homepage: [link] Software Link: http://www.icon-maker.com/iconmaker.exe Version: 5.01 & old versions Tested on: [ Windows 7] Introduction : -------------- May 1
FuzeZip 1.0.0.131625 - SEH Buffer Overflow RealPentesting windows exploit-db.com !/usr/bin/python Exploit Title: SEH BUFFER OVERFLOW IN FUZEZIP V.1.0 Date: 16.Apr.2013 Vulnerability reported Exploit Author: Josep Pi Rodriguez, Pedro Guillen Nunez , Miguel Angel de Castro Simon Organization: RealPentesting Vendor Homepage: http://fuzezip.com/ Software Link: ht May 1
WinArchiver 3.2 - SEH Buffer Overflow RealPentesting windows exploit-db.com /usr/bin/python Exploit Title: Winarchiver V 3.2 SEH Overflow Date: April 24, 2013 Exploit Author: Josep Pi Rodriguez, Pedro Guillen Nunez , Miguel Angel de Castro Simon Organization: RealPentesting Vendor Homepage: http://winarchiver.com Software Link: http://www.winarchiver.com May 1
WPS Office Wpsio.dll - Stack Buffer Overflow Vulnerability Zhangjiantao windows exploit-db.com WPS Office Wpsio.dll Stack Buffer Overflow Vulnerability PoC: http://www.exploit-db.com/sploits/25140.tgz 1 Summary CVE number: CVE-2012-4886 Impact: High Vendor homepage: http://www.wps.cn Credit: Zhangjiantao of Hangzhou DPtech Technologies 2 Affected Prodects Affected Version: http:// May 1