Limbo <= 1.0.4.2 _SERVER[REMOTE_ADDR] overwrite/ remote cmmnds xctn. This exploit works with register_globals off and regardless of magic_quotes_gpc settings.
The Hasbani-WindWeb/2.0 server crashes due to a loop in a specific GET request, causing a denial of service. The server enters an endless loop and crashes when an attacker sends a long crafted string in the GET request.
This exploit allows an attacker to corrupt the memory of Speed Commander 13.10 (.zip) application, potentially leading to arbitrary code execution.
This vulnerability allows an attacker to include local files on the server by exploiting an error in the 'jvehicles.php' file of the Jvehicles component in Joomla. By manipulating the 'controller' parameter in the URL, an attacker can traverse the file system and access sensitive files, such as the '/etc/passwd' file.
This exploit allows an attacker to remotely upload a file to the ADULT VIDEO SITE SCRIPT.
This exploit allows an attacker to perform SQL injection on Woltlab Burning Board Teamsite Hack V3.0 through the ts_other.php script. The exploit is written in Python.
A privilege escalation attack can be used as a backdoor to bypass login and run arbitrary code as a System user on Lenovo or Thinkpad laptops running Access Connection v5.33 and earlier versions (tracked back to version 4)
This is a remote exploit for NIPrint LPD-LPR Print Server version <= 4.10. It allows an attacker to execute arbitrary code on the target system. The exploit was found by KF and successfully tested on Windows XP version 5.1.2600.
Stack Overflow caused by long malformed string inside of <style type="txt/css"> </style>. Code will cause Apple Safari to crash throwing a stack overflow. Chrome will throw up the "Aw, Snap!".
This code snippet is vulnerable to HTML injection. An attacker can manipulate the form action URL or input fields to inject malicious HTML code.