header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

xeCMS 1.0.0 RC 2 Remote Command Execution Exploit

This exploit allows an attacker to execute arbitrary commands on the vulnerable system. It is done by sending a specially crafted HTTP request to the target system. The exploit uses the LWP::UserAgent module to send the malicious request and the HTTP::Cookies module to set the cookie values.

Winamp 5.12 Remote Buffer Overflow Universal Exploit (Zero-Day)

Winamp 5.12 is vulnerable to a remote buffer overflow vulnerability. This exploit creates a crafted.pls file which when opened with Winamp, launches a Calculator (calc.exe). The exploit can also be used remotely by making a HTML page containing an iframe linking to the .pls file.

XSS Attack Vectors in phpBB Forums

As long as HTML is ON in the latest version of phpBB forums, several XSS attack vectors are possible. phpBB incorrectly filters in both messages and profiles, making cookie stealing, and other XSS attacks possible. The exploit leads to arbitrary JavaScript execution, which in turn can lead to HTML defacement. Use of the <pre> tag means that the cursor must pass it in the y direction only. e.g. the mouse only needs to cross a point horizontally equal to the link in order for the JavaScript to be executed.

Cerberus FTP Server 2.32 Denial of Service

Cerberus FTP Server version 2.32 is vulnerable to a denial of service attack. An attacker can send a specially crafted string of data to the FTP server, causing it to crash. This exploit was discovered by cvh and exploit by Pi3cH from KAPDA - Computer Security Science Researchers Institute.

Recent Exploits: