header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Microsoft IIS Malformed URI DoS (_vti_bin, _sharepoint) Exploit

This exploit is a denial of service attack against Microsoft IIS servers. It sends a malformed HTTP request to the server, which causes the server to crash. The exploit is triggered by sending a specially crafted HTTP request with a range header containing a byte range that is out of bounds. The exploit is triggered by sending a specially crafted HTTP request with a range header containing a byte range that is out of bounds.

Windows XP/2003 Metafile Escape() SetAbortProc Code Execution

This module exploits a vulnerability in the GDI library included with Windows XP and 2003. This vulnerability uses the 'Escape' metafile function to execute arbitrary code through the SetAbortProc procedure. This module generates a random WMF record stream for each request.

PhpGedView <= 3.3.7 remote commands execution

This exploit allows an attacker to execute arbitrary commands on a vulnerable server running PHPGedView 3.3.7 or earlier. The attacker must have access to the Apache web server in order to launch the exploit. The exploit requires the attacker to fill in the requested fields, after which the attacker can execute arbitrary commands on the vulnerable server.

Oracle 9i XDB HTTP PASS Overflow (win32)

This module exploits a stack overflow in the authorization code of the Oracle 9i HTTP XDB service. David Litchfield, has illustrated multiple vulnerabilities in the Oracle 9i XML Database (XDB), during a seminar on 'Variations in exploit methods between Linux and Windows' presented at the Blackhat conference.

Recent Exploits: