header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

TORQUE Resource Manager 2.5.x-2.5.13 stack based buffer overflow stub

A buffer overflow while parsing the DIS network communication protocol is triggered when requesting that a larger amount of data than the small buffer be read. The first digit supplied is the number of digits in the data, the next digits are the actual size of the buffer. This exploit stub is meant to be a quick proof of concept and was built and tested for a 64 bit system with ASLR disabled. The result of this exploit is intended to just point RIP at 'exit()'.

Easy File Sharing FTP Server 3.5 stack buffer overflow

A buffer overflow is triggered when when a large password is sent to the server. h07 found this bug in 2006, targetting EFS FTP Server 2.0. The original exploits relied on OS DLLs to reference a pop/pop/retn address to leverage a SEH attack. This was a bit unreliable as different versions of Windows would have different addresses and the exploit would need to be modified with the correct pop/pop/retn address. Fast forward to 2014. EFS FTP Server is now at version 3.5 (2012) and includes new features, such as SSL support. Ironically, by adding SSL support, they've given us a reliable pop/pop/retn address in the included SSLEAY32.DLL! This exploit should work reliably with any Windows release.

Symantec Workspace Streaming Arbitrary File Upload

This module exploits a code execution flaw in Symantec Workspace Streaming. The vulnerability exists in the ManagementAgentServer.putFile XMLRPC call exposed by the as_agent.exe service, which allows for uploading arbitrary files under the server root. This module abuses the auto deploy feature in the JBoss as_ste.exe instance in order to achieve remote code execution. This module has been tested successfully on Symantec Workspace Streaming 6.1 SP8 and Windows 2003 SP2. Abused services listen on a single machine deployment, and also in the backend role in a multiple machine deployment.

Zyxel P-660HW-T1 v3 Wireless Router – CSRF Vulnerabilities

This vulnerability was tested at the P-660HW-T1 devices. Admin panel is open you can run remote code destination. You can send the form below to prepare the target. Please offending. Being partners in crime.

CVE-2014-0196: Linux kernel <= v3.15-rc4: raw mode PTY local echo race condition

This exploit is a slightly-less-than-POC privilege escalation exploit for Linux kernels >= v3.14-rc1. It attempts to overflow into a tty_struct, which can be used to gain root privileges. There is a 1/4 chance that the overflow will go off the end of a slab, which may lead to a kernel oopsing in a bad state.

Remote Comand Execution on books.cgi Web Terra v. 1.1

A vulnerability in books.cgi Web Terra v. 1.1 allows an attacker to execute arbitrary commands on the vulnerable system. This is achieved by sending a specially crafted HTTP request to the vulnerable server, containing a command in the 'file' parameter. The command is executed by the web server with the privileges of the web service. The vulnerability is due to insufficient sanitization of user-supplied input.

Easy File Management Web Server 5.3 stack buffer overflow

By setting UserID in the cookie to a long string, we can overwrite EDX which allows us to control execution flow when the following instruction is executed: 0x00468702: call dword ptr [edx+28h]. Very similar to Easy File Sharing Web Server 6.8 exploit.

AoA MP4 Converter ActiveX

A buffer overflow vulnerability exists in AoA MP4 Converter ActiveX, which could allow an attacker to execute arbitrary code on the vulnerable system. The vulnerability is due to a boundary error when handling a specially crafted HTML page. An attacker can exploit this vulnerability by enticing a user to view a malicious HTML page. Successful exploitation could result in arbitrary code execution in the context of the user running the application.

Recent Exploits: