RunCMS version 2M1 /modules/forum/post.php semi-blind remote SQL injection exploit.
9755d685724246ee4a10ee140b892754Novell eDirectory version 8.8 SP5 for Windows proof of concept buffer overflow exploit.
453bca7988f2f24cb5de8234768537fbIt appears that manipulation of file descriptors via /proc can circumvent permissions on parent directories of the file.
43ddfec3b4e663a94f8e7c784aeb31a8Pegasus Mail Client version 4.51 suffers from a remote buffer overflow vulnerability. Proof of concept denial of service code included.
6b9040c53e0c1197f0131e4112e3e806Eureka Mail Client version 2.2q suffers from a remote buffer overflow vulnerability. Proof of concept denial of service code included.
beb4542e9762edd2816a9576dae31553Facebook has an open redirector. It may be by design and the debate goes on about the use of these, but it is there nonetheless.
01758e24d271f794579e501ded632b44nginx versions 0.7.0 through 0.7.61, 0.6.0 through 0.6.38, 0.5.0 through 0.5.37, and 0.4.0 through 0.4.14 suffer from a remote null pointer dereferencing vulnerability. Proof of concept code included.
14adedcf029f6a34749e1f0d7b331821The Joomla Photo Blog component versions Alpha 3 and Alpha 3a suffer from a remote SQL injection vulnerability.
175bd358f08718e8358ededa5678e01dThe Joomla JShop component suffers from a remote SQL injection vulnerability.
70ea3c1b3ac59a2a05d4e19f0856b6e6GPG4Win GNU Privacy Assistant proof of concept crash exploit.
c0040a6bd64597ff98fb48ee354d95e5Mongoose Web Server versions 2.8.0 and below suffer from a remote source disclosure vulnerability.
57c4ddacd4d567188c15081908ef7f87Snort versions 2.8.5 and below suffer from an IPv6 related remote denial of service vulnerability.
3c22f17e6a527be646ae04024532eba1TwonkyMedia Server versions 4.4.17 and below and 5.0.65 and below suffer from multiple cross site scripting vulnerabilities.
784142affb4a1ea0c01fb26aa68c7d4eVivvo CMS version 4.1.5.1 suffers from a remote file disclosure vulnerability.
360b4a9d73951843936418fba3ef120bGPG2/Kleopatra version 2.0.11 malformed certificate proof of concept crash exploit.
883d80e50dd25567e2d109ea840a1b36httpdx versions 1.4.6b and below suffer from a remote source disclosure vulnerability.
57f8d5a9a7801d378ac577bb84c37d9bAlleycode HTML Editor version 2.2.1 local overflow exploit that creates a malicious .html file.
fc1ec70f858591e844054860facbaca4Websense Email Security suffers from a cross site scripting vulnerability. Proof of concept code included.
dc4e383f65ff502591b67ad9deedb564The Websense Email Security web administration frontend suffers from a remote denial of service vulnerability. Proof of concept code included.
1d5cceb962cb6f2a9fb10f6049ace65dOpenDocMan version 1.2.5 suffers from cross site scripting and a remote SQL injection vulnerability that allows for authentication bypass.
1244726c9da6f364e1b486bad736fd2eSouth River Technologies WebDrive Service suffers from a local elevation of privileges vulnerability due to a bad security descriptor.
3f8bfe2ea9cbed59ef5e66d42c0062b7EMC RepliStor Server (rep_serv.exe) version 6.3.1.3 remote denial of service proof of concept exploit.
c2cabd5f894b675d3629468152fb0d3eBoxalino suffers from a directory traversal vulnerability.
366da064432d058a1a415fb3f17ba27eA restricted shell break out is possible in Overland Guardian OS that allows a user to achieve uid 0 privilege escalation.
0f47894a559476349893f9021d14b716Joomla Book Library component version 1.0 suffers from a remote file inclusion vulnerability.
89097808011a11a12f745242df7ccaa3