Cisco VPN Client 0day integer overflow denial of service proof of concept code.
7e510e9de03030493f7d24697b283b22Proof of concept denial of service exploit for the Samsung DVR SHR-2040.
b9d63562ccf567202d43f490bee3c6cfAn Insecurity Overview of the Samsung DVR SHR-2040.
b885df143355b20ca9ab10e3540514f1Whitepaper discussing privilege escalation vulnerability in the Symantec Altiris Deployment Solution.
7b154786710db1561e36d1a40d1f30cbSymantec Altiris Client Service versions 6.5.248, 6.5.299, and 6.8.378 local privilege escalation exploit. Based on the vulnerability noted in MS04-019.
c09a21fc404f17fb885125e45f0dd579March networks DVR 3204 logfile information disclosure exploit.
0085b0937b8aed9756601f2b449c0e65Whitepaper called An Insecurity Overview of the March networks DVR-CCTV 3204.
79f1225e7519daf51b4272b4d5f3628bAirsensor M520 httpd remote preauth denial of service buffer overflow proof of concept exploit.
3266eb65c82294c12865f53eeb262f5fWhitepaper called Tactical Exploitation and Response Over Solaris Sparc 5.8/5.9 systems.
3962f69a9bdfdfd8992709b3607b0bbdSlrnpull '-d' buffer overflow exploit. Executes shellcode with group 'news' privileges. Tested to work on an Intel Red Hat 6.2 installation .
ddc9cde518d7a4282d6cb3248b448e48Sharity Cifslogin Buffer Overflow - Several command line options can be made to crash /opt/cifsclient/bin/cifslogin, local root is possible.
2d29787189ee4f62894a2a1c4b62575eSlrnpull, which is installed sgid root on RedHat 6.2, contains an exploitable buffer overflow in the -d parameter.
e727d27dc99c824a299ee980cd83a57bThe Xerver Free Web Server v2.10 contains file disclosure and denial of service vulnerabilities. Platforms affected include Windows, Linux, BSD, Solaris, and Mac. Exploits included.
f5c20e4013a63f1117a415ea47a3fc93Cobalt's RAQ 4 server has three remote vulnerabilities. The service.cgi script has a cross site scripting vulnerability because it incorrectly parses the incoming searches and includes HTML tags and Javascript in the result. A directory traversal vulnerability allows attackers to read restricted files or passwords and profiles the users. In addition, a very long URL string will crash the service. Exploits included.
a4e649e09cdd871f9843ce8582d573d5The Phusion Webserver v1.0 for Windows 9x/NT/2000 contains three remote vulnerabilities which allow users to see and retrieve any file on the server. Exploit information included.
b4e2fc8e7e9cdd04853f63e4c5e9440cDefcom Labs Advisory def-2001-19 - Innfeed has local stack overflow vulnerabilities in the logOrPrint() function which can be exploited to give uid=news. Tested on Slackware 7.1, Mandrake 7.0, and RedHat 7.2. Includes a patch, proof of concept exploit x-startinnfeed.c, and a shell script to brute force the offset.
2eaa69329d2485b2cb87080a96b37137Fpage-DoS.pl - Info based attacks DoS Front page. To exploit this vunerability you must have the extensions "/ _ vti_bin/shtml.exe in your server. This is a demonstration script to remotely overflow various server buffers, resulting in a denial of service, for TESTING purposes only. Runs on *nix & Windows with perl.
4ef33313379701100a8e4dac1ecbb646