This Metasploit module exploits a stack-based buffer overflow in WebEx's WebexUCFObject ActiveX Control. If an long string is passed to the 'NewObject' method, a stack- based buffer overflow will occur when copying attacker-supplied data using the sprintf function. It is noteworthy that this vulnerability was discovered and reported by multiple independent researchers.
f2d99a88beab4e4dd35711d91502b078Download Accelerator Plus (DAP) version 8.6 buffer overflow exploit that makes use of AniGIF.ocx.
5d0b2443db23568139f7e080d9e8e52fIntelliTamper version 2.0.7 html parser remote buffer overflow exploit.
768f68895d134f16b4510549cd649793PPMate PPMedia Class ActiveX control buffer overflow proof of concept exploit.
4d9ad3253238356563e1b7be4ea643d7IGSuite version 3.2.4 reverse shell blind SQL injection exploit.
d5b8736b7f4508d45588887f2559e3dcrdesktop version 1.5.0 BSS overflow vulnerability proof of concept exploit that makes use of process_redirect_pdu().
4dd0d30ddab49e31e492dd01e046c7fbrdesktop version 1.5.0 integer underflow proof of concept exploit that takes advantage of iso_recv_msg().
bfe5e7576091da077e34f5dc84361bd2xine-lib versions 1.1.12 and below suffer from a stack-based buffer overflow vulnerability in the NES sound format demuxer (demux_nsf.c).
41575cac046f8a7bcba8c4586122dbc4Pligg CMS version 9.9.0 suffers from a remote SQL injection vulnerability in editlink.php.
0e9ff27639af7c7886f628d386baed62