D-Link DCS Series cross site request forgery proof of concept exploit that changes the administrative password.
462336720342a33c37db14e736a20f89Unity 3D Web Player versions 3.2.0.61061 and below suffer from a heap corruption vulnerability. Proof of concept code included.
78995a7cc67979968e3cc82724006b6bBuzz build versions 1458 and below suffer from memory corruption and various overflows. Proof of concept included.
271426f3be4cf6bb6c2ad3431207e2e4DAMN Hash Calculator version 1.5.1 local heap overflow proof of concept exploit.
f55e391a79cdbbd769fede54fe6e6a68PCAnywhere version 12.5.0 build 463 proof of concept denial of service exploit.
3adde43fc3d290370fc7760155fc4d32Novell GroupWise Messenger versions 2.1.0 and below suffer from an arbitrary memory write vulnerability. Proof of concept code included.
1c4dab8bd719e7ad36939e5a219e45bfNovell GroupWise Messenger versions 2.1.0 and below suffer from a memory corruption vulnerability. Proof of concept code included.
a3264996d4507d2fb61bcf255efa34bdNovell GroupWise Messenger Client versions 2.1.0 and below suffer from a unicode stack overflow vulnerability. Proof of concept code included.
31187ed87f4d43291a5e81bcfa24524cXnView versions 1.98.5 and below suffer from an integer overflow and multiple heap overflows. Proof of concept code included.
6d5dbe1b14e11651821693877b2e0f5aThree proof of concept exploits that demonstrate denial of service vulnerabilities in Typsoft FTP server version 1.10.
df9286e98ac358e8f0a5ed272a271e60PHP version 5.4.0RC6 64-bit denial of service proof of concept exploit.
22912a3e52687fee6a2c7f5901009265Edraw Diagram Component 5 active-x buffer overflow proof of concept denial of service exploit.
5a3099601a2eb1fa3965cbeb5638f7cdPHP 5.4SVN-2012-02-03 htmlspecialchars/entities buffer overflow proof of concept exploit.
0ec258ee89e3cba85e56bae3a3aa7458The NetSarang Xlpd printer daemon version 4 suffers from a remote denial of service vulnerability. Proof of concept exploit included.
1f73370101126577cb2918b7b219cb82OfficeSIP Server version 3.1 suffers from a remote denial of service vulnerability. Proof of concept exploit included.
d61f8a780cad6789df615b592eb0101bProof of concept exploit that demonstrates the Webkit normalize bug for Android version 2.2.
544c60d8472014aaaac1318b58c9c5cfProof of concept code for a vulnerability in protocol.c from Apache versions 2.2.x through 2.2.21. The issue is that it does not properly restrict header information during construction of Bad Request (aka 400) error documents, which allows remote attackers to obtain the values of HTTPOnly cookies.
657f1bf4056ef716235936fdcd302d24This proof of concept demonstrates how traffic load of a shared packet queue can be exploited as a side channel through which protected information leaks to an off-path attacker.
64bc671666fc26d1a6fbcfea2dbc73f5The paper demonstrates how traffic load of a shared packet queue can be exploited as a side channel through which protected information leaks to an off-path attacker. The attacker sends to a victim a sequence of identical spoofed segments. The victim responds to each segment in the sequence (the sequence is reflected by the victim) if the segments satisfy a certain condition tested by the attacker. The responses do not reach the attacker directly, but induce extra load on a routing queue shared between the victim and the attacker. Increased processing time of packets traversing the queue reveal that the tested condition was true. The paper concentrates on the TCP, but the approach is generic and can be effective against other protocols that allow to construct requests which are conditionally answered by the victim.
3f661f7510db6f7555090f64d98e634eHashCollision denial of service proof of concept exploit written in Python. It generates the payload on the fly and sends it to the server.
67ebecc0f2bc16cbac57e3f28f645964Proof of concept malicious .docm file that exploits the Microsoft Windows Assembly Execution vulnerability as described in MS12-005.
70632bf8d9461a54e125937fb11edddcHashCollision denial of service proof of concept exploit written in Python. It generates the payload on the fly and sends it to the server.
005862b9f48d4aeccfbafbfa328962a4This proof of concept reverse engineering code demonstrates SEHOP chain validation.
51cce128eb69749ce5846a7d9b1c95f0S.S.T (Save Typed Text) javascript proof of concept keylogging code.
80322d53bae1f81df3bae32d7ddf76cdPHP 4 hash collision proof of concept code that computes hash values for form parameters.
ea16bf2c76f5634fa3f2084454c76ac7