Cisco VPN Client 0day integer overflow denial of service proof of concept code.
142bea9a4f77b4e9264718284df5e0a2a9694680c035f320894fc7e1f5fcd792
Proof of concept denial of service exploit for the Samsung DVR SHR-2040.
f173614a1597153ec3b59cabe2a7e09d31c193e2ae9d282668f9b81a1b960b2d
An Insecurity Overview of the Samsung DVR SHR-2040.
365bacaa549cc4b8728baff6b78163b0b7ac855f06d5191d8fb1f5d06a90cef0
Whitepaper discussing privilege escalation vulnerability in the Symantec Altiris Deployment Solution.
2fc81172db8cad360b6b8a9a6ecafd03ebc2aeeecdb3406f9337639913e4d644
Symantec Altiris Client Service versions 6.5.248, 6.5.299, and 6.8.378 local privilege escalation exploit. Based on the vulnerability noted in MS04-019.
f1cad553cb21404e91c8a9c6e6ccb9b9a40445cde887bdb7e08dc593a46a8c79
March networks DVR 3204 logfile information disclosure exploit.
a8de9f2ff246734bbfaa7def4155ecf81a21aecd1eef7445b563c86d73e1d08c
Whitepaper called An Insecurity Overview of the March networks DVR-CCTV 3204.
272d573166df365763980b1a1734f4622be73e3d1c9175afd0c35ef2ecdd1cbd
Airsensor M520 httpd remote preauth denial of service buffer overflow proof of concept exploit.
392a2c06e846eb34be94f8491f3cd9e418fb9922ce9d10cb8550bc8ea7efb3db
Whitepaper called Tactical Exploitation and Response Over Solaris Sparc 5.8/5.9 systems.
6608bd953c5fb32d95cbbe74636f7a82f56e28a44f64441079dd58df993f8107
Slrnpull '-d' buffer overflow exploit. Executes shellcode with group 'news' privileges. Tested to work on an Intel Red Hat 6.2 installation .
eccfcdb6d3ad013958b3649b816be1230bf50ad9509fddc11a59fc1c14880407
Sharity Cifslogin Buffer Overflow - Several command line options can be made to crash /opt/cifsclient/bin/cifslogin, local root is possible.
8f90a70db1881faaf91f285d05768df02e91bbfd9008ee9584cc954887ea8e03
Slrnpull, which is installed sgid root on RedHat 6.2, contains an exploitable buffer overflow in the -d parameter.
3950879882b96a2f764f65ca4f6bcaf9fe87f1de9f0abfc1ef9d7a26911d5c12
The Xerver Free Web Server v2.10 contains file disclosure and denial of service vulnerabilities. Platforms affected include Windows, Linux, BSD, Solaris, and Mac. Exploits included.
38182b4e729c84958d0fc82d0597349a14e9eea6c1efb3b69df525ff368496eb
Cobalt's RAQ 4 server has three remote vulnerabilities. The service.cgi script has a cross site scripting vulnerability because it incorrectly parses the incoming searches and includes HTML tags and Javascript in the result. A directory traversal vulnerability allows attackers to read restricted files or passwords and profiles the users. In addition, a very long URL string will crash the service. Exploits included.
5ff610883de6c62b6e21a04a4afd2e050469e4e36cf69e6665831f6d3baaed70
The Phusion Webserver v1.0 for Windows 9x/NT/2000 contains three remote vulnerabilities which allow users to see and retrieve any file on the server. Exploit information included.
803f44e633274876ffbcfb29b2146327c1f1601a0dfad1a62a327fe9914c10b2
Defcom Labs Advisory def-2001-19 - Innfeed has local stack overflow vulnerabilities in the logOrPrint() function which can be exploited to give uid=news. Tested on Slackware 7.1, Mandrake 7.0, and RedHat 7.2. Includes a patch, proof of concept exploit x-startinnfeed.c, and a shell script to brute force the offset.
4138178fdea0de7a98d769d075ebec0aa842b1ff03426901f91cd2c8b12ac932
Fpage-DoS.pl - Info based attacks DoS Front page. To exploit this vunerability you must have the extensions "/ _ vti_bin/shtml.exe in your server. This is a demonstration script to remotely overflow various server buffers, resulting in a denial of service, for TESTING purposes only. Runs on *nix & Windows with perl.
fd30db3d59fb11eebed664de7828aa72bf38858d22179822a5620979f47adbd7