AVE.CMS versions less than 2.09 suffer from a remote blind SQL injection vulnerability in the "module" parameter. This is a proof of concept exploit. This issue is addressed in later versions.
a58ccee98e2766a83b2334654aae4e4bd323c91cb8f725358879fb1018be8100
CPE17 Autorun Killer ASCII buffer overflow exploit that affects version 1.8.6 Build 1590.
45ab5709f7ce5a9b5b68d340ae0ccc07940d06d214a49b66c1a95d74abcfd8e6
This Metasploit module exploits a stack-based buffer overflow in Photodex ProShow Producer version 5.0.3256 in the handling of the plugins load list file. An attacker must send the crafted "load" file to victim, who must store it in the installation directory. The vulnerability will be triggered the next time ProShow is opened. The module has been tested successfully on Windows XP SP3 and Windows 7 SP1.
bf2514d474a7b08d3b8119c8f11509c92a1414014f2de791e9a5e94b2b9e0c03
This Metasploit module exploits a vulnerability in Simple Web Server 2.2 rc2. A remote user can send a long string data in the Connection Header to cause an overflow on the stack when function vsprintf() is used, and gain arbitrary code execution. The module has been tested successfully on Windows 7 SP1 and Windows XP SP3.
ef2c81d5811597767d04bfb232a9ea85a237262aae453dc634269ab733bcb34c
Photodex ProShow Producer version 5.0.3256 suffers from a local buffer overflow vulnerability.
50caa61a6cda5f39084b84fc53136cccd56d8531cd35dd0dc9735dff2990b27e
SimpleWebServer version 2.2-rc2 remote buffer overflow exploit that achieves code execution.
d479bd8f4fea4bdf5c0972e056189d54814dde491f87ef49ea5a3093231a8ef1
easyCMSlite version 1.0.9 suffers from a remote database information disclosure vulnerability.
d76b243f67795b89da6846818d5643c0c788edbdf1c583ff25b07a351804feaa
OneFileCMS version 1.1.5 suffers from a local file inclusion vulnerability.
374d0feea3c6241c41e6338e5efe95a1833cfa4a441626cc52a7a494adbb4a56
KnFTP server version 1.0.0 remote buffer overflow exploit that leverages the USER command.
ad1af12d60d187a995b54043229d49d25f922fbb2e08bf4d92ad939e4049bace
Elxis 2009.3 Aphrodite revision 2681 suffers from session hijacking and cross site scripting vulnerabilities.
6853ff54db246a851ff65855ce0587e82b1e4c17f553bbae6f936d19871293a1
OneFileCMS version 1.1.1 suffers from a remote code execution vulnerability.
568916ae1bfa0785b4f38ed90417d0bd60f364698078a6fb9c0a9e5a505ebbcd
OneFileCMS version 1.1.1 suffers from cross site request forgery and cross site scripting vulnerabilities.
a1620e9581fa597f9b0bb5213157d28b206572797c7ad1b7886b07efbef3c4d1
EZ-ShoPwner version 0.1 is a pwning tool for EZ-Shop. It allows an attacker to extraction various data from the database and spawns shells through netcat and metasploit.
1fc3948c671c1e438acc8650cb921e2591859e8c2074ef94762c3a35e1a74daa
Xitami Web Server version 2.5b4 remote buffer overflow exploit that spawns a shell.
d74f1c9cc0694320046e368dd4c524292f1aa8c23e024ab073a7ec3cae132bc9
WarFTPD version 1.65 USER remote buffer overflow exploit.
e6546c6df1507850819e3f17350110c5e82baa33b4be814da0753b293680e7b7