Exploit
Routers And Switches
Cisco IOS 12.x/11.x HTTP integer overflow remote Exploit
Cisco IOS Remote Denial of Service Exploit using hping
Cisco IOS IPv4 Packet DoS Exploit (cisco-bug-44020.c)
Cisco IOS IPv4 Packets Denial of Service Exploit
- Internet Explorer Object Data Remote Exploit (M03-032)
- Microsoft Internet Explorer Object Tag Exploit (MS03-020)
( Opera 7.22 File Creation and Execution Exploit (Malicious Webserver)
- Microsoft Windows ASN.1 Library Buffer Overflow Exploit (MS04-007)
- Microsoft Windows Messenger Service Remote Exploit FR (MS03-043)
- Microsoft Windows XP Workstation Service Remote Exploit (MS03-049)
- Microsoft Workstation Service WKSSVC Remote Exploit (MS03-049)
- Windows ListBox/ComboBox Control Local Exploit (MS03-045)
- Windows 2000/XP Workstation Service Overflow (MS03-049)
- Microsoft Windows XP/2000 remote return into libc exploit
- Windows Messenger Service DoS Proof of Concept (MS03-043)
- Windows RPC2 Universal Exploit (MS03-039) & Remote DoS (RPC3)
- Windows RPC DCOM2 Remote Exploit Ver1.1 (MS03-039)
Windows RPC DCOM long filename heap overflow Exploit (MS03-039)
- Microsoft WordPerfect Document Converter Exploit (MS03-036)
- Windows RPC DCOM Remote Exploit with 48 TARGETS
- Windows RPC DCOM Buffer Overflow Remote Exploit
- Windows 2000 RPC DCOM Interface DoS Exploit
- Windows Media Services nsiislog.dll Remote Exploit (New)
- Windows Media Services Remote Exploit (MS03-022)
- Windows XP explorer.exe buffer overflow exploit
- Authentication flaw in Windows SMB protocol Exploit
- Microsoft Windows RPC Locator Service remote exploit
- Microsoft Windows ntdll.dll exploit trough WebDAV
UNIX - All Version
- Linux Kernel "do_mremap" Local Proof of Concept II
- Linux Kernel "do_mremap" Local Proof of Concept
- Linux kernel do_brk vma overflow local root exploit
- Linux Kernel 2.4.22 "do_brk()" local Root Exploit (PoC)
- Linux 2.4.20 kernel decode_fh Denial of Service Exploit
- Linux eXtremail 1.5.x Remote Format Strings Exploit
- Linux Kernel < 2.4.20 Module Loader Local Root Exploit
03.30.2003 - Linux kernel 2.2.x - 2.4.x ptrace/kmod local root exploit
HP-UX
12.16.2003 - HP-UX B11.11 /usr/bin/ct local format string Root Exploit
Solaris
- Solaris runtime linker (ld.so.1) buffer overflow Exploit (SPARC version)
- Solaris Sadmind Default Configuration Remote Root Exploit
Mandrake
- Mandrake Linux 8.2 /usr/mail local exploit (d86mail.pl)
OpenBSD
- OpenBSD 2.x - 3.3 exec_ibcs2_coff_prep_zmagic() kernel Exploit
- OpenBSD ibcs2_exec Kernel local Exploit
FreeBSD
- Firebird 1.0.2 FreeBSD 4.7-RELEASE local root exploit
SuSe
- SuSE linux 9.0 YaST config Skribt Local Exploit
- Microsoft SQL Server DoS Remote Exploit (MS03-031)
- MSSQL Server Named Pipe Privilege Escalation Exploit
- Microsoft Frontpage Server Extensions fp30reg.dll Exploit (MS03-051)
- Microsoft WebDav III remote root Exploit (xwdav)
- Microsoft WebDav II (New) remote root Exploit
- Microsoft IIS 5.0 - 5.1 remote denial of service Exploit
- IIS 5.0 WebDAV - Proof of concept - shellcode included
- OpenSSL parsing bugs (<=0.9.6j <=0.9.7b) BruteForce Exploit
- Apache 1.3.*-2.0.48 mod_userdir remote users disclosure Exploit
- Apache 1.3.x mod_mylo Remote code execution Exploit
- Apache <= 2.0.45 APR remote Exploit -Apache-Knacker.pl
- apache <= 2.0.44 DoS exploit for linux "th-apachedos.c"
- Apache HTTP Server 2.x Memory Leak Exploit
- Samba 2.2.8 remote root exploit - sambal.c
- Samba 2.2.x remote Buffer Overflow root exploit
- Samba 2.2.8 Remote Root exploit with bruteforce method
PHP
- PHP-NUKE version <= 6.9 'cid' sql injection Remote Exploit
- phpBB 2.0.6 search_id sql injection MD5 Hash Remote Exploit
- phpBB 2.0.5 SQL Injection password disclosure Exploit
ProFTPD
- ProFTPD 1.2.9RC1 mod_sql SQL Injection remote Exploit
- mIRC v6.1 "IRC" protocol Remote Buffer overflow Exploit
- ICQ Pro 2003a Password Bypass exploit (ca1-icq.asm)
Yahoo Messenger 5.5 Remote Exploit (DSR-ducky.c)
eMule/xMule/LMule OP_SERVERMESSAGE Format String Exploit
Serv-U FTPD
- Serv-U FTPD "SITE CHMOD" command remote exploit
- Serv-U FTPD 4.x "SITE CHMOD" Reverse Bindshell exploit
LeapFTP
- LeapFTP v2.7.x remote buffer overflow exploit
LFTP
- lftp <= 2.6.9 Remote Stack based overflow Exploit
Wu-ftpd
- WU-FTPD 2.6.2 Remote Denial Of Service Exploit (wuftpd-freezer.c)
- Wu-ftpd v2.6.2 Remote Root Exploit (advanced version)
- Wu-ftpd v2.6.2 off-by-one remote root Exploit
ProFTPd
- ProFTPd 1.2.7 - 1.2.9rc2 Remote Root & brute-force Exploit
- ProFTPD 1.2.9rc2 ASCII File Remote Root Exploit
- Microsoft Exchange 2000 XEXCH50 Heap Overflow PoC (MS03-046)
- Kerio MailServer 5.6.3 Remote Buffer Overflow Exploit
- Sendmail <= 8.12.8 prescan() BSD remote root exploit
- phpBB 2.0.4 Remote php File Include Exploit
- Tiny & Kerio Personal Firewalls remote root Exploit
- Kerio Personal Firewall 2.1.4 remote code exec exploit
- Oracle XDB FTP Service UNLOCK Buffer Overflow Exploit
Stunnel
- Stunnel <= 3.24, 4.00 Daemon Hijacking proof of concept
OpenSSH
- OpenSSH/PAM <= 3.6.1p1 remote Users Ident (gossh.sh)
- OpenSSH/PAM <= 3.6.1p1 remote users discovery tool