This Metasploit module exploits a file retrieval vulnerability in EasyCafe Server. The vulnerability can be triggered by sending a specially crafted packet (opcode 0x43) to the 831/TCP port. This Metasploit module has been successfully tested on EasyCafe Server version 2.2.14 (Trial mode and Demo mode) on Windows XP SP3 and Windows 7 SP1. Note that the server will throw a popup messagebox if the specified file does not exist.
33d40a2aa040357554a8308847a479cb0f61d14ed8afe5d9bd0a74c18bb67185
This Metasploit module exploits a buffer overflow vulnerability found in the MKD command of the PCMAN FTP version 2.0.7 Server. This requires authentication but by default anonymous credentials are enabled.
7554b461ee61e44b7f64e4879b30d9782723c41189b5b3c85bfc7e4ab7909236
Dual DHCP DNS server version 7.29 buffer overflow denial of service exploit.
aef327d15be4e3120dede8e6a1ff8991df10825bd4bf4bb2d57a9f6edd72237a
Eagle Speed USB modem software suffers from a privilege escalation vulnerability.
cda286f25eab66e0cb5e9bd9dbeff7eac9f7849b3309554eb2bade42c4c55f4d
Avira Antivirus versions 15.0.21.86 and below suffer from a command execution vulnerability.
78a59e0dd369a5bd39deaf1ea862d4e542548155f19cd30868dfaf06d9060e7d
Billion Router 7700NR4 remote root command execution exploit.
472a30c55440464665f57052e169657facadf4c278f360ad2dc798afbf93b7f1
KeepNote version 0.7.8 remote command execution exploit.
8bfd902ee6f98b0f54948d1c268ef2b23dc7997141f131f8746da78e239a4fd6
Symantec Messaging Gateway versions 10.6.1 and below suffer from a directory traversal vulnerability.
23dad5e838b6046a002fbf6522886e375030f3559a852920266cc22b7246dc03
Unrar version 0.0.1 suffers from a memory corruption vulnerability.
84b51492e7d21612e1ead0788970d3a5fa81d6291212b4a1b86ed00a3eec0126
runAV with mod_security suffers from a command injection vulnerability that leads to privilege escalation providing the clamscan binary is setuid.
bdba22ff6e69274f11a7562bef9ed503271afdbace54eebcfb3853ad25e4c0df
EasyCafe Server versions 2.2.14 and below suffer from a remote file read vulnerability.
121818ec38b64281f7a95209aa9db936cfefb36b812148de3e51ee15bd39e65c
PFSense versions 2.2.5 and below suffer from a directory traversal vulnerability.
e9d17907677434b8805f6d8cf50f4060c63207d28f4c41bf95d1debf8bf21932
GoAutoDial CE version 3.3 remote command execution and SQL injection vulnerabilities.
d3e857d51becaeb64687fe5328725aaca665becd78f00892b8ecbbcacf9d4db9
WinRAR settings import command execution proof of concept exploit.
dac679a571be8faa5e8774fd313bbbc45be49a86dc7067b4c95eb95ccfeabdea
WinRAR suffers from an expired notification OLE remote command execution vulnerability.
db092f276378558a38672a576c156ba5b7be056d2913c9e54a2bee5c5dd5ad96
ProFTPd version 1.3.5 remote command execution exploit.
33b411f75e9e92f4cce90334c9d86dca66a06474776854a23ec5f542a52da3b9
Express Zip versions 2.40 and below suffer from a path traversal vulnerability.
381d3360aefa8dc4027d11b431bba992a0ad480df3e905e3c746b3c312eeaf1f