Netvolution CMS version 2.5.8 suffers from a remote blind SQL injection vulnerability via the HTTP referer header.
4f44a47ab87874ced4484f0eb85ac74d9c2673b9445def8cfc6979a55d36a55a
Whitepaper call Binding the Daemon: FreeBSD Kernel Stack and Heap Exploitation.
731108acfa98e373bcbbecc7bde0ae45936a7487deb43212ee1c90225166071d
mountnfs() heap overflow privilege escalation exploit for FreeBSD version 8.0, 7.3 and 7.2.
e01894edd18a37d8ba0f24ffa79583f2896c6e286383d7ad553cbaacef2b4d4f
Census Labs have discovered two improper input validation vulnerabilities in the FreeBSD kernel's NFS client-side implementation (FreeBSD 8.0-RELEASE, 7.3-RELEASE and 7.2-RELEASE) that allow local unprivileged users to escalate their privileges, or to crash the system by performing a denial of service attack.
7bd9d69552b70351a19fbe5774c1749a4db9386e89b78adad0dde849ae2ec339
Local kernel exploit for nfs_mount() on FreeBSD versions 8.0, 7.3 and 7.2. It escalates privileges on versions 7.2 and 7.3 and causes a denial of service on 8.0.
92298b6c7ebbb8ffd472450225e595757b19ebf2c26e89e268dc728e7a3e68b3
Monkey Web Server versions 0.9.2 and below suffer from a remote denial of service vulnerability. Proof of concept code included.
4bded03bfcf89b2390579992380e1ab7694adead2e7a447b17c1f191d5d70589
CoreHTTP (up to and including version 0.5.3.1) employs an insufficient input validation method for handling HTTP requests with invalid method names and URIs. Specifically, the vulnerability is an off-by-one buffer overflow in the sscanf() call at file src/http.c line numbers 45 and 46.
7895bd2e72f372fafa55aa28a36ef0e28ef9cb2efb8c7b6720638cb0cee1feee
CoreHTTP web server versions 0.5.3.1 and below denial of service off-by-one buffer overflow exploit.
65231e993dfa5fa765ec91e8715353dbb412ec468c13dabaa55a1abdbb10d02e
OrzHTTPD remote format string exploit.
6dba0af58e8c2b36162a84d70b04be390a5cd60b643597c4d644a6872effe278
Local root exploit for FreeBSD nmount(). This affects FreeBSD 7.0-RELEASE and 7.0-STABLE.
f73657bff4c5f05a9a63c9564bcf7f676f9adf0f6b8a1b9a13e53473275ca23d