This Metasploit module exploits a stack-based buffer overflow vulnerability in Easy CD-DA Recorder 2007, caused by a long string in a playlist entry. By persuading the victim to open a specially-crafted .PLS file, a remote attacker could execute arbitrary code on the system or cause the application to crash. This Metasploit module has been tested successfully on Windows XP SP3 and Windows 7 SP1.
c9daf2bd49e0d41a84aba9c84b5e15a725fb5951f463b99f9505e1ba8d5f5f1e
PHP Money Books version 1.03 suffers from stored cross site scripting vulnerabilities.
28c37410044d56ed3d43c475e197fffb8cafc605053dcc62a4fa1bfca5ebdb61
This Metasploit module exploits a stack-based buffer overflow in NetOp Remote Control 9.5. When opening a .dws file containing a specially crafted string longer then 520 characters will allow an attacker to execute arbitrary code.
a7385fecab45ff4947b42dfef28f69cf9567c2402fbed3c7186e07b073f3db41
XRayCMS version 1.1.1 suffers from a remote SQL injection vulnerability.
662727c3cbe08b8f94537e2406e2a06ae3e8231c70d2b1a28507796f7a79d43d
razorCMS version 1.2 suffers from a path traversal vulnerability.
fbdb12c80c98de27931f125ae507349c1cf96ff75958e03c5bd73d20de3149d2
This Metasploit module exploits a stack buffer overflow in versions 8.1 creating a specially crafted .m3u8 file, an attacker may be able to execute arbitrary code.
dadfc48160e267d0cdccedad1ce4c3f39f87e6625390f7e28dd880afe2a5feef
NetOp Remote Control versions 8.0, 9.1, 9.2, and 9.5 buffer overflow exploit.
51071e988c3edf11b4a9923524b79005ace98aab816f01362592f4042d07a58c
ActFax Server LPD/LPR remote buffer overflow exploit that binds a shell to port 4444.
2ebd17d945bc423b321135f0783c3876ec973dd144c78277fde44d8e82cecd88
ActFax Server version 4.25 FTP remote post-authentication buffer overflow exploit.
e372efd4be2ecd84eb83b01bedea71b0e1db048ce07a6fa000e38442781e8ff4
Xerox 4595 remote denial of service exploit.
b1b86d2b1a0f5a53e725a5a29ee874deea3b4873022c5fdc9d1a02cc7fc874fa
Whitepaper called Cisco VoIP Phone - A Hackers Perspective.
2c496289f0aca8550749404683c6af282e9decfb23e9186b238a7db76158f79c
GSM SIM Utility Direct RET local buffer overflow exploit. Affects version 5.15.
15de76ced43372497ecbe7c41e888d3800c73d203ba85bdcf15a693b20d9e5a9
Hero DVD version 3.0.8 remote buffer overflow exploit.
b96ff541e105a651045d18859fd6f9197a4aa071b0a112c09f988427f6a709df
GSM SIM Utility version 5.15 SMS file local buffer overflow exploit.
e710972b79e5000d9d3a062e7d26c8384471e96e14d3687ae2995d2771e95188
CP3 Studio PC version 2.0 denial of service exploit that creates a malicious .cp3 file.
7a3963c653547e7990852c17b0bc712dae2145db98847d13e3193a1061c6d577
Easy CD-DA Recorder 2007 SEH buffer overflow exploit that creates a malicious .pls file.
5c233bcea28373aaff231f8a152de0790898692bc967dc4ce44888e64b822a85
Acoustica CD/DVD Label Maker proof of concept exploit that creates a malicious .m3u file.
5c3c5acd27337aecfa9ce688558d40f45ee6204ae81c3fddaa89964acf501288
Book Library version 1.4.162 local denial of service exploit that creates a malicious .bkd file.
aec18ad366a51defd2eb60c4f76dd3bc30feb5582c61704726ac04ed620536ba
MovieLibrary version 1.4.401 local denial of service exploit that creates a malicious .dmv file.
010240d121e0a592d49afa1cbc32baaa08092587ddae732a968956cdbddf1a82
Juke version 4.0.2 local denial of service exploit that creates a malicious file.
4c58c76ab89087671589b0b4b12691326c2d5d06fd185720a321e0143bdce57c
MyVideoConverter version 2.15 local denial of service exploit that creates a malicious .vro file.
9f580bab11cdf46f3e9832fc5afbef138484e89526378f11bf4d6919d192561b
MP3WavEditor local denial of service exploit that creates a malicious .mp3 file.
0fdad0992f2ea079862e56439ff84237c8c37e320fd546ca01733329ddccbab6
Kwik Pay Payroll denial of service exploit that creates a malicious .zip file.
1368b898dc67e60249dec60acdae648483900bb2ea3ecd7021b8d346e4404e58
Kwik Pay Payroll version 4.10.3 proof of concept exploit that creates a malicious .mdb file.
252011aab3b3ba67e568922fe241e39f764b51751b2a26b9e2d9e613e28e0798
CDTrustee version 2.06 local crash proof of concept exploit that creates a malicious .bak file.
fdf8fd0795930a92a6cf578592f6c1147debe8f5f3bd12a258716a38426efc32