CEWE Photoshow version 6.4.3 dneial of service proof of concept exploit.
3ea4d1517345a8e1279cb60577f1c5a47e6cea6e3b9f36a469137122fcb56d16
CEWE Photo Importer version 6.4.3 denial of service proof of concept exploit.
946545f9129aa8d4cae5ac741ce3e90317b531e1373b3f5d660496e948752b87
Iperius Backup version 6.1.0 suffers from a privilege escalation vulnerability.
81444dad26eed9342fbfa06d4227a454b3785d42acfeceee83a1f32d06a61109
OpenDNSSEC is software that manages the security of domain names on the Internet. The project intends to drive adoption of Domain Name System Security Extensions (DNSSEC) to further enhance Internet security.
77e85e417d1067a5e4529b636248875a9e2d1925d5e90f022449007e59d6a293
A buffer overflow in the DtPrinterAction::PrintActionExists() function in the Common Desktop Environment 2.3.0 and earlier, as used in Oracle Solaris 10 1/13 (Update 11) and earlier, allows local users to gain root privileges via a long printer name passed to dtprintinfo by a malicious lpstat program.
061ca4997bee326476bbf713f5e74683ca863ebc4120b082849a1add69987dfe
THC-Hydra is a high quality parallelized login hacker for Samba, Smbnt, Cisco AAA, FTP, POP3, IMAP, Telnet, HTTP Auth, LDAP, NNTP, MySQL, VNC, ICQ, Socks5, PCNFS, Cisco and more. Includes SSL support, parallel scans, and is part of Nessus.
56672e253c128abaa6fb19e77f6f59ba6a93762a9ba435505a009ef6d58e8d0e
Huawei eSpace version 1.1.11.103 Meeting suffers from a heap-based memory overflow vulnerability when parsing large amount of bytes to the 'strNum' string parameter in GetNameyNum() in 'ContactsCtrl.dll' and 'strName' string parameter in SetUserInfo() in eSpaceStatusCtrl.dll library, resulting in heap memory corruption. An attacker can gain access to the system of the affected node and execute arbitrary code.
af90f5f900b600c33da10df6fd3d4e998fd6d70a94b3e1f74e59750b88b5031a
Huawei eSpace version 1.1.11.103 Meeting conference whiteboard functionality is vulnerable to a buffer overflow issue when inserting known image file formats. Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
bda1b5e8a26593481f81b3c32e14564c523a358fd9231d9e797c58ba31fa1bf0
Huawei eSpace Meeting cenwpoll.dll unicode stack buffer overflow exploit with SEH overwrite.
490ee762476b17bd1fdf9781ccc265693d3c3a5bc2f6c5da8afb99d25162c0f0
Huawei eSpace version 1.1.11.103 suffers from a DLL Hijacking issue. The vulnerability is caused due to the application loading libraries (mfc71enu.dll, mfc71loc.dll, tcapi.dll and airpcap.dll) in an insecure manner. This can be exploited to load arbitrary libraries by tricking a user into opening a related application file (.html, .jpg, .png) located on a remote WebDAV or SMB share.
9aea69b662c8d5265e392a312f1101654a587b68b47e8265d432fd5d1e6f36d7
Cisco Expressway Gateway version 11.5.1 suffers from a directory traversal vulnerability.
2d21823c888f2d2b908cd05eb0a2166fac4b33a4729b2a9f4b52422d2a88a0f7
Ubuntu Security Notice 3985-2 - Ke Sun, Henrique Kawakami, Kekai Hu, Rodrigo Branco, Giorgi Maisuradze, Dan Horea Lutas, Andrei Lutas, Volodymyr Pikhur, Stephan van Schaik, Alyssa Milburn, Sebastian Osterlund, Pietro Frigo, Kaveh Razavi, Herbert Bos, Cristiano Giuffrida, Moritz Lipp, Michael Schwarz, and Daniel Gruss discovered that memory previously stored in microarchitectural fill buffers of an Intel CPU core may be exposed to a malicious process that is executing on the same CPU core. A local attacker could use this to expose sensitive information. Various other issues were also addressed.
f1cb1a1bf9b2f78407c94f968bde455d07cd4e360ff1504fa77d64c0ecf72c91
Freelance Cockpit CRM version 3.3.1 suffers from a remote SQL injection vulnerability.
83fdff2598f2c65877939315359b738ef06523adf646dec31a73e9540e8bd871
Sandboxie version 5.30 denial of service proof of concept exploit.
703fb07db8e564ae274bfc1f929d0a682ebcc0df143eb67b3aa58dc467a4adbc
Horde Webmail version 5.2.22 suffers from code execution, cross site request forgery, cross site scripting, and remote SQL injection vulnerabilities.
f0b687fb3216938177a63fc81ec64bebd639bf70d529cb1674744db3e33e6e03
GAT-Ship Web Module versions 1.30 and below suffer from an information disclosure vulnerability.
eee145bca3e8be5c6e6502419bf53c84bf36f406d6f22716d15d882f00a1f2e2