windows
windows 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
SAS Integration Technologies Client 9.31_M1 ‘SASspk.dll’ – Stack Overflow
SAS Integration Technologies Client ActiveX Stack BoF 0-day
SIEMENS Solid Edge ST4/ST5 WebPartHelper – ActiveX RFMSsvs!JShellExecuteEx Remote Code Execution
SIEMENS Solid Edge ST4/ST5 WebPartHelper ActiveX Control
SIEMENS Solid Edge ST4/ST5 SEListCtrlX – ActiveX SetItemReadOnly Arbitrary Memory Rewrite Remote Code Execution
SIEMENS Solid Edge ST4/ST5 SEListCtrlX ActiveX Control SetItemReadOnly
Microsoft Windows – Win32k!EPATHOBJ::pprFlattenRec Uninitialized Next Pointer Testcase
I'm quite proud of this list cycle trick, here's how to turn it into an
Ophcrack 3.5.0 – Code Execution Local Buffer Overflow
# Exploit Title: ophcrack v3.5.0 - Local Code Execution BOF
Serva 32 TFTP 2.1.0 – Buffer Overflow (Denial of Service) (PoC)
#Serva 32 TFTP Buffer overflow DoS
Quick Search 1.1.0.189 – Buffer Overflow (SEH)
# Exploit Title: Quick Search Version 1.1.0.189 Buffer Overflow vulnerability(SEH)
Adrenalin Player 2.2.5.3 – ‘.m3u’ Local Buffer Overflow (SEH)
# Exploit Title: Adrenalin Player 2.2.5.3 Buffer Overflow Exploit(SEH)
MiniWeb HTTP Server 300 – Crash (PoC)
# MiniWeb HTTP server (build 300, built on Feb 28 2013) by Stanley Huang
Microsoft Windows Media Player 11.0.0 – ‘.wav’ Crash (PoC)
# Title : Windows Media Player 11.0.0 (.wav) Crash PoC
Lan Messenger – sending PM ‘UNICODE’ Overwrite Buffer Overflow (SEH)
# Exploit Title: Lan Messenger Version 1.2 Buffer Overflow vulnerability - UNICODE(POC)
ABBS Audio Media Player 3.1 – ‘.lst’ Local Buffer Overflow
#!/usr/bin/python
AudioCoder 0.8.18 – Local Buffer Overflow (SEH)
#!/usr/bin/env ruby
WPS Office – ‘Wpsio.dll’ Stack Buffer Overflow
WPS Office Wpsio.dll Stack Buffer Overflow Vulnerability
Syslog Watcher Pro 2.8.0.812 – ‘Date’ Cross-Site Scripting
Title: Syslog Watcher Pro 'Date' Parameter Cross Site Scripting Vulnerability
WinArchiver 3.2 – Local Buffer Overflow (SEH)
#/usr/bin/python
FuzeZip 1.0.0.131625 – Local Buffer Overflow (SEH)
#!/usr/bin/python
Easy Icon Maker 5.01 – Crash (PoC)
# Exploit Title: Easy Icon Maker Version 5.01 Crash Poc vulnerability
Ipswitch IMail 11.01 – Cross-Site Scripting
#!/usr/bin/perl
Elecard MPEG Player – ‘.m3u’ File Buffer Overflow
source: https://www.securityfocus.com/bid/59534/info
Light HTTPd 0.1 (Windows) – Remote Buffer Overflow
import urllib2
SAP ConfigServlet – Remote Payload Execution (Metasploit)
require 'msf/core'
Flightgear 2.0/2.4 – Remote Format String
# Exploit Title: Flightgear remote format string
Mikrotik Syslog Server for Windows 1.15 – Denial of Service (Metasploit)
# Exploit Title: Mikrotik Syslog Server for Windows - remote BOF DOS
Java Web Start Launcher ActiveX Control – Memory Corruption
SEC Consult Vulnerability Lab Security Advisory < 20130417-1 >
Oracle WebCenter Sites Satellite Server – HTTP Header Injection
SEC Consult Vulnerability Lab Security Advisory < 20130417-2 >
Foxit Reader 5.4.3.x < 5.4.5.0124 - PDF XREF Parsing Denial of Service
# Exploit Title: Foxit Reader 5.4.3.* - 5.4.5.0124 - PDF (Portable Document Format) XREF (Cross Reference Table) pars...
FirePHP Firefox Plugin 0.7.1 – Remote Command Execution
# Exploit Title: Firephp firefox plugin RCE
Pwstore – Denial of Service
source: https://www.securityfocus.com/bid/62112/info
MinaliC WebServer 2.0.0 – Remote Buffer Overflow
#!/usr/bin/env python
Allied Telesyn TFTP (AT-TFTP) Server/Daemon 2.0 – Stack Buffer Overflow (Denial of Service) (PoC)
# Exploit Title: AT-TFTP 2.0 long filename stack based buffer overflow - DOS
KNet Web Server 1.04b – Stack Corruption Buffer Overflow
#!/usr/bin/perl
Freefloat FTP Server 1.0 – DEP Bypass with ROP
#!usr/bin/python
BigAnt Server 2.97 – DDNF ‘Username’ Remote Buffer Overflow
#!/usr/bin/python
Sysax Multi Server 6.10 – SSH Denial of Service
#!/usr/bin/env ruby
HexChat 2.9.4 – Local Overflow
#!/usr/bin/python
Personal File Share 1.0 – Denial of Service
#!/usr/bin/python
Easy DVD Player 3.5.1 – libav ‘libavcodec_plugin.dll’ Denial of Service
#!/usr/bin/python
SmallFTPd – Denial of Service
source: https://www.securityfocus.com/bid/58856/info
VirtualDJ Pro/Home 7.3 – Local Buffer Overflow
# Exploit Title: VirtualDJ Pro/Home
McAfee Virtual Technician (MVT) 6.5.0.2101 – Insecure ActiveX Method
Advisory ID: HTB23128
KNet Web Server 1.04b – Remote Buffer Overflow (SEH)
#!/usr/bin/ruby