WinMTR 0.91 – Denial of Service (PoC)
# Exploit Title: WinMTR 0.91 - Denial of Service (PoC)
dos 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: WinMTR 0.91 - Denial of Service (PoC)
# Exploit Title: Arm Whois 3.11 - Denial of Service (PoC)
#Exploit Title: WebDrive 18.00.5057 - Denial of Service (PoC)
# Exploit Title: Artha The Open Thesaurus 1.0.3.0 - Denial of Service (PoC)
#Exploit Title: SmartFTP Client 9.0.2615.0 - Denial of Service (PoC)
# Exploit Title: SIPp 3.3.990 - Local Buffer Overflow (PoC)
# Exploit Title: QNAP NetBak Replicator 4.5.6.0607 Denial of Service (PoC)
# Exploit Title: ZyXEL VMG3312-B10B - Leak Credentials < 1.00(AAPP.7)
# Exploit Title: Modbus Slave 7.0.0 - Denial of Service (PoC)
SecureAuth - SecureAuth Labs Advisory
[I am sending this bug report to Ubuntu, even though it's an upstream
# Exploit Title: Local Server 1.0.9 - Denial of Service (PoC)
# Exploit Title: AlienIP 2.41 - Denial of Service (PoC)
# Exploit Title: Navicat 12.0.29 - 'SSH' Denial of Service (PoC)
libtiff up to and including 4.0.9 decodes arbitrarily-sized JBIG into a buffer, ignoring the buffer size.
# Exploit Title: BORGChat 1.0.0 build 438 - Denial of Service (PoC)
# Exploit Title: ADULT FILTER 1.0 - Denial of Service (PoC)
There was recently some cleanup in the persona code to fix some race conditions there, I don't think it was sufficient:
IOHIDResourceQueue inherits from IOSharedDataQueue and adds its own ::enqueueReport method,
io_hideventsystem sets up a shared memory event queue; at the end of this shared memory buffer it puts
Here's a code snippet from sleh.c with the second level exception handler for undefined instruction exceptions:
io_hideventsystem is a MIG service which provides proxy access to various HID devices for untrusted
This PoC file might look familiar; this bug is a trivial variant of CVE-2016-1744 (Apple bug id 635599405.)
# Exploit Title: AudaCity 2.3 - Denial of Service (PoC)
# Exploit Title: Modbus Poll 7.2.2 - Denial of Service (PoC)
Windows: FSCTL_FIND_FILES_BY_SID Information Disclosure
Heap corruption can occur when the WhatsApp mobile application receives a malformed RTP packet.
# Exploit Title: FileZilla 3.33 Buffer-Overflow (PoC)
The switch statement only handles Js::TypeIds_Array but not Js::TypeIds_NativeIntArray and Js::TypeIds_NativeFloatArr...
The BailOutOnInvalidatedArrayHeadSegment check uses the JavascriptArray::GetArrayForArrayOrObjectWithArray method to ...
Tested on a Pixel 2 (walleye):
Commit 82abbf8d2fc46d79611ab58daa7c608df14bb3ee ("bpf: do not allow root to mangle valid pointers", first in v4.15) i...
# Exploit Title: net-snmp 5.7.3 - Unauthenticated Denial of Service (PoC)
# Exploit Title: FTP Voyager 16.2.0 - Denial of Service (PoC)
# Exploit Title: Snes9K 0.0.9z - Denial of Service (PoC)
# Exploit Title: CrossFont 7.5 - Denial of Service (PoC)
# Exploit Title: TransMac 12.2 - Denial of Service (PoC)
# Exploit Title: Beyond Remote 2.2.5.3 - Denial of Service (PoC)
# Exploit Title: SoftX FTP Client 3.3 - Denial of Service (PoC)
# Exploit Title: Termite 3.4 - Denial of Service (PoC)