local
local 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
ZipItFast PRO 3.0 – Local Heap Overflow
#!/usr/bin/perl
Python – Untrusted Search Path/Code Execution
# Exploit Title: Python untrusted search path/code execution vulnerability
python-wrapper – Untrusted Search Path/Code Execution
# python-wrapper untrusted search path/code execution vulnerability
Emesene 2.12.5 – Password Disclosure
# Exploit Title: Emesene Password Disclosure
Apple QuickTime – QuickTime.util.QTByteObject Initialization Security Checks Bypass
In order to test the POC code for the reported Issue 22, manually add
URL Hunter – Local Buffer Overflow (DEP Bypass)
Exploit Title: URL Hunter buffer overflow DEP Bypass
Sysax 5.62 – Admin Interface Local Buffer Overflow
#!/usr/bin/python
Adobe Illustrator CS5.5 – Memory Corruption
##########################################################################
Lattice Semiconductor PAC-Designer 6.21 – ‘.PAC’ Local Overflow
#!/usr/bin/python -w
Sysax 5.60 – Create SSL Certificate Buffer Overflow
#Title: Sysax Security Settings Configure -> Create Certificate ->
Browsers Browsers – Navigation Download Trick
Another moderately interesting tidbit, I guess...
Apache Mod_Auth_OpenID – Session Stealing
https://github.com/paranoid/mod_auth_openid/blob/master/CVE-2012-2760.markdown
Novell Client 4.91 SP4 – Local Privilege Escalation
# Novell Client 4.91 SP3/4 Privilege escalation exploit
SkinCrafter ActiveX Control 3.0 – Local Buffer Overflow
# Software : SkinCrafter from NMSoft Technologies
AnvSoft Any Video Converter 4.3.6 – Unicode Buffer Overflow
# Exploit Title: AnvSoft Any Video Converter 4.3.6 unicode buffer overflow.
PHP 5.4.3 (Windows x86 Polish) – Code Execution
// Exploit Title: PHP 5.4 (5.4.3) Code Execution 0day (Win32)
AnvSoft Any Video Converter 4.3.6 – Local Stack Overflow
#!/usr/bin/python
Parallels PLESK 9.x – Insecure Permissions
# Exploit Title: PLESK 9.x insecure directory permission ( admin password
mount.cifs – ‘chdir()’ Arbitrary Root File Identification
########## Blueliv Advisory 2012-004 ##########
Microsoft Office 2008 SP0 (Mac) – RTF pFragments
#RTF Pfragments exploit for MAC office 2008
WICD 1.7.1 – Local Privilege Escalation
#!/usr/bin/python
Mini-stream RM-MP3 Converter 3.1.2.2 – Local Buffer Overflow
# Exploit Title : Mini-stream RM-MP3 Converter� V 3.1.2.2 Local Buffer
BlazeVideo HDTV Player 6.6 Professional – Local Overflow (SEH + ASLR + DEP Bypass)
#!/usr/bin/python -w
mmPlayer 2.2 – ‘.ppl’ Local Buffer Overflow (SEH)
#!/usr/bin/perl
mmPlayer 2.2 – ‘.m3u’ Local Buffer Overflow (SEH)
#!/usr/bin/perl
LightDM 1.0.6 – Arbitrary File Deletion
source: https://www.securityfocus.com/bid/52452/info
Macro Toolworks 7.5 – Local Buffer Overflow
source: https://www.securityfocus.com/bid/52351/info