Linux
|
|
Nome:
|
Descrição:
|
| MS04-019cmd.c |
Windows
2000 Utility Manager all in one Exploit (MS04-019) |
| ms04_022.cpp |
Microsoft
Windows 2K/XP Task Scheduler .job Exploit (MS04-022) |
| mysql5
auth bypass zeropass.pl |
MySQL
4.1/5.0 zero-length password auth. bypass Exploit |
| phpmy-explt.c |
phpMyAdmin
2.5.7 Remote code injection Exploit |
| kernelcrash.c |
Linux
Kernel 2.4.x-2.6.x Assembler Inline Function Local
DoS Exploit |
| subexp.c |
Subversion
1.0.2 svn_time_from_cstring() Remote Exploit |
| priv8ibserver.pl |
Borland
Interbase 7.x and below Remote exploit |
| mkdir.c |
mkdir
/bin/mkdir buffer overflow UNIX 7th Edition Exploit |
| CVS_Linux.c |
CVS
Remote Entry Line Heap Overflow Root Exploit (Linux/FreeBSD) |
| CVS_Solaris.c |
CVS
Remote Entry Line Heap Overflow Root Exploit (Solaris) |
| sasserftpd.c |
Sasser
Worm ftpd Remote Buffer Overflow Exploit (port 5554) |
| DoS-CProxyv3.3 |
Remote
Denial of Service for CProxy v3.3 - Service Pack
2. This program xploits an overflow vulnerability
in CProxy 3.3 SP2 HTTP Service (8080), causing server
shutdown. |
| JpegOfDeathM.c |
Windows
JPEG GDI+ All in One Remote Exploit (MS04-028) |
| JpegOfDeath.c |
Windows
JPEG GDI+ Remote bind/reverse shell Exploit (MS04-028) |
| ms04-28-admin.sh |
Windows
JPEG GDI+ Overflow Administrator Exploit (MS04-028) |
| ms04-28-cmd.c |
Windows
JPEG GDI+ Overflow Shellcoded Exploit (MS04-028) |
| trillianbof.c |
Trillian
0.74i Remote (MSN module) Buffer Overflow exploit |
| wftpd.c |
WFTPD
Pro Server 3.21 MLST Remote Denial of Service Exploit |
| brutessh2.c |
SSH
Remote Root password Brute Force Cracking Utility |
| openftpdshell.c |
OpenFTPD
<= 0.30.1 message system Remote Shell Exploit |
| hoagie_openftpd.c |
OpenFTPD
<= 0.30.1 message sys. Remote format string Exploit |
| phpmy-explt.c |
phpMyAdmin
2.5.7 Remote code injection Exploit |
| JetRoot.pl |
HP
Web JetAdmin 6.5 Remote Root Exploit (Linux &
Windows) |
| ms04011lsass.c |
Windows
Lsasrv.dll RPC buffer overflow Remote Exploit (MS04-011) |
| iis5x_ssl_pct.pm |
Microsoft
IIS 5.x SSL PCT Remote Windows 2k/XP Exploit (MS04-011) |
| ether.c |
Ethereal
0.10.0-0.10.2 IGAP Overflow Remote Root Exploit |
| sslexp.c |
OpenSSL
ASN.1 parsing bugs <=0.9.6j BruteForce Exploit |
| kernelmremap.c |
Linux
kernel 2.4.x mremap() bound checking Root Exploit |
| imspex.c |
Cyrus
IMSPD v1.7 abook_dbname Remote Root Exploit |
| proft_put_down.c |
ProFTPd
1.2.7 - 1.2.9rc2 Remote Root & brute-force Exploit |
| proftpd_xforce.c |
ProFTPD
1.2.9rc2 ASCII File Remote Root Exploit |
| pfpoc.c |
Remote
root exploit for ProFTPd 1.2.7-1.2.8 |
| proftpdr00t.c |
Remote
root exploit for ProFTPd versions 1.2.7 - 1.2.9rc2
that breaks the chroot and uses brute force. Tested
against SuSE 8.0/8.1 and RedHat 7.2/8.0 |
| proftpX.c |
ProFTPD
1.2pre4 remote buffer overflow exploit. Requires
a writable directory |
| tgt_v1_x86Lnx.tar.gz |
Exploit
for the local root bug in Kerberos IV TGT and AFS
Token implementation of the OpenSSH server (sshd)
version 2.2.0 - 3.1.0 |
| cm-ssh.tgz |
Cm-ssh
is the Teso SSH remote exploit. Includes targets
for SSH-1.5-1.2.27, SSH-1.99-OpenSSH_2.2.0p1, SSH-1.5-1.2.26,
and SSH-1.5-1.2.31. Binary form only. Brute forces
the stack. |
| openssh-2.2.0-exp.tgz |
OpenSSH-2.2.0
remote exploit - Includes a wrapper to brute force
the offset |
| rpcdcom2ver1.1.c |
Windows
RPC DCOM2 Remote Exploit Ver1.1 (MS03-039) |
| 0x82-wu262-advanced.c |
Wu-ftpd
v2.6.2 Remote Root Exploit (advanced version) |
| Xnuxer-Samba.c |
Samba
2.2.8 Remote Root exploit with bruteforce method |
| sambash-release.c
|
Remote
root exploit for samba 2.2.7a and below using reply_nttrans().
Written for the Linux x86 platform |
| 0x333hate.c |
Samba
2.2.x Remote root exploit. Tested against RedHat
8.0 |
| 0x82-Remote.54AAb4.xpl.c |
FreeBSD
and OpenBSD remote Samba v2.2.x call_trans2open
i386 buffer overflow exploit. Tested against OpenBSD
3.0 and FreeBSD 4.6.2-RELEASE with Samba v2.2.x |
| sambal.c |
Remote
root exploit for Samba 2.2.x and prior that works
against Linux (all distributions), FreeBSD (4.x,
5.x), NetBSD (1.x) and OpenBSD (2.x, 3.x and 3.2
non-executable stack). It has a scanning abilities
so a range of machines can be penetration tested
at once on a network |
| samba.pl |
Samba
2.2.x remote Buffer Overflow root exploit |
| sambar.5.1.pl |
Sambar
Webserver v5.1 for Windows Pbcgi.exe remote denial
of service exploit in perl |
| xwdav.c |
Microsoft
WebDav III remote root Exploit (xwdav) |
| linux-wb.c |
The
ntdll.dll remote exploit through WebDAV that was
originally written by kralor. This version is ported
to Linux by Dotcom |
| vv5.pl |
IIS
5.0 / Windows 2000 WebDAV remote denial of service
exploit - Sends a specially crafted request, as
described in MS01-016 |
| webdav.c |
IIS
5.0 WebDAV - Proof of concept - shellcode included |
| Webfroot.pl |
Webfroot
Shoutbox < 2.32 on Apache remote Exploit |
| 0x82-Remote.WsMp3d.again.c |
WsMp3d
0.x Heap Overflow remote root exploit |
| 305monit.c |
Monit
4.2 Remote Root Exploit |
| ipfw.c |
FreeBSD
ipfw TCP ECE flag exploit |
| emule4x.pl |
eMule
0.42d Remote Exploit |
| igi2fs.c |
IGI
2 Covert Strike 1.3 RCON Command Format String Exploit |
| firstclass.c |
FirstClass
Desktop 7.1 buffer overflow exploit |
| rootme.c |
Solaris
vfs_getvfssw() Loadable Kernel Module Path Traversal
Exploit |
| 305ether.c |
Ethereal
IGAP Dissector Message Overflow Remote Root Exploit |
| host.c |
AIX
3.2-4.2 - host arg overflow |
| ping_aix.c |
AIX
3.2-4.2 - /usr/sbin/ping exploit |
| rlogin_aix.c |
AIX
4.0-4.2 - /usr/bin/in.rlogind local exploit |
| ftpd.pl |
AIX
4.3.2 - Remote bufferoverflow exploit for ftpd |
| jolt2.c |
Win
98,9x, NT, 2k - Crashes remote windows and beos
computers |
| killbsdi.c |
BSDi
3.x - Local users can reboot the system |
| sig.c |
FreeBSD
3.1-4.3 - kernel signal condition local exploit |
| vvopenbsd.c |
OpenBSD
2.8, 2.9 - local kernel exploit |
| globulka.pl |
FreeBSD
4.2 - glob() ftpd remote root exploit |
| ronin.c |
FreeBSD
4.2 - glob() ftpd root exploit |
| turkey2.c |
FreeBSD
4.0-4.2, OpenBSD 2.8 - Remote root exploit for BSD
ftpd |
| ospf.c |
BSDi
4.1 - Local root[uid=0] exploit tested |
| ntpdx.c |
ntpd
remote buffer overflow attack |
| obsd-ftpd.c |
OpenBSD
2.6, 2.7 - remote openbsd ftpd exploit |
| at.c |
Tru64
UNIX 4.0g - local at root exploit |
| rpc-ttdb.tar.gz |
Solaris
2.6, Irix 6.2, HP/UX 10.20 - rpc.ttdbserver remote
exploit |
| woot-exploit.tar.gz |
wu-ftpd
< 2.6.1 - remote file glob root exploit |
| ptrace24.c |
Linux
kernel < 2.4.9 - Local ptrace race condition
gives root |
| samba.sh |
Redhat
5.1-7.0 - Local samba < 2.0.8 exploit |
| linuxptrace-exp.tgz |
Multiple
linux distros - Local linux kernel exploit |
| alsou.c |
endmail-8.11.x
linux local exploit |
| xp.tar.gz |
local
sendmail 8.11.x<=5 exploit |
| ktv.sh |
SuSE
7.1 - KTVision <= 0.1.1-271 local r00t exploit |
| pic-lpr-remote.c |
Redhat
7.0 - pic format string exploit - remote |
| kppp.c |
Redhat
6.2 - kppp local exploit |
| vudo.c |
Redhat
6.2 - sudo-1.6.1-1 local exploit |
| dqsexp.c |
SuSE
6.3-7.0 - (dqs 3.2.7 package) local root exploit |
| bs-ssh.tgz |
Mandrake
7.2 - sshd crc32 remote root exploit |
| decrypt.c |
QNX
4.25 - password recovery from the hashes |
| xloadx.c |
Openserver
5.0.4 - xload local root exploit |
| wu30.c |
Openserver
5.0.5 - remote root exploit for wu-ftpd on sco |
| httpx.c |
Openserver
5.0.2-5.0.5 - nsca httpd 1.3 remote explot |
| namedx.c |
Openserver
5.0.4 - named remote root exploit |
| termx.c |
Openserver
5.0.4-5.0.5 - scoterm local root exploit |
| sco_lpr.c |
Openserver
5.0.5 - overflows /usr/remote/lpd/lp and gives rootshell |
| dos7utils.sh |
Unixware
7.1 - execute any command as root |
| nsmx.c |
Unixware
7.1 - IBM NetStation on UnixWare 7.1 local root
exploit |
| smash_bin_login.c |
Solaris
2.8 - /bin/login remote root exploit |
| write-sparc.c |
Solaris
2.6-2.7 - write root overflow for solaris |
| libsldap-exp.c |
Solaris
8 - local libsldap root exploit |
| ypexp.tar.gz |
Solaris
2.6-7 - rpc.yppasswdd SPARC remote r000t |
| pgxconfig.sh |
Solaris
2.5.1-8 - TechSource Raptor GFX configurator root
exploit |
| solarisuck.c |
Solaris
2.4-2.5.1 - local users can get root access |
| solx86-nisd.c |
Solaris 2.4-2.5.1 - rpc.nisd remote root overflow
|
| sendmail_sol.sh |
Solaris
2.5-2.5.1 - Sendmail 8.7.x-8.8.4 root 'sploit |
| ida-exploit.sh |
Win
2000 - IIS remote .ida overflow exploit |
| jill.c |
Win
2000 - IIS 5 remote .printer overflow |
| iishack2000.c |
Win
2000 - .printer isapi filter buffer overflow |
| tesoiis.c |
Win
NT - iis 4.0 exploit |
| vv5.pl |
Win
2000 - remotely restart all IIS related services |
| iishack.c |
Win
NT & 2000 - Upload a trojan to an IIS server |
| ne0.c |
Microsoft
IIS WebDAV PROPFIND and SEARCH Method Denial of
Service |
| MSIISpropFindAndSearchDoS.c |
Microsoft
IIS WebDAV PROPFIND and SEARCH Method Denial of
Service |