You are on page 1of 48

Usage: /opt/metasploit/msfcli <exploit_name> <option=value> [mode]

==================================================================

Mode Description
---- -----------
(A)dvanced Show available advanced options for this module
(AC)tions Show available actions for this auxiliary module
(C)heck Run the check routine of the selected module
(E)xecute Execute the selected module
(H)elp You're looking at it baby!
(I)DS Evasion Show available ids evasion options for this module
(O)ptions Show available options for this module
(P)ayloads Show available payloads for this module
(S)ummary Show information about this module
(T)argets Show available targets for this exploit module

Exploits
========

Name
Description
----
-----------
exploit/aix/rpc_cmsd_opcode21 AIX
Calendar Manager Service Daemon (rpc.cmsd) Opcode 21 Buffer Overflow
exploit/aix/rpc_ttdbserverd_realpath ToolTalk
rpc.ttdbserverd _tt_internal_realpath Buffer Overflow (AIX)
exploit/bsdi/softcart/mercantec_softcart
Mercantec SoftCart CGI Overflow
exploit/dialup/multi/login/manyargs System V
Derived /bin/login Extraneous Arguments Buffer Overflow
exploit/freebsd/ftp/proftp_telnet_iac ProFTPD
1.3.2rc3 - 1.3.3b Telnet IAC Buffer Overflow (FreeBSD)
exploit/freebsd/samba/trans2open Samba
trans2open Overflow (*BSD x86)
exploit/freebsd/tacacs/xtacacsd_report XTACACSD
<= 4.1.2 report() Buffer Overflow
exploit/freebsd/telnet/telnet_encrypt_keyid FreeBSD
Telnet Service Encryption Key ID Buffer Overflow
exploit/hpux/lpd/cleanup_exec HP-UX
LPD Command Execution
exploit/irix/lpd/tagprinter_exec Irix LPD
tagprinter Command Execution
exploit/linux/browser/adobe_flashplayer_aslaunch Adobe
Flash Player ActionScript Launch Command Execution Vulnerability
exploit/linux/ftp/proftp_sreplace ProFTPD
1.2 - 1.3.0 sreplace Buffer Overflow (Linux)
exploit/linux/ftp/proftp_telnet_iac ProFTPD
1.3.2rc3 - 1.3.3b Telnet IAC Buffer Overflow (Linux)
exploit/linux/games/ut2004_secure Unreal
Tournament 2004 "secure" Overflow (Linux)
exploit/linux/http/alcatel_omnipcx_mastercgi_exec Alcatel-
Lucent OmniPCX Enterprise masterCGI Arbitrary Command Execution
exploit/linux/http/ddwrt_cgibin_exec DD-WRT
HTTP Daemon Arbitrary Command Execution
exploit/linux/http/dolibarr_cmd_exec Dolibarr
ERP & CRM 3 Post-Auth OS Command Injection
exploit/linux/http/gpsd_format_string Berlios
GPSD Format String Vulnerability
exploit/linux/http/linksys_apply_cgi Linksys
WRT54 Access Point apply.cgi Buffer Overflow
exploit/linux/http/peercast_url PeerCast
<= 0.1216 URL Handling Buffer Overflow (linux)
exploit/linux/http/piranha_passwd_exec RedHat
Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution
exploit/linux/http/symantec_web_gateway_exec Symantec
Web Gateway 5.0.2.8 ipchange.php Command Injection
exploit/linux/http/symantec_web_gateway_file_upload Symantec
Web Gateway 5.0.2.8 Arbitrary PHP File Upload Vulnerability
exploit/linux/http/symantec_web_gateway_lfi Symantec
Web Gateway 5.0.2.8 relfile File Inclusion Vulnerability
exploit/linux/http/vcms_upload V-CMS
PHP File Upload and Execute
exploit/linux/http/webcalendar_settings_exec
WebCalendar 1.2.4 Pre-Auth Remote Code Injection
exploit/linux/http/webid_converter WeBid
converter.php Remote PHP Code Injection
exploit/linux/ids/snortbopre Snort
Back Orifice Pre-Preprocessor Buffer Overflow
exploit/linux/imap/imap_uw_lsub UoW IMAP
server LSUB Buffer Overflow
exploit/linux/madwifi/madwifi_giwscan_cb Madwifi
SIOCGIWSCAN Buffer Overflow
exploit/linux/misc/accellion_fta_mpipe2
Accellion File Transfer Appliance MPIPE2 Command Execution
exploit/linux/misc/drb_remote_codeexec
Distributed Ruby Send instance_eval/syscall Code Execution
exploit/linux/misc/gld_postfix GLD
(Greylisting Daemon) Postfix Buffer Overflow
exploit/linux/misc/hp_data_protector_cmd_exec HP Data
Protector 6.1 EXEC_CMD Remote Code Execution
exploit/linux/misc/hplip_hpssd_exec HPLIP
hpssd.py From Address Arbitrary Command Execution
exploit/linux/misc/ib_inet_connect Borland
InterBase INET_connect() Buffer Overflow
exploit/linux/misc/ib_jrd8_create_database Borland
InterBase jrd8_create_database() Buffer Overflow
exploit/linux/misc/ib_open_marker_file Borland
InterBase open_marker_file() Buffer Overflow
exploit/linux/misc/ib_pwd_db_aliased Borland
InterBase PWD_db_aliased() Buffer Overflow
exploit/linux/misc/lprng_format_string LPRng
use_syslog Remote Format String Vulnerability
exploit/linux/misc/netsupport_manager_agent
NetSupport Manager Agent Remote Buffer Overflow
exploit/linux/mysql/mysql_yassl_getname MySQL
yaSSL CertDecoder::GetName Buffer Overflow
exploit/linux/mysql/mysql_yassl_hello MySQL
yaSSL SSL Hello Message Buffer Overflow
exploit/linux/pop3/cyrus_pop3d_popsubfolders Cyrus
IMAPD pop3d popsubfolders USER Buffer Overflow
exploit/linux/pptp/poptop_negative_read Poptop
Negative Read Overflow
exploit/linux/proxy/squid_ntlm_authenticate Squid
NTLM Authenticate Overflow
exploit/linux/samba/chain_reply Samba
chain_reply Memory Corruption (Linux x86)
exploit/linux/samba/lsa_transnames_heap Samba
lsa_io_trans_names Heap Overflow
exploit/linux/samba/trans2open Samba
trans2open Overflow (Linux x86)
exploit/linux/ssh/f5_bigip_known_privkey F5 BIG-
IP SSH Private Key Exposure
exploit/linux/telnet/telnet_encrypt_keyid Linux
BSD-derived Telnet Service Encryption Key ID Buffer Overflow
exploit/multi/browser/firefox_escape_retval Firefox
3.5 escape() Return Value Memory Corruption
exploit/multi/browser/firefox_queryinterface Firefox
location.QueryInterface() Code Execution
exploit/multi/browser/firefox_xpi_bootstrapped_addon Mozilla
Firefox Bootstrapped Addon Social Engineering Code Execution
exploit/multi/browser/itms_overflow Apple OS
X iTunes 8.1.1 ITMS Overflow
exploit/multi/browser/java_atomicreferencearray Java
AtomicReferenceArray Type Violation Vulnerability
exploit/multi/browser/java_calendar_deserialize Sun Java
Calendar Deserialization Privilege Escalation
exploit/multi/browser/java_getsoundbank_bof Sun Java
JRE getSoundbank file:// URI Buffer Overflow
exploit/multi/browser/java_rhino Java
Applet Rhino Script Engine Remote Code Execution
exploit/multi/browser/java_rmi_connection_impl Java
RMIConnectionImpl Deserialization Privilege Escalation
exploit/multi/browser/java_setdifficm_bof Sun Java
JRE AWT setDiffICM Buffer Overflow
exploit/multi/browser/java_signed_applet Java
Signed Applet Social Engineering Code Execution
exploit/multi/browser/java_trusted_chain Java
Statement.invoke() Trusted Method Chain Privilege Escalation
exploit/multi/browser/java_verifier_field_access Java
Applet Field Bytecode Verifier Cache Remote Code Execution
exploit/multi/browser/mozilla_compareto Mozilla
Suite/Firefox InstallVersion->compareTo() Code Execution
exploit/multi/browser/mozilla_navigatorjava Mozilla
Suite/Firefox Navigator Object Code Execution
exploit/multi/browser/opera_configoverwrite Opera 9
Configuration Overwrite
exploit/multi/browser/opera_historysearch Opera
historysearch XSS
exploit/multi/browser/qtjava_pointer Apple
QTJava toQTPointer() Arbitrary Memory Access
exploit/multi/fileformat/adobe_u3d_meshcont Adobe
U3D CLODProgressiveMeshDeclaration Array Overrun
exploit/multi/fileformat/maple_maplet Maple
Maplet File Creation and Command Execution
exploit/multi/fileformat/peazip_command_injection PeaZip
<= 2.6.1 Zip Processing Command Injection
exploit/multi/ftp/wuftpd_site_exec_format WU-FTPD
SITE EXEC/INDEX Format String Vulnerability
exploit/multi/handler Generic
Payload Handler
exploit/multi/http/activecollab_chat Active
Collab "chat module" <= 2.3.8 Remote PHP Code Injection Exploit
exploit/multi/http/apprain_upload_exec appRain
CMF Arbitrary PHP File Upload Vulnerability
exploit/multi/http/axis2_deployer Axis2 /
SAP BusinessObjects Authenticated Code Execution (via SOAP)
exploit/multi/http/familycms_less_exec Family
Connections less.php Remote Command Execution
exploit/multi/http/freenas_exec_raw FreeNAS
exec_raw.php Arbitrary Command Execution
exploit/multi/http/gitorious_graph
Gitorious Arbitrary Command Execution
exploit/multi/http/glassfish_deployer
Sun/Oracle GlassFish Server Authenticated Code Execution
exploit/multi/http/horde_href_backdoor Horde
3.3.12 Backdoor Arbitrary PHP Code Execution
exploit/multi/http/jboss_bshdeployer JBoss
JMX Console Beanshell Deployer WAR Upload and Deployment
exploit/multi/http/jboss_deploymentfilerepository JBoss
Java Class DeploymentFileRepository WAR Deployment
exploit/multi/http/jboss_maindeployer JBoss
JMX Console Deployer Upload and Execute
exploit/multi/http/lcms_php_exec LotusCMS
3.0 eval() Remote Command Execution
exploit/multi/http/log1cms_ajax_create_folder Log1 CMS
writeInfo() PHP Code Injection
exploit/multi/http/op5_license OP5
license.php Remote Command Execution
exploit/multi/http/op5_welcome OP5
welcome Remote Command Execution
exploit/multi/http/openfire_auth_bypass Openfire
Admin Console Authentication Bypass
exploit/multi/http/php_cgi_arg_injection PHP CGI
Argument Injection
exploit/multi/http/php_volunteer_upload_exec PHP
Volunteer Management System v1.0.2 Arbitrary File Upload Vulnerability
exploit/multi/http/phpldapadmin_query_engine
phpLDAPadmin <= 1.2.1.1 (query_engine) Remote PHP Code Injection
exploit/multi/http/phpscheduleit_start_date
phpScheduleIt PHP reserve.php start_date Parameter Arbitrary Code Injection
exploit/multi/http/plone_popen2 Plone
and Zope XMLTools Remote Command Execution
exploit/multi/http/pmwiki_pagelist PmWiki
<= 2.2.34 pagelist.php Remote PHP Code Injection Exploit
exploit/multi/http/sit_file_upload Support
Incident Tracker <= 3.65 Remote Command Execution
exploit/multi/http/snortreport_exec
Snortreport nmap.php/nbtscan.php Remote Command Execution
exploit/multi/http/splunk_mappy_exec Splunk
Search Remote Code Execution
exploit/multi/http/spree_search_exec
Spreecommerce 0.60.1 Arbitrary Command Execution
exploit/multi/http/spree_searchlogic_exec
Spreecommerce < 0.50.0 Arbitrary Command Execution
exploit/multi/http/struts_code_exec Apache
Struts < 2.2.0 Remote Command Execution
exploit/multi/http/struts_code_exec_exception_delegator Apache
Struts <= 2.2.1.1 Remote Command Execution
exploit/multi/http/sun_jsws_dav_options Sun Java
System Web Server WebDAV OPTIONS Buffer Overflow
exploit/multi/http/tomcat_mgr_deploy Apache
Tomcat Manager Application Deployer Authenticated Code Execution
exploit/multi/http/traq_plugin_exec Traq
admincp/common.php Remote Code Execution
exploit/multi/http/vbseo_proc_deutf vBSEO <=
3.6.0 proc_deutf() Remote PHP Code Injection
exploit/multi/http/wikka_spam_exec
WikkaWiki 1.3.2 Spam Logging PHP Injection
exploit/multi/ids/snort_dce_rpc Snort 2
DCE/RPC preprocessor Buffer Overflow
exploit/multi/misc/batik_svg_java Squiggle
1.7 SVG Browser Java Code Execution
exploit/multi/misc/hp_vsa_exec HP
StorageWorks P4000 Virtual SAN Appliance Command Execution
exploit/multi/misc/java_rmi_server Java RMI
Server Insecure Default Configuration Java Code Execution
exploit/multi/misc/openview_omniback_exec HP
OpenView OmniBack II Command Execution
exploit/multi/misc/veritas_netbackup_cmdexec VERITAS
NetBackup Remote Command Execution
exploit/multi/misc/wireshark_lwres_getaddrbyname
Wireshark LWRES Dissector getaddrsbyname_request Buffer Overflow
exploit/multi/misc/wireshark_lwres_getaddrbyname_loop
Wireshark LWRES Dissector getaddrsbyname_request Buffer Overflow (loop)
exploit/multi/misc/zend_java_bridge Zend
Server Java Bridge Arbitrary Java Code Execution
exploit/multi/ntp/ntp_overflow NTP
daemon readvar Buffer Overflow
exploit/multi/php/php_unserialize_zval_cookie PHP 4
unserialize() ZVAL Reference Counter Overflow (Cookie)
exploit/multi/realserver/describe
RealServer Describe Buffer Overflow
exploit/multi/samba/nttrans Samba
2.2.2 - 2.2.6 nttrans Buffer Overflow
exploit/multi/samba/usermap_script Samba
"username map script" Command Execution
exploit/multi/svn/svnserve_date
Subversion Date Svnserve
exploit/multi/wyse/hagent_untrusted_hsdata Wyse
Rapport Hagent Fake Hserver Command Execution
exploit/netware/smb/lsass_cifs Novell
NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow
exploit/netware/sunrpc/pkernel_callit NetWare
6.5 SunRPC Portmapper CALLIT Stack Buffer Overflow
exploit/osx/afp/loginext
AppleFileServer LoginExt PathName Overflow
exploit/osx/arkeia/type77 Arkeia
Backup Client Type 77 Overflow (Mac OS X)
exploit/osx/armle/safari_libtiff iPhone
MobileSafari LibTIFF Buffer Overflow
exploit/osx/browser/mozilla_mchannel Mozilla
Firefox 3.6.16 mChannel Use-After-Free
exploit/osx/browser/safari_file_policy Apple
Safari file:// Arbitrary Code Execution
exploit/osx/browser/safari_libtiff iPhone
MobileSafari LibTIFF Buffer Overflow
exploit/osx/browser/safari_metadata_archive Safari
Archive Metadata Command Execution
exploit/osx/browser/software_update Apple OS
X Software Update Command Execution
exploit/osx/email/mailapp_image_exec Mail.app
Image Attachment Command Execution
exploit/osx/email/mobilemail_libtiff iPhone
MobileMail LibTIFF Buffer Overflow
exploit/osx/ftp/webstar_ftp_user WebSTAR
FTP Server USER Overflow
exploit/osx/http/evocam_webserver MacOS X
EvoCam HTTP GET Buffer Overflow
exploit/osx/mdns/upnp_location Mac OS X
mDNSResponder UPnP Location Overflow
exploit/osx/misc/ufo_ai UFO:
Alien Invasion IRC Client Buffer Overflow
exploit/osx/rtsp/quicktime_rtsp_content_type MacOS X
QuickTime RTSP Content-Type Overflow
exploit/osx/samba/lsa_transnames_heap Samba
lsa_io_trans_names Heap Overflow
exploit/osx/samba/trans2open Samba
trans2open Overflow (Mac OS X PPC)
exploit/solaris/dtspcd/heap_noir Solaris
dtspcd Heap Overflow
exploit/solaris/lpd/sendmail_exec Solaris
LPD Command Execution
exploit/solaris/samba/lsa_transnames_heap Samba
lsa_io_trans_names Heap Overflow
exploit/solaris/samba/trans2open Samba
trans2open Overflow (Solaris SPARC)
exploit/solaris/sunrpc/sadmind_adm_build_path Sun
Solaris sadmind adm_build_path() Buffer Overflow
exploit/solaris/sunrpc/sadmind_exec Solaris
sadmind Command Execution
exploit/solaris/sunrpc/ypupdated_exec Solaris
ypupdated Command Execution
exploit/solaris/telnet/fuser Sun
Solaris Telnet Remote Authentication Bypass Vulnerability
exploit/solaris/telnet/ttyprompt Solaris
in.telnetd TTYPROMPT Buffer Overflow
exploit/unix/ftp/proftpd_133c_backdoor ProFTPD-
1.3.3c Backdoor Command Execution
exploit/unix/ftp/vsftpd_234_backdoor VSFTPD
v2.3.4 Backdoor Command Execution
exploit/unix/http/contentkeeperweb_mimencode
ContentKeeper Web Remote Command Execution
exploit/unix/http/ctek_skyrouter CTEK
SkyRouter 4200 and 4300 Command Execution
exploit/unix/http/freepbx_callmenum FreePBX
2.10.0 / 2.9.0 callmenum Remote Code Execution
exploit/unix/http/lifesize_room LifeSize
Room Command Injection
exploit/unix/irc/unreal_ircd_3281_backdoor
UnrealIRCD 3.2.8.1 Backdoor Command Execution
exploit/unix/misc/distcc_exec DistCC
Daemon Command Execution
exploit/unix/misc/spamassassin_exec
SpamAssassin spamd Remote Command Execution
exploit/unix/misc/zabbix_agent_exec Zabbix
Agent net.tcp.listen Command Injection
exploit/unix/smtp/clamav_milter_blackhole ClamAV
Milter Blackhole-Mode Remote Code Execution
exploit/unix/smtp/exim4_string_format Exim4 <=
4.69 string_format Function Heap Buffer Overflow
exploit/unix/webapp/awstats_configdir_exec AWStats
configdir Remote Command Execution
exploit/unix/webapp/awstats_migrate_exec AWStats
migrate Remote Command Execution
exploit/unix/webapp/awstatstotals_multisort AWStats
Totals =< v1.14 multisort Remote Command Execution
exploit/unix/webapp/barracuda_img_exec
Barracuda IMG.PL Remote Command Execution
exploit/unix/webapp/base_qry_common BASE
base_qry_common Remote File Include
exploit/unix/webapp/basilic_diff_exec Basilic
1.5.14 diff.php Arbitrary Command Execution
exploit/unix/webapp/cacti_graphimage_exec Cacti
graph_view.php Remote Command Execution
exploit/unix/webapp/cakephp_cache_corruption CakePHP
<= 1.3.5 / 1.2.8 Cache Corruption Code Execution
exploit/unix/webapp/citrix_access_gateway_exec Citrix
Access Gateway Command Execution
exploit/unix/webapp/coppermine_piceditor
Coppermine Photo Gallery <= 1.4.14 picEditor.php Command Execution
exploit/unix/webapp/dogfood_spell_exec Dogfood
CRM spell.php Remote Command Execution
exploit/unix/webapp/generic_exec Generic
Web Application Unix Command Execution
exploit/unix/webapp/google_proxystylesheet_exec Google
Appliance ProxyStyleSheet Command Execution
exploit/unix/webapp/guestbook_ssi_exec Matt
Wright guestbook.pl Arbitrary Command Execution
exploit/unix/webapp/hastymail_exec
Hastymail 2.1.1 RC1 Command Injection
exploit/unix/webapp/joomla_tinybrowser Joomla
1.5.12 TinyBrowser File Upload Code Execution
exploit/unix/webapp/mambo_cache_lite Mambo
Cache_Lite Class mosConfig_absolute_path Remote File Include
exploit/unix/webapp/mitel_awc_exec Mitel
Audio and Web Conferencing Command Injection
exploit/unix/webapp/mybb_backdoor myBB
1.6.4 Backdoor Arbitrary Command Execution
exploit/unix/webapp/nagios3_statuswml_ping Nagios3
statuswml.cgi Ping Command Execution
exploit/unix/webapp/openview_connectednodes_exec HP
Openview connectedNodes.ovpl Remote Command Execution
exploit/unix/webapp/openx_banner_edit OpenX
banner-edit.php File Upload PHP Code Execution
exploit/unix/webapp/oracle_vm_agent_utl Oracle
VM Server Virtual Server Agent Command Injection
exploit/unix/webapp/oscommerce_filemanager
osCommerce 2.2 Arbitrary PHP Code Execution
exploit/unix/webapp/pajax_remote_exec PAJAX
Remote Command Execution
exploit/unix/webapp/php_eval Generic
PHP Code Evaluation
exploit/unix/webapp/php_include PHP
Remote File Include Generic Code Execution
exploit/unix/webapp/php_vbulletin_template
vBulletin misc.php Template Name Arbitrary Code Execution
exploit/unix/webapp/php_wordpress_foxypress
WordPress plugin Foxypress uploadify.php Arbitrary Code Execution
exploit/unix/webapp/php_wordpress_lastpost
WordPress cache_lastpostdate Arbitrary Code Execution
exploit/unix/webapp/php_xmlrpc_eval PHP XML-
RPC Arbitrary Code Execution
exploit/unix/webapp/phpbb_highlight phpBB
viewtopic.php Arbitrary Code Execution
exploit/unix/webapp/phpmyadmin_config
PhpMyAdmin Config File Code Injection
exploit/unix/webapp/qtss_parse_xml_exec
QuickTime Streaming Server parse_xml.cgi Remote Execution
exploit/unix/webapp/redmine_scm_exec Redmine
SCM Repository Arbitrary Command Execution
exploit/unix/webapp/sphpblog_file_upload Simple
PHP Blog <= 0.4.0 Remote Command Execution
exploit/unix/webapp/squirrelmail_pgp_plugin
SquirrelMail PGP Plugin command execution (SMTP)
exploit/unix/webapp/sugarcrm_unserialize_exec SugarCRM
<= 6.3.1 unserialize() PHP Code Execution
exploit/unix/webapp/tikiwiki_graph_formula_exec TikiWiki
tiki-graph_formula Remote PHP Code Execution
exploit/unix/webapp/tikiwiki_jhot_exec TikiWiki
jhot Remote Command Execution
exploit/unix/webapp/tikiwiki_unserialize_exec Tiki
Wiki <= 8.3 unserialize() PHP Code Execution
exploit/unix/webapp/trixbox_langchoice Trixbox
langChoice PHP Local File Inclusion
exploit/unix/webapp/twiki_history TWiki
History TWikiUsers rev Parameter Command Execution
exploit/unix/webapp/twiki_search TWiki
Search Function Arbitrary Command Execution
exploit/windows/antivirus/ams_hndlrsvc Symantec
System Center Alert Management System (hndlrsvc.exe) Arbitrary Command Execution
exploit/windows/antivirus/ams_xfr Symantec
System Center Alert Management System (xfr.exe) Arbitrary Command Execution
exploit/windows/antivirus/symantec_iao Symantec
Alert Management System Intel Alert Originator Service Buffer Overflow
exploit/windows/antivirus/symantec_rtvscan Symantec
Remote Management Buffer Overflow
exploit/windows/antivirus/trendmicro_serverprotect Trend
Micro ServerProtect 5.58 Buffer Overflow
exploit/windows/antivirus/trendmicro_serverprotect_createbinding Trend
Micro ServerProtect 5.58 CreateBinding() Buffer Overflow
exploit/windows/antivirus/trendmicro_serverprotect_earthagent Trend
Micro ServerProtect 5.58 EarthAgent.EXE Buffer Overflow
exploit/windows/arkeia/type77 Arkeia
Backup Client Type 77 Overflow (Win32)
exploit/windows/backdoor/energizer_duo_payload
Energizer DUO Trojan Code Execution
exploit/windows/backupexec/name_service Veritas
Backup Exec Name Service Overflow
exploit/windows/backupexec/remote_agent Veritas
Backup Exec Windows Remote Agent Overflow
exploit/windows/brightstor/ca_arcserve_342 Computer
Associates ARCserve REPORTREMOTEEXECUTECML Buffer Overflow
exploit/windows/brightstor/discovery_tcp CA
BrightStor Discovery Service TCP Overflow
exploit/windows/brightstor/discovery_udp CA
BrightStor Discovery Service Stack Buffer Overflow
exploit/windows/brightstor/etrust_itm_alert Computer
Associates Alert Notification Buffer Overflow
exploit/windows/brightstor/hsmserver CA
BrightStor HSM Buffer Overflow
exploit/windows/brightstor/lgserver CA
BrightStor ARCserve for Laptops & Desktops LGServer Buffer Overflow
exploit/windows/brightstor/lgserver_multi CA
BrightStor ARCserve for Laptops & Desktops LGServer Multiple Commands Buffer
Overflow
exploit/windows/brightstor/lgserver_rxrlogin CA
BrightStor ARCserve for Laptops & Desktops LGServer Buffer Overflow
exploit/windows/brightstor/lgserver_rxssetdatagrowthscheduleandfilter CA
BrightStor ARCserve for Laptops & Desktops LGServer
(rxsSetDataGrowthScheduleAndFilter) Buffer Overflow
exploit/windows/brightstor/lgserver_rxsuselicenseini CA
BrightStor ARCserve for Laptops & Desktops LGServer Buffer Overflow
exploit/windows/brightstor/license_gcr CA
BrightStor ARCserve License Service GCR NETWORK Buffer Overflow
exploit/windows/brightstor/mediasrv_sunrpc CA
BrightStor ArcServe Media Service Stack Buffer Overflow
exploit/windows/brightstor/message_engine CA
BrightStor ARCserve Message Engine Buffer Overflow
exploit/windows/brightstor/message_engine_72 CA
BrightStor ARCserve Message Engine 0x72 Buffer Overflow
exploit/windows/brightstor/message_engine_heap CA
BrightStor ARCserve Message Engine Heap Overflow
exploit/windows/brightstor/sql_agent CA
BrightStor Agent for Microsoft SQL Overflow
exploit/windows/brightstor/tape_engine CA
BrightStor ARCserve Tape Engine Buffer Overflow
exploit/windows/brightstor/tape_engine_8A CA
BrightStor ARCserve Tape Engine 0x8A Buffer Overflow
exploit/windows/brightstor/universal_agent CA
BrightStor Universal Agent Overflow
exploit/windows/browser/adobe_cooltype_sing Adobe
CoolType SING Table "uniqueName" Stack Buffer Overflow
exploit/windows/browser/adobe_flash_mp4_cprt Adobe
Flash Player MP4 'cprt' Overflow
exploit/windows/browser/adobe_flash_rtmp Adobe
Flash Player Object Type Confusion
exploit/windows/browser/adobe_flash_sps Adobe
Flash Player MP4 SequenceParameterSetNALUnit Buffer Overflow
exploit/windows/browser/adobe_flashplayer_arrayindexing Adobe
Flash Player AVM Verification Logic Array Indexing Code Execution
exploit/windows/browser/adobe_flashplayer_avm Adobe
Flash Player AVM Bytecode Verification Vulnerability
exploit/windows/browser/adobe_flashplayer_flash10o Adobe
Flash Player 10.2.153.1 SWF Memory Corruption Vulnerability
exploit/windows/browser/adobe_flashplayer_newfunction Adobe
Flash Player "newfunction" Invalid Pointer Use
exploit/windows/browser/adobe_flatedecode_predictor02 Adobe
FlateDecode Stream Predictor 02 Integer Overflow
exploit/windows/browser/adobe_geticon Adobe
Collab.getIcon() Buffer Overflow
exploit/windows/browser/adobe_jbig2decode Adobe
JBIG2Decode Heap Corruption
exploit/windows/browser/adobe_media_newplayer Adobe
Doc.media.newPlayer Use After Free Vulnerability
exploit/windows/browser/adobe_shockwave_rcsl_corruption Adobe
Shockwave rcsL Memory Corruption
exploit/windows/browser/adobe_utilprintf Adobe
util.printf() Buffer Overflow
exploit/windows/browser/aim_goaway AOL
Instant Messenger goaway Overflow
exploit/windows/browser/amaya_bdo Amaya
Browser v11.0 'bdo' Tag Overflow
exploit/windows/browser/aol_ampx_convertfile AOL
Radio AmpX ActiveX Control ConvertFile() Buffer Overflow
exploit/windows/browser/aol_icq_downloadagent America
Online ICQ ActiveX Control Arbitrary File Download and Execute
exploit/windows/browser/apple_itunes_playlist Apple
ITunes 4.7 Playlist Buffer Overflow
exploit/windows/browser/apple_quicktime_marshaled_punk Apple
QuickTime 7.6.7 _Marshaled_pUnk Code Execution
exploit/windows/browser/apple_quicktime_rtsp Apple
QuickTime 7.1.3 RTSP URI Buffer Overflow
exploit/windows/browser/apple_quicktime_smil_debug Apple
QuickTime 7.6.6 Invalid SMIL URI Buffer Overflow
exploit/windows/browser/ask_shortformat Ask.com
Toolbar askBar.dll ActiveX Control Buffer Overflow
exploit/windows/browser/asus_net4switch_ipswcom ASUS
Net4Switch ipswcom.dll ActiveX Stack Buffer Overflow
exploit/windows/browser/athocgov_completeinstallation AtHocGov
IWSAlerts ActiveX Control Buffer Overflow
exploit/windows/browser/autodesk_idrop Autodesk
IDrop ActiveX Control Heap Memory Corruption
exploit/windows/browser/aventail_epi_activex
SonicWALL Aventail epi.dll AuthCredential Format String
exploit/windows/browser/awingsoft_web3d_bof
AwingSoft Winds3D Player SceneURL Buffer Overflow
exploit/windows/browser/awingsoft_winds3d_sceneurl
AwingSoft Winds3D Player 3.5 SceneURL Download and Execute
exploit/windows/browser/baofeng_storm_onbeforevideodownload BaoFeng
Storm mps.dll ActiveX OnBeforeVideoDownload Buffer Overflow
exploit/windows/browser/barcode_ax49 RKD
Software BarCodeAx.dll v4.9 ActiveX Remote Stack Buffer Overflow
exploit/windows/browser/blackice_downloadimagefileurl Black
Ice Cover Page ActiveX Control Arbitrary File Download
exploit/windows/browser/c6_messenger_downloaderactivex Icona
SpA C6 Messenger DownloaderActiveX Control Arbitrary File Download and Execute
exploit/windows/browser/ca_brightstor_addcolumn CA
BrightStor ARCserve Backup AddColumn() ActiveX Buffer Overflow
exploit/windows/browser/chilkat_crypt_writefile Chilkat
Crypt ActiveX WriteFile Unsafe Method
exploit/windows/browser/cisco_anyconnect_exec Cisco
AnyConnect VPN Client ActiveX URL Property Download and Execute
exploit/windows/browser/citrix_gateway_actx Citrix
Gateway ActiveX Control Stack Based Buffer Overflow Vulnerability
exploit/windows/browser/clear_quest_cqole IBM
Rational ClearQuest CQOle Remote Code Execution
exploit/windows/browser/communicrypt_mail_activex
CommuniCrypt Mail 1.16 SMTP ActiveX Stack Buffer Overflow
exploit/windows/browser/creative_software_cachefolder Creative
Software AutoUpdate Engine ActiveX Control Buffer Overflow
exploit/windows/browser/dell_webcam_crazytalk Dell
Webcam CrazyTalk ActiveX BackImage Vulnerability
exploit/windows/browser/dxstudio_player_exec
Worldweaver DX Studio Player <= 3.0.29 shell.execute() Command Execution
exploit/windows/browser/ea_checkrequirements
Electronic Arts SnoopyCtrl ActiveX Control Buffer Overflow
exploit/windows/browser/ebook_flipviewer_fviewerloading
FlipViewer FViewerLoading ActiveX Control Buffer Overflow
exploit/windows/browser/enjoysapgui_comp_download EnjoySAP
SAP GUI ActiveX Control Arbitrary File Download
exploit/windows/browser/enjoysapgui_preparetoposthtml EnjoySAP
SAP GUI ActiveX Control Buffer Overflow
exploit/windows/browser/facebook_extractiptc Facebook
Photo Uploader 4 ActiveX Control Buffer Overflow
exploit/windows/browser/gom_openurl GOM
Player ActiveX Control Buffer Overflow
exploit/windows/browser/greendam_url Green
Dam URL Processing Buffer Overflow
exploit/windows/browser/hp_easy_printer_care_xmlcachemgr HP Easy
Printer Care XMLCacheMgr Class ActiveX Control Remote Code Execution
exploit/windows/browser/hp_easy_printer_care_xmlsimpleaccessor HP Easy
Printer Care XMLSimpleAccessor Class ActiveX Control Remote Code Execution
exploit/windows/browser/hp_loadrunner_addfile Persits
XUpload ActiveX AddFile Buffer Overflow
exploit/windows/browser/hp_loadrunner_addfolder HP
LoadRunner 9.0 ActiveX AddFolder Buffer Overflow
exploit/windows/browser/hpmqc_progcolor HP
Mercury Quality Center ActiveX Control ProgColor Buffer Overflow
exploit/windows/browser/hyleos_chemviewx_activex Hyleos
ChemView ActiveX Control Stack Buffer Overflow
exploit/windows/browser/ibm_tivoli_pme_activex_bof IBM
Tivoli Provisioning Manager Express for Software Distribution Isig.isigCtl.1
ActiveX RunAndUploadFile() Method Overflow
exploit/windows/browser/ibmegath_getxmlvalue IBM
Access Support ActiveX Control Buffer Overflow
exploit/windows/browser/ibmlotusdomino_dwa_uploadmodule IBM
Lotus Domino Web Access Upload Module Buffer Overflow
exploit/windows/browser/ie_createobject Internet
Explorer COM CreateObject Code Execution
exploit/windows/browser/ie_iscomponentinstalled Internet
Explorer isComponentInstalled Overflow
exploit/windows/browser/ie_unsafe_scripting Internet
Explorer Unsafe Scripting Misconfiguration
exploit/windows/browser/imgeviewer_tifmergemultifiles Viscom
Image Viewer CP Pro 8.0/Gold 6.0 ActiveX Control
exploit/windows/browser/intrust_annotatex_add Quest
InTrust Annotation Objects Uninitialized Pointer
exploit/windows/browser/java_basicservice_impl Sun Java
Web Start BasicServiceImpl Code Execution
exploit/windows/browser/java_codebase_trust Sun Java
Applet2ClassLoader Remote Code Execution
exploit/windows/browser/java_docbase_bof Sun Java
Runtime New Plugin docbase Buffer Overflow
exploit/windows/browser/java_mixer_sequencer Java
MixerSequencer Object GM_Song Structure Handling Vulnerability
exploit/windows/browser/java_ws_arginject_altjvm Sun Java
Web Start Plugin Command Line Argument Injection
exploit/windows/browser/java_ws_vmargs Sun Java
Web Start Plugin Command Line Argument Injection
exploit/windows/browser/juniper_sslvpn_ive_setupdll Juniper
SSL-VPN IVE JuniperSetupDLL.dll ActiveX Control Buffer Overflow
exploit/windows/browser/kazaa_altnet_heap Kazaa
Altnet Download Manager ActiveX Control Buffer Overflow
exploit/windows/browser/logitechvideocall_start Logitech
VideoCall ActiveX Control Buffer Overflow
exploit/windows/browser/lpviewer_url
iseemedia / Roxio / MGI Software LPViewer ActiveX Control Buffer Overflow
exploit/windows/browser/macrovision_downloadandexecute
Macrovision InstallShield Update Service Buffer Overflow
exploit/windows/browser/macrovision_unsafe
Macrovision InstallShield Update Service ActiveX Unsafe Method
exploit/windows/browser/mcafee_mcsubmgr_vsprintf McAfee
Subscription Manager Stack Buffer Overflow
exploit/windows/browser/mcafee_mvt_exec McAfee
Virtual Technician MVTControl 6.3.0.1911 GetObject Vulnerability
exploit/windows/browser/mcafeevisualtrace_tracetarget McAfee
Visual Trace ActiveX Control Buffer Overflow
exploit/windows/browser/mirc_irc_url mIRC IRC
URL Buffer Overflow
exploit/windows/browser/mozilla_attribchildremoved Firefox
8/9 AttributeChildRemoved() Use-After-Free
exploit/windows/browser/mozilla_interleaved_write Mozilla
Firefox Interleaved document.write/appendChild Memory Corruption
exploit/windows/browser/mozilla_mchannel Mozilla
Firefox 3.6.16 mChannel Use-After-Free Vulnerability
exploit/windows/browser/mozilla_nssvgvalue Firefox
7/8 (<= 8.0.1) nsSVGValue Out-of-Bounds Access Vulnerability
exploit/windows/browser/mozilla_nstreerange Mozilla
Firefox "nsTreeRange" Dangling Pointer Vulnerability
exploit/windows/browser/mozilla_reduceright Mozilla
Firefox Array.reduceRight() Integer Overflow
exploit/windows/browser/ms03_020_ie_objecttype MS03-020
Internet Explorer Object Type
exploit/windows/browser/ms05_054_onload MS05-054
Microsoft Internet Explorer JavaScript OnLoad Handler Remote Code Execution
exploit/windows/browser/ms06_001_wmf_setabortproc Windows
XP/2003/Vista Metafile Escape() SetAbortProc Code Execution
exploit/windows/browser/ms06_013_createtextrange Internet
Explorer createTextRange() Code Execution
exploit/windows/browser/ms06_055_vml_method Internet
Explorer VML Fill Method Code Execution
exploit/windows/browser/ms06_057_webview_setslice Internet
Explorer WebViewFolderIcon setSlice() Overflow
exploit/windows/browser/ms06_067_keyframe Internet
Explorer Daxctle.OCX KeyFrame Method Heap Buffer Overflow Vulnerability
exploit/windows/browser/ms06_071_xml_core Internet
Explorer XML Core Services HTTP Request Handling
exploit/windows/browser/ms07_017_ani_loadimage_chunksize Windows
ANI LoadAniIcon() Chunk Size Stack Buffer Overflow (HTTP)
exploit/windows/browser/ms08_041_snapshotviewer Snapshot
Viewer for Microsoft Access ActiveX Control Arbitrary File Download
exploit/windows/browser/ms08_053_mediaencoder Windows
Media Encoder 9 wmex.dll ActiveX Buffer Overflow
exploit/windows/browser/ms08_070_visual_studio_msmask
Microsoft Visual Studio Mdmask32.ocx ActiveX Buffer Overflow
exploit/windows/browser/ms08_078_xml_corruption Internet
Explorer Data Binding Memory Corruption
exploit/windows/browser/ms09_002_memory_corruption Internet
Explorer 7 CFunctionPointer Uninitialized Memory Corruption
exploit/windows/browser/ms09_043_owc_htmlurl
Microsoft OWC Spreadsheet HTMLURL Buffer Overflow
exploit/windows/browser/ms09_043_owc_msdso
Microsoft OWC Spreadsheet msDataSourceObject Memory Corruption
exploit/windows/browser/ms09_072_style_object Internet
Explorer Style getElementsByTagName Memory Corruption
exploit/windows/browser/ms10_002_aurora Internet
Explorer "Aurora" Memory Corruption
exploit/windows/browser/ms10_002_ie_object MS10-002
Internet Explorer Object Memory Use-After-Free
exploit/windows/browser/ms10_018_ie_behaviors Internet
Explorer DHTML Behaviors Use After Free
exploit/windows/browser/ms10_018_ie_tabular_activex Internet
Explorer Tabular Data Control ActiveX Memory Corruption
exploit/windows/browser/ms10_022_ie_vbscript_winhlp32 Internet
Explorer Winhlp32.exe MsgBox Code Execution
exploit/windows/browser/ms10_026_avi_nsamplespersec MS10-026
Microsoft MPEG Layer-3 Audio Stack Based Overflow
exploit/windows/browser/ms10_042_helpctr_xss_cmd_exec
Microsoft Help Center XSS and Command Execution
exploit/windows/browser/ms10_046_shortcut_icon_dllloader
Microsoft Windows Shell LNK Code Execution
exploit/windows/browser/ms10_090_ie_css_clip Internet
Explorer CSS SetUserClip Memory Corruption
exploit/windows/browser/ms11_003_ie_css_import Internet
Explorer CSS Recursive Import Use After Free
exploit/windows/browser/ms11_050_mshtml_cobjectelement MS11-050
IE mshtml!CObjectElement Use After Free
exploit/windows/browser/ms11_093_ole32 MS11-093
Microsoft Windows OLE Object File Handling Remote Code Execution
exploit/windows/browser/ms12_004_midi MS12-004
midiOutPlayNextPolyEvent Heap Overflow
exploit/windows/browser/ms12_037_same_id MS12-037
Internet Explorer Same ID Property Deleted Object Handling Memory Corruption
exploit/windows/browser/msvidctl_mpeg2
Microsoft DirectShow (msvidctl.dll) MPEG-2 Memory Corruption
exploit/windows/browser/mswhale_checkforupdates
Microsoft Whale Intelligent Application Gateway ActiveX Control Buffer Overflow
exploit/windows/browser/msxml_get_definition_code_exec MS12-043
Microsoft XML Core Services MSXML Uninitialized Memory Corruption
exploit/windows/browser/nctaudiofile2_setformatlikesample
NCTAudioFile2 v2.x ActiveX Control SetFormatLikeSample() Buffer Overflow
exploit/windows/browser/nis2004_antispam Norton
AntiSpam 2004 SymSpamHelper ActiveX Control Buffer Overflow
exploit/windows/browser/nis2004_get Symantec
Norton Internet Security 2004 ActiveX Control Buffer Overflow
exploit/windows/browser/novelliprint_callbackurl Novell
iPrint Client ActiveX Control call-back-url Buffer Overflow
exploit/windows/browser/novelliprint_datetime Novell
iPrint Client ActiveX Control Date/Time Buffer Overflow
exploit/windows/browser/novelliprint_executerequest Novell
iPrint Client ActiveX Control ExecuteRequest Buffer Overflow
exploit/windows/browser/novelliprint_executerequest_dbg Novell
iPrint Client ActiveX Control ExecuteRequest debug Buffer Overflow
exploit/windows/browser/novelliprint_getdriversettings Novell
iPrint Client ActiveX Control Buffer Overflow
exploit/windows/browser/novelliprint_getdriversettings_2 Novell
iPrint Client ActiveX Control <= 5.52 Buffer Overflow
exploit/windows/browser/novelliprint_target_frame Novell
iPrint Client ActiveX Control target-frame Buffer Overflow
exploit/windows/browser/oracle_dc_submittoexpress Oracle
Document Capture 10g ActiveX Control Buffer Overflow
exploit/windows/browser/orbit_connecting Orbit
Downloader Connecting Log Creation Buffer Overflow
exploit/windows/browser/pcvue_func PcVue
10.0 SV.UIGrdCtrl.1 'LoadObject()/SaveObject()' Trusted DWORD Vulnerability
exploit/windows/browser/persits_xupload_traversal Persits
XUpload ActiveX MakeHttpRequest Directory Traversal
exploit/windows/browser/real_arcade_installerdlg Real
Networks Arcade Games StubbyUtil.ProcessMgr ActiveX Arbitrary Code Execution
exploit/windows/browser/realplayer_cdda_uri
RealNetworks RealPlayer CDDA URI Initialization Vulnerability
exploit/windows/browser/realplayer_console
RealPlayer rmoc3260.dll ActiveX Control Heap Corruption
exploit/windows/browser/realplayer_import
RealPlayer ierpplug.dll ActiveX Control Playlist Name Buffer Overflow
exploit/windows/browser/realplayer_qcp
RealNetworks Realplayer QCP Parsing Heap Overflow
exploit/windows/browser/realplayer_smil
RealNetworks RealPlayer SMIL Buffer Overflow
exploit/windows/browser/roxio_cineplayer Roxio
CinePlayer ActiveX Control Buffer Overflow
exploit/windows/browser/safari_xslt_output Apple
Safari Webkit libxslt Arbitrary File Creation
exploit/windows/browser/samsung_neti_wiewer_backuptoavi_bof Samsung
NET-i Viewer Multiple ActiveX BackupToAvi() Remote Overflow
exploit/windows/browser/sapgui_saveviewtosessionfile SAP AG
SAPgui EAI WebViewer3D Buffer Overflow
exploit/windows/browser/softartisans_getdrivename
SoftArtisans XFile FileManager ActiveX Control Buffer Overflow
exploit/windows/browser/sonicwall_addrouteentry
SonicWall SSL-VPN NetExtender ActiveX Control Buffer Overflow
exploit/windows/browser/symantec_altirisdeployment_downloadandinstall Symantec
Altiris Deployment Solution ActiveX Control Arbitrary File Download and Execute
exploit/windows/browser/symantec_altirisdeployment_runcmd Symantec
Altiris Deployment Solution ActiveX Control Buffer Overflow
exploit/windows/browser/symantec_appstream_unsafe Symantec
AppStream LaunchObj ActiveX Control Arbitrary File Download and Execute
exploit/windows/browser/symantec_backupexec_pvcalendar Symantec
BackupExec Calendar Control Buffer Overflow
exploit/windows/browser/symantec_consoleutilities_browseandsavefile Symantec
ConsoleUtilities ActiveX Control Buffer Overflow
exploit/windows/browser/systemrequirementslab_unsafe Husdawg,
LLC. System Requirements Lab ActiveX Unsafe Method
exploit/windows/browser/teechart_pro TeeChart
Professional ActiveX Control <= 2010.0.0.3 Trusted Integer Dereference
exploit/windows/browser/tom_sawyer_tsgetx71ex552 Tom
Sawyer Software GET Extension Factory Remote Code Execution
exploit/windows/browser/trendmicro_extsetowner Trend
Micro Internet Security Pro 2010 ActiveX extSetOwner() Remote Code Execution
exploit/windows/browser/trendmicro_officescan Trend
Micro OfficeScan Client ActiveX Control Buffer Overflow
exploit/windows/browser/tumbleweed_filetransfer
Tumbleweed FileTransfer vcst_eu.dll ActiveX Control Buffer Overflow
exploit/windows/browser/ultramjcam_openfiledig_bof TRENDnet
SecurView Internet Camera UltraMJCam OpenFileDlg Buffer Overflow
exploit/windows/browser/ultraoffice_httpupload Ultra
Shareware Office Control ActiveX HttpUpload Buffer Overflow
exploit/windows/browser/verypdf_pdfview VeryPDF
PDFView OCX ActiveX OpenPDF Heap Overflow
exploit/windows/browser/viscom_movieplayer_drawtext Viscom
Software Movie Player Pro SDK ActiveX 6.8
exploit/windows/browser/vlc_amv VLC AMV
Dangling Pointer Vulnerability
exploit/windows/browser/vlc_mms_bof VLC MMS
Stream Handling Buffer Overflow
exploit/windows/browser/webdav_dll_hijacker WebDAV
Application DLL Hijacker
exploit/windows/browser/webex_ucf_newobject WebEx
UCF atucfobj.dll ActiveX NewObject Method Buffer Overflow
exploit/windows/browser/winamp_playlist_unc Winamp
Playlist UNC Path Computer Name Overflow
exploit/windows/browser/winamp_ultravox Winamp
Ultravox Streaming Metadata (in_mp3.dll) Buffer Overflow
exploit/windows/browser/windvd7_applicationtype WinDVD7
IASystemInfo.DLL ActiveX Control Buffer Overflow
exploit/windows/browser/winzip_fileview WinZip
FileView (WZFILEVIEW.FileViewCtrl.61) ActiveX Buffer Overflow
exploit/windows/browser/wmi_admintools
Microsoft WMI Administration Tools ActiveX Buffer Overflow
exploit/windows/browser/xmplay_asx XMPlay
3.3.0.4 (ASX Filename) Buffer Overflow
exploit/windows/browser/yahoomessenger_fvcom Yahoo!
Messenger YVerInfo.dll ActiveX Control Buffer Overflow
exploit/windows/browser/yahoomessenger_server Yahoo!
Messenger 8.1.0.249 ActiveX Control Buffer Overflow
exploit/windows/browser/zenturiprogramchecker_unsafe Zenturi
ProgramChecker ActiveX Control Arbitrary File Download
exploit/windows/browser/zenworks_helplauncher_exec
AdminStudio LaunchHelp.dll ActiveX Arbitrary Code Execution
exploit/windows/dcerpc/ms03_026_dcom
Microsoft RPC DCOM Interface Overflow
exploit/windows/dcerpc/ms05_017_msmq
Microsoft Message Queueing Service Path Overflow
exploit/windows/dcerpc/ms07_029_msdns_zonename
Microsoft DNS RPC Service extractQuotedChar() Overflow (TCP)
exploit/windows/dcerpc/ms07_065_msmq
Microsoft Message Queueing Service DNS Name Path Overflow
exploit/windows/driver/broadcom_wifi_ssid Broadcom
Wireless Driver Probe Response SSID Overflow
exploit/windows/driver/dlink_wifi_rates D-Link
DWL-G132 Wireless Driver Beacon Rates Overflow
exploit/windows/driver/netgear_wg111_beacon NetGear
WG111v2 Wireless Driver Long Beacon Overflow
exploit/windows/email/ms07_017_ani_loadimage_chunksize Windows
ANI LoadAniIcon() Chunk Size Stack Buffer Overflow (SMTP)
exploit/windows/email/ms10_045_outlook_ref_only Outlook
ATTACH_BY_REF_ONLY File Execution
exploit/windows/email/ms10_045_outlook_ref_resolve Outlook
ATTACH_BY_REF_RESOLVE File Execution
exploit/windows/emc/alphastor_agent EMC
AlphaStor Agent Buffer Overflow
exploit/windows/fileformat/a-pdf_wav_to_mp3 A-PDF
WAV to MP3 v1.0.0 Buffer Overflow
exploit/windows/fileformat/acdsee_fotoslate_string ACDSee
FotoSlate PLP File id Parameter Overflow
exploit/windows/fileformat/acdsee_xpm ACDSee
XPM File Section Buffer Overflow
exploit/windows/fileformat/activepdf_webgrabber
activePDF WebGrabber ActiveX Control Buffer Overflow
exploit/windows/fileformat/adobe_collectemailinfo Adobe
Collab.collectEmailInfo() Buffer Overflow
exploit/windows/fileformat/adobe_cooltype_sing Adobe
CoolType SING Table "uniqueName" Stack Buffer Overflow
exploit/windows/fileformat/adobe_flashplayer_button Adobe
Flash Player "Button" Remote Code Execution
exploit/windows/fileformat/adobe_flashplayer_newfunction Adobe
Flash Player "newfunction" Invalid Pointer Use
exploit/windows/fileformat/adobe_flatedecode_predictor02 Adobe
FlateDecode Stream Predictor 02 Integer Overflow
exploit/windows/fileformat/adobe_geticon Adobe
Collab.getIcon() Buffer Overflow
exploit/windows/fileformat/adobe_illustrator_v14_eps Adobe
Illustrator CS4 v14.0.0
exploit/windows/fileformat/adobe_jbig2decode Adobe
JBIG2Decode Memory Corruption
exploit/windows/fileformat/adobe_libtiff Adobe
Acrobat Bundled LibTIFF Integer Overflow
exploit/windows/fileformat/adobe_media_newplayer Adobe
Doc.media.newPlayer Use After Free Vulnerability
exploit/windows/fileformat/adobe_pdf_embedded_exe Adobe
PDF Embedded EXE Social Engineering
exploit/windows/fileformat/adobe_pdf_embedded_exe_nojs Adobe
PDF Escape EXE Social Engineering (No JavaScript)
exploit/windows/fileformat/adobe_reader_u3d Adobe
Reader U3D Memory Corruption Vulnerability
exploit/windows/fileformat/adobe_u3d_meshdecl Adobe
U3D CLODProgressiveMeshDeclaration Array Overrun
exploit/windows/fileformat/adobe_utilprintf Adobe
util.printf() Buffer Overflow
exploit/windows/fileformat/altap_salamander_pdb Altap
Salamander 2.5 PE Viewer Buffer Overflow
exploit/windows/fileformat/aol_desktop_linktag AOL
Desktop 9.6 RTX Buffer Overflow
exploit/windows/fileformat/aol_phobos_bof AOL 9.5
Phobos.Playlist Import() Stack-based Buffer Overflow
exploit/windows/fileformat/apple_quicktime_pnsize Apple
QuickTime PICT PnSize Buffer Overflow
exploit/windows/fileformat/apple_quicktime_texml Apple
QuickTime TeXML Style Element Stack Buffer Overflow
exploit/windows/fileformat/audio_wkstn_pls Audio
Workstation 6.4.2.4.3 pls Buffer Overflow
exploit/windows/fileformat/audiotran_pls
Audiotran 1.4.1 (PLS File) Stack Buffer Overflow
exploit/windows/fileformat/aviosoft_plf_buf Aviosoft
Digital TV Player Professional 1.0 Stack Buffer Overflow
exploit/windows/fileformat/bacnet_csv BACnet
OPC Client Buffer Overflow
exploit/windows/fileformat/blazedvd_plf BlazeDVD
5.1 PLF Buffer Overflow
exploit/windows/fileformat/bsplayer_m3u
BS.Player 2.57 Buffer Overflow (Unicode SEH)
exploit/windows/fileformat/ca_cab CA
Antivirus Engine CAB Buffer Overflow
exploit/windows/fileformat/cain_abel_4918_rdp Cain &
Abel <= v4.9.24 RDP Buffer Overflow
exploit/windows/fileformat/ccmplayer_m3u_bof
CCMPlayer 1.5 m3u Playlist Stack Based Buffer Overflow
exploit/windows/fileformat/csound_getnum_bof Csound
hetro File Handling Stack Buffer Overflow
exploit/windows/fileformat/cyberlink_p2g_bof
CyberLink Power2Go name attribute (p2g) Stack Buffer Overflow Exploit
exploit/windows/fileformat/cytel_studio_cy3 Cytel
Studio 9.0 (CY3 File) Stack Buffer Overflow
exploit/windows/fileformat/deepburner_path
AstonSoft DeepBurner (DBR File) Path Buffer Overflow
exploit/windows/fileformat/destinymediaplayer16 Destiny
Media Player 1.61 PLS M3U Buffer Overflow
exploit/windows/fileformat/digital_music_pad_pls Digital
Music Pad Version 8.2.3.3.4 Stack Buffer Overflow
exploit/windows/fileformat/djstudio_pls_bof DJ
Studio Pro 5.1 .pls Stack Buffer Overflow
exploit/windows/fileformat/djvu_imageurl DjVu
DjVu_ActiveX_MSOffice.dll ActiveX ComponentBuffer Overflow
exploit/windows/fileformat/dvdx_plf_bof DVD X
Player 5.5 .plf PlayList Buffer Overflow
exploit/windows/fileformat/emc_appextender_keyworks EMC
ApplicationXtender (KeyWorks) ActiveX Control Buffer Overflow
exploit/windows/fileformat/esignal_styletemplate_bof eSignal
and eSignal Pro <= 10.6.2425.1208 file parsing buffer overflow in QUO
exploit/windows/fileformat/etrust_pestscan CA
eTrust PestPatrol ActiveX Control Buffer Overflow
exploit/windows/fileformat/ezip_wizard_bof eZip
Wizard 3.0 Stack Buffer Overflow
exploit/windows/fileformat/fatplayer_wav Fat
Player Media Player 0.6b0 Buffer Overflow
exploit/windows/fileformat/fdm_torrent Free
Download Manager Torrent Parsing Buffer Overflow
exploit/windows/fileformat/feeddemon_opml
FeedDemon <= 3.1.0.12 Stack Buffer Overflow
exploit/windows/fileformat/foxit_reader_filewrite Foxit
PDF Reader 4.2 Javascript File Write
exploit/windows/fileformat/foxit_reader_launch Foxit
Reader 3.0 Open Execute Action Stack Based Buffer Overflow
exploit/windows/fileformat/foxit_title_bof Foxit
PDF Reader v4.1.1 Title Stack Buffer Overflow
exploit/windows/fileformat/free_mp3_ripper_wav Free MP3
CD Ripper 1.1 WAV File Stack Buffer Overflow
exploit/windows/fileformat/galan_fileformat_bof gAlan
0.2.1 Buffer Overflow
exploit/windows/fileformat/gsm_sim GSM SIM
Editor 5.15 Buffer Overflow
exploit/windows/fileformat/gta_samp GTA SA-
MP server.cfg Buffer Overflow
exploit/windows/fileformat/hhw_hhp_compiledfile_bof HTML
Help Workshop 4.74 (hhp Project File) Buffer Overflow
exploit/windows/fileformat/hhw_hhp_contentfile_bof HTML
Help Workshop 4.74 (hhp Project File) Buffer Overflow
exploit/windows/fileformat/hhw_hhp_indexfile_bof HTML
Help Workshop 4.74 (hhp Project File) Buffer Overflow
exploit/windows/fileformat/ht_mp3player_ht3_bof HT-
MP3Player 1.0 HT3 File Parsing Buffer Overflow
exploit/windows/fileformat/ibm_pcm_ws IBM
Personal Communications iSeries Access WorkStation 5.9 Profile
exploit/windows/fileformat/ideal_migration_ipj PointDev
IDEAL Migration Buffer Overflow
exploit/windows/fileformat/irfanview_jpeg2000_bof
Irfanview JPEG2000 <= v4.3.2.0 jp2 Stack Buffer Overflow
exploit/windows/fileformat/ispvm_xcf_ispxcf Lattice
Semiconductor ispVM System XCF File Handling Overflow
exploit/windows/fileformat/lattice_pac_bof Lattice
Semiconductor PAC-Designer 6.21 Symbol Value Buffer Overflow
exploit/windows/fileformat/lotusnotes_lzh Lotus
Notes 8.0.x - 8.5.2 FP2 - Autonomy Keyview (.lzh Attachment)
exploit/windows/fileformat/magix_musikmaker_16_mmm Magix
Musik Maker 16 .mmm Stack Buffer Overflow
exploit/windows/fileformat/mcafee_hercules_deletesnapshot McAfee
Remediation Client ActiveX Control Buffer Overflow
exploit/windows/fileformat/mcafee_showreport_exec McAfee
SaaS MyCioScan ShowReport Remote Command Execution
exploit/windows/fileformat/mediajukebox Media
Jukebox 8.0.400 Buffer Overflow (SEH)
exploit/windows/fileformat/microp_mppl MicroP
0.1.1.1600 (MPPL File) Stack Buffer Overflow
exploit/windows/fileformat/millenium_mp3_pls
Millenium MP3 Studio 2.0 (PLS File) Stack Buffer Overflow
exploit/windows/fileformat/mini_stream_pls_bof Mini-
Stream RM-MP3 Converter v3.1.2.1 PLS File Stack Buffer Overflow
exploit/windows/fileformat/mjm_coreplayer2011_s3m MJM Core
Player 2011 .s3m Stack Buffer Overflow
exploit/windows/fileformat/mjm_quickplayer_s3m MJM
QuickPlayer 1.00 beta 60a / QuickPlayer 2010 .s3m Stack Buffer Overflow
exploit/windows/fileformat/moxa_mediadbplayback MOXA
MediaDBPlayback ActiveX Control Buffer Overflow
exploit/windows/fileformat/mplayer_sami_bof MPlayer
SAMI Subtitle File Buffer Overflow
exploit/windows/fileformat/ms09_067_excel_featheader
Microsoft Excel Malformed FEATHEADER Record Vulnerability
exploit/windows/fileformat/ms10_004_textbytesatom
Microsoft PowerPoint Viewer TextBytesAtom Stack Buffer Overflow
exploit/windows/fileformat/ms10_038_excel_obj_bof MS11-038
Microsoft Office Excel Malformed OBJ Record Handling Overflow
exploit/windows/fileformat/ms10_087_rtf_pfragments_bof
Microsoft Word RTF pFragments Stack Buffer Overflow (File Format)
exploit/windows/fileformat/ms11_006_createsizeddibsection
Microsoft Windows CreateSizedDIBSECTION Stack Buffer Overflow
exploit/windows/fileformat/ms11_021_xlb_bof MS11-021
Microsoft Office 2007 Excel .xlb Buffer Overflow
exploit/windows/fileformat/ms12_005 MS12-005
Microsoft Office ClickOnce Unsafe Object Package Handling Vulnerability
exploit/windows/fileformat/ms12_027_mscomctl_bof MS12-027
MSCOMCTL ActiveX Buffer Overflow
exploit/windows/fileformat/ms_visual_basic_vbp
Microsoft Visual Basic VBP Buffer Overflow
exploit/windows/fileformat/msworks_wkspictureinterface
Microsoft Works 7 WkImgSrv.dll WKsPictureInterface() ActiveX Code Execution
exploit/windows/fileformat/mymp3player_m3u
Steinberg MyMP3Player 3.0 Buffer Overflow
exploit/windows/fileformat/netop NetOp
Remote Control Client 9.5 Buffer Overflow
exploit/windows/fileformat/nuance_pdf_launch_overflow Nuance
PDF Reader v6.0 Launch Stack Buffer Overflow
exploit/windows/fileformat/openoffice_ole
OpenOffice OLE Importer DocumentSummaryInformation Stream Handling Overflow
exploit/windows/fileformat/orbit_download_failed_bof Orbit
Downloader URL Unicode Conversion Overflow
exploit/windows/fileformat/orbital_viewer_orb Orbital
Viewer ORB File Parsing Buffer Overflow
exploit/windows/fileformat/proshow_cellimage_bof ProShow
Gold v4.0.2549 (PSH File) Stack Buffer Overflow
exploit/windows/fileformat/real_networks_netzip_bof Real
Networks Netzip Classic 7.5.1 86 File Parsing Buffer Overflow Vulnerability
exploit/windows/fileformat/safenet_softremote_groupname SafeNet
SoftRemote GROUPNAME Buffer Overflow
exploit/windows/fileformat/sascam_get SasCam
Webcam Server v.2.6.5 Get() method Buffer Overflow
exploit/windows/fileformat/scadaphone_zip ScadaTEC
ScadaPhone <= v5.3.11.1230 Stack Buffer Overflow
exploit/windows/fileformat/shadow_stream_recorder_bof Shadow
Stream Recorder 3.0.1.7 Buffer Overflow
exploit/windows/fileformat/somplplayer_m3u
S.O.M.P.L 1.0 Player Buffer Overflow
exploit/windows/fileformat/subtitle_processor_m3u_bof Subtitle
Processor 7.7.1 .M3U SEH Unicode Buffer Overflow
exploit/windows/fileformat/tfm_mmplayer_m3u_ppl_bof TFM
MMPlayer (m3u/ppl File) Buffer Overflow
exploit/windows/fileformat/tugzip TugZip
3.5 Zip File Parsing Buffer Overflow Vulnerability
exploit/windows/fileformat/ultraiso_ccd UltraISO
CCD File Parsing Buffer Overflow
exploit/windows/fileformat/ultraiso_cue UltraISO
CUE File Parsing Buffer Overflow
exploit/windows/fileformat/ursoft_w32dasm URSoft
W32Dasm Disassembler Function Buffer Overflow
exploit/windows/fileformat/varicad_dwb VariCAD
2010-2.05 EN (DWB File) Stack Buffer Overflow
exploit/windows/fileformat/videolan_tivo VideoLAN
VLC TiVo Buffer Overflow
exploit/windows/fileformat/videospirit_visprj
VeryTools Video Spirit Pro <= 1.70
exploit/windows/fileformat/visio_dxf_bof
Microsoft Office Visio VISIODWG.DLL DXF File Handling Vulnerability
exploit/windows/fileformat/visiwave_vwr_type VisiWave
VWR File Parsing Vulnerability
exploit/windows/fileformat/vlc_modplug_s3m VideoLAN
VLC ModPlug ReadS3M Stack Buffer Overflow
exploit/windows/fileformat/vlc_realtext VLC
Media Player RealText Subtitle Overflow
exploit/windows/fileformat/vlc_smb_uri VideoLAN
Client (VLC) Win32 smb:// URI Buffer Overflow
exploit/windows/fileformat/vlc_webm VideoLAN
VLC MKV Memory Corruption
exploit/windows/fileformat/vuplayer_cue VUPlayer
CUE Buffer Overflow
exploit/windows/fileformat/vuplayer_m3u VUPlayer
M3U Buffer Overflow
exploit/windows/fileformat/wireshark_packet_dect
Wireshark <= 1.4.4 packet-dect.c Stack Buffer Overflow (local)
exploit/windows/fileformat/wm_downloader_m3u WM
Downloader 3.1.2.2 Buffer Overflow
exploit/windows/fileformat/xenorate_xpl_bof Xenorate
2.50 (.xpl) universal Local Buffer Overflow (SEH)
exploit/windows/fileformat/xion_m3u_sehbof Xion
Audio Player 1.0.126 Unicode Stack Buffer Overflow
exploit/windows/fileformat/xradio_xrl_sehbof xRadio
0.95b Buffer Overflow
exploit/windows/fileformat/zinfaudioplayer221_pls Zinf
Audio Player 2.2.1 (PLS File) Stack Buffer Overflow
exploit/windows/firewall/blackice_pam_icq ISS
PAM.dll ICQ Parser Buffer Overflow
exploit/windows/firewall/kerio_auth Kerio
Firewall 2.1.4 Authentication Packet Overflow
exploit/windows/ftp/32bitftp_list_reply 32bit
FTP Client Stack Buffer Overflow
exploit/windows/ftp/3cdaemon_ftp_user 3Com
3CDaemon 2.0 FTP Username Overflow
exploit/windows/ftp/aasync_list_reply AASync
v2.2.1.0 (Win32) Stack Buffer Overflow (LIST)
exploit/windows/ftp/ability_server_stor Ability
Server 2.34 STOR Command Stack Buffer Overflow
exploit/windows/ftp/absolute_ftp_list_bof
AbsoluteFTP 1.9.6 - 2.2.10 LIST Command Remote Buffer Overflow
exploit/windows/ftp/cesarftp_mkd Cesar
FTP 0.99g MKD Command Buffer Overflow
exploit/windows/ftp/comsnd_ftpd_fmtstr
ComSndFTP v1.3.7 Beta USER Format String (Write4) Vulnerability
exploit/windows/ftp/dreamftp_format
BolinTech Dream FTP Server 1.02 Format String
exploit/windows/ftp/easyfilesharing_pass Easy
File Sharing FTP Server 2.0 PASS Overflow
exploit/windows/ftp/easyftp_cwd_fixret EasyFTP
Server <= 1.7.0.11 CWD Command Stack Buffer Overflow
exploit/windows/ftp/easyftp_list_fixret EasyFTP
Server <= 1.7.0.11 LIST Command Stack Buffer Overflow
exploit/windows/ftp/easyftp_mkd_fixret EasyFTP
Server <= 1.7.0.11 MKD Command Stack Buffer Overflow
exploit/windows/ftp/filecopa_list_overflow FileCopa
FTP Server pre 18 Jul Version
exploit/windows/ftp/filewrangler_list_reply
FileWrangler 5.30 Stack Buffer Overflow
exploit/windows/ftp/freeftpd_user freeFTPd
1.0 Username Overflow
exploit/windows/ftp/ftpgetter_pwd_reply
FTPGetter Standard v3.55.0.05 Stack Buffer Overflow (PWD)
exploit/windows/ftp/ftppad_list_reply FTPPad
1.2.0 Stack Buffer Overflow
exploit/windows/ftp/ftpshell51_pwd_reply FTPShell
5.1 Stack Buffer Overflow
exploit/windows/ftp/ftpsynch_list_reply FTP
Synchronizer Professional 4.0.73.274 Stack Buffer Overflow
exploit/windows/ftp/gekkomgr_list_reply Gekko
Manager FTP Client Stack Buffer Overflow
exploit/windows/ftp/globalscapeftp_input
GlobalSCAPE Secure FTP Server Input Overflow
exploit/windows/ftp/goldenftp_pass_bof
GoldenFTP PASS Stack Buffer Overflow
exploit/windows/ftp/httpdx_tolog_format HTTPDX
tolog() Function Format String Vulnerability
exploit/windows/ftp/leapftp_list_reply LeapFTP
3.0.1 Stack Buffer Overflow
exploit/windows/ftp/leapftp_pasv_reply LeapWare
LeapFTP v2.7.3.600 PASV Reply Client Overflow
exploit/windows/ftp/ms09_053_ftpd_nlst
Microsoft IIS FTP Server NLST Response Overflow
exploit/windows/ftp/netterm_netftpd_user NetTerm
NetFTPD USER Buffer Overflow
exploit/windows/ftp/odin_list_reply Odin
Secure FTP 4.1 Stack Buffer Overflow (LIST)
exploit/windows/ftp/oracle9i_xdb_ftp_pass Oracle
9i XDB FTP PASS Overflow (win32)
exploit/windows/ftp/oracle9i_xdb_ftp_unlock Oracle
9i XDB FTP UNLOCK Overflow (win32)
exploit/windows/ftp/proftp_banner ProFTP
2.9 Banner Remote Buffer Overflow
exploit/windows/ftp/quickshare_traversal_write
QuickShare File Server 1.2.1 Directory Traversal Vulnerability
exploit/windows/ftp/ricoh_dl_bof Ricoh DC
DL-10 SR10 FTP USER Command Buffer Overflow
exploit/windows/ftp/sami_ftpd_user
KarjaSoft Sami FTP Server v2.02 USER Overflow
exploit/windows/ftp/sasser_ftpd_port Sasser
Worm avserve FTP PORT Buffer Overflow
exploit/windows/ftp/scriptftp_list
ScriptFTP <= 3.3 Remote Buffer Overflow (LIST)
exploit/windows/ftp/seagull_list_reply Seagull
FTP v3.3 build 409 Stack Buffer Overflow
exploit/windows/ftp/servu_chmod Serv-U
FTP Server < 4.2 Buffer Overflow
exploit/windows/ftp/servu_mdtm Serv-U
FTPD MDTM Overflow
exploit/windows/ftp/slimftpd_list_concat SlimFTPd
LIST Concatenation Overflow
exploit/windows/ftp/trellian_client_pasv Trellian
FTP Client 3.01 PASV Remote Buffer Overflow
exploit/windows/ftp/vermillion_ftpd_port
Vermillion FTP Daemon PORT Command Memory Corruption
exploit/windows/ftp/warftpd_165_pass War-FTPD
1.65 Password Overflow
exploit/windows/ftp/warftpd_165_user War-FTPD
1.65 Username Overflow
exploit/windows/ftp/wftpd_size Texas
Imperial Software WFTPD 3.23 SIZE Overflow
exploit/windows/ftp/wsftp_server_503_mkd WS-FTP
Server 5.03 MKD Overflow
exploit/windows/ftp/wsftp_server_505_xmd5 Ipswitch
WS_FTP Server 5.05 XMD5 Overflow
exploit/windows/ftp/xftp_client_pwd Xftp FTP
Client 3.0 PWD Remote Buffer Overflow
exploit/windows/ftp/xlink_client Xlink
FTP Client Buffer Overflow
exploit/windows/ftp/xlink_server Xlink
FTP Server Buffer Overflow
exploit/windows/games/mohaa_getinfo Medal Of
Honor Allied Assault getinfo Stack Buffer Overflow
exploit/windows/games/racer_503beta5 Racer
v0.5.3 beta 5 Buffer Overflow
exploit/windows/games/ut2004_secure Unreal
Tournament 2004 "secure" Overflow (Win32)
exploit/windows/http/adobe_robohelper_authbypass Adobe
RoboHelp Server 8 Arbitrary File Upload and Execute
exploit/windows/http/altn_securitygateway Alt-N
SecurityGateway username Buffer Overflow
exploit/windows/http/altn_webadmin Alt-N
WebAdmin USER Buffer Overflow
exploit/windows/http/amlibweb_webquerydll_app Amlibweb
NetOpacs webquery.dll Stack Buffer Overflow
exploit/windows/http/apache_chunked Apache
Win32 Chunked Encoding
exploit/windows/http/apache_mod_rewrite_ldap Apache
module mod_rewrite LDAP protocol Buffer Overflow
exploit/windows/http/apache_modjk_overflow Apache
mod_jk 1.2.20 Buffer Overflow
exploit/windows/http/badblue_ext_overflow BadBlue
2.5 EXT.dll Buffer Overflow
exploit/windows/http/badblue_passthru BadBlue
2.72b PassThru Buffer Overflow
exploit/windows/http/bea_weblogic_jsessionid BEA
WebLogic JSESSIONID Cookie Value Overflow
exploit/windows/http/bea_weblogic_post_bof Oracle
Weblogic Apache Connector POST Request Buffer Overflow
exploit/windows/http/bea_weblogic_transfer_encoding BEA
Weblogic Transfer-Encoding Buffer Overflow
exploit/windows/http/belkin_bulldog Belkin
Bulldog Plus Web Service Buffer Overflow
exploit/windows/http/ca_arcserve_rpc_authbypass CA
Arcserve D2D GWT RPC Credential Information Disclosure
exploit/windows/http/ca_igateway_debug CA
iTechnology iGateway Debug Mode Buffer Overflow
exploit/windows/http/ca_totaldefense_regeneratereports CA Total
Defense Suite reGenerateReports Stored Procedure SQL Injection
exploit/windows/http/coldfusion_fckeditor
ColdFusion 8.0.1 Arbitrary File Upload and Execute
exploit/windows/http/easyftp_list EasyFTP
Server <= 1.7.0.11 list.html path Stack Buffer Overflow
exploit/windows/http/edirectory_host Novell
eDirectory NDS Server Host Header Overflow
exploit/windows/http/edirectory_imonitor
eDirectory 8.7.3 iMonitor Remote Stack Buffer Overflow
exploit/windows/http/efs_easychatserver_username EFS Easy
Chat Server Authentication Request Handling Buffer Overflow
exploit/windows/http/ezserver_http
EZHomeTech EzServer <= 6.4.017 Stack Buffer Overflow Vulnerability
exploit/windows/http/fdm_auth_header Free
Download Manager Remote Control Server Buffer Overflow
exploit/windows/http/hp_nnm_getnnmdata_hostname HP
OpenView Network Node Manager getnnmdata.exe (Hostname) CGI Buffer Overflow
exploit/windows/http/hp_nnm_getnnmdata_icount HP
OpenView Network Node Manager getnnmdata.exe (ICount) CGI Buffer Overflow
exploit/windows/http/hp_nnm_getnnmdata_maxage HP
OpenView Network Node Manager getnnmdata.exe (MaxAge) CGI Buffer Overflow
exploit/windows/http/hp_nnm_nnmrptconfig_nameparams HP
OpenView NNM nnmRptConfig nameParams Buffer Overflow
exploit/windows/http/hp_nnm_nnmrptconfig_schdparams HP
OpenView NNM nnmRptConfig.exe schdParams Buffer Overflow
exploit/windows/http/hp_nnm_openview5 HP
OpenView Network Node Manager OpenView5.exe CGI Buffer Overflow
exploit/windows/http/hp_nnm_ovalarm_lang HP
OpenView Network Node Manager ovalarm.exe CGI Buffer Overflow
exploit/windows/http/hp_nnm_ovas HP
OpenView NNM 7.53, 7.51 OVAS.EXE Pre-Authentication Stack Buffer Overflow
exploit/windows/http/hp_nnm_ovbuildpath_textfile HP
OpenView Network Node Manager ov.dll _OVBuildPath Buffer Overflow
exploit/windows/http/hp_nnm_ovwebhelp HP
OpenView Network Node Manager OvWebHelp.exe CGI Buffer Overflow
exploit/windows/http/hp_nnm_ovwebsnmpsrv_main HP
OpenView Network Node Manager ovwebsnmpsrv.exe main Buffer Overflow
exploit/windows/http/hp_nnm_ovwebsnmpsrv_ovutil HP
OpenView Network Node Manager ovwebsnmpsrv.exe ovutil Buffer Overflow
exploit/windows/http/hp_nnm_ovwebsnmpsrv_uro HP
OpenView Network Node Manager ovwebsnmpsrv.exe Unrecognized Option Buffer Overflow
exploit/windows/http/hp_nnm_snmp HP
OpenView Network Node Manager Snmp.exe CGI Buffer Overflow
exploit/windows/http/hp_nnm_snmpviewer_actapp HP
OpenView Network Node Manager snmpviewer.exe Buffer Overflow
exploit/windows/http/hp_nnm_toolbar_01 HP
OpenView Network Node Manager Toolbar.exe CGI Buffer Overflow
exploit/windows/http/hp_nnm_toolbar_02 HP
OpenView Network Node Manager Toolbar.exe CGI Cookie Handling Buffer Overflow
exploit/windows/http/hp_nnm_webappmon_execvp HP
OpenView Network Node Manager execvp_nc Buffer Overflow
exploit/windows/http/hp_nnm_webappmon_ovjavalocale HP NNM
CGI webappmon.exe OvJavaLocale Buffer Overflow
exploit/windows/http/hp_openview_insight_backdoor HP
OpenView Performance Insight Server Backdoor Account Code Execution
exploit/windows/http/hp_power_manager_filename HP Power
Manager 'formExportDataLogs' Buffer Overflow
exploit/windows/http/hp_power_manager_login Hewlett-
Packard Power Manager Administration Buffer Overflow
exploit/windows/http/httpdx_handlepeer HTTPDX
h_handlepeer() Function Buffer Overflow
exploit/windows/http/httpdx_tolog_format HTTPDX
tolog() Function Format String Vulnerability
exploit/windows/http/ia_webmail IA
WebMail 3.x Buffer Overflow
exploit/windows/http/ibm_tivoli_endpoint_bof IBM
Tivoli Endpoint Manager POST Query Buffer Overflow
exploit/windows/http/ibm_tpmfosd_overflow IBM TPM
for OS Deployment 5.1.0.x rembo.exe Buffer Overflow
exploit/windows/http/ibm_tsm_cad_header IBM
Tivoli Storage Manager Express CAD Service Buffer Overflow
exploit/windows/http/icecast_header Icecast
(<= 2.0.1) Header Overwrite (win32)
exploit/windows/http/integard_password_bof Race
River Integard Home/Pro LoginAdmin Password Stack Buffer Overflow
exploit/windows/http/intersystems_cache
InterSystems Cache UtilConfigHome.csp Argument Buffer Overflow
exploit/windows/http/ipswitch_wug_maincfgret Ipswitch
WhatsUp Gold 8.03 Buffer Overflow
exploit/windows/http/kolibri_http Kolibri
<= v2.0 HTTP Server HEAD Buffer Overflow
exploit/windows/http/landesk_thinkmanagement_upload_asp LANDesk
Lenovo ThinkManagement Console Remote Command Execution
exploit/windows/http/mailenable_auth_header
MailEnable Authorization Header Buffer Overflow
exploit/windows/http/manageengine_apps_mngr
ManageEngine Applications Manager Authenticated Code Execution
exploit/windows/http/maxdb_webdbm_database MaxDB
WebDBM Database Parameter Overflow
exploit/windows/http/maxdb_webdbm_get_overflow MaxDB
WebDBM GET Buffer Overflow
exploit/windows/http/mcafee_epolicy_source McAfee
ePolicy Orchestrator / ProtectionPilot Overflow
exploit/windows/http/mdaemon_worldclient_form2raw MDaemon
<= 6.8.5 WorldClient form2raw.cgi Stack Buffer Overflow
exploit/windows/http/minishare_get_overflow
Minishare 1.4.1 Buffer Overflow
exploit/windows/http/navicopa_get_overflow NaviCOPA
2.0.1 URL Handling Buffer Overflow
exploit/windows/http/netdecision_http_bof
NetDecision 4.5.1 HTTP Server Buffer Overflow
exploit/windows/http/novell_imanager_upload Novell
iManager getMultiPartParameters Arbitrary File Upload
exploit/windows/http/novell_messenger_acceptlang Novell
Messenger Server 2.0 Accept-Language Overflow
exploit/windows/http/nowsms Now
SMS/MMS Gateway Buffer Overflow
exploit/windows/http/oracle9i_xdb_pass Oracle
9i XDB HTTP PASS Overflow (win32)
exploit/windows/http/osb_uname_jlist Oracle
Secure Backup Authentication Bypass/Command Injection Vulnerability
exploit/windows/http/peercast_url PeerCast
<= 0.1216 URL Handling Buffer Overflow (win32)
exploit/windows/http/php_apache_request_headers_bof PHP
apache_request_headers Function Buffer Overflow
exploit/windows/http/privatewire_gateway Private
Wire Gateway Buffer Overflow
exploit/windows/http/psoproxy91_overflow PSO
Proxy v0.91 Stack Buffer Overflow
exploit/windows/http/rabidhamster_r4_log
RabidHamster R4 Log Entry sprintf() Buffer Overflow
exploit/windows/http/sambar6_search_results Sambar 6
Search Results Buffer Overflow
exploit/windows/http/sap_mgmt_con_osexec_payload SAP
Management Console OSExecute Payload Execution
exploit/windows/http/sapdb_webtools SAP DB
7.4 WebTools Buffer Overflow
exploit/windows/http/savant_31_overflow Savant
3.1 Web Server Overflow
exploit/windows/http/servu_session_cookie
Rhinosoft Serv-U Session Cookie Buffer Overflow
exploit/windows/http/shoutcast_format
SHOUTcast DNAS/win32 1.9.4 File Request Format String Overflow
exploit/windows/http/shttpd_post SHTTPD
<= 1.34 URI-Encoded POST Request Overflow (win32)
exploit/windows/http/solarwinds_storage_manager_sql
Solarwinds Storage Manager 5.1.0 SQL Injection
exploit/windows/http/steamcast_useragent
Streamcast <= 0.9.75 HTTP User-Agent Buffer Overflow
exploit/windows/http/sybase_easerver Sybase
EAServer 5.2 Remote Stack Buffer Overflow
exploit/windows/http/trackercam_phparg_overflow
TrackerCam PHP Argument Buffer Overflow
exploit/windows/http/trendmicro_officescan Trend
Micro OfficeScan Remote Stack Buffer Overflow
exploit/windows/http/umbraco_upload_aspx Umbraco
CMS Remote Command Execution
exploit/windows/http/webster_http Webster
HTTP Server GET Buffer Overflow
exploit/windows/http/xampp_webdav_upload_php XAMPP
WebDAV PHP Upload
exploit/windows/http/xitami_if_mod_since Xitami
2.5c2 Web Server If-Modified-Since Overflow
exploit/windows/http/zenworks_uploadservlet Novell
ZENworks Configuration Management Remote Execution
exploit/windows/iis/iis_webdav_upload_asp
Microsoft IIS WebDAV Write Access Code Execution
exploit/windows/iis/ms01_023_printer
Microsoft IIS 5.0 Printer Host Header Overflow
exploit/windows/iis/ms01_026_dbldecode
Microsoft IIS/PWS CGI Filename Double Decode Command Execution
exploit/windows/iis/ms01_033_idq
Microsoft IIS 5.0 IDQ Path Overflow
exploit/windows/iis/ms02_018_htr
Microsoft IIS 4.0 .HTR Path Overflow
exploit/windows/iis/ms02_065_msadc
Microsoft IIS MDAC msadcs.dll RDS DataStub Content-Type Overflow
exploit/windows/iis/ms03_007_ntdll_webdav
Microsoft IIS 5.0 WebDAV ntdll.dll Path Overflow
exploit/windows/iis/msadc
Microsoft IIS MDAC msadcs.dll RDS Arbitrary Remote Command Execution
exploit/windows/imap/eudora_list Qualcomm
WorldMail 3.0 IMAPD LIST Buffer Overflow
exploit/windows/imap/imail_delete IMail
IMAP4D Delete Overflow
exploit/windows/imap/ipswitch_search Ipswitch
IMail IMAP SEARCH Buffer Overflow
exploit/windows/imap/mailenable_login
MailEnable IMAPD (2.34/2.35) Login Request Buffer Overflow
exploit/windows/imap/mailenable_status
MailEnable IMAPD (1.54) STATUS Request Buffer Overflow
exploit/windows/imap/mailenable_w3c_select
MailEnable IMAPD W3C Logging Buffer Overflow
exploit/windows/imap/mdaemon_cram_md5 Mdaemon
8.0.3 IMAPD CRAM-MD5 Authentication Overflow
exploit/windows/imap/mdaemon_fetch MDaemon
9.6.4 IMAPD FETCH Buffer Overflow
exploit/windows/imap/mercur_imap_select_overflow Mercur
v5.0 IMAP SP3 SELECT Buffer Overflow
exploit/windows/imap/mercur_login Mercur
Messaging 2005 IMAP Login Buffer Overflow
exploit/windows/imap/mercury_login
Mercury/32 <= 4.01b LOGIN Buffer Overflow
exploit/windows/imap/mercury_rename
Mercury/32 v4.01a IMAP RENAME Buffer Overflow
exploit/windows/imap/novell_netmail_append Novell
NetMail <= 3.52d IMAP APPEND Buffer Overflow
exploit/windows/imap/novell_netmail_auth Novell
NetMail <=3.52d IMAP AUTHENTICATE Buffer Overflow
exploit/windows/imap/novell_netmail_status Novell
NetMail <= 3.52d IMAP STATUS Buffer Overflow
exploit/windows/imap/novell_netmail_subscribe Novell
NetMail <= 3.52d IMAP SUBSCRIBE Buffer Overflow
exploit/windows/isapi/ms00_094_pbserver
Microsoft IIS Phone Book Service Overflow
exploit/windows/isapi/ms03_022_nsiislog_post
Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow
exploit/windows/isapi/ms03_051_fp30reg_chunked
Microsoft IIS ISAPI FrontPage fp30reg.dll Chunked Overflow
exploit/windows/isapi/rsa_webagent_redirect
Microsoft IIS ISAPI RSA WebAgent Redirect Overflow
exploit/windows/isapi/w3who_query
Microsoft IIS ISAPI w3who.dll Query String Overflow
exploit/windows/ldap/imail_thc IMail
LDAP Service Buffer Overflow
exploit/windows/ldap/pgp_keyserver7 Network
Associates PGP KeyServer 7 LDAP Buffer Overflow
exploit/windows/license/calicclnt_getconfig Computer
Associates License Client GETCONFIG Overflow
exploit/windows/license/calicserv_getconfig Computer
Associates License Server GETCONFIG Overflow
exploit/windows/license/flexnet_lmgrd_bof FlexNet
License Server Manager lmgrd Buffer Overflow
exploit/windows/license/sentinel_lm7_udp
SentinelLM UDP Buffer Overflow
exploit/windows/lotus/domino_http_accept_language IBM
Lotus Domino Web Server Accept-Language Stack Buffer Overflow
exploit/windows/lotus/domino_icalendar_organizer IBM
Lotus Domino iCalendar MAILTO Buffer Overflow
exploit/windows/lotus/domino_sametime_stmux IBM
Lotus Domino Sametime STMux.exe Stack Buffer Overflow
exploit/windows/lotus/lotusnotes_lzh Lotus
Notes 8.0.x - 8.5.2 FP2 - Autonomy Keyview (.lzh Attachment)
exploit/windows/lpd/hummingbird_exceed
Hummingbird Connectivity 10 SP5 LPD Buffer Overflow
exploit/windows/lpd/niprint NIPrint
LPD Request Overflow
exploit/windows/lpd/saplpd SAP
SAPLPD 6.28 Buffer Overflow
exploit/windows/lpd/wincomlpd_admin
WinComLPD <= 3.0.2 Buffer Overflow
exploit/windows/misc/agentxpp_receive_agentx AgentX++
Master AgentX::receive_agentx Stack Buffer Overflow
exploit/windows/misc/allmediaserver_bof
ALLMediaServer 0.8 Buffer Overflow
exploit/windows/misc/apple_quicktime_rtsp_response Apple
QuickTime 7.3 RTSP Response Header Buffer Overflow
exploit/windows/misc/asus_dpcproxy_overflow Asus
Dpcproxy Buffer Overflow
exploit/windows/misc/avidphoneticindexer Avid
Media Composer 5.5 - Avid Phonetic Indexer Buffer Overflow
exploit/windows/misc/bakbone_netvault_heap BakBone
NetVault Remote Heap Overflow
exploit/windows/misc/bcaaa_bof Blue
Coat Authentication and Authorization Agent (BCAAA) 5 Buffer Overflow
exploit/windows/misc/bigant_server BigAnt
Server 2.2 Buffer Overflow
exploit/windows/misc/bigant_server_250 BigAnt
Server 2.50 SP1 Buffer Overflow
exploit/windows/misc/bigant_server_usv BigAnt
Server 2.52 USV Buffer Overflow
exploit/windows/misc/bomberclone_overflow
Bomberclone 0.11.6 Buffer Overflow
exploit/windows/misc/bopup_comm Bopup
Communications Server Buffer Overflow
exploit/windows/misc/borland_interbase Borland
Interbase Create-Request Buffer Overflow
exploit/windows/misc/borland_starteam Borland
CaliberRM StarTeam Multicast Service Buffer Overflow
exploit/windows/misc/citrix_streamprocess Citrix
Provisioning Services 5.6 streamprocess.exe Buffer Overflow
exploit/windows/misc/citrix_streamprocess_data_msg Citrix
Provisioning Services 5.6 SP1 Streamprocess Opcode 0x40020000 Buffer Overflow
exploit/windows/misc/citrix_streamprocess_get_boot_record_request Citrix
Provisioning Services 5.6 SP1 Streamprocess Opcode 0x40020004 Buffer Overflow
exploit/windows/misc/citrix_streamprocess_get_footer Citrix
Provisioning Services 5.6 SP1 Streamprocess Opcode 0x40020002 Buffer Overflow
exploit/windows/misc/citrix_streamprocess_get_objects Citrix
Provisioning Services 5.6 SP1 Streamprocess Opcode 0x40020006 Buffer Overflow
exploit/windows/misc/doubletake
DoubleTake/HP StorageWorks Storage Mirroring Service Authentication Overflow
exploit/windows/misc/eiqnetworks_esa
eIQNetworks ESA License Manager LICMGR_ADDLICENSE Overflow
exploit/windows/misc/eiqnetworks_esa_topology
eIQNetworks ESA Topology DELETEDEVICE Overflow
exploit/windows/misc/eureka_mail_err Eureka
Email 2.2q ERR Remote Buffer Overflow
exploit/windows/misc/fb_isc_attach_database Firebird
Relational Database isc_attach_database() Buffer Overflow
exploit/windows/misc/fb_isc_create_database Firebird
Relational Database isc_create_database() Buffer Overflow
exploit/windows/misc/fb_svc_attach Firebird
Relational Database SVC_attach() Buffer Overflow
exploit/windows/misc/gimp_script_fu GIMP
script-fu Server Buffer Overflow
exploit/windows/misc/hp_dataprotector_new_folder HP Data
Protector Create New Folder Buffer Overflow
exploit/windows/misc/hp_magentservice HP
Diagnostics Server magentservice.exe Overflow
exploit/windows/misc/hp_omniinet_1 HP
OmniInet.exe MSG_PROTOCOL Buffer Overflow
exploit/windows/misc/hp_omniinet_2 HP
OmniInet.exe MSG_PROTOCOL Buffer Overflow
exploit/windows/misc/hp_omniinet_3 HP
OmniInet.exe Opcode 27 Buffer Overflow
exploit/windows/misc/hp_omniinet_4 HP
OmniInet.exe Opcode 20 Buffer Overflow
exploit/windows/misc/hp_ovtrace HP
OpenView Operations OVTrace Buffer Overflow
exploit/windows/misc/ib_isc_attach_database Borland
InterBase isc_attach_database() Buffer Overflow
exploit/windows/misc/ib_isc_create_database Borland
InterBase isc_create_database() Buffer Overflow
exploit/windows/misc/ib_svc_attach Borland
InterBase SVC_attach() Buffer Overflow
exploit/windows/misc/ibm_tsm_cad_ping IBM
Tivoli Storage Manager Express CAD Service Buffer Overflow
exploit/windows/misc/ibm_tsm_rca_dicugetidentify IBM
Tivoli Storage Manager Express RCA Service Buffer Overflow
exploit/windows/misc/itunes_extm3u_bof Apple
iTunes 10 Extended M3U Stack Buffer Overflow
exploit/windows/misc/landesk_aolnsrvr LANDesk
Management Suite 8.7 Alert Service Buffer Overflow
exploit/windows/misc/mercury_phonebook
Mercury/32 <= v4.01b PH Server Module Buffer Overflow
exploit/windows/misc/mini_stream Mini-
Stream 3.0.1.1 Buffer Overflow
exploit/windows/misc/mirc_privmsg_server mIRC <=
6.34 PRIVMSG Handling Stack Buffer Overflow
exploit/windows/misc/ms07_064_sami
Microsoft DirectX DirectShow SAMI Buffer Overflow
exploit/windows/misc/netcat110_nt Netcat
v1.10 NT Stack Buffer Overflow
exploit/windows/misc/nettransport
NetTransport Download Manager 2.90.510 Buffer Overflow
exploit/windows/misc/poisonivy_bof Poison
Ivy 2.3.2 C&C Server Buffer Overflow
exploit/windows/misc/poppeeper_date POP
Peeper v3.4 DATE Buffer Overflow
exploit/windows/misc/poppeeper_uidl POP
Peeper v3.4 UIDL Buffer Overflow
exploit/windows/misc/pxexploit PXE
Exploit Server
exploit/windows/misc/realtek_playlist Realtek
Media Player Playlist Buffer Overflow
exploit/windows/misc/sap_2005_license SAP
Business One License Manager 2005 Buffer Overflow
exploit/windows/misc/shixxnote_font
ShixxNOTE 6.net Font Field Overflow
exploit/windows/misc/splayer_content_type SPlayer
3.7 Content-Type Buffer Overflow
exploit/windows/misc/stream_down_bof CoCSoft
StreamDown 6.8.0 Buffer Overflow
exploit/windows/misc/talkative_response
Talkative IRC v0.4.4.16 Response Buffer Overflow
exploit/windows/misc/tiny_identd_overflow
TinyIdentD 2.2 Stack Buffer Overflow
exploit/windows/misc/trendmicro_cmdprocessor_addtask
TrendMicro Control Manger <= v5.5 CmdProcessor.exe Stack Buffer Overflow
exploit/windows/misc/ufo_ai UFO:
Alien Invasion IRC Client Buffer Overflow
exploit/windows/misc/windows_rsh Windows
RSH daemon Buffer Overflow
exploit/windows/misc/wireshark_lua
Wireshark console.lua Pre-Loading Script Execution
exploit/windows/misc/wireshark_packet_dect
Wireshark <= 1.4.4 packet-dect.c Stack Buffer Overflow (remote)
exploit/windows/mmsp/ms10_025_wmss_connect_funnel Windows
Media Services ConnectFunnel Stack Buffer Overflow
exploit/windows/motorola/timbuktu_fileupload Timbuktu
Pro Directory Traversal/File Upload
exploit/windows/mssql/lyris_listmanager_weak_pass Lyris
ListManager MSDE Weak sa Password
exploit/windows/mssql/ms02_039_slammer
Microsoft SQL Server Resolution Overflow
exploit/windows/mssql/ms02_056_hello
Microsoft SQL Server Hello Overflow
exploit/windows/mssql/ms09_004_sp_replwritetovarbin
Microsoft SQL Server sp_replwritetovarbin Memory Corruption
exploit/windows/mssql/ms09_004_sp_replwritetovarbin_sqli
Microsoft SQL Server sp_replwritetovarbin Memory Corruption via SQL Injection
exploit/windows/mssql/mssql_payload
Microsoft SQL Server Payload Execution
exploit/windows/mssql/mssql_payload_sqli
Microsoft SQL Server Payload Execution via SQL Injection
exploit/windows/mysql/mysql_payload Oracle
MySQL for Microsoft Windows Payload Execution
exploit/windows/mysql/mysql_yassl_hello MySQL
yaSSL SSL Hello Message Buffer Overflow
exploit/windows/nfs/xlink_nfsd Omni-NFS
Server Buffer Overflow
exploit/windows/nntp/ms05_030_nntp
Microsoft Outlook Express NNTP Response Parsing Buffer Overflow
exploit/windows/novell/groupwisemessenger_client Novell
GroupWise Messenger Client Buffer Overflow
exploit/windows/novell/nmap_stor Novell
NetMail <= 3.52d NMAP STOR Buffer Overflow
exploit/windows/novell/zenworks_desktop_agent Novell
ZENworks 6.5 Desktop/Server Management Overflow
exploit/windows/oracle/extjob Oracle
Job Scheduler Named Pipe Command Execution
exploit/windows/oracle/osb_ndmp_auth Oracle
Secure Backup NDMP_CONNECT_CLIENT_AUTH Buffer Overflow
exploit/windows/oracle/tns_arguments Oracle
8i TNS Listener (ARGUMENTS) Buffer Overflow
exploit/windows/oracle/tns_auth_sesskey Oracle
10gR2 TNS Listener AUTH_SESSKEY Buffer Overflow
exploit/windows/oracle/tns_service_name Oracle
8i TNS Listener SERVICE_NAME Buffer Overflow
exploit/windows/pop3/seattlelab_pass Seattle
Lab Mail 5.5 POP3 Buffer Overflow
exploit/windows/postgres/postgres_payload
PostgreSQL for Microsoft Windows Payload Execution
exploit/windows/proxy/bluecoat_winproxy_host Blue
Coat WinProxy Host Header Overflow
exploit/windows/proxy/ccproxy_telnet_ping CCProxy
<= v6.2 Telnet Proxy Ping Overflow
exploit/windows/proxy/proxypro_http_get Proxy-
Pro Professional GateKeeper 4.7 GET Request Overflow
exploit/windows/proxy/qbik_wingate_wwwproxy Qbik
WinGate WWW Proxy Server URL Processing Overflow
exploit/windows/scada/citect_scada_odbc
CitectSCADA/CitectFacilities ODBC Buffer Overflow
exploit/windows/scada/codesys_web_server SCADA 3S
CoDeSys CmpWebServer <= v3.4 SP4 Patch 2 Stack Buffer Overflow
exploit/windows/scada/daq_factory_bof
DaqFactory HMI NETB Request Overflow
exploit/windows/scada/factorylink_csservice Siemens
FactoryLink 8 CSService Logging Path Param Buffer Overflow
exploit/windows/scada/factorylink_vrn_09 Siemens
FactoryLink vrn.exe Opcode 9 Buffer Overflow
exploit/windows/scada/iconics_genbroker Iconics
GENESIS32 Integer overflow version 9.21.201.01
exploit/windows/scada/iconics_webhmi_setactivexguid ICONICS
WebHMI ActiveX Buffer Overflow
exploit/windows/scada/igss9_igssdataserver_listall 7-
Technologies IGSS <= v9.00.00 b11063 IGSSdataServer.exe Stack Buffer Overflow
exploit/windows/scada/igss9_igssdataserver_rename 7-
Technologies IGSS 9 IGSSdataServer .RMS Rename Buffer Overflow
exploit/windows/scada/igss9_misc 7-
Technologies IGSS 9 Data Server/Collector Packet Handling Vulnerabilities
exploit/windows/scada/moxa_mdmtool MOXA
Device Manager Tool 2.1 Buffer Overflow
exploit/windows/scada/procyon_core_server Procyon
Core Server HMI <= v1.13 Coreservice.exe Stack Buffer Overflow
exploit/windows/scada/realwin DATAC
RealWin SCADA Server Buffer Overflow
exploit/windows/scada/realwin_on_fc_binfile_a DATAC
RealWin SCADA Server 2 On_FC_CONNECT_FCS_a_FILE Buffer Overflow
exploit/windows/scada/realwin_on_fcs_login RealWin
SCADA Server DATAC Login Buffer Overflow
exploit/windows/scada/realwin_scpc_initialize DATAC
RealWin SCADA Server SCPC_INITIALIZE Buffer Overflow
exploit/windows/scada/realwin_scpc_initialize_rf DATAC
RealWin SCADA Server SCPC_INITIALIZE_RF Buffer Overflow
exploit/windows/scada/realwin_scpc_txtevent DATAC
RealWin SCADA Server SCPC_TXTEVENT Buffer Overflow
exploit/windows/scada/scadapro_cmdexe
Measuresoft ScadaPro <= 4.0.0 Remote Command Execution
exploit/windows/scada/sunway_force_control_netdbsrv Sunway
Forcecontrol SNMP NetDBServer.exe Opcode 0x57
exploit/windows/scada/winlog_runtime Sielco
Sistemi Winlog Buffer Overflow
exploit/windows/scada/winlog_runtime_2 Sielco
Sistemi Winlog Buffer Overflow 2.07.14 - 2.07.16
exploit/windows/sip/aim_triton_cseq AIM
Triton 1.0.4 CSeq Buffer Overflow
exploit/windows/sip/sipxezphone_cseq
SIPfoundry sipXezPhone 0.35a CSeq Field Overflow
exploit/windows/sip/sipxphone_cseq
SIPfoundry sipXphone 2.6.0.27 CSeq Buffer Overflow
exploit/windows/smb/ms03_049_netapi
Microsoft Workstation Service NetAddAlternateComputerName Overflow
exploit/windows/smb/ms04_007_killbill
Microsoft ASN.1 Library Bitstring Heap Overflow
exploit/windows/smb/ms04_011_lsass
Microsoft LSASS Service DsRolerUpgradeDownlevelServer Overflow
exploit/windows/smb/ms04_031_netdde
Microsoft NetDDE Service Overflow
exploit/windows/smb/ms05_039_pnp
Microsoft Plug and Play Service Overflow
exploit/windows/smb/ms06_025_rasmans_reg
Microsoft RRAS Service RASMAN Registry Overflow
exploit/windows/smb/ms06_025_rras
Microsoft RRAS Service Overflow
exploit/windows/smb/ms06_040_netapi
Microsoft Server Service NetpwPathCanonicalize Overflow
exploit/windows/smb/ms06_066_nwapi
Microsoft Services MS06-066 nwapi32.dll Module Exploit
exploit/windows/smb/ms06_066_nwwks
Microsoft Services MS06-066 nwwks.dll Module Exploit
exploit/windows/smb/ms06_070_wkssvc
Microsoft Workstation Service NetpManageIPCConnect Overflow
exploit/windows/smb/ms07_029_msdns_zonename
Microsoft DNS RPC Service extractQuotedChar() Overflow (SMB)
exploit/windows/smb/ms08_067_netapi
Microsoft Server Service Relative Path Stack Corruption
exploit/windows/smb/ms09_050_smb2_negotiate_func_index
Microsoft SRV2.SYS SMB Negotiate ProcessID Function Table Dereference
exploit/windows/smb/ms10_061_spoolss
Microsoft Print Spooler Service Impersonation Vulnerability
exploit/windows/smb/netidentity_xtierrpcpipe Novell
NetIdentity Agent XTIERRPCPIPE Named Pipe Buffer Overflow
exploit/windows/smb/psexec
Microsoft Windows Authenticated User Code Execution
exploit/windows/smb/smb_relay
Microsoft Windows SMB Relay Code Execution
exploit/windows/smb/timbuktu_plughntcommand_bof Timbuktu
<= 8.6.6 PlughNTCommand Named Pipe Buffer Overflow
exploit/windows/smtp/mailcarrier_smtp_ehlo TABS
MailCarrier v2.51 SMTP EHLO Overflow
exploit/windows/smtp/mercury_cram_md5 Mercury
Mail SMTP AUTH CRAM-MD5 Buffer Overflow
exploit/windows/smtp/ms03_046_exchange2000_xexch50 MS03-046
Exchange 2000 XEXCH50 Heap Overflow
exploit/windows/smtp/njstar_smtp_bof NJStar
Communicator 3.00 MiniSMTP Buffer Overflow
exploit/windows/smtp/wmailserver
SoftiaCom WMailserver 1.0 Buffer Overflow
exploit/windows/smtp/ypops_overflow1 YPOPS
0.6 Buffer Overflow
exploit/windows/ssh/freeftpd_key_exchange FreeFTPd
1.0.10 Key Exchange Algorithm String Buffer Overflow
exploit/windows/ssh/freesshd_key_exchange FreeSSHd
1.0.9 Key Exchange Algorithm String Buffer Overflow
exploit/windows/ssh/putty_msg_debug
PuTTy.exe <= v0.53 Buffer Overflow
exploit/windows/ssh/securecrt_ssh1
SecureCRT <= 4.0 Beta 2 SSH1 Buffer Overflow
exploit/windows/ssh/sysax_ssh_username Sysax
5.53 SSH Username Buffer Overflow
exploit/windows/ssl/ms04_011_pct
Microsoft Private Communications Transport Overflow
exploit/windows/telnet/gamsoft_telsrv_username GAMSoft
TelSrv 1.5 Username Buffer Overflow
exploit/windows/telnet/goodtech_telnet GoodTech
Telnet Server <= 5.0.6 Buffer Overflow
exploit/windows/tftp/attftp_long_filename Allied
Telesyn TFTP Server 1.9 Long Filename Overflow
exploit/windows/tftp/distinct_tftp_traversal Distinct
TFTP 3.10 Writable Directory Traversal Execution
exploit/windows/tftp/dlink_long_filename D-Link
TFTP 1.0 Long Filename Buffer Overflow
exploit/windows/tftp/futuresoft_transfermode
FutureSoft TFTP Server 2000 Transfer-Mode Overflow
exploit/windows/tftp/opentftp_error_code OpenTFTP
SP 1.4 Error Packet Overflow
exploit/windows/tftp/quick_tftp_pro_mode Quick
FTP Pro 2.1 Transfer-Mode Overflow
exploit/windows/tftp/tftpd32_long_filename TFTPD32
<= 2.21 Long Filename Buffer Overflow
exploit/windows/tftp/tftpdwin_long_filename TFTPDWIN
v0.4.2 Long Filename Buffer Overflow
exploit/windows/tftp/tftpserver_wrq_bof TFTP
Server for Windows 1.4 ST WRQ Buffer Overflow
exploit/windows/tftp/threectftpsvc_long_mode
3CTftpSvc TFTP Long Mode Buffer Overflow
exploit/windows/unicenter/cam_log_security CA CAM
log_security() Stack Buffer Overflow (Win32)
exploit/windows/vnc/realvnc_client RealVNC
3.3.7 Client Buffer Overflow
exploit/windows/vnc/ultravnc_client UltraVNC
1.0.1 Client Buffer Overflow
exploit/windows/vnc/ultravnc_viewer_bof UltraVNC
1.0.2 Client (vncviewer.exe) Buffer Overflow
exploit/windows/vnc/winvnc_http_get WinVNC
Web Server <= v3.3.3r7 GET Overflow
exploit/windows/vpn/safenet_ike_11 SafeNet
SoftRemote IKE Service Buffer Overflow
exploit/windows/wins/ms04_045_wins
Microsoft WINS Service Memory Overwrite

Auxiliary
=========

Name Description
---- -----------
auxiliary/admin/2wire/xslt_password_reset 2Wire Cross-
Site Request Forgery Password Reset Vulnerability
auxiliary/admin/backupexec/dump Veritas Backup
Exec Windows Remote File Access
auxiliary/admin/backupexec/registry Veritas Backup
Exec Server Registry Access
auxiliary/admin/cisco/cisco_secure_acs_bypass Cisco Secure
ACS Version < 5.1.0.44.5 or 5.2.0.26.2 Unauthorized Password Change
auxiliary/admin/cisco/vpn_3000_ftp_bypass Cisco VPN
Concentrator 3000 FTP Unauthorized Administrative Access
auxiliary/admin/db2/db2rcmd IBM DB2
db2rcmd.exe Command Execution Vulnerability
auxiliary/admin/edirectory/edirectory_dhost_cookie Novell
eDirectory DHOST Predictable Session Cookie
auxiliary/admin/edirectory/edirectory_edirutil Novell
eDirectory eMBox Unauthenticated File Access
auxiliary/admin/emc/alphastor_devicemanager_exec EMC AlphaStor
Device Manager Arbitrary Command Execution
auxiliary/admin/emc/alphastor_librarymanager_exec EMC AlphaStor
Library Manager Arbitrary Command Execution
auxiliary/admin/ftp/titanftp_xcrc_traversal Titan FTP XCRC
Directory Traversal Information Disclosure
auxiliary/admin/hp/hp_data_protector_cmd HP Data
Protector 6.1 EXEC_CMD Command Execution
auxiliary/admin/http/contentkeeper_fileaccess ContentKeeper
Web Appliance mimencode File Access
auxiliary/admin/http/hp_web_jetadmin_exec HP Web JetAdmin
6.5 Server Arbitrary Command Execution
auxiliary/admin/http/iis_auth_bypass MS10-065
Microsoft IIS 5 NTFS Stream Authentication Bypass
auxiliary/admin/http/intersil_pass_reset Intersil (Boa)
HTTPd Basic Authentication Password Reset
auxiliary/admin/http/iomega_storcenterpro_sessionid Iomega
StorCenter Pro NAS Web Authentication Bypass
auxiliary/admin/http/jboss_seam_exec JBoss Seam 2
Remote Command Execution
auxiliary/admin/http/tomcat_administration Tomcat
Administration Tool Default Access
auxiliary/admin/http/tomcat_utf8_traversal Tomcat UTF-8
Directory Traversal Vulnerability
auxiliary/admin/http/trendmicro_dlp_traversal TrendMicro Data
Loss Prevention 5.5 Directory Traversal
auxiliary/admin/http/typo3_sa_2009_001 TYPO3 sa-2009-
001 Weak Encryption Key File Disclosure
auxiliary/admin/http/typo3_sa_2009_002 Typo3 sa-2009-
002 File Disclosure
auxiliary/admin/http/typo3_sa_2010_020 TYPO3 sa-2010-
020 Remote File Disclosure
auxiliary/admin/http/typo3_winstaller_default_enc_keys TYPO3
Winstaller default Encryption Keys
auxiliary/admin/maxdb/maxdb_cons_exec SAP MaxDB
cons.exe Remote Command Injection
auxiliary/admin/misc/wol UDP Wake-On-Lan
(WOL)
auxiliary/admin/motorola/wr850g_cred Motorola WR850G
v4.03 Credentials
auxiliary/admin/ms/ms08_059_his2006 Microsoft Host
Integration Server 2006 Command Execution Vulnerability
auxiliary/admin/mssql/mssql_enum Microsoft SQL
Server Configuration Enumerator
auxiliary/admin/mssql/mssql_exec Microsoft SQL
Server xp_cmdshell Command Execution
auxiliary/admin/mssql/mssql_idf Microsoft SQL
Server - Interesting Data Finder
auxiliary/admin/mssql/mssql_sql Microsoft SQL
Server Generic Query
auxiliary/admin/mysql/mysql_enum MySQL
Enumeration Module
auxiliary/admin/mysql/mysql_sql MySQL SQL
Generic Query
auxiliary/admin/natpmp/natpmp_map NAT-PMP Port
Mapper
auxiliary/admin/officescan/tmlisten_traversal TrendMicro
OfficeScanNT Listener Traversal Arbitrary File Access
auxiliary/admin/oracle/ora_ntlm_stealer Oracle SMB
Relay Code Execution
auxiliary/admin/oracle/oracle_login Oracle Account
Discovery
auxiliary/admin/oracle/oracle_sql Oracle SQL
Generic Query
auxiliary/admin/oracle/oraenum Oracle Database
Enumeration
auxiliary/admin/oracle/osb_execqr Oracle Secure
Backup exec_qr() Command Injection Vulnerability
auxiliary/admin/oracle/osb_execqr2 Oracle Secure
Backup Authentication Bypass/Command Injection Vulnerability
auxiliary/admin/oracle/osb_execqr3 Oracle Secure
Backup Authentication Bypass/Command Injection Vulnerability
auxiliary/admin/oracle/post_exploitation/win32exec Oracle Java
execCommand (Win32)
auxiliary/admin/oracle/post_exploitation/win32upload Oracle URL
Download
auxiliary/admin/oracle/sid_brute Oracle TNS
Listener SID Brute Forcer
auxiliary/admin/oracle/tnscmd Oracle TNS
Listener Command Issuer
auxiliary/admin/pop2/uw_fileretrieval UoW pop2d
Remote File Retrieval Vulnerability
auxiliary/admin/postgres/postgres_readfile PostgreSQL
Server Generic Query
auxiliary/admin/postgres/postgres_sql PostgreSQL
Server Generic Query
auxiliary/admin/sap/sap_mgmt_con_osexec SAP Management
Console OSExecute
auxiliary/admin/scada/igss_exec_17 Interactive
Graphical SCADA System Remote Command Injection
auxiliary/admin/scada/modicon_command Schneider
Modicon Remote START/STOP Command
auxiliary/admin/scada/modicon_password_recovery Schneider
Modicon Quantum Password Recovery
auxiliary/admin/scada/modicon_stux_transfer Schneider
Modicon Ladder Logic Upload/Download
auxiliary/admin/scada/multi_cip_command Allen-
Bradley/Rockwell Automation EtherNet/IP CIP Commands
auxiliary/admin/serverprotect/file TrendMicro
ServerProtect File Access
auxiliary/admin/smb/check_dir_file SMB Scanner
Check File/Directory Utility
auxiliary/admin/smb/samba_symlink_traversal Samba Symlink
Directory Traversal
auxiliary/admin/smb/upload_file SMB File Upload
Utility
auxiliary/admin/sunrpc/solaris_kcms_readfile Solaris KCMS +
TTDB Arbitrary File Read
auxiliary/admin/tftp/tftp_transfer_util TFTP File
Transfer Utility
auxiliary/admin/tikiwiki/tikidblib TikiWiki
information disclosure
auxiliary/admin/vmware/poweroff_vm VMWare Power
Off Virtual Machine
auxiliary/admin/vmware/poweron_vm VMWare Power On
Virtual Machine
auxiliary/admin/vmware/tag_vm VMWare Tag
Virtual Machine
auxiliary/admin/vmware/terminate_esx_sessions VMWare
Terminate ESX Login Sessions
auxiliary/admin/vnc/realvnc_41_bypass RealVNC NULL
Authentication Mode Bypass
auxiliary/admin/vxworks/apple_airport_extreme_password Apple Airport
Extreme Password Extraction (WDBRPC)
auxiliary/admin/vxworks/dlink_i2eye_autoanswer D-Link i2eye
Video Conference AutoAnswer (WDBRPC)
auxiliary/admin/vxworks/wdbrpc_memory_dump VxWorks WDB
Agent Remote Memory Dump
auxiliary/admin/vxworks/wdbrpc_reboot VxWorks WDB
Agent Remote Reboot
auxiliary/admin/webmin/file_disclosure Webmin file
disclosure
auxiliary/admin/zend/java_bridge Zend Server
Java Bridge Design Flaw Remote Code Execution
auxiliary/analyze/jtr_aix John the Ripper
AIX Password Cracker
auxiliary/analyze/jtr_crack_fast John the Ripper
Password Cracker (Fast Mode)
auxiliary/analyze/jtr_linux John the Ripper
Linux Password Cracker
auxiliary/analyze/jtr_mssql_fast John the Ripper
MS SQL Password Cracker (Fast Mode)
auxiliary/analyze/jtr_mysql_fast John the Ripper
MySQL Password Cracker (Fast Mode)
auxiliary/analyze/jtr_oracle_fast John the Ripper
Oracle Password Cracker (Fast Mode)
auxiliary/analyze/jtr_unshadow Unix Unshadow
Utility
auxiliary/analyze/postgres_md5_crack Postgres SQL
md5 Password Cracker
auxiliary/bnat/bnat_router BNAT Router
auxiliary/bnat/bnat_scan BNAT Scanner
auxiliary/client/smtp/emailer Generic Emailer
(SMTP)
auxiliary/crawler/msfcrawler Metasploit Web
Crawler
auxiliary/dos/cisco/ios_http_percentpercent Cisco IOS HTTP
GET /%% request Denial of Service
auxiliary/dos/dhcp/isc_dhcpd_clientid ISC DHCP Zero
Length ClientID Denial of Service Module
auxiliary/dos/freebsd/nfsd/nfsd_mount FreeBSD Remote
NFS RPC Request Denial of Service
auxiliary/dos/hp/data_protector_rds HP Data
Protector Manager RDS DOS
auxiliary/dos/http/3com_superstack_switch 3Com SuperStack
Switch Denial of Service
auxiliary/dos/http/apache_mod_isapi Apache
mod_isapi <= 2.2.14 Dangling Pointer
auxiliary/dos/http/apache_range_dos Apache Range
header DoS (Apache Killer)
auxiliary/dos/http/apache_tomcat_transfer_encoding Apache Tomcat
Transfer-Encoding Information Disclosure and DoS
auxiliary/dos/http/dell_openmanage_post Dell OpenManage
POST Request Heap Overflow (win32)
auxiliary/dos/http/hashcollision_dos Hashtable
Collisions
auxiliary/dos/http/sonicwall_ssl_format SonicWALL SSL-
VPN Format String Vulnerability
auxiliary/dos/http/webrick_regex Ruby
WEBrick::HTTP::DefaultFileHandler DoS
auxiliary/dos/mdns/avahi_portzero Avahi < 0.6.24
Source Port 0 DoS
auxiliary/dos/ntp/ntpd_reserved_dos NTP.org ntpd
Reserved Mode Denial of Service
auxiliary/dos/pptp/ms02_063_pptp_dos MS02-063 PPTP
Malformed Control Data Kernel Denial of Service
auxiliary/dos/samba/lsa_addprivs_heap Samba
lsa_io_privilege_set Heap Overflow
auxiliary/dos/samba/lsa_transnames_heap Samba
lsa_io_trans_names Heap Overflow
auxiliary/dos/scada/beckhoff_twincat Beckhoff
TwinCAT SCADA PLC 2.11.0.2004 DoS
auxiliary/dos/scada/d20_tftp_overflow General
Electric D20ME TFTP Server Buffer Overflow DoS
auxiliary/dos/scada/igss9_dataserver 7-Technologies
IGSS 9 IGSSdataServer.exe DoS
auxiliary/dos/smtp/sendmail_prescan Sendmail SMTP
Address prescan <= 8.12.8 Memory Corruption
auxiliary/dos/solaris/lpd/cascade_delete Solaris LPD
Arbitrary File Delete
auxiliary/dos/ssl/dtls_changecipherspec OpenSSL <
0.9.8i DTLS ChangeCipherSpec Remote DoS
auxiliary/dos/syslog/rsyslog_long_tag rsyslog Long
Tag Off-By-Two DoS
auxiliary/dos/tcp/junos_tcp_opt Juniper JunOS
Malformed TCP Option
auxiliary/dos/tcp/synflood TCP SYN Flooder
auxiliary/dos/wifi/apple_orinoco_probe_response Apple Airport
802.11 Probe Response Kernel Memory Corruption
auxiliary/dos/wifi/cts_rts_flood Wireless
CTS/RTS Flooder
auxiliary/dos/wifi/deauth Wireless DEAUTH
Flooder
auxiliary/dos/wifi/fakeap Wireless Fake
Access Point Beacon Flood
auxiliary/dos/wifi/file2air Wireless Frame
(File) Injector
auxiliary/dos/wifi/netgear_ma521_rates NetGear MA521
Wireless Driver Long Rates Overflow
auxiliary/dos/wifi/netgear_wg311pci NetGear WG311v1
Wireless Driver Long SSID Overflow
auxiliary/dos/wifi/probe_resp_null_ssid Multiple
Wireless Vendor NULL SSID Probe Response
auxiliary/dos/wifi/ssidlist_beacon Wireless Beacon
SSID Emulator
auxiliary/dos/wifi/wifun Wireless Test
Module
auxiliary/dos/windows/appian/appian_bpm Appian
Enterprise Business Suite 5.6 SP1 DoS
auxiliary/dos/windows/browser/ms09_065_eot_integer Microsoft
Windows EOT Font Table Directory Integer Overflow
auxiliary/dos/windows/ftp/filezilla_admin_user FileZilla FTP
Server Admin Interface Denial of Service
auxiliary/dos/windows/ftp/filezilla_server_port FileZilla FTP
Server <=0.9.21 Malformed PORT Denial of Service
auxiliary/dos/windows/ftp/guildftp_cwdlist Guild FTPd
0.999.8.11/0.999.14 Heap Corruption
auxiliary/dos/windows/ftp/iis75_ftpd_iac_bof Microsoft IIS
FTP Server Encoded Response Overflow Trigger
auxiliary/dos/windows/ftp/iis_list_exhaustion Microsoft IIS
FTP Server <= 7.0 LIST Stack Exhaustion
auxiliary/dos/windows/ftp/solarftp_user Solar FTP
Server <= 2.1.1 Malformed (User) Denial of Service
auxiliary/dos/windows/ftp/titan626_site Titan FTP
Server 6.26.630 SITE WHO DoS
auxiliary/dos/windows/ftp/vicftps50_list Victory FTP
Server 5.0 LIST DoS
auxiliary/dos/windows/ftp/winftp230_nlst WinFTP 2.3.0
NLST Denial of Service
auxiliary/dos/windows/ftp/xmeasy560_nlst XM Easy
Personal FTP Server 5.6.0 NLST DoS
auxiliary/dos/windows/ftp/xmeasy570_nlst XM Easy
Personal FTP Server 5.7.0 NLST DoS
auxiliary/dos/windows/games/kaillera Kaillera 0.86
Server Denial of Service
auxiliary/dos/windows/http/ms10_065_ii6_asp_dos Microsoft IIS
6.0 ASP Stack Exhaustion Denial of Service
auxiliary/dos/windows/http/pi3web_isapi Pi3Web <=2.0.13
ISAPI DoS
auxiliary/dos/windows/llmnr/ms11_030_dnsapi Microsoft
Windows DNSAPI.dll LLMNR Buffer Underrun DoS
auxiliary/dos/windows/nat/nat_helper Microsoft
Windows NAT Helper Denial of Service
auxiliary/dos/windows/rdp/ms12_020_maxchannelids MS12-020
Microsoft Remote Desktop Use-After-Free DoS
auxiliary/dos/windows/smb/ms05_047_pnp Microsoft Plug
and Play Service Registry Overflow
auxiliary/dos/windows/smb/ms06_035_mailslot Microsoft
SRV.SYS Mailslot Write Corruption
auxiliary/dos/windows/smb/ms06_063_trans Microsoft
SRV.SYS Pipe Transaction No Null
auxiliary/dos/windows/smb/ms09_001_write Microsoft
SRV.SYS WriteAndX Invalid DataOffset
auxiliary/dos/windows/smb/ms09_050_smb2_negotiate_pidhigh Microsoft
SRV2.SYS SMB Negotiate ProcessID Function Table Dereference
auxiliary/dos/windows/smb/ms09_050_smb2_session_logoff Microsoft
SRV2.SYS SMB2 Logoff Remote Kernel NULL Pointer Dereference
auxiliary/dos/windows/smb/ms10_006_negotiate_response_loop Microsoft
Windows 7 / Server 2008 R2 SMB Client Infinite Loop
auxiliary/dos/windows/smb/ms10_054_queryfs_pool_overflow Microsoft
Windows SRV.SYS SrvSmbQueryFsInformation Pool Overflow DoS
auxiliary/dos/windows/smb/ms11_019_electbowser Microsoft
Windows Browser Pool DoS
auxiliary/dos/windows/smb/rras_vls_null_deref Microsoft RRAS
InterfaceAdjustVLSPointers NULL Dereference
auxiliary/dos/windows/smb/vista_negotiate_stop Microsoft Vista
SP0 SMB Negotiate Protocol DoS
auxiliary/dos/windows/smtp/ms06_019_exchange MS06-019
Exchange MODPROP Heap Overflow
auxiliary/dos/windows/tftp/pt360_write PacketTrap TFTP
Server 2.2.5459.0 DoS
auxiliary/dos/windows/tftp/solarwinds SolarWinds TFTP
Server 10.4.0.10 Denial of Service
auxiliary/dos/wireshark/chunked Wireshark
chunked_encoding_dissector function DOS
auxiliary/dos/wireshark/cldap Wireshark CLDAP
Dissector DOS
auxiliary/dos/wireshark/ldap Wireshark LDAP
dissector DOS
auxiliary/fuzzers/dns/dns_fuzzer DNS and DNSSEC
fuzzer
auxiliary/fuzzers/ftp/client_ftp Simple FTP
Client Fuzzer
auxiliary/fuzzers/ftp/ftp_pre_post Simple FTP
Fuzzer
auxiliary/fuzzers/http/http_form_field HTTP Form Field
Fuzzer
auxiliary/fuzzers/http/http_get_uri_long HTTP GET
Request URI Fuzzer (Incrementing Lengths)
auxiliary/fuzzers/http/http_get_uri_strings HTTP GET
Request URI Fuzzer (Fuzzer Strings)
auxiliary/fuzzers/smb/smb2_negotiate_corrupt SMB Negotiate
SMB2 Dialect Corruption
auxiliary/fuzzers/smb/smb_create_pipe SMB Create Pipe
Request Fuzzer
auxiliary/fuzzers/smb/smb_create_pipe_corrupt SMB Create Pipe
Request Corruption
auxiliary/fuzzers/smb/smb_negotiate_corrupt SMB Negotiate
Dialect Corruption
auxiliary/fuzzers/smb/smb_ntlm1_login_corrupt SMB NTLMv1
Login Request Corruption
auxiliary/fuzzers/smb/smb_tree_connect SMB Tree
Connect Request Fuzzer
auxiliary/fuzzers/smb/smb_tree_connect_corrupt SMB Tree
Connect Request Corruption
auxiliary/fuzzers/smtp/smtp_fuzzer SMTP Simple
Fuzzer
auxiliary/fuzzers/ssh/ssh_kexinit_corrupt SSH Key
Exchange Init Corruption
auxiliary/fuzzers/ssh/ssh_version_15 SSH 1.5 Version
Fuzzer
auxiliary/fuzzers/ssh/ssh_version_2 SSH 2.0 Version
Fuzzer
auxiliary/fuzzers/ssh/ssh_version_corrupt SSH Version
Corruption
auxiliary/fuzzers/tds/tds_login_corrupt TDS Protocol
Login Request Corruption Fuzzer
auxiliary/fuzzers/tds/tds_login_username TDS Protocol
Login Request Username Fuzzer
auxiliary/fuzzers/wifi/fuzz_beacon Wireless Beacon
Frame Fuzzer
auxiliary/fuzzers/wifi/fuzz_proberesp Wireless Probe
Response Frame Fuzzer
auxiliary/gather/android_htmlfileprovider Android Content
Provider File Disclosure
auxiliary/gather/checkpoint_hostname CheckPoint
Firewall-1 SecuRemote Topology Service Hostname Disclosure
auxiliary/gather/citrix_published_applications Citrix
MetaFrame ICA Published Applications Scanner
auxiliary/gather/citrix_published_bruteforce Citrix
MetaFrame ICA Published Applications Bruteforcer
auxiliary/gather/corpwatch_lookup_id CorpWatch
Company ID Information Search
auxiliary/gather/corpwatch_lookup_name CorpWatch
Company Name Information Search
auxiliary/gather/d20pass General
Electric D20 Password Recovery
auxiliary/gather/enum_dns DNS Record
Scanner and Enumerator
auxiliary/gather/natpmp_external_address NAT-PMP
External Address Scanner
auxiliary/gather/search_email_collector Search Engine
Domain Email Address Collector
auxiliary/gather/shodan_search Shodan Search
auxiliary/pdf/foxit/authbypass Foxit Reader
Authorization Bypass
auxiliary/scanner/afp/afp_login Apple Filing
Protocol Login Utility
auxiliary/scanner/afp/afp_server_info Apple Filing
Protocol Info Enumerator
auxiliary/scanner/backdoor/energizer_duo_detect Energizer DUO
Trojan Scanner
auxiliary/scanner/db2/db2_auth DB2
Authentication Brute Force Utility
auxiliary/scanner/db2/db2_version DB2 Probe
Utility
auxiliary/scanner/db2/discovery DB2 Discovery
Service Detection
auxiliary/scanner/dcerpc/endpoint_mapper Endpoint Mapper
Service Discovery
auxiliary/scanner/dcerpc/hidden Hidden DCERPC
Service Discovery
auxiliary/scanner/dcerpc/management Remote
Management Interface Discovery
auxiliary/scanner/dcerpc/tcp_dcerpc_auditor DCERPC TCP
Service Auditor
auxiliary/scanner/dect/call_scanner DECT Call
Scanner
auxiliary/scanner/dect/station_scanner DECT Base
Station Scanner
auxiliary/scanner/discovery/arp_sweep ARP Sweep Local
Network Discovery
auxiliary/scanner/discovery/ipv6_multicast_ping IPv6 Link
Local/Node Local Ping Discovery
auxiliary/scanner/discovery/ipv6_neighbor IPv6 Local
Neighbor Discovery
auxiliary/scanner/discovery/ipv6_neighbor_router_advertisement IPv6 Local
Neighbor Discovery Using Router Advertisement
auxiliary/scanner/discovery/udp_probe UDP Service
Prober
auxiliary/scanner/discovery/udp_sweep UDP Service
Sweeper
auxiliary/scanner/emc/alphastor_devicemanager EMC AlphaStor
Device Manager Service
auxiliary/scanner/emc/alphastor_librarymanager EMC AlphaStor
Library Manager Service
auxiliary/scanner/finger/finger_users Finger Service
User Enumerator
auxiliary/scanner/ftp/anonymous Anonymous FTP
Access Detection
auxiliary/scanner/ftp/ftp_login FTP
Authentication Scanner
auxiliary/scanner/ftp/ftp_version FTP Version
Scanner
auxiliary/scanner/h323/h323_version H.323 Version
Scanner
auxiliary/scanner/http/adobe_xml_inject Adobe XML
External Entity Injection
auxiliary/scanner/http/apache_userdir_enum Apache
"mod_userdir" User Enumeration
auxiliary/scanner/http/atlassian_crowd_fileaccess Atlassian Crowd
XML Entity Expansion Remote File Access
auxiliary/scanner/http/axis_local_file_include Apache Axis2
v1.4.1 Local File Inclusion
auxiliary/scanner/http/axis_login Apache Axis2
v1.4.1 Brute Force Utility
auxiliary/scanner/http/backup_file HTTP Backup
File Scanner
auxiliary/scanner/http/barracuda_directory_traversal Barracuda
Multiple Product "locale" Directory Traversal
auxiliary/scanner/http/blind_sql_query HTTP Blind SQL
Injection Scanner
auxiliary/scanner/http/brute_dirs HTTP Directory
Brute Force Scanner
auxiliary/scanner/http/cert HTTP SSL
Certificate Checker
auxiliary/scanner/http/cisco_device_manager Cisco Device
HTTP Device Manager Access
auxiliary/scanner/http/cisco_ios_auth_bypass Cisco IOS HTTP
Unauthorized Administrative Access
auxiliary/scanner/http/cisco_nac_manager_traversal Cisco Network
Access Manager Directory Traversal Vulnerability
auxiliary/scanner/http/cold_fusion_version ColdFusion
Version Scanner
auxiliary/scanner/http/coldfusion_locale_traversal ColdFusion
Server Check
auxiliary/scanner/http/copy_of_file HTTP Copy File
Scanner
auxiliary/scanner/http/crawler Web Site
Crawler
auxiliary/scanner/http/dir_listing HTTP Directory
Listing Scanner
auxiliary/scanner/http/dir_scanner HTTP Directory
Scanner
auxiliary/scanner/http/dir_webdav_unicode_bypass MS09-020 IIS6
WebDAV Unicode Auth Bypass Directory Scanner
auxiliary/scanner/http/dolibarr_login Dolibarr ERP &
CRM 3 Login Utility
auxiliary/scanner/http/drupal_views_user_enum Drupal Views
Module Users Enumeration
auxiliary/scanner/http/ektron_cms400net Ektron
CMS400.NET Default Password Scanner
auxiliary/scanner/http/enum_delicious Pull
Del.icio.us Links (URLs) for a domain
auxiliary/scanner/http/enum_wayback Pull
Archive.org stored URLs for a domain
auxiliary/scanner/http/error_sql_injection HTTP Error
Based SQL Injection Scanner
auxiliary/scanner/http/file_same_name_dir HTTP File Same
Name Directory Scanner
auxiliary/scanner/http/files_dir HTTP
Interesting File Scanner
auxiliary/scanner/http/frontpage_login FrontPage
Server Extensions Anonymous Login Scanner
auxiliary/scanner/http/glassfish_login GlassFish Brute
Force Utility
auxiliary/scanner/http/http_login HTTP Login
Utility
auxiliary/scanner/http/http_put HTTP Writable
Path PUT/DELETE File Access
auxiliary/scanner/http/http_traversal Generic HTTP
Directory Traversal Utility
auxiliary/scanner/http/http_version HTTP Version
Detection
auxiliary/scanner/http/httpbl_lookup Http:BL lookup
auxiliary/scanner/http/iis_internal_ip Microsoft IIS
HTTP Internal IP Disclosure
auxiliary/scanner/http/impersonate_ssl HTTP SSL
Certificate Impersonation
auxiliary/scanner/http/jboss_vulnscan JBoss
Vulnerability Scanner
auxiliary/scanner/http/litespeed_source_disclosure LiteSpeed
Source Code Disclosure/Download
auxiliary/scanner/http/lucky_punch HTTP Microsoft
SQL Injection Table XSS Infection
auxiliary/scanner/http/majordomo2_directory_traversal Majordomo2
_list_file_get() Directory Traversal
auxiliary/scanner/http/manageengine_traversal ManageEngine
DeviceExpert 5.6 ScheduleResultViewer FileName Traversal
auxiliary/scanner/http/mod_negotiation_brute Apache HTTPD
mod_negotiation Filename Bruter
auxiliary/scanner/http/mod_negotiation_scanner Apache HTTPD
mod_negotiation scanner
auxiliary/scanner/http/ms09_020_webdav_unicode_bypass MS09-020 IIS6
WebDAV Unicode Authentication Bypass
auxiliary/scanner/http/netdecision_traversal NetDecision
NOCVision Server Directory Traversal
auxiliary/scanner/http/nginx_source_disclosure Nginx Source
Code Disclosure/Download
auxiliary/scanner/http/open_proxy HTTP Open Proxy
Detection
auxiliary/scanner/http/options HTTP Options
Detection
auxiliary/scanner/http/owa_login Outlook Web App
(OWA) Brute Force Utility
auxiliary/scanner/http/prev_dir_same_name_file HTTP Previous
Directory File Scanner
auxiliary/scanner/http/rails_mass_assignment Ruby On Rails
Attributes Mass Assignment Scanner
auxiliary/scanner/http/replace_ext HTTP File
Extension Scanner
auxiliary/scanner/http/rewrite_proxy_bypass Apache Reverse
Proxy Bypass Vulnerability Scanner
auxiliary/scanner/http/robots_txt HTTP Robots.txt
Content Scanner
auxiliary/scanner/http/s40_traversal S40 0.4.2 CMS
Directory Traversal Vulnerability
auxiliary/scanner/http/sap_businessobjects_user_brute SAP
BusinessObjects User Bruteforcer
auxiliary/scanner/http/sap_businessobjects_user_brute_web SAP
BusinessObjects Web User Bruteforcer
auxiliary/scanner/http/sap_businessobjects_user_enum SAP
BusinessObjects User Enumeration
auxiliary/scanner/http/sap_businessobjects_version_enum SAP
BusinessObjects Version Detection
auxiliary/scanner/http/scraper HTTP Page
Scraper
auxiliary/scanner/http/soap_xml HTTP SOAP
Verb/Noun Brute Force Scanner
auxiliary/scanner/http/sockso_traversal Sockso Music
Host Server 1.5 Directory Traversal
auxiliary/scanner/http/sqlmap SQLMAP SQL
Injection External Module
auxiliary/scanner/http/squid_pivot_scanning Squid Proxy
Port Scanner
auxiliary/scanner/http/squiz_matrix_user_enum Squiz Matrix
User Enumeration Scanner
auxiliary/scanner/http/ssl HTTP SSL
Certificate Information
auxiliary/scanner/http/svn_scanner HTTP Subversion
Scanner
auxiliary/scanner/http/sybase_easerver_traversal Sybase Easerver
6.3 Directory Traversal
auxiliary/scanner/http/tomcat_enum Apache Tomcat
User Enumeration
auxiliary/scanner/http/tomcat_mgr_login Tomcat
Application Manager Login Utility
auxiliary/scanner/http/trace HTTP TRACE
Detection
auxiliary/scanner/http/trace_axd HTTP trace.axd
Content Scanner
auxiliary/scanner/http/vcms_login V-CMS Login
Utility
auxiliary/scanner/http/verb_auth_bypass HTTP Verb
Authentication Bypass Scanner
auxiliary/scanner/http/vhost_scanner HTTP Virtual
Host Brute Force Scanner
auxiliary/scanner/http/vmware_server_dir_trav VMware Server
Directory Traversal Vulnerability
auxiliary/scanner/http/vmware_update_manager_traversal VMWare Update
Manager 4 Directory Traversal
auxiliary/scanner/http/wangkongbao_traversal WANGKONGBAO
CNS-1000 and 1100 UTM Directory Traversal
auxiliary/scanner/http/web_vulndb HTTP Vuln
scanner
auxiliary/scanner/http/webdav_internal_ip HTTP WebDAV
Internal IP Scanner
auxiliary/scanner/http/webdav_scanner HTTP WebDAV
Scanner
auxiliary/scanner/http/webdav_website_content HTTP WebDAV
Website Content Scanner
auxiliary/scanner/http/wordpress_login_enum Wordpress Brute
Force and User Enumeration Utility
auxiliary/scanner/http/xpath HTTP Blind
XPATH 1.0 Injector
auxiliary/scanner/http/yaws_traversal Yaws Web Server
Directory Traversal
auxiliary/scanner/imap/imap_version IMAP4 Banner
Grabber
auxiliary/scanner/ip/ipidseq IPID Sequence
Scanner
auxiliary/scanner/lotus/lotus_domino_hashes Lotus Domino
Password Hash Collector
auxiliary/scanner/lotus/lotus_domino_login Lotus Domino
Brute Force Utility
auxiliary/scanner/lotus/lotus_domino_version Lotus Domino
Version
auxiliary/scanner/misc/cctv_dvr_login CCTV DVR Login
Scanning Utility
auxiliary/scanner/misc/ib_service_mgr_info Borland
InterBase Services Manager Information
auxiliary/scanner/misc/java_rmi_server Java RMI Server
Insecure Endpoint Code Execution Scanner
auxiliary/scanner/misc/oki_scanner OKI Printer
Default Login Credential Scanner
auxiliary/scanner/misc/redis_server Redis-server
Scanner
auxiliary/scanner/misc/rosewill_rxs3211_passwords Rosewill RXS-
3211 IP Camera Password Retriever
auxiliary/scanner/misc/sunrpc_portmapper SunRPC Portmap
Program Enumerator
auxiliary/scanner/misc/zenworks_preboot_fileaccess Novell ZENworks
Configuration Management Preboot Service Remote File Access
auxiliary/scanner/mongodb/mongodb_login MongoDB Login
Utility
auxiliary/scanner/motorola/timbuktu_udp Motorola
Timbuktu Service Detection
auxiliary/scanner/mssql/mssql_hashdump MSSQL Password
Hashdump
auxiliary/scanner/mssql/mssql_login MSSQL Login
Utility
auxiliary/scanner/mssql/mssql_ping MSSQL Ping
Utility
auxiliary/scanner/mssql/mssql_schemadump MSSQL Schema
Dump
auxiliary/scanner/mysql/mysql_authbypass_hashdump MySQL
Authentication Bypass Password Dump
auxiliary/scanner/mysql/mysql_hashdump MYSQL Password
Hashdump
auxiliary/scanner/mysql/mysql_login MySQL Login
Utility
auxiliary/scanner/mysql/mysql_schemadump MYSQL Schema
Dump
auxiliary/scanner/mysql/mysql_version MySQL Server
Version Enumeration
auxiliary/scanner/natpmp/natpmp_portscan NAT-PMP
External Port Scanner
auxiliary/scanner/netbios/nbname NetBIOS
Information Discovery
auxiliary/scanner/netbios/nbname_probe NetBIOS
Information Discovery Prober
auxiliary/scanner/nfs/nfsmount NFS Mount
Scanner
auxiliary/scanner/ntp/ntp_monlist NTP Monitor
List Scanner
auxiliary/scanner/oracle/emc_sid Oracle
Enterprise Manager Control SID Discovery
auxiliary/scanner/oracle/isqlplus_login Oracle
iSQL*Plus Login Utility
auxiliary/scanner/oracle/isqlplus_sidbrute Oracle isqlplus
SID Check
auxiliary/scanner/oracle/oracle_hashdump Oracle Password
Hashdump
auxiliary/scanner/oracle/oracle_login Oracle RDBMS
Login Utility
auxiliary/scanner/oracle/sid_brute Oracle TNS
Listener SID Bruteforce
auxiliary/scanner/oracle/sid_enum Oracle TNS
Listener SID Enumeration
auxiliary/scanner/oracle/spy_sid Oracle
Application Server Spy Servlet SID Enumeration
auxiliary/scanner/oracle/tnslsnr_version Oracle TNS
Listener Service Version Query
auxiliary/scanner/oracle/xdb_sid Oracle XML DB
SID Discovery
auxiliary/scanner/oracle/xdb_sid_brute Oracle XML DB
SID Discovery via Brute Force
auxiliary/scanner/pcanywhere/pcanywhere_login pcAnywhere
Login Scanner
auxiliary/scanner/pcanywhere/pcanywhere_tcp pcAnywhere TCP
Service Discovery
auxiliary/scanner/pcanywhere/pcanywhere_udp pcAnywhere UDP
Service Discovery
auxiliary/scanner/pop3/pop3_login POP3 Login
Utility
auxiliary/scanner/pop3/pop3_version POP3 Banner
Grabber
auxiliary/scanner/portscan/ack TCP ACK
Firewall Scanner
auxiliary/scanner/portscan/ftpbounce FTP Bounce Port
Scanner
auxiliary/scanner/portscan/syn TCP SYN Port
Scanner
auxiliary/scanner/portscan/tcp TCP Port
Scanner
auxiliary/scanner/portscan/xmas TCP "XMas" Port
Scanner
auxiliary/scanner/postgres/postgres_hashdump Postgres
Password Hashdump
auxiliary/scanner/postgres/postgres_login PostgreSQL
Login Utility
auxiliary/scanner/postgres/postgres_schemadump Postgres Schema
Dump
auxiliary/scanner/postgres/postgres_version PostgreSQL
Version Probe
auxiliary/scanner/rogue/rogue_recv Rogue Gateway
Detection: Receiver
auxiliary/scanner/rogue/rogue_send Rogue Gateway
Detection: Sender
auxiliary/scanner/rservices/rexec_login rexec
Authentication Scanner
auxiliary/scanner/rservices/rlogin_login rlogin
Authentication Scanner
auxiliary/scanner/rservices/rsh_login rsh
Authentication Scanner
auxiliary/scanner/sap/sap_icm_urlscan SAP URL Scanner
auxiliary/scanner/sap/sap_mgmt_con_abaplog SAP Management
Console ABAP syslog
auxiliary/scanner/sap/sap_mgmt_con_brute_login SAP Management
Console Brute Force
auxiliary/scanner/sap/sap_mgmt_con_extractusers SAP Management
Console Extract Users
auxiliary/scanner/sap/sap_mgmt_con_getaccesspoints SAP Management
Console Get Access Points
auxiliary/scanner/sap/sap_mgmt_con_getenv SAP Management
Console getEnvironment
auxiliary/scanner/sap/sap_mgmt_con_getlogfiles SAP Management
Console Get Logfile
auxiliary/scanner/sap/sap_mgmt_con_getprocessparameter SAP Management
Console Get Process Parameters
auxiliary/scanner/sap/sap_mgmt_con_instanceproperties SAP Management
Console Instance Properties
auxiliary/scanner/sap/sap_mgmt_con_listlogfiles SAP Management
Console List Logfiles
auxiliary/scanner/sap/sap_mgmt_con_startprofile SAP Management
Console getStartProfile
auxiliary/scanner/sap/sap_mgmt_con_version SAP Management
Console Version Detection
auxiliary/scanner/sap/sap_service_discovery SAP Service
Discovery
auxiliary/scanner/scada/koyo_login Koyo
DirectLogic PLC Password Brute Force Utility
auxiliary/scanner/scada/modbusclient Modbus Client
Utility
auxiliary/scanner/scada/modbusdetect Modbus Version
Scanner
auxiliary/scanner/scada/sielco_winlog_fileaccess Sielco Sistemi
Winlog Remote File Access
auxiliary/scanner/sip/enumerator SIP Username
Enumerator (UDP)
auxiliary/scanner/sip/enumerator_tcp SIP Username
Enumerator (TCP)
auxiliary/scanner/sip/options SIP Endpoint
Scanner (UDP)
auxiliary/scanner/sip/options_tcp SIP Endpoint
Scanner (TCP)
auxiliary/scanner/sip/sipdroid_ext_enum SIPDroid
Extension Grabber
auxiliary/scanner/smb/pipe_auditor SMB Session
Pipe Auditor
auxiliary/scanner/smb/pipe_dcerpc_auditor SMB Session
Pipe DCERPC Auditor
auxiliary/scanner/smb/smb2 SMB 2.0
Protocol Detection
auxiliary/scanner/smb/smb_enumshares SMB Share
Enumeration
auxiliary/scanner/smb/smb_enumusers SMB User
Enumeration (SAM EnumUsers)
auxiliary/scanner/smb/smb_enumusers_domain SMB Domain User
Enumeration
auxiliary/scanner/smb/smb_login SMB Login Check
Scanner
auxiliary/scanner/smb/smb_lookupsid SMB Local User
Enumeration (LookupSid)
auxiliary/scanner/smb/smb_version SMB Version
Detection
auxiliary/scanner/smtp/smtp_enum SMTP User
Enumeration Utility
auxiliary/scanner/smtp/smtp_version SMTP Banner
Grabber
auxiliary/scanner/snmp/aix_version AIX SNMP
Scanner Auxiliary Module
auxiliary/scanner/snmp/cisco_config_tftp Cisco IOS SNMP
Configuration Grabber (TFTP)
auxiliary/scanner/snmp/cisco_upload_file Cisco IOS SNMP
File Upload (TFTP)
auxiliary/scanner/snmp/snmp_enum SNMP
Enumeration Module
auxiliary/scanner/snmp/snmp_enumshares SNMP Windows
SMB Share Enumeration
auxiliary/scanner/snmp/snmp_enumusers SNMP Windows
Username Enumeration
auxiliary/scanner/snmp/snmp_login SNMP Community
Scanner
auxiliary/scanner/snmp/snmp_set SNMP Set Module
auxiliary/scanner/snmp/xerox_workcentre_enumusers Xerox
WorkCentre User Enumeration (SNMP)
auxiliary/scanner/ssh/ssh_identify_pubkeys SSH Public Key
Acceptance Scanner
auxiliary/scanner/ssh/ssh_login SSH Login Check
Scanner
auxiliary/scanner/ssh/ssh_login_pubkey SSH Public Key
Login Scanner
auxiliary/scanner/ssh/ssh_version SSH Version
Scanner
auxiliary/scanner/telephony/wardial Wardialer
auxiliary/scanner/telnet/lantronix_telnet_version Lantronix
Telnet Service Banner Detection
auxiliary/scanner/telnet/telnet_encrypt_overflow Telnet Service
Encyption Key ID Overflow Detection
auxiliary/scanner/telnet/telnet_login Telnet Login
Check Scanner
auxiliary/scanner/telnet/telnet_ruggedcom RuggedCom
Telnet Password Generator
auxiliary/scanner/telnet/telnet_version Telnet Service
Banner Detection
auxiliary/scanner/tftp/ipswitch_whatsupgold_tftp IpSwitch
WhatsUp Gold TFTP Directory Traversal
auxiliary/scanner/tftp/tftpbrute TFTP Brute
Forcer
auxiliary/scanner/upnp/ssdp_msearch SSDP M-SEARCH
Gateway Information Discovery
auxiliary/scanner/vmware/esx_fingerprint VMWare ESX/ESXi
Fingerprint Scanner
auxiliary/scanner/vmware/vmauthd_login VMWare
Authentication Daemon Login Scanner
auxiliary/scanner/vmware/vmauthd_version VMWare
Authentication Daemon Version Scanner
auxiliary/scanner/vmware/vmware_enum_permissions VMWare
Enumerate Permissions
auxiliary/scanner/vmware/vmware_enum_sessions VMWare
Enumerate Active Sessions
auxiliary/scanner/vmware/vmware_enum_users VMWare
Enumerate User Accounts
auxiliary/scanner/vmware/vmware_enum_vms VMWare
Enumerate Virtual Machines
auxiliary/scanner/vmware/vmware_host_details VMWare
Enumerate Host Details
auxiliary/scanner/vmware/vmware_http_login VMWare Web
Login Scanner
auxiliary/scanner/vmware/vmware_screenshot_stealer VMWare
Screenshot Stealer
auxiliary/scanner/vnc/vnc_login VNC
Authentication Scanner
auxiliary/scanner/vnc/vnc_none_auth VNC
Authentication None Detection
auxiliary/scanner/voice/recorder Telephone Line
Voice Scanner
auxiliary/scanner/vxworks/wdbrpc_bootline VxWorks WDB
Agent Boot Parameter Scanner
auxiliary/scanner/vxworks/wdbrpc_version VxWorks WDB
Agent Version Scanner
auxiliary/scanner/x11/open_x11 X11 No-Auth
Scanner
auxiliary/server/browser_autopwn HTTP Client
Automatic Exploiter
auxiliary/server/capture/drda Authentication
Capture: DRDA (DB2, Informix, Derby)
auxiliary/server/capture/ftp Authentication
Capture: FTP
auxiliary/server/capture/http Authentication
Capture: HTTP
auxiliary/server/capture/http_javascript_keylogger Capture: HTTP
JavaScript Keylogger
auxiliary/server/capture/http_ntlm HTTP Client MS
Credential Catcher
auxiliary/server/capture/imap Authentication
Capture: IMAP
auxiliary/server/capture/mssql Authentication
Capture: MSSQL
auxiliary/server/capture/pop3 Authentication
Capture: POP3
auxiliary/server/capture/smb Authentication
Capture: SMB
auxiliary/server/capture/smtp Authentication
Capture: SMTP
auxiliary/server/capture/telnet Authentication
Capture: Telnet
auxiliary/server/capture/vnc Authentication
Capture: VNC
auxiliary/server/dhcp DHCP Server
auxiliary/server/dns/spoofhelper DNS Spoofing
Helper Service
auxiliary/server/fakedns Fake DNS
Service
auxiliary/server/ftp FTP File Server
auxiliary/server/pxexploit PXE Boot
Exploit Server
auxiliary/server/socks4a Socks4a Proxy
Server
auxiliary/server/socks_unc SOCKS Proxy UNC
Path Redirection
auxiliary/server/tftp TFTP File
Server
auxiliary/server/webkit_xslt_dropper Cross Platform
Webkit File Dropper
auxiliary/server/wpad WPAD.dat File
Server
auxiliary/sniffer/psnuffle pSnuffle Packet
Sniffer
auxiliary/spoof/arp/arp_poisoning ARP Spoof
auxiliary/spoof/cisco/dtp Forge Cisco DTP
Packets
auxiliary/spoof/dns/bailiwicked_domain DNS BailiWicked
Domain Attack
auxiliary/spoof/dns/bailiwicked_host DNS BailiWicked
Host Attack
auxiliary/spoof/dns/compare_results DNS Lookup
Result Comparison
auxiliary/spoof/nbns/nbns_response NetBIOS Name
Service Spoofer
auxiliary/spoof/replay/pcap_replay Pcap replay
utility
auxiliary/spoof/wifi/airpwn Airpwn TCP
hijack
auxiliary/spoof/wifi/dnspwn DNSpwn DNS
hijack
auxiliary/sqli/oracle/dbms_cdc_ipublish Oracle DB SQL
Injection via SYS.DBMS_CDC_IPUBLISH.ALTER_HOTLOG_INTERNAL_CSOURCE
auxiliary/sqli/oracle/dbms_cdc_publish Oracle DB SQL
Injection via SYS.DBMS_CDC_PUBLISH.ALTER_AUTOLOG_CHANGE_SOURCE
auxiliary/sqli/oracle/dbms_cdc_publish2 Oracle DB SQL
Injection via SYS.DBMS_CDC_PUBLISH.DROP_CHANGE_SOURCE
auxiliary/sqli/oracle/dbms_cdc_publish3 Oracle DB SQL
Injection via SYS.DBMS_CDC_PUBLISH.CREATE_CHANGE_SET
auxiliary/sqli/oracle/dbms_cdc_subscribe_activate_subscription Oracle DB SQL
Injection via SYS.DBMS_CDC_SUBSCRIBE.ACTIVATE_SUBSCRIPTION
auxiliary/sqli/oracle/dbms_export_extension Oracle DB SQL
Injection via DBMS_EXPORT_EXTENSION
auxiliary/sqli/oracle/dbms_metadata_get_granted_xml Oracle DB SQL
Injection via SYS.DBMS_METADATA.GET_GRANTED_XML
auxiliary/sqli/oracle/dbms_metadata_get_xml Oracle DB SQL
Injection via SYS.DBMS_METADATA.GET_XML
auxiliary/sqli/oracle/dbms_metadata_open Oracle DB SQL
Injection via SYS.DBMS_METADATA.OPEN
auxiliary/sqli/oracle/droptable_trigger Oracle DB SQL
Injection in MDSYS.SDO_TOPO_DROP_FTBL Trigger
auxiliary/sqli/oracle/jvm_os_code_10g Oracle DB
10gR2, 11gR1/R2 DBMS_JVM_EXP_PERMS OS Command Execution
auxiliary/sqli/oracle/jvm_os_code_11g Oracle DB 11g
R1/R2 DBMS_JVM_EXP_PERMS OS Code Execution
auxiliary/sqli/oracle/lt_compressworkspace Oracle DB SQL
Injection via SYS.LT.COMPRESSWORKSPACE
auxiliary/sqli/oracle/lt_findricset_cursor Oracle DB SQL
Injection via SYS.LT.FINDRICSET Evil Cursor Method
auxiliary/sqli/oracle/lt_mergeworkspace Oracle DB SQL
Injection via SYS.LT.MERGEWORKSPACE
auxiliary/sqli/oracle/lt_removeworkspace Oracle DB SQL
Injection via SYS.LT.REMOVEWORKSPACE
auxiliary/sqli/oracle/lt_rollbackworkspace Oracle DB SQL
Injection via SYS.LT.ROLLBACKWORKSPACE
auxiliary/voip/asterisk_login Asterisk
Manager Login Utility
auxiliary/voip/sip_invite_spoof SIP Invite
Spoof
auxiliary/vsploit/malware/dns/dns_mariposa VSploit
Mariposa DNS Query Module
auxiliary/vsploit/malware/dns/dns_query VSploit DNS
Beaconing Emulation
auxiliary/vsploit/malware/dns/dns_zeus VSploit Zeus
DNS Query Module
auxiliary/vsploit/pii/email_pii VSploit Email
PII
auxiliary/vsploit/pii/web_pii VSploit Web PII

You might also like