This Metasploit module exploits a stack buffer overflow vulnerability in VideoLAN VLC versions prior to 0.9.6. The vulnerability exists in the parsing of RealText subtitle files. In order to exploit this, this module will generate two files: The .mp4 file is used to trick your victim into running. The .rt file is the actual malicious file that triggers the vulnerability, which should be placed under the same directory as the .mp4 file.
9952cf454696629976235ec8de966c57016db79252896be88870fdf2312f2133
This Metasploit module exploits a stack buffer overflow vulnerability in the handling of the TextBytesAtom records by Microsoft PowerPoint Viewer. According to Microsoft, the PowerPoint Viewer distributed with Office 2003 SP3 and earlier, as well as Office 2004 for Mac, are vulnerable. NOTE: The vulnerable code path is not reachable on versions of Windows prior to Windows Vista.
f3ff123d9ef2eba8c062e175d82383b57a5e07649ff93381eb910c33c5dbb9cd
UltraISO versions 9.3.3.2685 and below CCD/IMG universal buffer overflow exploit.
b4948b9ff16b8ce741678a9efa6caba7e4d88a93fdce2d97522fb6ca287933af
Foxit Reader versions 3.0 Build 1301 and below PDF buffer overflow exploit.
961016a9a2e5ccc536c4c5230644cc73ba407f5d5728ba758f4f54065784335e
Winamp versions 5.541 and below skin universal buffer overflow exploit. Launches calc.exe.
5205111a1315db28c3d3ab7879b96c792bb6fd5b57802735fb65549a6e5b8435
Free Download Manager versions 3.0 Build 844 and below buffer overflow exploit that creates a malicious .torrent file.
d12f4e089445b1376e418c8bb42e9ae29a3e9f38e422a24c6d2d91e761df72a5
WFTPD Explorer Pro version 1.0 remote heap overflow exploit that spawns calc.exe.
010a0b8b7f9edfb819701abd6dd9bfe4f94c0ed71d131ae44edf94631623aed9
Universal buffer overflow exploit for Microsoft HTML Workshop versions 4.74 and below. Spawns calc.exe.
b279e2b46cd691c8a17617eb8b036ceb60ae84e7f575c339e9bba6def2728602
WinAmp GEN_MSN plugin heap buffer overflow proof of concept exploit that creates a malicious .pls file.
6cc13470a643ecebc9414c4bd17a426ef9b9cd1233f7e12bc459d001d2fd4a32
VUPlayer versions 2.49 .PLS file universal buffer overflow exploit that spawns calc.exe.
729f0902f6070beb1ba0a8381214ba7f39df71107b9d26e54ebae427021e9191
Amaya Web Browser versions 11.0.1 and below remote buffer overflow exploit for Microsoft Vista.
838812e1953f168f63b209766220de9eca6d3115a5fd20d10b281685825e01f5
Acoustica Mixcraft versions 4.2 and below universal stack overflow exploit (SEH).
cfe12df23610202de0361cd1cbe90a38c6f39604bf558ca1b5e84abb9e6c232f
ProSysInfo TFTP Server TFTPDWIN versions 0.4.2 and below universal remote buffer overflow exploit.
663275640c89a2232d290f0bc25d44011e058626e9f27cb92570e4c049a1f849
PEiD versions 0.92 and below malformed PE file universal buffer overflow exploit.
a8e691f793e9f6d3a4279a8524df964648c000cd068a6834a3f85cd3f5c10617
VLC Media Player versions below 0.9.6 .RT stack buffer overflow exploit.Spawns calc.exe.
885454393c4e99bc5fc0b83823b3a3c169446cb21872b399d36814636e1d9b76
MIRC version 6.34 remote buffer overflow exploit that spawns calc.exe.
7395c86dff59c0fbcb031226149a38324b2c0c6eba091636a7a3542528089724