VARIoT IoT exploits database

Affected products: vendor, model and version
Type can be e.g: Remote Code Execution or Denial of Service
Look up free text in title and description

VAR-E-201410-0027 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-5288
CVE-2014-5287
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
Kemp Load Master 7.1.16 - Multiple Vulnerabilities - Multiple webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 36609
Kemp Load Master 7.1.16 - Multiple Vulnerabilities. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-2014-6271CVE-2014-5288CVE-2014-5287CVE-2014-3671CVE-120255CVE-2014-3659CVE-120254CVE-120253CVE-120252CVE-120251CVE-120250CVE-120249CVE-112004 . webapps exploit for Multiple platform
VAR-E-201410-0022 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
Bash CGI - 'Shellshock' Remote Command Injection (Metasploit) - CGI webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34895
Bash CGI - 'Shellshock' Remote Command Injection (Metasploit). CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-112004CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . webapps exploit for CGI platform
VAR-E-201409-0561 CVE-2014-6278
CVE-2014-6271
CVE-2014-6277
Apache mod_cgi - 'Shellshock' Remote Command Injection - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1154, VAR-201409-1156, VAR-201409-0366
EDB ID: 34900
Apache mod_cgi - 'Shellshock' Remote Command Injection. CVE-2014-6278CVE-2014-6271 . remote exploit for Linux platform
VAR-E-201410-0024 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
IPFire - CGI Web Interface (Authenticated) Bash Environment Variable Code Injection - CGI webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34839
IPFire - CGI Web Interface (Authenticated) Bash Environment Variable Code Injection. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-112004CVE-2014-6271CVE-2014-3671CVE-2014-3659 . webapps exploit for CGI platform
VAR-E-201409-0553 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
QNAP - Web Server Remote Code Execution via Bash Environment Variable Code Injection (Metasploit) - Hardware remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 36504
QNAP - Web Server Remote Code Execution via Bash Environment Variable Code Injection (Metasploit). CVE-2014-7910CVE-112004CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Hardware platform
VAR-E-201409-0564 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-5288
CVE-2014-5287
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
Kemp Load Master 7.1.16 - Multiple Vulnerabilities - Multiple webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 36609
Kemp Load Master 7.1.16 - Multiple Vulnerabilities. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-2014-6271CVE-2014-5288CVE-2014-5287CVE-2014-3671CVE-120255CVE-2014-3659CVE-120254CVE-120253CVE-120252CVE-120251CVE-120250CVE-120249CVE-112004 . webapps exploit for Multiple platform
VAR-E-201409-0544 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
Bash CGI - 'Shellshock' Remote Command Injection (Metasploit) - CGI webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34895
Bash CGI - 'Shellshock' Remote Command Injection (Metasploit). CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-112004CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . webapps exploit for CGI platform
VAR-E-201410-0026 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
OpenVPN 2.2.29 - 'Shellshock' Remote Command Injection - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34879
OpenVPN 2.2.29 - 'Shellshock' Remote Command Injection. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-112004CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Linux platform
VAR-E-201410-0023 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
QNAP - Web Server Remote Code Execution via Bash Environment Variable Code Injection (Metasploit) - Hardware remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 36504
QNAP - Web Server Remote Code Execution via Bash Environment Variable Code Injection (Metasploit). CVE-2014-7910CVE-112004CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Hardware platform
VAR-E-201409-0021 CVE-2014-6271
CVE-2014-6278
Qmail SMTP - Bash Environment Variable Injection (Metasploit) - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1154, VAR-201409-1156
EDB ID: 42938
Qmail SMTP - Bash Environment Variable Injection (Metasploit). CVE-2014-6271CVE-112004 . remote exploit for Linux platform
VAR-E-201409-0566 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
Pure-FTPd - External Authentication Bash Environment Variable Code Injection (Metasploit) - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34862
Pure-FTPd - External Authentication Bash Environment Variable Code Injection (Metasploit). CVE-2014-7910CVE-112004CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Linux platform
VAR-E-201410-0031 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
CUPS Filter - Bash Environment Variable Code Injection (Metasploit) - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 35115
CUPS Filter - Bash Environment Variable Code Injection (Metasploit). CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-112004CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Linux platform
VAR-E-201409-0560 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
IPFire - CGI Web Interface (Authenticated) Bash Environment Variable Code Injection - CGI webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34839
IPFire - CGI Web Interface (Authenticated) Bash Environment Variable Code Injection. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-112004CVE-2014-6271CVE-2014-3671CVE-2014-3659 . webapps exploit for CGI platform
VAR-E-201410-0030 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
PHP < 5.6.2 - 'Shellshock' Safe Mode / disable_functions Bypass / Command Injection - PHP webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 35146
PHP < 5.6.2 - 'Shellshock' Safe Mode / disable_functions Bypass / Command Injection. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-112004CVE-2014-6271CVE-2014-3671CVE-2014-3659 . webapps exploit for PHP platform
VAR-E-201409-0020 CVE-2014-6271
CVE-2014-6278
TrendMicro InterScan Web Security Virtual Appliance - 'Shellshock' Remote Command Injection - Hardware remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1154, VAR-201409-1156
EDB ID: 40619
TrendMicro InterScan Web Security Virtual Appliance - 'Shellshock' Remote Command Injection. CVE-2014-6271 . remote exploit for Hardware platform
VAR-E-201409-0549 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
CUPS Filter - Bash Environment Variable Code Injection (Metasploit) - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 35115
CUPS Filter - Bash Environment Variable Code Injection (Metasploit). CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-2014-62771CVE-112004CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Linux platform
VAR-E-201409-0563 CVE-2014-7910
CVE-2014-7227
CVE-2014-7196
CVE-2014-7169
CVE-2014-62771
CVE-2014-6271
CVE-2014-3671
CVE-2014-3659
CVE-2014-6277
Postfix SMTP 4.2.x < 4.2.48 - 'Shellshock' Remote Command Injection - Linux remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1156, VAR-201409-1155, VAR-201409-0366
EDB ID: 34896
Postfix SMTP 4.2.x < 4.2.48 - 'Shellshock' Remote Command Injection. CVE-2014-7910CVE-2014-7227CVE-2014-7196CVE-2014-7169CVE-112004CVE-2014-62771CVE-2014-6271CVE-2014-3671CVE-2014-3659 . remote exploit for Linux platform
VAR-E-201409-0018 CVE-2014-8008
CVE-2014-6271
CVE-2014-6278
Cisco Unified Communications Manager - Multiple Vulnerabilities - Multiple webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201501-0325, VAR-201409-1154, VAR-201409-1156
EDB ID: 37816
Cisco Unified Communications Manager - Multiple Vulnerabilities. CVE-2014-8008CVE-2014-6271CVE-126132CVE-126131CVE-117422 . webapps exploit for Multiple platform
VAR-E-201409-0016 CVE-2014-6278
CVE-2014-6277
Sun Secure Global Desktop and Oracle Global Desktop 4.61.915 - Command Injection (Shellshock) - CGI webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1154, VAR-201409-0366
EDB ID: 39887
Sun Secure Global Desktop and Oracle Global Desktop 4.61.915 - Command Injection (Shellshock). CVE-2014-6278 . webapps exploit for CGI platform
VAR-E-201409-0557 CVE-2014-6277
CVE-2014-6278
Binary File Descriptor Library (libbfd) - Out-of-Bounds Crash - Linux dos Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201409-1154, VAR-201409-0366
EDB ID: 35081
Binary File Descriptor Library (libbfd) - Out-of-Bounds Crash. CVE-2014-6277 . dos exploit for Linux platform