Commercial Software

SafeNet SoftRemote Local Buffer Overflow Vulnerability
Released:2010-03-06 (Downloads: 1238)
Verify Advisory:http://www.senseofsecurity.com.au/advisories/SOS-09-008
TheGreenBow VPN Client Local Stack Overflow Vulnerability
Released:2010-03-06 (Downloads: 1487)
Verify Advisory:http://www.senseofsecurity.com.au/advisories/SOS-10-001
Quiksoft EasyMail 6 (AddAttachment) Remote Buffer Overflow Exploit
Released:2009-09-17 (Downloads: 3102)
Verify Advisory:http://www.securityfocus.com/bid/36440
Exploit Code:http://milw0rm.com/exploits/9705
Test Link:http://www.bmgsec.com.au/advisories/examples/easymail-6-activex-exploit.html
Linksys Wireless ADSL Router (WAG54G V.2) httpd DoS Exploit
Released:2008-12-21 (Downloads: 2296)
Verify Advisory:http://www.securityfocus.com/bid/32949
Exploit Code:http://milw0rm.com/exploits/7535
PDFView (OpenPDF) ActiveX Heap Overflow Vulnerability
Released:2008-11-15 (Downloads: 2073)
Verify Advisory:http://secunia.com/advisories/32725/
Exploit Code:http://www.milw0rm.com/exploits/7126
Test Link:http://www.bmgsec.com.au/advisories/openpdf.html
GoodTech SSH Remote Buffer Overflow Exploit
Released:2008-10-23 (Downloads: 1883)
Verify Advisory:http://secunia.com/advisories/cve_reference/CVE-2008-4726/
Exploit Code:http://www.milw0rm.com/exploits/6804
Notes:0day for 2 months
IntelliTamper 2.07 (imgsrc) Remote Buffer Overflow Exploit
Released:2008-08-03 (Downloads: 1913)
Verify Advisory:http://downloads.securityfocus.com/vulnerabilities/exploits/30521.c
Exploit Code:http://www.milw0rm.com/exploits/6195
IntelliTamper 2.07 (html parser) Remote Buffer Overflow Exploit (c)
Released:2008-07-24 (Downloads: 2208)
Verify Advisory:http://www.securityfocus.com/bid/30317/info
Exploit Code:http://www.milw0rm.com/exploits/6121
Notes:This vulnerability was not discovered by me. I just wrote exploit code for it.
Document Imaging SDK 10.95 ActiveX Buffer Overflow Vulnerability
Released:2008-06-30 (Downloads: 1940)
Verify Advisory:http://secunia.com/advisories/31095/
Exploit Code:http://milw0rm.com/exploits/6083
Test Link:http://www.bmgsec.com.au/advisories/disdkbof.html

Open Source

Apache 2.2.14 mod_isapi Dangling Pointer Vulnerability
Released:2010-03-06 (Downloads: 1465)
Verify Advisory:http://www.senseofsecurity.com.au/advisories/SOS-10-002
Exploit Code:http://www.senseofsecurity.com.au/advisories/SOS-10-002-pwn-isapi.cpp
FreeSSHd 1.2.1 (rename) Remote Buffer Overflow Exploit
Released:2009-03-26 (Downloads: 2269)
Exploit Code:http://www.milw0rm.com/exploits/8295
FreeSSHd Multiple Remote Stack Overflow Vulnerabilities
Released:2008-12-21 (Downloads: 2507)
Verify Advisory:http://www.securityfocus.com/bid/32972
CoolPlayer 2.19 (Skin File) Local Buffer Overflow Exploit
Released:2008-12-21 (Downloads: 2435)
Verify Advisory:http://www.securityfocus.com/bid/32947
Exploit Code:http://milw0rm.com/exploits/7536
W3C Amaya Browser (URL Bar) Remote Stack Overflow Vulnerability
Released:2008-11-24 (Downloads: 2612)
Verify Advisory:http://www.securiteam.com/securitynews/6M00P1FN5K.html
Exploit Code:http://www.milw0rm.com/exploits/7209
W3C Amaya Browser (id) Remote Stack Overflow Vulnerability
Released:2008-11-24 (Downloads: 2734)
Verify Advisory:http://secunia.com/advisories/cve_reference/CVE-2008-5282/
Exploit Code:http://www.milw0rm.com/exploits/7213
FreeSSHd (rename) Remote Buffer Overflow Exploit
Released:2008-07-12 (Downloads: 1938)
Verify Advisory:http://www.frsirt.com/english/advisories/2008/2897
Exploit Code:http://www.securityfocus.com/archive/1/497746
Notes:It has been 0day 3 months prior to release
PHP 5.2.3 imagepsloadfont Buffer Overflow Vulnerability
Released:2007-07-26 (Downloads: 1923)
Verify Advisory:http://www.securityfocus.com/bid/25079
Exploit Code:http://milw0rm.com/exploits/4227

Freeware

W3Filer <= 2.1.3 Remote Stack Overflow Vulnerability
Released:2007-06-29 (Downloads: 1785)
Verify Advisory:http://www.securityfocus.com/bid/24709
Exploit Code:http://www.milw0rm.com/exploits/4126
VicFTPs Server < 5.0 CWD Remote Buffer Overflow Vulnerability
Released:2007-02-12 (Downloads: 1774)
Verify Advisory:http://secunia.com/advisories/24161/
Exploit Code:http://milw0rm.com/exploits/3331

Commercial (Web Applications)

Vote-Pro <= 4.0 Remote Code Injection Vulnerability
Released:2007-01-23 (Downloads: 1808)
Verify Advisory:http://secunia.com/advisories/23834/
Exploit Code:http://www.milw0rm.com/exploits/3180
Peak CMS <= 6.02 Admin Authentication Bypass (advisory private)
Released:2007-01-05 (Downloads: 1913)
Notes:There are still more, undisclosed vulnerabilties in this software.

Open Source (Web Applications)

XNews <= 1.0.1 Remote File Disclosure Vulnerability
Released:2007-01-28 (Downloads: 1830)
Verify Advisory:http://secunia.com/advisories/24177/
Exploit Code:http://milw0rm.com/exploits/3332
TorrentFlux <= 2.2 Database Credentials Exposure Vulnerability
Released:2006-12-09 (Downloads: 1833)
Verify Advisory:http://secunia.com/advisories/23270/
Exploit Code:http://milw0rm.com/exploits/2902
TorrentFlux-b4rt "path" File Disclosure Vulnerability
Released:2006-12-09 (Downloads: 2256)
Verify Advisory:http://secunia.com/advisories/23402/
Exploit Code:http://milw0rm.com/exploits/2902
TorrentFlux <= 2.2 Remote Command Execution Vulnerability
Released:2006-12-09 (Downloads: 1976)
Verify Advisory:http://secunia.com/advisories/23270/
Exploit Code:http://milw0rm.com/exploits/2903
ThinkEdit <= 1.9.2 Remote File Include Vulnerability
Released:2006-12-08 (Downloads: 1157)
Verify Advisory:http://secunia.com/advisories/23168/
Exploit Code:http://milw0rm.com/exploits/2898
QuickCart <= 2.0 Multiple Vulnerabilities
Released:2006-12-03 (Downloads: 1220)
Verify Advisory:http://secunia.com/advisories/23168/
Exploit Code:http://milw0rm.com/exploits/2889
TorrentFlux-b4rt <= 2.1 (Arbitrary File Creation/Overwrite/Deletion & Command Execution Vulnerablities)
Released:2006-11-15 (Downloads: 974)
Verify Advisory:http://secunia.com/advisories/22933/
Exploit Code:http://www.bmgsec.com.au/advisories/torrentflux-b4rt2.1.txt
TorrentFlux <= 2.1 (Arbitrary File Creation/Overwrite/Deletion & Command Execution Vulnerablities)
Released:2006-11-15 (Downloads: 1234)
Verify Advisory:http://secunia.com/advisories/22880/
Exploit Code:http://milw0rm.com/exploits/2786
ContentNow 1.30 (Local/Upload/Delete) Multiple Remote Vulnerabilities
Released:2006-11-13 (Downloads: 740)
Verify Advisory:http://secunia.com/advisories/22805/
Exploit Code:http://milw0rm.com/exploits/2768
CMS Faethon <= 2.0 (mainpath) Remote File Include Vulnerabiltiy
Released:2006-10-24 (Downloads: 789)
Exploit Code:http://milw0rm.com/exploits/2632
Extreme CMS Multiple Vulnerabilities
Released:2006-10-24 (Downloads: 767)
Verify Advisory:http://secunia.com/advisories/22919/
Exploit Code:http://www.br0ke.ath.cx/advisories/extremecms0.9.txt
PHPRecipeBook 2.36 (g_rb_basedir) Remote File Include Vulnerability
Released:2006-10-17 (Downloads: 741)
Verify Advisory:http://secunia.com/advisories/22427/
Exploit Code:http://milw0rm.com/exploits/2584
phpBurningPortal <= 1.0.1 (lang_path) Remote File Include Exploit
Released:2006-10-16 (Downloads: 718)
Exploit Code:http://milw0rm.com/exploits/2563
Redaction System 1.0 (lang_prefix) Remote File Include Vulnerabilities
Released:2006-10-13 (Downloads: 747)
Verify Advisory:http://secunia.com/advisories/22347/
Exploit Code:http://milw0rm.com/exploits/2534
DeluxeBB (templatefolder) File Inclusion Vulnerability
Released:2006-10-02 (Downloads: 835)
Verify Advisory:http://secunia.com/advisories/22176/
Simplog Multiple SQL Injection Vulnerabilities
Released:2005-09-21 (Downloads: 736)
Verify Advisory:http://secunia.com/advisories/16881/
b2evolution (title) SQL Injection Vulnerability
Released:2005-01-06 (Downloads: 731)
Verify Advisory:http://secunia.com/advisories/13718/
PHP-Fusion SQL Injection (index.php)
Released:2004-12-12 (Downloads: 865)
Verify Advisory:http://www.securiteam.com/unixfocus/6Z00E0UC0I.html
PHP-Fusion SQL Injection and Script Insertion Vulnerabilities
Released:2004-09-30 (Downloads: 757)
Verify Advisory:http://secunia.com/advisories/12686/