Section: .. / 0705-exploits /
| /// File Name: |
irrational-bypass.txt |
Description:
|
Rational Software Hidden Administrator version 1.7 authentication bypass exploit.
| | Author: | Ahmed Siddiqui | | Homepage: | http://rewterz.com/ | | File Size: | 4695 | | Last Modified: | May 20 23:47:23 2007 |
| MD5 Checksum: | f52e98a64605c6889a2bf2e36077f6f3 |
|
| /// File Name: |
tsp-exec.txt |
Description:
|
AlstraSoft Template Seller Pro versions 3.25 and below remote code execution exploit.
| | Author: | BlackHawk | | Homepage: | http://itablackhawk.altervista.org/ | | File Size: | 15112 | | Last Modified: | May 20 23:25:19 2007 |
| MD5 Checksum: | 011b92e77529011193e5a2d895caaa9c |
|
| /// File Name: |
zomplog-sql.txt |
Description:
|
Zomplog versions 3.8 and below remote SQL injection exploit that makes use of mp3playlist.php.
| | Author: | neomorphs | | File Size: | 1522 | | Last Modified: | May 20 23:19:23 2007 |
| MD5 Checksum: | ec146a3f845865f1a16e84519ecbc5b0 |
|
| /// File Name: |
molyx-lfi.txt |
Description:
|
MolyX BOARD version 2.5.0 suffers from a local file inclusion vulnerability in index.php.
| | Author: | MurderSkillz | | Homepage: | http://www.g00ns.net/ | | File Size: | 1076 | | Last Modified: | May 20 23:17:21 2007 |
| MD5 Checksum: | 7f09aa2fdcada5e0ccfc0f68bb8801b6 |
|
| /// File Name: |
libstats-rfi.txt |
Description:
|
Libstats versions 1.0.3 and below suffer from a remote file inclusion vulnerability in template_csv.php.
| | Author: | Cyber-Security | | Homepage: | http://www.cyber-security.org/ | | File Size: | 760 | | Last Modified: | May 20 23:16:13 2007 |
| MD5 Checksum: | 667f16185aa251ddcf88f5fea3300e73 |
|
| /// File Name: |
bif3-rfi.txt |
Description:
|
Build It Fast version 0.4.1 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | Alkomandoz Hacker | | File Size: | 809 | | Last Modified: | May 20 23:14:49 2007 |
| MD5 Checksum: | 3bcab4c20887859065f0da41eac500e2 |
|
| /// File Name: |
geeklog2-rfi.txt |
Description:
|
Geeklog version 2.x suffers from a remote file inclusion vulnerability in ImageImageMagick.php.
| | Author: | diesl0w | | File Size: | 3383 | | Last Modified: | May 20 23:13:58 2007 |
| MD5 Checksum: | 3e974898ac1ae22fa3c6496a6b94e138 |
|
| /// File Name: |
faqengine-sql.txt |
Description:
|
FAQEngine versions 4.16.03 and below remote SQL injection exploit that makes use of question.php.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 3748 | | Last Modified: | May 20 23:10:52 2007 |
| MD5 Checksum: | d2a0fd922125f33a1f39576f6934d14f |
|
| /// File Name: |
simpnews-sql.txt |
Description:
|
SimpNews versions 2.40.01 and below remote SQL injection exploit that makes use of print.php.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 4508 | | Last Modified: | May 20 23:09:56 2007 |
| MD5 Checksum: | 7ed8d0c42eacae77d4625d02157469f9 |
|
| /// File Name: |
phpglossar-rfi.txt |
Description:
|
PHPGlossar version 0.8 suffers from remote file inclusion vulnerabilities.
| | Author: | kezzap66345 | | File Size: | 3351 | | Last Modified: | May 20 23:08:58 2007 |
| MD5 Checksum: | 5e9c7b805a62a62913b323aec0dc63ec |
|
| /// File Name: |
magiciso-dos.txt |
Description:
|
MagicISO versions 5.4 and below .cue file heap overflow proof of concept exploit.
| | Author: | n00b | | File Size: | 2913 | | Last Modified: | May 20 23:06:21 2007 |
| MD5 Checksum: | 52df0c52c21829e3791e7f532b7f1db9 |
|
| /// File Name: |
sparkassen-xss.txt |
Description:
|
The "Sparkassen-Finanzgruppe" online bank suffers from a cross site scripting vulnerability.
| | Author: | Ulrich Keil | | Homepage: | http://www.derkeiler.com/ | | File Size: | 1565 | | Last Modified: | May 20 22:42:32 2007 |
| MD5 Checksum: | e98f6bc17503474f28778b4aa93b3206 |
|
| /// File Name: |
vbul366-xss.txt |
Description:
|
vBulletin versions below 3.6.6 suffers from a persistent cross site scripting vulnerability.
| | Author: | laurent gaffi | | File Size: | 768 | | Last Modified: | May 16 22:28:14 2007 |
| MD5 Checksum: | 9315fa7bdfe0556f76ce627dceee0062 |
|
| /// File Name: |
wikyblog-rfi.txt |
Description:
|
WikyBlog version 1.4.12 suffers from a remote file inclusion vulnerability in index.php.
| | Author: | nkillers | | File Size: | 569 | | Last Modified: | May 16 22:21:42 2007 |
| MD5 Checksum: | eacd08c948f8a1672b560053f0f7e584 |
|
| /// File Name: |
jetboxcms-xss.txt |
Description:
|
Jetbox CMS is susceptible to multiple cross site scripting vulnerabilities.
| | Author: | laurent gaffi | | File Size: | 1654 | | Last Modified: | May 16 22:17:26 2007 |
| MD5 Checksum: | 90fd47852e92d3120a540d5a468075a4 |
|
| /// File Name: |
jetbox-inject.txt |
Description:
|
Jetbox CMS version 2.1 suffers from an e-mail injection vulnerability that allows for spamming.
| | Author: | Jesper Jurcenoks | | Homepage: | http://www.netvigilance.com/ | | File Size: | 2447 | | Related OSVDB(s): | 34088 | | Related CVE(s): | CVE-2007-1898 | | Last Modified: | May 16 21:50:08 2007 |
| MD5 Checksum: | 8ee84f29e8299d5fa0cce5361d5b26d3 |
|
| /// File Name: |
BTP00002P005CF.zip |
Description:
|
Proof of concept code that demonstrates a flaw with how Comodo Firewall uses process identifiers in Microsoft Windows allowing for complete bypass.
| | Homepage: | http://www.matousec.com/ | | Related File: | bypassing-pwf-hips.txt | | File Size: | 6268 | | Last Modified: | May 16 21:37:07 2007 |
| MD5 Checksum: | a52ac420ca7716f99be0fb512788583a |
|
|
|
|
|