Section: .. / 0707-exploits /
| /// File Name: |
alstrasoft-multi.txt |
Description:
|
A number of cross site scripting and SQL injection vulnerabilities affect various products from AlstraSoft including Video Share Enterprise, Text Ads Enterprise, SMS Text Messaging Enterprise, Affiliate Network Pro, Article Manager Pro, and AskMe Pro.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 6292 | | Last Modified: | Jul 23 00:35:41 2007 |
| MD5 Checksum: | 924c4b376a0b4c9d2efc4ca72db635e3 |
|
| /// File Name: |
SA-20070722-0.txt |
Description:
|
SEC Consult Security Advisory - SEC Consult has discovered an arbitrary code execution flaw in Joomla! version 1.5 beta 2.
| | Author: | Johannes Greil | | Homepage: | http://www.sec-consult.com/ | | File Size: | 4225 | | Last Modified: | Jul 23 00:30:52 2007 |
| MD5 Checksum: | 0eaa4db5b506cf61eee2ea96becdde66 |
|
| /// File Name: |
major_rls51.txt |
Description:
|
Virtual Hosting Control System (VHCS) versions 2.4.7.1 and below suffer from a session fixation issue.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 2003 | | Last Modified: | Jul 23 00:24:56 2007 |
| MD5 Checksum: | 1cd624b692b6801508ec08ff978198ce |
|
| /// File Name: |
propertypro-sql.txt |
Description:
|
Property Pro suffers from an administrative bypass vulnerability via SQL injection.
| | Author: | The-0utl4w | | Homepage: | http://aria-security.net/ | | File Size: | 281 | | Last Modified: | Jul 23 00:20:42 2007 |
| MD5 Checksum: | c09c1cf6f5c94405fd16f7dac091d197 |
|
| /// File Name: |
sitesi-xss.txt |
Description:
|
Alisveris Sitesi Scripti is susceptible to a cross site scripting vulnerability.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 431 | | Last Modified: | Jul 23 00:14:44 2007 |
| MD5 Checksum: | f9b53078f68111e7470daad1bb2fecc3 |
|
| /// File Name: |
sitesi-sql.txt |
Description:
|
Alisveris Sitesi Scripti is susceptible to SQL injection vulnerabilities.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 577 | | Last Modified: | Jul 23 00:14:01 2007 |
| MD5 Checksum: | 6c922d9e4caf7e4e12179d7dd6e25843 |
|
| /// File Name: |
doraemlak-xsssql.txt |
Description:
|
Dora Emlak script version 1.0 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 737 | | Last Modified: | Jul 23 00:08:54 2007 |
| MD5 Checksum: | f638e2d88e11b6b159be74b318b8735f |
|
| /// File Name: |
jblog-xss.txt |
Description:
|
JBlog version 1.0 suffers from cross site scripting and administrator creation vulnerabilities.
| | Author: | S4mi | | File Size: | 5101 | | Last Modified: | Jul 23 00:07:14 2007 |
| MD5 Checksum: | bfe1ce303743a1f329f3675b8d47b6aa |
|
| /// File Name: |
usebb-xss.txt |
Description:
|
UseBB version 1.0.7 suffers from a cross site scripting vulnerability.
| | Author: | S4mi | | File Size: | 1506 | | Last Modified: | Jul 23 00:05:57 2007 |
| MD5 Checksum: | 810cc44e3c738c8ac41c1f5c69a98d5e |
|
| /// File Name: |
lotus-overflow.txt |
Description:
|
Lotus Domino IMAP4 server version 6.5.4 / Windows 2000 Advanced Server x86 remote buffer overflow exploit.
| | Author: | Dominic Chell, prdelka | | File Size: | 7038 | | Last Modified: | Jul 20 22:30:19 2007 |
| MD5 Checksum: | c034bc24a2ccbd22b9171961180e067a |
|
| /// File Name: |
php523-snmpget.txt |
Description:
|
PHP versions 5.2.3 and below snmpget() object id local buffer overflow eip overwrite exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2226 | | Last Modified: | Jul 20 22:27:50 2007 |
| MD5 Checksum: | 9b8e0f09a63c69d8435d009466711697 |
|
| /// File Name: |
blogsite-sql.txt |
Description:
|
BlogSite Professional suffers from a SQL injection vulnerability.
| | Author: | t0pp8uzz, xprog | | File Size: | 982 | | Last Modified: | Jul 20 22:25:55 2007 |
| MD5 Checksum: | 0939b5e51fe3a3d3a43523b9f1a9b12a |
|
| /// File Name: |
teamspeak-dos.txt |
Description:
|
TeamSpeak version 2.0 remote denial of service exploit for the Windows release.
| | Author: | Yag Kohha | | File Size: | 1644 | | Last Modified: | Jul 20 22:24:54 2007 |
| MD5 Checksum: | 8930a73e74ddbf44309fbf966ac6bc7e |
|
| /// File Name: |
eliteforum-rfi.txt |
Description:
|
Elite Forum suffers from a remote file inclusion vulnerability.
| | Author: | St@rExT | | File Size: | 800 | | Last Modified: | Jul 20 22:21:09 2007 |
| MD5 Checksum: | f463607f3554fc70eeabbbe2b6829c25 |
|
| /// File Name: |
versalsoft-overflow.txt |
Description:
|
Versalsoft HTTP File Uploader AddFile() remote buffer overflow exploit that makes use of UFileUploaderD.dll version 6.0.0.38.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 3187 | | Last Modified: | Jul 20 01:57:31 2007 |
| MD5 Checksum: | e279dd085cc55aef91282147b3d4deb5 |
|
| /// File Name: |
joomlapony-sql.txt |
Description:
|
Joomla component Pony Gallery versions 1.5 and below are susceptible to a blind SQL injection exploit that makes use of index.php.
| | Author: | ajann | | File Size: | 1259 | | Last Modified: | Jul 20 01:51:58 2007 |
| MD5 Checksum: | 1c633f7eb95c6f0c68d6881d221fcfad |
|
| /// File Name: |
mdpro108-sql.txt |
Description:
|
MDPro versions 1.0.8x and below suffer from a SQL injection vulnerability.
| | File Size: | 698 | | Last Modified: | Jul 19 00:58:24 2007 |
| MD5 Checksum: | 6c93609fdf66685d21aeaf6ac8aa7bf7 |
|
| /// File Name: |
ashop-multi.txt |
Description:
|
A-Shop versions 0.70 and below suffer from an arbitrary remote file deletion vulnerability.
| | Author: | Timq | | Homepage: | http://private-node.net/ | | File Size: | 386 | | Last Modified: | Jul 19 00:55:44 2007 |
| MD5 Checksum: | 2581e9526dc6e060754f481b0a29ecbc |
|
| /// File Name: |
phpbbsupanav-rfi.txt |
Description:
|
phpBB module SupaNav version 1.0.0 suffers from a remote file inclusion vulnerability in link_main.php.
| | Author: | bd0rk | | Homepage: | http://www.soh-crew.it.tt/ | | File Size: | 853 | | Last Modified: | Jul 19 00:54:34 2007 |
| MD5 Checksum: | 04dd164da0123e7009df2c66cfe65917 |
|
| /// File Name: |
bbsemarket-rfi.txt |
Description:
|
BBS E-Market suffers from a remote file inclusion vulnerability in postscript.php.
| | Author: | magenkyo.sharingan, mozi2weed | | File Size: | 231 | | Last Modified: | Jul 19 00:53:19 2007 |
| MD5 Checksum: | 28e1bee4fdc01b7e6235f2f0bb449b12 |
|
| /// File Name: |
joomlaexpose-rfu.txt |
Description:
|
The Joomla component Expose versions RC35 and below suffer from a remote permission bypass and file upload vulnerability.
| | Author: | Cold z3ro | | Homepage: | http://www.hack-teach.com/ | | File Size: | 3562 | | Last Modified: | Jul 19 00:18:21 2007 |
| MD5 Checksum: | 06baad934f99d9743d1b9e55d3233198 |
|
| /// File Name: |
quickestore-sql.txt |
Description:
|
QuickEStore versions 8.2 and below suffer from a remote SQL injection vulnerability in insertorder.cfm.
| | Author: | meoconx | | File Size: | 592 | | Last Modified: | Jul 19 00:16:24 2007 |
| MD5 Checksum: | b95d4eb25fa4ab2dba00b78c270fcf44 |
|
| /// File Name: |
vivvocms-sql.txt |
Description:
|
Vivvo CMS versions 3.4 and below remote blind SQL injection exploit that makes use of index.php.
| | Author: | ajann | | File Size: | 10625 | | Last Modified: | Jul 19 00:15:26 2007 |
| MD5 Checksum: | 2660905f777e3fa82f3e0bee7d57dcab |
|
| /// File Name: |
prmsgid-sql.txt |
Description:
|
Pictures Rating suffers from a remote SQL injection vulnerability.
| | Author: | t0pp8uzz, xprog | | File Size: | 1214 | | Last Modified: | Jul 19 00:14:07 2007 |
| MD5 Checksum: | 36f268aa655d839f4915355ff502c385 |
|
|
|
|
|