Section: .. / 0801-exploits /
| /// File Name: |
aconon-traverse.txt |
Description:
|
Aconon Mail 2004 suffers from a remote directory traversal vulnerability.
| | Author: | Arno Toll | | Homepage: | http://burnachurch.com/ | | File Size: | 1562 | | Last Modified: | Jan 24 00:10:26 2008 |
| MD5 Checksum: | 930b4c49e651b2dd87e9aa6ea8aa58d1 |
|
| /// File Name: |
liquidsilver-lfi.txt |
Description:
|
Liquid-Silver CMS version 0.1 suffers from a local file inclusion vulnerability.
| | Author: | Stack-Terrorist | | Homepage: | http://v4-team.com/ | | File Size: | 1361 | | Last Modified: | Jan 24 00:08:36 2008 |
| MD5 Checksum: | a9ee7933e1a1bdeb94d0704695c9fdc6 |
|
| /// File Name: |
slaed-lfi.txt |
Description:
|
SLAED CMS version 2.5 Lite suffers from a local file inclusion vulnerability.
| | Author: | The_HuliGun | | File Size: | 986 | | Last Modified: | Jan 24 00:06:28 2008 |
| MD5 Checksum: | e2f37e205d3f8c39dbaa486e46d7234d |
|
| /// File Name: |
siteman-disclose.txt |
Description:
|
Siteman version 1.1.9 suffers from a remote file disclosure vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1377 | | Last Modified: | Jan 24 00:05:20 2008 |
| MD5 Checksum: | bcc2bab5c802ce8486f7610cad49747f |
|
| /// File Name: |
woltlab-xsrf.txt |
Description:
|
Woltlab Burning Board versions 2.3.6 PL2 suffers from a remote delete thread cross site request forgery vulnerability.
| | Author: | NBBN | | File Size: | 957 | | Last Modified: | Jan 24 00:04:04 2008 |
| MD5 Checksum: | d71ddbb00523a079bf6c0b8f29fd25bc |
|
| /// File Name: |
lulieblog-sql.txt |
Description:
|
LulieBlog version 1.02 suffers from a remote SQL injection vulnerability in voircom.php.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1509 | | Last Modified: | Jan 23 23:46:07 2008 |
| MD5 Checksum: | 8ed727e0f227f56c2457b9a6a77b7944 |
|
| /// File Name: |
foojan-sql.txt |
Description:
|
Foojan WMS version 1.0 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1868 | | Last Modified: | Jan 23 23:45:12 2008 |
| MD5 Checksum: | 2d57d991b185f2fec85795e1235eed6b |
|
| /// File Name: |
igal207-sql.txt |
Description:
|
Invision Gallery versions 2.0.7 and below remote SQL injection exploit.
| | Author: | 1dt.w0lf | | Homepage: | http://rst.void.ru | | File Size: | 12516 | | Last Modified: | Jan 23 23:44:12 2008 |
| MD5 Checksum: | 15d3847c56e4c60f5e8342582426e143 |
|
| /// File Name: |
phpnuke80final-sql.txt |
Description:
|
PHP-Nuke versions 8.0 FINAL and below remote SQL injection exploit.
| | Author: | 1dt.w0lf, Foster | | Homepage: | http://rst.void.ru | | File Size: | 5204 | | Last Modified: | Jan 23 23:41:55 2008 |
| MD5 Checksum: | b376db7185da657da9ea991285912280 |
|
| /// File Name: |
phpnuke80-sql.txt |
Description:
|
PHP-Nuke versions below 8.0 remote SQL injection exploit that makes use of modules.php.
| | Author: | 1dt.w0lf | | Homepage: | http://rst.void.ru | | File Size: | 2072 | | Last Modified: | Jan 23 23:39:52 2008 |
| MD5 Checksum: | 54fc26abea587a476207892c7b06954e |
|
| /// File Name: |
yabb155-exec.txt |
Description:
|
YaBB SE versions 1.5.5 and below remote command execution exploit.
| | Author: | 1dt.w0lf | | Homepage: | http://rst.void.ru | | File Size: | 13975 | | Last Modified: | Jan 23 23:38:51 2008 |
| MD5 Checksum: | 0bea1890ef10aeb966c41f458f9a8145 |
|
| /// File Name: |
setcms365-exec.txt |
Description:
|
SetCMS version 3.6.5 remote code execution exploit that makes use of functions.php.
| | Author: | 1dt.w0lf | | Homepage: | http://rst.void.ru | | File Size: | 6935 | | Last Modified: | Jan 23 23:20:36 2008 |
| MD5 Checksum: | 328ee597f6bfd29f403bf053dd119b35 |
|
| /// File Name: |
cpg1414-sql.txt |
Description:
|
Coppermine Photo Gallery versions 1.4.14 and below remote SQL injection exploit.
| | Author: | RST/GHC | | Homepage: | http://rst.void.ru | | File Size: | 7869 | | Last Modified: | Jan 23 23:18:21 2008 |
| MD5 Checksum: | be067643f7a5d5516f37c3536f5e999f |
|
| /// File Name: |
recipes-sql.txt |
Description:
|
Easysitenetwork Recipe suffers from a remote SQL injection vulnerability in list.php.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 948 | | Last Modified: | Jan 23 23:16:29 2008 |
| MD5 Checksum: | 31d024fc0393775b1ada0b12c2eef76d |
|
| /// File Name: |
aflog-sqlxss.txt |
Description:
|
aflog version 1.01 suffers from cross site scripting and SQL injection vulnerabilities in comments.php.
| | Author: | shinmai | | File Size: | 1664 | | Last Modified: | Jan 23 23:15:00 2008 |
| MD5 Checksum: | c534e4b85bf8c741058d134b9d0b92d3 |
|
| /// File Name: |
moinmoin-cookie.txt |
Description:
|
MoinMoin version 1.5.x MOIND_ID exploit that takes advantage of a cookie related bug.
| | Author: | Fernando Quintero aka nonroot | | File Size: | 1511 | | Last Modified: | Jan 23 23:13:22 2008 |
| MD5 Checksum: | 9a965be184b1fd8f72e1d310d3d1422b |
|
| /// File Name: |
apachemodneg-splitxss.txt |
Description:
|
mod_negotiation as shipped with Apache versions 1.3.39 and below, 2.0.61 and below, and 2.2.6 and below suffers from cross site scripting and http response splitting vulnerabilities.
| | Author: | Stefano Di Paola | | Homepage: | http://www.mindedsecurity.com/ | | File Size: | 6523 | | Last Modified: | Jan 22 19:01:44 2008 |
| MD5 Checksum: | e18caed342360e46f868a14e0dd9a259 |
|
| /// File Name: |
firefoxchrome-escalate.txt |
Description:
|
Firefox version 2.0.0.11 suffers from a Chrome related privilege escalation vulnerability.
| | Author: | Carl Hardwick, Gerry Eisenhaur | | File Size: | 1325 | | Last Modified: | Jan 22 15:18:11 2008 |
| MD5 Checksum: | 9851fe9db52ede6ad4c305b1a74152ea |
|
| /// File Name: |
deluxebb-xss.txt |
Description:
|
DeluxeBB version 1.1 suffers from a cross site scripting vulnerability.
| | Author: | NBBN | | File Size: | 580 | | Last Modified: | Jan 22 15:16:14 2008 |
| MD5 Checksum: | fff7d0e543d5a2c253ef5d3f27d2866a |
|
| /// File Name: |
belong-bypass.txt |
Description:
|
It appears that Belong Site Builder version 0.1b allows for direct administrative access without credentials.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 1908 | | Last Modified: | Jan 22 15:15:29 2008 |
| MD5 Checksum: | b95f01a3eb2a67e262e0351c9b0be7b8 |
|
|
|
|
|