Section: .. / 0801-exploits /
| /// File Name: |
ekinboard-upload.txt |
Description:
|
EkinBoard versions 1.1.0 and below suffer from remote file upload and authentication bypass vulnerabilities.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1592 | | Last Modified: | Jan 7 14:18:14 2008 |
| MD5 Checksum: | f5668e2c1c098ca1eb67d7773f34925a |
|
| /// File Name: |
imagealbum-sql.txt |
Description:
|
ImageAlbum versions 2.0.0b2 and below suffer from multiple remote SQL injection vulnerabilities.
| | Author: | dB | | File Size: | 1590 | | Last Modified: | Jan 11 13:28:12 2008 |
| MD5 Checksum: | ea6ecdf89c0f3d0513e08c1207437362 |
|
| /// File Name: |
fapersianpetition-sql.txt |
Description:
|
FaScript FaPersianHack Petition suffers from a remote SQL injection vulnerability in show.php.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1575 | | Last Modified: | Jan 15 20:05:41 2008 |
| MD5 Checksum: | 570b30f0dc3c2642010c3089ec5543c4 |
|
| /// File Name: |
aconon-traverse.txt |
Description:
|
Aconon Mail 2004 suffers from a remote directory traversal vulnerability.
| | Author: | Arno Toll | | Homepage: | http://burnachurch.com/ | | File Size: | 1562 | | Last Modified: | Jan 24 00:10:26 2008 |
| MD5 Checksum: | 930b4c49e651b2dd87e9aa6ea8aa58d1 |
|
| /// File Name: |
ajchat-sql.txt |
Description:
|
AJchat version 0.10 suffers from a remote SQL injection vulnerability due to unset() usage in directory.php.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1561 | | Last Modified: | Jan 11 13:30:06 2008 |
| MD5 Checksum: | 9030d3446231e1cfbc51d2d0859d4d56 |
|
| /// File Name: |
cutenews-exec.txt |
Description:
|
CuteNews version 1.1.1 suffers from a remote code execution vulnerability in html.php.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1542 | | Last Modified: | Jan 6 19:56:58 2008 |
| MD5 Checksum: | 62c6f4f302e8e6d20ea1776b6f7671f4 |
|
| /// File Name: |
flinx-sql.txt |
Description:
|
flinx versions 1.3 and below suffer from a remote SQL injection vulnerability in category.php.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1537 | | Last Modified: | Jan 25 03:10:14 2008 |
| MD5 Checksum: | c5a9f59824991b5c36257ce507a0271f |
|
| /// File Name: |
phpwebsite-xss.txt |
Description:
|
phpWebSite version 1.4.0 suffers from a cross site scripting vulnerability that can be leveraged via the search functionality.
| | Author: | Audun Larsen | | File Size: | 1537 | | Last Modified: | Jan 1 17:32:02 2008 |
| MD5 Checksum: | 0b102b5e3eac4f0e0033ac2d1115d2fd |
|
| /// File Name: |
clipshare26-passwd.txt |
Description:
|
ClipShare version 2.6 remote user password change exploit.
| | Author: | Pr0metheuS | | File Size: | 1529 | | Last Modified: | Jan 5 19:19:30 2008 |
| MD5 Checksum: | f52f09700ac22bce339c413c8c9fccea |
|
| /// File Name: |
domphp081-sql.txt |
Description:
|
DomPHP version 0.81 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1522 | | Last Modified: | Jan 11 13:13:40 2008 |
| MD5 Checksum: | 574472e4bbfb227dfd165abc107703c9 |
|
| /// File Name: |
moinmoin-cookie.txt |
Description:
|
MoinMoin version 1.5.x MOIND_ID exploit that takes advantage of a cookie related bug.
| | Author: | Fernando Quintero aka nonroot | | File Size: | 1511 | | Last Modified: | Jan 23 23:13:22 2008 |
| MD5 Checksum: | 9a965be184b1fd8f72e1d310d3d1422b |
|
| /// File Name: |
lulieblog-sql.txt |
Description:
|
LulieBlog version 1.02 suffers from a remote SQL injection vulnerability in voircom.php.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1509 | | Last Modified: | Jan 23 23:46:07 2008 |
| MD5 Checksum: | 8ed727e0f227f56c2457b9a6a77b7944 |
|
| /// File Name: |
webquest-sql.txt |
Description:
|
PHP Webquest version 2.6 remote SQL injection exploit.
| | Author: | ka0x | | File Size: | 1503 | | Last Modified: | Jan 9 01:38:14 2008 |
| MD5 Checksum: | 3d3b136eccaaf3a5c2ca08b4898dfe21 |
|
| /// File Name: |
joomlaako-sql.txt |
Description:
|
The Joomla com_akogallery component version 2.5b suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1498 | | Last Modified: | Jan 31 21:06:10 2008 |
| MD5 Checksum: | 60dabb733ed2a77281d72e27dad384c6 |
|
| /// File Name: |
webquest-db.txt |
Description:
|
PHP Webquest version 2.6 suffers from a vulnerability that allows for database credential extraction.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1466 | | Last Modified: | Jan 10 03:25:37 2008 |
| MD5 Checksum: | e00c6a28288f6dd4fa267acdcd7e7486 |
|
| /// File Name: |
osdata-lfi.txt |
Description:
|
The Php121 module in osData version 2.08 and below suffer from a local file inclusion vulnerability.
| | Author: | Cold z3ro | | Homepage: | http://www.hack-teach.com/ | | File Size: | 1463 | | Last Modified: | Jan 10 03:21:53 2008 |
| MD5 Checksum: | f2187d2d3c591ef8417162bf428d499d |
|
| /// File Name: |
tutos-exec.txt |
Description:
|
TUTOS version 1.3 is susceptible to a remote command execution vulnerability leveraging cmd.php.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1460 | | Last Modified: | Jan 7 14:24:49 2008 |
| MD5 Checksum: | 651e2b1a49c68b1ec0b02b302419c5fb |
|
| /// File Name: |
photokron-disclose.txt |
Description:
|
PhotoKron versions 1.7 and below remote database disclosure exploit.
| | Author: | Pr0metheuS | | File Size: | 1451 | | Last Modified: | Jan 11 20:36:20 2008 |
| MD5 Checksum: | a91daecd980f900cdac652075f23e9f1 |
|
| /// File Name: |
smallaxe-rfi.txt |
Description:
|
Small Axe version 0.3.1 suffers from a remote file inclusion vulnerability in linkbar.php.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 1447 | | Last Modified: | Jan 18 20:09:39 2008 |
| MD5 Checksum: | dd7413ff5096c1f3de9dd75ca12ff961 |
|
| /// File Name: |
clevercopy-sqlxss.txt |
Description:
|
Clever Copy version 3.0 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | virangar security team | | Homepage: | http://www.virangar.org/ | | File Size: | 1446 | | Last Modified: | Jan 18 04:32:59 2008 |
| MD5 Checksum: | a0b789ee783065d7f02e7031635d018f |
|
| /// File Name: |
wpfile-upload.txt |
Description:
|
Wordpress plugin WP-FileManager version 1.2 suffers from a remote upload vulnerability.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1445 | | Last Modified: | Jan 6 19:49:15 2008 |
| MD5 Checksum: | 6bef1d24c4ae01399bfed859abcfb1b2 |
|
| /// File Name: |
boast-sql.txt |
Description:
|
boastMachine versions 3.1 and below suffer from a SQL injection vulnerability.
| | Author: | virangar security team | | Homepage: | http://www.virangar.org/ | | File Size: | 1427 | | Last Modified: | Jan 21 21:03:30 2008 |
| MD5 Checksum: | 2750bfd929c50dde3a6c8687f5052fd1 |
|
| /// File Name: |
joomlacatalog-sql.txt |
Description:
|
The Joomla com_catalogshop component version 1.0b1 suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1425 | | Last Modified: | Jan 31 21:06:53 2008 |
| MD5 Checksum: | e4546c79b3760d0d72dc5149d12bd9d4 |
|
| /// File Name: |
agares-xssrfi.txt |
Description:
|
Agares PhpAutoVideo versions 2.21 and below suffer from cross site scripting and remote file inclusion vulnerabilities.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1393 | | Last Modified: | Jan 18 20:12:04 2008 |
| MD5 Checksum: | 7d9ed7c10f240b49e7f01e53d2501ebf |
|
|
|
|
|