.:[ packet storm ]:.
                             
the vulnerability safehouse
the vulnerability safehouse

 Section:  .. / Last 50 Exploit Files /

 ///  File Name:usurdat.zip
Description:
Proof of concept denial of service exploit for SOLDNER - Secret Wars versions 33724 and below which suffer from an endless loop vulnerability.
Author:Luigi Auriemma
Homepage:http://aluigi.org/
Related File:usurdat.txt
File Size:6587
Last Modified:Jul 1 12:14:08 2008
MD5 Checksum:3b8adc5e317fff936cc5da1ecdf951c0

 ///  File Name:blogparticle-traverse.txt
Description:
Blog Particle version 8.0 suffers from directory traversal and database credential disclosure vulnerabilities.
Author:e.wiZz!
File Size:1106
Last Modified:Jul 1 11:51:36 2008
MD5 Checksum:b2b27405d6772b357b942e854231542e

 ///  File Name:hbr-rfi.txt
Description:
HIOX Banner Rotator (HBR) version 1.3 suffers from a remote file inclusion vulnerability.
Author:Ghost Hacker
Homepage:http://www.real-hack.net/
File Size:1225
Last Modified:Jul 1 11:41:58 2008
MD5 Checksum:059950a053c937cf608ba8fa88fb87c7

 ///  File Name:0806-exploits.tgz
Description:
Packet Storm new exploits for June, 2008.
Homepage:http://packetstormsecurity.org/
File Size:679458
Last Modified:Jul 1 11:40:13 2008
MD5 Checksum:b8541128010b04328070aff54cf865f4

 ///  File Name:mambongal-sql.txt
Description:
The Mambo n-gallery component suffers from multiple SQL injection vulnerabilities.
Author:AlbaniaN-[H]
Homepage:http://www.khg-crew.ws/
File Size:3801
Last Modified:Jul 1 11:37:48 2008
MD5 Checksum:518ab12f168cd87e8d1f56f8f07ae494

 ///  File Name:psys070-sql.txt
Description:
pSys version 0.7.0 suffers from a remote SQL injection vulnerability in chatbox.php.
Author:DNX
File Size:1118
Last Modified:Jul 1 11:36:49 2008
MD5 Checksum:7753d7d24d70b5cdbe4ff97bd90822cf

 ///  File Name:pivot-disclosure.txt
Description:
Pivot version 1.40.5 Dreamwind load_template() credential disclosure exploit.
Author:Nine:Situations:Group
Homepage:http://retrogod.altervista.org/
File Size:3721
Last Modified:Jul 1 11:35:32 2008
MD5 Checksum:3aa95a0656fbb05e1de96366a7bc772d

 ///  File Name:rcm-sql.txt
Description:
RCM Revision Web Development suffers from a remote SQL injection vulnerability in products.php.
Author:Niiub
Homepage:http://www.bl4ck-b0x-info/
File Size:993
Last Modified:Jul 1 11:20:02 2008
MD5 Checksum:4d8731d224689d8375fccf12d82edd5a

 ///  File Name:barenuked-admin.txt
Description:
BareNuked CMS version 1.1.0 arbitrary add administrator exploit.
Author:CWH Underground
Homepage:http://www.citecclub.org/
File Size:3797
Last Modified:Jul 1 11:19:05 2008
MD5 Checksum:5ec47feac834cbac9413af2b028e7cd6

 ///  File Name:faname10-xss.txt
Description:
Fa Name version 1.0 suffers from multiple cross site scripting vulnerabilities.
Author:Jesper Jurcenoks
Homepage:http://www.netvigilance.com/
File Size:2862
Related CVE(s):CVE-2007-3653
Last Modified:Jul 1 11:18:10 2008
MD5 Checksum:a91182cee88d64312eaa70e37f746fd7

 ///  File Name:faname10-sql.txt
Description:
Fa Name version 1.0 suffers from a remote SQL injection vulnerability.
Author:Jesper Jurcenoks
Homepage:http://www.netvigilance.com/
File Size:2321
Related CVE(s):CVE-2007-3652
Last Modified:Jul 1 11:17:08 2008
MD5 Checksum:479d647a0d9376efad4a924222e49f69

 ///  File Name:rssagg-sql.txt
Description:
RSS-aggregator version 1.0 suffers from direct administrative access and SQL injection vulnerabilities.
Author:Sylvain THUAL
Homepage:http://www.click-internet.fr/
File Size:1026
Last Modified:Jul 1 11:11:03 2008
MD5 Checksum:85402114964722c1beb4c841d641efa8

 ///  File Name:lul-busybox.c
Description:
BusyBox local format string exploit.
Homepage:http://lul-disclosure.net/
File Size:4591
Last Modified:Jul 1 11:10:00 2008
MD5 Checksum:0779070e48e6cb3aeab5c96d2bacde47

 ///  File Name:openbsdanim-local.txt
Description:
Local root animated,.. yes animated, exploit for OpenBSD 4.0 that takes advantage of an old vga vulnerability.
Homepage:http://lul-disclosure.net/
File Size:16114
Last Modified:Jul 1 11:08:07 2008
MD5 Checksum:0aaa57871ef67c2fdf9114a9133eb7c6

 ///  File Name:ashop-sql.txt
Description:
AShop Deluxe version 4.x remote SQL injection exploit that takes advantage of catalogue.php.
Author:n0c0py
Homepage:http://n0c0py.uni.cc/
File Size:3498
Last Modified:Jul 1 11:03:52 2008
MD5 Checksum:0b77fa10fe8a2227dc7f73298d9ed400

 ///  File Name:mybloggie-sql.txt
Description:
myBloggie version 2.1.6 suffers from multiple remote SQL injection vulnerability.
Author:Jesper Jurcenoks
Homepage:http://www.netvigilance.com/
File Size:3653
Related CVE(s):CVE-2007-1899
Last Modified:Jul 1 11:02:11 2008
MD5 Checksum:e9b34428bf379bf84fc15a1fc314f32b

 ///  File Name:catviz-sql.txt
Description:
Catviz version 0.4.0 beta1 suffers from a SQL injection vulnerability.
Author:h0yt3r
File Size:1251
Last Modified:Jul 1 11:01:05 2008
MD5 Checksum:cf439a30e0259c6d86deff2bc919a096

 ///  File Name:surgemail-dos.txt
Description:
Surgemail version 39e-1 post authentication IMAP remote buffer overflow denial of service exploit.
Author:Travis Warren
File Size:478
Last Modified:Jun 30 11:56:25 2008
MD5 Checksum:be876b1cc941d302f35ee5da0c30d612

 ///  File Name:eshop100-sql.txt
Description:
eSHOP100 suffers from a remote SQL injection vulnerability.
Author:JuDge
File Size:4366
Last Modified:Jun 30 11:55:37 2008
MD5 Checksum:642f81b474b9474928e769d5d24150de

 ///  File Name:dirlist-traverse.txt
Description:
dirLIST suffers from an arbitrary file download vulnerability.
Author:StAkeR
File Size:1136
Last Modified:Jun 30 11:54:23 2008
MD5 Checksum:50c3cc3bca2d5bef810b1ef90d522956

 ///  File Name:singapore-database.txt
Description:
Singapore version 0.10.1 suffers from directory traversal and database credential exposure vulnerabilities.
Author:e.wiZz!
File Size:803
Last Modified:Jun 30 11:53:12 2008
MD5 Checksum:00eceb6b1d9f12b280554992b7d92927

 ///  File Name:acmlmboard-sql.txt
Description:
AcmlmBoard version 1.A2 suffers from a remote SQL injection vulnerability.
Author:h0yt3r
File Size:734
Last Modified:Jun 30 11:47:29 2008
MD5 Checksum:773787955947be4c56fe35fa0cdf29e0

 ///  File Name:haloloop2.zip
Description:
Proof of concept exploit for Halo: Combat Evolved versions 1.07 and below which suffer from an endless loop vulnerability.
Author:Luigi Auriemma
Homepage:http://aluigi.org/
Related File:haloloop2.txt
File Size:18958
Last Modified:Jun 29 16:41:57 2008
MD5 Checksum:fadea90eced43aed0c6e0f6a481c9d5a

 ///  File Name:stalker39x.zip
Description:
Proof of concept exploit for S.T.A.L.K.E.R.: Shadow of Chernobyl versions 1.0006 and below which suffer from multiple buffer overflow vulnerabilities.
Author:Luigi Auriemma
Homepage:http://aluigi.org/
Related File:stalker39x.txt
File Size:88170
Last Modified:Jun 29 16:38:35 2008
MD5 Checksum:aa19aaaee16e78fe36cffc1da46c2748

 ///  File Name:seportal-sql.txt
Description:
SePortal version 2.4 suffers from a remote SQL injection vulnerability in poll.php.
Author:Mr.SQL
Homepage:http://www.pal-hacker.com/
File Size:1991
Last Modified:Jun 29 16:34:07 2008
MD5 Checksum:717c3293a35186d12df542367e48c32b

 ///  File Name:phpfusionclass-sql.txt
Description:
The PHP-Fusion classifieds module suffers from a remote SQL injection vulnerability.
Author:boom3rang
Homepage:http://www.khq-crew.ws/
File Size:820
Last Modified:Jun 29 16:33:27 2008
MD5 Checksum:a3f38413ec0cbbe7ed2d38c0a7d6a99e

 ///  File Name:sebraccms-sql.txt
Description:
SebracCMS versions 0.4 and below suffer from multiple SQL injection vulnerabilities.
Author:shinmai
File Size:2022
Last Modified:Jun 29 16:32:19 2008
MD5 Checksum:10f686df5300fbcfd99f9233d456f357

 ///  File Name:joomlawebtv-sql.txt
Description:
Joomla Xe webtv component blind SQL injection exploit.
Author:His0k4
File Size:3118
Last Modified:Jun 29 16:30:44 2008
MD5 Checksum:08932ce3fcc95e0686763e4acd36f91b

 ///  File Name:joomlabea-sql.txt
Description:
The Joomla beamospetition component suffers from a remote SQL injection vulnerability.
Author:His0k4
File Size:926
Last Modified:Jun 29 16:29:49 2008
MD5 Checksum:986f117c65f7fbdcb0f50a0fb11da920

 ///  File Name:obm-sql.txt
Description:
Online Booking Manager version 2.2 suffers from a remote SQL injection vulnerability.
Author:Hussin X
Homepage:http://www.tryag.cc/
File Size:1573
Last Modified:Jun 29 16:29:09 2008
MD5 Checksum:0d97b72637844ae1ecff587d078a4f7c

 ///  File Name:joomlajabode-sql.txt
Description:
The Joomla jabode component suffers from a remote SQL injection vulnerability.
Author:His0k4
File Size:964
Last Modified:Jun 29 16:28:26 2008
MD5 Checksum:f07a14bb82cd1a7e7872d4a04018d057

 ///  File Name:otmanager-cookie.txt
Description:
OTManager CMS version 2.4 suffers from an insecure cookie handling vulnerability.
Author:hadihadi
Homepage:http://www.virangar.org/
File Size:1492
Last Modified:Jun 28 11:08:37 2008
MD5 Checksum:8be7ba9a4d9cd7a3cf2bd8881eef13fd

 ///  File Name:aplus-cookie.txt
Description:
A+ PHP scripts News Management System suffers from an insecure cookie handling vulnerability.
Author:hadihadi
Homepage:http://www.virangar.org/
File Size:1312
Last Modified:Jun 28 11:07:57 2008
MD5 Checksum:bb54ef13386580558883b1131de856b6

 ///  File Name:poweraward-lfi.txt
Description:
PowerAward version 1.1.0 RC1 suffers from local file inclusion and cross site scripting vulnerabilities.
Author:CraCkEr
File Size:5290
Last Modified:Jun 28 11:05:53 2008
MD5 Checksum:9305f5fb108154490012aba4cc57fc8f

 ///  File Name:WebUI-dos.rar
Description:
uTorrent / BitTorrent WebUI HTTP 1.7.7/6.0.1 denial of service exploit.
Author:Exodus
Homepage:http://www.blackhat.org.il/
Related File:sa28703.txt
File Size:707
Last Modified:Jun 28 11:02:51 2008
MD5 Checksum:bafe44d911e3b9f6c574191ee3a968cb

 ///  File Name:w1l3d4-sqlxss.txt
Description:
W1L3D4 Philboard version 1.2 suffers from blind SQL injection and cross site scripting vulnerabilities.
Author:Bl@ckbe@rd
File Size:687
Last Modified:Jun 28 10:52:36 2008
MD5 Checksum:861e1f8aa925cd21c10102b4cbd1f982

 ///  File Name:otmanager-lfixss.txt
Description:
OTManager CMS version 24a suffers from local file inclusion and cross site scripting vulnerabilities.
Author:CWH Underground
Homepage:http://www.citecclub.org/
File Size:2612
Last Modified:Jun 28 10:51:23 2008
MD5 Checksum:b6f273a73bab86e6758e97b212fb73a1

 ///  File Name:orca-rfi.txt
Description:
Orca version 2.0 suffers from a remote file inclusion vulnerability in params.php.
Author:Ciph3r
File Size:1020
Last Modified:Jun 28 10:49:21 2008
MD5 Checksum:e97c9cdefc1dafb1f723740af4bf9895

 ///  File Name:cheatswebsite-sql.txt
Description:
Cheats Complete Website version 1.1.1 suffers from a SQL injection vulnerability.
Author:Cyb3r-1sT
File Size:1664
Last Modified:Jun 28 10:48:36 2008
MD5 Checksum:40221464d5ae35a73a0e3ff520accf9b

 ///  File Name:drinkswebsite-sql.txt
Description:
Drinks Complete Website version 2.1.0 suffers from a SQL injection vulnerability.
Author:Cyb3r-1sT
File Size:2406
Last Modified:Jun 28 10:47:48 2008
MD5 Checksum:3e3064e99c6573f29cb3b519d0ff0a84

 ///  File Name:jokeswebsite-sql.txt
Description:
Jokes Complete Website version 2.1.3 suffers from a SQL injection vulnerability.
Author:Cyb3r-1sT
File Size:2413
Last Modified:Jun 28 10:46:44 2008
MD5 Checksum:853c4c2f2c5efc3a94561d0b26b1674d

 ///  File Name:riddle-sql.txt
Description:
Riddle Complete Website version 1.2.1 suffers from a SQL injection vulnerability.
Author:Cyb3r-1sT
File Size:2418
Last Modified:Jun 28 10:44:39 2008
MD5 Checksum:2eef4cd8a745281b006adf5026361a15

 ///  File Name:seagull-upload.txt
Description:
Seagull PHP Framework version 0.6.4 and below arbitrary file upload exploit.
Author:EgiX
File Size:4242
Last Modified:Jun 28 10:35:36 2008
MD5 Checksum:c5e5b49ebd5b91fc298f8cb7daad347b

 ///  File Name:phpblaster-lfi.txt
Description:
phpBlaster CMS version 1.0 RC1 suffers from multiple local file inclusion vulnerabilities.
Author:CraCkEr
File Size:4591
Last Modified:Jun 27 12:06:28 2008
MD5 Checksum:6c0b2dfd4356de27e58436234b204d07

 ///  File Name:wellyblog-xss.txt
Description:
WellyBlog Open Source Blog Portal suffers from a cross site scripting vulnerability.
Author:the_Edit0r
Homepage:http://www.virangar.org/
File Size:831
Last Modified:Jun 27 12:02:44 2008
MD5 Checksum:2f0660f20ffa6fdd5e51d9c536d72cd7

 ///  File Name:joomlayanc-sql.txt
Description:
The Joomla YaNC component suffers from a SQL injection vulnerability.
Author:His0k4
File Size:813
Last Modified:Jun 26 15:12:09 2008
MD5 Checksum:f62aa90a646788ecc8edabb7aec317a0

 ///  File Name:joomlanetinvoice-sql.txt
Description:
The Joomla netinvoice component version 1.2.0 SP1 suffers from a SQL injection vulnerability.
Author:His0k4
File Size:969
Last Modified:Jun 26 15:11:33 2008
MD5 Checksum:3ffdf6f0efa9e98d85c96f57fe3ab474

 ///  File Name:phpmotion-upload.txt
Description:
PHPmotion versions 2.0 and below remote shell upload exploit that makes use of update_profile.php.
Author:EgiX
File Size:7936
Last Modified:Jun 26 15:10:26 2008
MD5 Checksum:ba3966b0a3c0f852dd34a1f47c658557

 ///  File Name:firefox3.tar.gz
Description:
This is a specially crafted JPEG that causes a denial of service resulting in a crash in Firefox 3.
Author:Beenu Arora
File Size:2461
Last Modified:Jun 26 15:08:25 2008
MD5 Checksum:573f33fd4744e3424def6c4eaee7412f

 ///  File Name:kroax-sql.txt
Description:
The PHP-Fusion module Kroax versions 4.42 and below suffer form a SQL injection vulnerability.
Author:boom3rang
Homepage:http://www.khq-crew.ws/
File Size:1215
Last Modified:Jun 26 15:06:10 2008
MD5 Checksum:8abe0b0a0d0805a22a8d08ae70c2b956