Section: .. / 0601-exploits /
| /// File Name: |
EV0008.txt |
Description:
|
inTouch 0.5.1 Alpha is susceptible to SQL injection attacks via the login page. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 975 | | Last Modified: | Jan 4 05:40:41 2006 |
| MD5 Checksum: | 06bfd3cd16d5efa0cf2668fa307934a2 |
|
| /// File Name: |
EV0028.txt |
Description:
|
Wordcircle 2.17 is susceptible to SQL injection and cross site scripting flaws. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 974 | | Last Modified: | Jan 15 17:36:38 2006 |
| MD5 Checksum: | 3341e56cb78277d002f0d92594b54f6d |
|
| /// File Name: |
EV0002.txt |
Description:
|
VEGO Links Builder version 2.0 suffers from a SQL injection flaw. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 972 | | Last Modified: | Jan 4 05:35:04 2006 |
| MD5 Checksum: | f49b036b4313d32d340ecf3120295932 |
|
| /// File Name: |
vbulletin352.txt |
Description:
|
vBulletin version 3.5.2 is susceptible to cross site scripting attacks.
| | Author: | Ejder, The_BeKiR, Liz0Zim, CyberLord | | Homepage: | http://Savsak.com/ | | File Size: | 944 | | Last Modified: | Jan 10 05:18:23 2006 |
| MD5 Checksum: | a252ebafc6891c125991d75f192893f3 |
|
| /// File Name: |
simpleBlogXSS.txt |
Description:
|
SimpleBlog version 2.1 suffers from SQL injection and cross site scripting flaws.
| | Author: | Zinho | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 943 | | Last Modified: | Jan 21 20:00:16 2006 |
| MD5 Checksum: | d40972d7a6f05a6c0503f9a771e7f9b7 |
|
| /// File Name: |
EV0030.txt |
Description:
|
Benders Calendar version 1.0 is susceptible to SQL injection attacks. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 936 | | Last Modified: | Jan 21 21:59:22 2006 |
| MD5 Checksum: | 7ebb2ba13608faf7ca94d6dce5959253 |
|
| /// File Name: |
webwiz634.txt |
Description:
|
Web Wiz Forums versions 6.34 and below are susceptible to a cross site scripting attacks.
| | Author: | nukedx | | Homepage: | http://www.nukedx.com | | File Size: | 931 | | Last Modified: | Jan 10 06:17:03 2006 |
| MD5 Checksum: | 45f5fd0ca729cb68cb356f7943500fc0 |
|
| /// File Name: |
HelmXSS.txt |
Description:
|
Helm version 3.2.8 is susceptible to cross site scripting attacks.
| | Author: | M.Neset KABAKLI | | Homepage: | http://www.wakiza.com | | File Size: | 925 | | Last Modified: | Jan 15 17:33:08 2006 |
| MD5 Checksum: | cfe94c7d04512524524ed95512c5ff82 |
|
| /// File Name: |
EV0032.txt |
Description:
|
Bit 5 Blog version 8.01 is susceptible to arbitrary javascript injection. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 925 | | Last Modified: | Jan 21 22:10:12 2006 |
| MD5 Checksum: | a664ffd29c32aaa80b641274f0f74ab8 |
|
| /// File Name: |
EV0003.txt |
Description:
|
oaBoard version 1.0 suffers from a remote php include and execution flaw. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 912 | | Last Modified: | Jan 4 05:36:06 2006 |
| MD5 Checksum: | f04ea6970108e626932bebd68e851346 |
|
| /// File Name: |
EV0006.txt |
Description:
|
phpBook versions 1.3.2 and below suffer from a php code execution flaw due to an unsanitized variable. Exploitation details provided.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 909 | | Last Modified: | Jan 4 05:39:06 2006 |
| MD5 Checksum: | b122a4b3240ffbe2b36aae734f74775c |
|
| /// File Name: |
EZDatabase.txt |
Description:
|
EZDatabase versions below 2.1.2 are susceptible to cross site scripting, directory traversal, and path disclosure flaws.
| | Author: | Josh Zlatin-Amishav | | File Size: | 906 | | Last Modified: | Jan 21 20:06:58 2006 |
| MD5 Checksum: | e1fb3cf01a1dcfc6a357961936e7690f |
|
| /// File Name: |
mtink.c |
Description:
|
/usr/bin/mtink local root exploit which overflows the HOME environment variable. For all versions of linux, especially Debian and Gentoo.
| | Author: | Icesk | | File Size: | 867 | | Last Modified: | Jan 1 16:03:38 2006 |
| MD5 Checksum: | a51dc4863862f6bf39008443953c0d5d |
|
| /// File Name: |
ASPThaiSQL.txt |
Description:
|
ASPThai Forums version 8.0 and below suffer from a SQL injection vulnerability.
| | Author: | iM4n | | Homepage: | http://www.imanonline.com | | File Size: | 838 | | Last Modified: | Jan 29 23:12:02 2006 |
| MD5 Checksum: | e8f7c37fa0929da667774c0643413fd7 |
|
| /// File Name: |
interspireXSS.txt |
Description:
|
Interspire TrackPoint NX versions below 0.1 suffer from a cross site scripting vulnerability.
| | Author: | M.Neset KABAKLI | | Homepage: | http://www.wakiza.com | | File Size: | 780 | | Last Modified: | Jan 15 16:42:51 2006 |
| MD5 Checksum: | 6b167dc9b3a7d467b55dc68532d60a75 |
|
| /// File Name: |
FogBugzXSS.txt |
Description:
|
FogBugz versions 4.029 and below suffer from a cross site scripting vulnerability.
| | Author: | M.Neset KABAKLI | | Homepage: | http://www.wakiza.com | | File Size: | 777 | | Last Modified: | Jan 15 16:43:32 2006 |
| MD5 Checksum: | e9d36d56dd105938d908819d49e29d11 |
|
| /// File Name: |
CiscoPhoneDos.pl.txt |
Description:
|
Cisco IP Phone 7940 remote denial of service exploit that causes it to reboot.
| | Author: | kokanin | | File Size: | 748 | | Last Modified: | Jan 11 07:22:42 2006 |
| MD5 Checksum: | 70757991e3add734d943889b6c0a6d52 |
|
| /// File Name: |
ddsnSQL.txt |
Description:
|
DDSN is susceptible to SQL injection attacks via the login sequence.
| | Author: | khc | | File Size: | 739 | | Last Modified: | Jan 21 08:17:12 2006 |
| MD5 Checksum: | f20b868cba46e9332a90e1c8e440d970 |
|
| /// File Name: |
CAN-2005-3187_exploit.pl.txt |
Description:
|
Simple denial of service exploit for Blue Coat Systems Inc.'s WinProxy that will cause the server to crash when sent 32,768 bytes.
| | Author: | FistFuXXer | | Related File: | 01.05.06-1.txt | | File Size: | 729 | | Related CVE(s): | CAN-2005-3187 | | Last Modified: | Jan 8 06:52:13 2006 |
| MD5 Checksum: | d3e9e76887d418de63793cc25b3632db |
|
| /// File Name: |
whitealbum.txt |
Description:
|
WHITEAlbum is susceptible to SQL injection attacks via pictures.php.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.be | | File Size: | 686 | | Last Modified: | Jan 22 00:33:05 2006 |
| MD5 Checksum: | 7ee03dcccbe3989e2d1d5395735f5daa |
|
| /// File Name: |
ua367XSS.txt |
Description:
|
Ultimate Auction versions 3.67 and below suffer from cross site scripting flaws.
| | Author: | Querkopf | | File Size: | 613 | | Last Modified: | Jan 21 21:37:52 2006 |
| MD5 Checksum: | c6ca4a78777cbf9d2ea5dfb5d43f4fd1 |
|
| /// File Name: |
ar-blogv5.2.txt |
Description:
|
ar-blog v 5.2 suffers from several XSS vulnerabilities.
| | Author: | SAUDI | | Homepage: | http://www.lezr.com | | File Size: | 576 | | Last Modified: | Jan 25 08:34:47 2006 |
| MD5 Checksum: | 87c39c8b95c824b042532ce88fb64d1c |
|
|
|
|
|