Section: .. / 0607-exploits /
| /// File Name: |
unibocconi.txt |
Description:
|
A cross site scripting flaw exists in www.uni-bocconi.it.
| | Author: | samsainsekt | | File Size: | 185 | | Last Modified: | Jul 27 22:44:22 2006 |
| MD5 Checksum: | 750a77f8aac2d709e8c0a5e77b2256f6 |
|
| /// File Name: |
Zyxel660H-61.txt |
Description:
|
The Zyxel Prestige 660H-61 router is susceptible to cross site scripting attacks.
| | Author: | Jose Ramon Palanco | | Homepage: | http://www.eazel.es/ | | File Size: | 648 | | Last Modified: | Jul 27 22:42:15 2006 |
| MD5 Checksum: | 885117efc40b813855e2ab264de8fd8c |
|
| /// File Name: |
OpenCMS_multiple_vulnerabilities.tx..> |
Description:
|
OpenCMS versions 6.2.1, 6.2, 6.0.3, and 6.0.4 are vulnerable to multiple access control and input validation vulnerabilities. Other versions may be vulnerable as well. Authenticated users can perform attacks allow arbitrary file access, viewing the source of JSP files, the uploading of malicious files, and more.
| | Author: | Meder Kydyraliev | | Homepage: | http://o0o.nu/~meder | | File Size: | 4247 | | Last Modified: | Jul 27 22:27:12 2006 |
| MD5 Checksum: | cb097692e1a6cd47657ef42b2d8ef9fb |
|
| /// File Name: |
phpauction.txt |
Description:
|
PHP-Auction suffers from remote SQL injection vulnerabilities. Details provided.
| | Author: | l2odon | | Homepage: | http://www.aria-security.net/ | | File Size: | 944 | | Last Modified: | Jul 27 21:49:15 2006 |
| MD5 Checksum: | 6ba2d7bd92ad1e238be8933885f89e2b |
|
| /// File Name: |
phpprobid524.txt |
Description:
|
PHPProBid version 5.24 suffers from cross site scripting and SQL injection vulnerabilities.
| | Homepage: | http://www.ellsec.org/ | | File Size: | 599 | | Last Modified: | Jul 27 21:37:40 2006 |
| MD5 Checksum: | 904d35e6dc6a3d8730b0ccf134a1a70e |
|
| /// File Name: |
etomiteCMS-061.txt |
Description:
|
Etomite CMS versions 0.6.1 and below remote command execution exploit making use of rfiles.php.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 9447 | | Last Modified: | Jul 27 21:32:21 2006 |
| MD5 Checksum: | 925bd46d64d6aa658bff0d26783d6506 |
|
| /// File Name: |
msnXSSCB.txt |
Description:
|
A cross site scripting vulnerability exists on MSN.com.
| | Homepage: | http://www.securiteam.com | | File Size: | 2163 | | Last Modified: | Jul 26 04:51:30 2006 |
| MD5 Checksum: | 325d5613fba3c9b4c75cee2fbc3f6400 |
|
| /// File Name: |
LinksCaffe30.txt |
Description:
|
LinksCaffe version 3.0 suffers from SQL injection and cross site scripting flaws.
| | Author: | Simo64 | | File Size: | 3778 | | Last Modified: | Jul 26 04:37:12 2006 |
| MD5 Checksum: | 785873f8c34fcc705af12d2ce7f5d97a |
|
| /// File Name: |
lmmgt2ho.zip |
Description:
|
Proof of concept exploit for libmikmod versions 3.2.2 and below which suffer from a heap overflow vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org | | Related File: | lmmgt2ho.txt | | File Size: | 3477 | | Last Modified: | Jul 26 04:07:14 2006 |
| MD5 Checksum: | f173b4ce3ff567ea121774441363f3be |
|
| /// File Name: |
Achilles.c |
Description:
|
Modified version of the Achilles Windows Attack Tool that Microsoft claims does not demonstrate a denial of service vulnerability.
| | Author: | J. Oquendo | | File Size: | 15715 | | Last Modified: | Jul 26 04:02:09 2006 |
| MD5 Checksum: | 09be96124ac6f49ce252534b1ec8b74f |
|
| /// File Name: |
musicBox234.txt |
Description:
|
Music Box version 2.3.4 is riddled with SQL injection and cross site scripting flaws.
| | Author: | Ellipsis Security | | Homepage: | http://www.ellsec.org/ | | File Size: | 977 | | Last Modified: | Jul 26 03:54:30 2006 |
| MD5 Checksum: | a33a29655289a0a7731f48fbea16072f |
|
| /// File Name: |
radscripts.txt |
Description:
|
Various scripts from RadScripts, such as RadBids Gold, RadLance Gold, and RadNics Gold all suffer from a remote file inclusion vulnerability.
| | Author: | INVENT | | File Size: | 1012 | | Last Modified: | Jul 26 03:22:31 2006 |
| MD5 Checksum: | 630287b146ce0fbc522cd7c84aa2d587 |
|
| /// File Name: |
cheesebof.zip |
Description:
|
Proof of concept exploit for Cheese Tracker versions 0.9.9 and below which suffer from a buffer overflow vulnerability in Loader_XM::load_instrument_internal.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org | | Related File: | cheesebof.txt | | File Size: | 4303 | | Last Modified: | Jul 26 03:10:00 2006 |
| MD5 Checksum: | e15e2f950e9ce95e2ed84ca923cf1053 |
|
| /// File Name: |
mospray.txt |
Description:
|
A remote file inclusion vulnerability exists in MoSpray, a component of Mambo.
| | Author: | botan | | Homepage: | http://www.PatrioticHackers.com | | File Size: | 762 | | Last Modified: | Jul 26 03:03:17 2006 |
| MD5 Checksum: | c6b76d4489a45fc24083c4db51444aee |
|
| /// File Name: |
VanillaCMS.txt |
Description:
|
Vanilla CMS versions 1.0.1 and below suffer from a remote file inclusion vulnerability.
| | Author: | MFox | | Homepage: | http://hackerz.ir/ | | File Size: | 1289 | | Last Modified: | Jul 26 02:58:30 2006 |
| MD5 Checksum: | bc1318654cec9815b484e0c0a0a61143 |
|
| /// File Name: |
solaris-sysinfo.c |
Description:
|
Solaris versions 10 and below sysinfo() local kernel memory disclosure exploit.
| | Author: | prdelka | | Homepage: | http://prdelka.blackart.org/ | | File Size: | 1429 | | Last Modified: | Jul 26 02:54:55 2006 |
| MD5 Checksum: | 5d7063eefb83cf328df1947e3ba23499 |
|
| /// File Name: |
sipXtapi.txt |
Description:
|
SIPfoundry sipXtapi (C Seq) remote buffer overflow exploit written in Perl.
| | Author: | acaro | | Related File: | ERNW-02-2006.txt | | File Size: | 3137 | | Last Modified: | Jul 26 02:53:22 2006 |
| MD5 Checksum: | 03c989c05f5845604d9bf4b8074c476c |
|
| /// File Name: |
filecopa101.txt |
Description:
|
Remote buffer overflow exploit for FileCOPA FTP server versions 1.01 and below that spawns a shell on tcp/4444.
| | Author: | acaro | | File Size: | 2657 | | Last Modified: | Jul 24 03:06:47 2006 |
| MD5 Checksum: | 400270e50448055136da6dddcc792892 |
|
| /// File Name: |
ms06-035-coco.txt |
Description:
|
Microsoft SRV.SYS Mailslot Ring0 memory corruption denial of service exploit. Takes advantage of the vulnerability discussed in MS06-035.
| | Author: | cocoruder | | Homepage: | http://ruder.cdut.net | | File Size: | 3380 | | Last Modified: | Jul 24 03:05:06 2006 |
| MD5 Checksum: | 24b309a91c00f8dc687b5de5e3313706 |
|
| /// File Name: |
mammoodle.txt |
Description:
|
Mam - Moodle is susceptible to a remote file inclusion vulnerability.
| | Author: | jank0 | | File Size: | 487 | | Last Modified: | Jul 24 03:01:53 2006 |
| MD5 Checksum: | 667b0b0ca4ba1e027334e1e0e95cca56 |
|
| /// File Name: |
paypalXSS.txt |
Description:
|
www.paypal.com suffers from another cross site scripting flaw.
| | Homepage: | http://www.securitylab.ru/ | | File Size: | 421 | | Last Modified: | Jul 24 02:56:24 2006 |
| MD5 Checksum: | e10a4887d671e8736274f0a776ff6ed7 |
|
| /// File Name: |
apexhali.txt |
Description:
|
www.apexhali.com is susceptible to a cross site scripting vulnerability.
| | Author: | samsainsekt | | File Size: | 848 | | Last Modified: | Jul 24 02:55:01 2006 |
| MD5 Checksum: | 7b3c3158298bc4083b4ed0b2c80eb83e |
|
|
|
|
|