Section: .. / 0702-exploits /
| /// File Name: |
phpmyvisites-xss.txt |
Description:
|
phpMyVisites versions prior to 2.2 stable suffer from cross site scripting, HTTP response splitting, and local file inclusion flaws.
| | Author: | Nicob | | File Size: | 1835 | | Last Modified: | Feb 13 08:19:15 2007 |
| MD5 Checksum: | 6f012fe5affef383f86b4e875c0e456a |
|
| /// File Name: |
jboss-xss.txt |
Description:
|
JBoss Portal appears susceptible to a cross site scripting flaw.
| | Author: | BLacK ZeRo | | File Size: | 222 | | Last Modified: | Feb 13 07:53:30 2007 |
| MD5 Checksum: | c166dde21aa733de015fb4ba776e2f77 |
|
| /// File Name: |
solaris-ohday.txt |
Description:
|
SunOS 5.10/5.11 in.telnetd remote root exploit. This has to be the easiest remote root ever.. wait.. there was that other SunOS telnetd remote root.
| | Author: | kcope | | File Size: | 504 | | Last Modified: | Feb 13 07:46:25 2007 |
| MD5 Checksum: | caf667467ec98d3948bf347998699e70 |
|
| /// File Name: |
ip3netaccess.txt |
Description:
|
IP3 NetAccess versions below 4.1.9.6 suffer from a classic directory traversal flaw allowing for arbitrary file disclosure.
| | Author: | Sebastian Wolfgarten | | File Size: | 2512 | | Last Modified: | Feb 13 07:43:14 2007 |
| MD5 Checksum: | a7b9e3a200228856ffd3c4290438ded8 |
|
| /// File Name: |
philboard-sql.txt |
Description:
|
Philboard versions 1.14 and below suffer from a SQL injection vulnerability in philboard_forum.asp.
| | Author: | xoron | | File Size: | 945 | | Last Modified: | Feb 13 07:39:56 2007 |
| MD5 Checksum: | c8ba039259be7d669ece41140711369b |
|
| /// File Name: |
adv64-y3dips-2007.txt |
Description:
|
Open-CMS Site Protection Plugin suffers from a remote file inclusion flaw.
| | Author: | y3dips | | Homepage: | http://echo.or.id/ | | File Size: | 2515 | | Last Modified: | Feb 13 07:38:07 2007 |
| MD5 Checksum: | ce492393cbbc9fcfd2e17deba0c99f6a |
|
| /// File Name: |
comserv-xss.txt |
Description:
|
CommunityServer Commercial Edition suffers from a cross site scripting flaw.
| | Author: | BLacK ZeRo | | File Size: | 323 | | Last Modified: | Feb 13 07:33:03 2007 |
| MD5 Checksum: | 0a8b10e857fd3e4b85243417164b312c |
|
| /// File Name: |
rbportal-xss.txt |
Description:
|
Rainbow Portal suffers from a typical cross site scripting flaw.
| | Author: | BlacK ZeRo | | File Size: | 236 | | Last Modified: | Feb 13 07:09:20 2007 |
| MD5 Checksum: | a469a0428f611ddd02a53dbe25065d46 |
|
| /// File Name: |
crfdb-disclose.txt |
Description:
|
Capital Request Forms DB suffers from a remote username and password disclosure flaw.
| | Author: | Gokhan | | File Size: | 972 | | Last Modified: | Feb 13 07:08:21 2007 |
| MD5 Checksum: | fd2f51df842d9fe1255175546ac99245 |
|
| /// File Name: |
ovidentia5x-rfi.txt |
Description:
|
Ovidentia version 5.x remote file inclusion exploit.
| | Author: | Hotturk | | File Size: | 2077 | | Last Modified: | Feb 13 07:06:58 2007 |
| MD5 Checksum: | 5994fe7e672751b845e5bac5dfb3b932 |
|
| /// File Name: |
cattools-traverse.txt |
Description:
|
Kiwi CatTools versions below 3.2.0 Beta suffer from a tftp directory traversal flaw.
| | Author: | Nicob | | File Size: | 883 | | Last Modified: | Feb 13 06:54:54 2007 |
| MD5 Checksum: | 15e1d669c724fd97d9cf42080bc6c86c |
|
| /// File Name: |
r3-stealer-1.0.pl.txt |
Description:
|
SAP Web AS version 6.40 enserver.exe file downloader exploit.
| | Author: | Nicob | | Related File: | sapwebas-dos.txt | | File Size: | 2950 | | Last Modified: | Feb 13 06:42:42 2007 |
| MD5 Checksum: | 5752598c931045ff201480846280017d |
|
| /// File Name: |
doaxigen-v2.c |
Description:
|
Denial of service exploit for Axigen versions 1.2.6 through 2.0.0b1 that makes use of a null pointer dereference.
| | Author: | mu-b | | Related Exploit: | doaxigen.c | | File Size: | 4639 | | Last Modified: | Feb 13 06:34:50 2007 |
| MD5 Checksum: | 2816ff0b05e4fbfb1fb390e86a790c33 |
|
| /// File Name: |
doaxigen.c |
Description:
|
Denial of service exploit for Axigen versions 1.2.6 through 2.0.0b1 that makes use of a single byte underflow.
| | Author: | mu-b | | Related Exploit: | doaxigen-v2.c | | File Size: | 4957 | | Last Modified: | Feb 13 06:34:06 2007 |
| MD5 Checksum: | f51596f55de9baa75efe4804f4d04240 |
|
| /// File Name: |
whm-rfi.txt |
Description:
|
Web Host Manager suffers from a remote file inclusion vulnerability.
| | Author: | s3rv3r_hack3r | | File Size: | 213 | | Last Modified: | Feb 8 06:41:19 2007 |
| MD5 Checksum: | 0209f7cfc15cddbe2f5607ab542e839d |
|
| /// File Name: |
syscp1215-exec.txt |
Description:
|
The System Control Panel (SysCP) suffers from a flaw that allows an attack the ability to inject and execute any code as root. Versions 1.2.15 and below are affected. Details provided.
| | Author: | Florian Lippert | | Homepage: | http://www.syscp.org/ | | File Size: | 2731 | | Last Modified: | Feb 8 06:40:20 2007 |
| MD5 Checksum: | e36e3775b0f9c1536e9b110da418c334 |
|
| /// File Name: |
xlnc-rfi.txt |
Description:
|
XLNC1 Radio Classical Music Nuke Portal suffers from a remote file inclusion vulnerability.
| | Author: | Gokhan | | File Size: | 603 | | Last Modified: | Feb 8 06:29:08 2007 |
| MD5 Checksum: | bea860d4c80f94cfb5a4687aa76cb0e2 |
|
| /// File Name: |
mne-rfi.txt |
Description:
|
MySQLNewsEngine suffers from a remote file inclusion vulnerability.
| | Author: | Blaster, CanberX | | File Size: | 488 | | Last Modified: | Feb 8 06:20:53 2007 |
| MD5 Checksum: | 9dc235e4e3a1a66579a835b2bd8472da |
|
| /// File Name: |
agermenu-rfi.txt |
Description:
|
AgerMenu version 0.01 suffers from a remote file inclusion vulnerability.
| | Author: | GolD_M | | File Size: | 594 | | Last Modified: | Feb 8 06:16:49 2007 |
| MD5 Checksum: | 1322f6bf0968ff8fdb0e30e5d46c12c8 |
|
| /// File Name: |
webmatic-rfi.txt |
Description:
|
WebMatic versions 2.6 suffers from a remote file inclusion vulnerability in index_album.php.
| | Author: | MadNet | | File Size: | 926 | | Last Modified: | Feb 8 06:15:46 2007 |
| MD5 Checksum: | f3de85acf41c5a10f0e4ee58b8c93c10 |
|
| /// File Name: |
ap205-gen.txt |
Description:
|
Advanced Poll versions 2.0.5-dev and below remote admin session generation exploit.
| | Author: | diwou | | File Size: | 1571 | | Last Modified: | Feb 8 06:14:45 2007 |
| MD5 Checksum: | 65cd890ef5a6f95794ef298761256e02 |
|
| /// File Name: |
otscms-multi.txt |
Description:
|
OTSCMS version 2.1.5 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | GregStar | | Homepage: | http://c4f.pl/ | | File Size: | 1516 | | Last Modified: | Feb 8 06:13:34 2007 |
| MD5 Checksum: | 5fb6c23e527774a79090f994364e459c |
|
|
|
|
|