Section: .. / 0703-exploits /
| /// File Name: |
aardvark-rfi.txt |
Description:
|
Aardvark Topsites PHP 5 suffers from a remote file inclusion vulnerability.
| | Author: | Hasadya Raed | | File Size: | 629 | | Last Modified: | Apr 2 18:51:12 2007 |
| MD5 Checksum: | b4122d9a574af5bcca4b29e4b3853dc6 |
|
| /// File Name: |
ssfree-rfi.txt |
Description:
|
Shop-SCRIPT FREE suffers from remote file inclusion vulnerabilities.
| | Author: | Hasadya Raed | | File Size: | 868 | | Last Modified: | Apr 2 18:50:26 2007 |
| MD5 Checksum: | a3caa1620b94d53965ff7edda0af51c0 |
|
| /// File Name: |
slaed-rfi.txt |
Description:
|
SLAED_CMS_2 suffers from a remote file inclusion vulnerability.
| | Author: | Hasadya Raed | | File Size: | 559 | | Last Modified: | Apr 2 18:49:26 2007 |
| MD5 Checksum: | 7c2d8555b428b7d6ddfe8f331c58902d |
|
| /// File Name: |
phpfusion2-sql.txt |
Description:
|
The PHP-Fusion Calendar_Panel module suffers from a remote SQL injection vulnerability in show_event.php.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1629 | | Last Modified: | Apr 2 18:48:45 2007 |
| MD5 Checksum: | 5f95af930c27dac3b82f063ca8367c85 |
|
| /// File Name: |
devcode.txt |
Description:
|
Exploit for the Microsoft Windows .ANI LoadAniIcon stack overflow vulnerability.
| | Author: | devcode29 | | File Size: | 4639 | | Related CVE(s): | CVE-2007-1765 | | Last Modified: | Apr 2 18:42:17 2007 |
| MD5 Checksum: | 7bb08f8016e7355ebe1fe858be809c5b |
|
| /// File Name: |
dproxy-v1.c |
Description:
|
Remote exploit for dproxy versions 0.5 and below. Binds a shell to TCP port 4444.
| | Author: | mu-b | | File Size: | 7068 | | Last Modified: | Apr 2 18:35:30 2007 |
| MD5 Checksum: | 52c1dcd14162b2cc97262976b36f2700 |
|
| /// File Name: |
blogentry-xss.txt |
Description:
|
Blog-Entry suffers from multiple cross site scripting vulnerabilities.
| | Author: | Hanno Boeck | | Homepage: | http://www.hboeck.de/ | | File Size: | 1286 | | Last Modified: | Apr 2 18:26:51 2007 |
| MD5 Checksum: | 6689b002c77f49aee2a3c185af8f63b7 |
|
| /// File Name: |
adv80-K-159-2007.txt |
Description:
|
Time-Assistant versions 6.2 and below suffer from a remote file inclusion vulnerability.
| | Author: | K-159 | | Homepage: | http://k-159.echo.or.id/ | | File Size: | 3411 | | Last Modified: | Apr 2 18:24:38 2007 |
| MD5 Checksum: | fe12846c2ca614269315d1d1cc1d0e71 |
|
| /// File Name: |
drake-xss.txt |
Description:
|
DrakeCMS suffers from a cross site scripting vulnerability in ui.dta.php.
| | Author: | HACKERS PAL | | Homepage: | http://www.soqor.net/ | | File Size: | 426 | | Last Modified: | Apr 2 17:50:04 2007 |
| MD5 Checksum: | 66a72b4f845ba3184ff86d9068910ec2 |
|
| /// File Name: |
mybb-change.txt |
Description:
|
MyBB suffers from a change password vulnerability.
| | Author: | HACKERS PAL | | Homepage: | http://www.soqor.net/ | | File Size: | 1456 | | Last Modified: | Apr 2 17:47:07 2007 |
| MD5 Checksum: | 5bfaff25882035091a22070b75e179e3 |
|
| /// File Name: |
datadomain-exec.txt |
Description:
|
DataDomain OS versions 3.0.0 through 4.0.3.5 suffer from an arbitrary command execution flaw.
| | Author: | Elliot Kendall | | File Size: | 2046 | | Last Modified: | Mar 29 03:02:36 2007 |
| MD5 Checksum: | 9c945837875c5605ea9373d740e29293 |
|
| /// File Name: |
wp13exp.c |
Description:
|
Corel Worperfect X3 version 13.0.0.565 suffers from a stack overflow vulnerability. Exploit included.
| | Author: | Jonathan So | | Homepage: | http://www.nop-art.net/ | | File Size: | 7756 | | Last Modified: | Mar 29 02:21:41 2007 |
| MD5 Checksum: | 8cece6f324de927d4cdfd1da2451acc5 |
|
| /// File Name: |
hp-dos.txt |
Description:
|
HP JetDirect print servers suffers from a remote denial of service flaw.
| | Author: | Handrix | | Homepage: | http://www.morx.org/ | | File Size: | 1811 | | Last Modified: | Mar 29 02:17:34 2007 |
| MD5 Checksum: | 0d35f082f181f32b807931a800f07f59 |
|
| /// File Name: |
MOPB-sessiondecode.txt |
Description:
|
Month of PHP Bugs - PHP version 4.4.5 and 4.4.6 session_decode() double free proof of concept exploit.
| | Author: | Stefan Esser | | Homepage: | http://hardened-php.net/ | | File Size: | 1667 | | Last Modified: | Mar 29 02:03:23 2007 |
| MD5 Checksum: | ac64d9748ea8b560e47f968fba2f7558 |
|
| /// File Name: |
linux-disclose-v2.txt |
Description:
|
The Linux kernel suffers from a DCCP memory disclosure vulnerability. This is the second proof of concept exploit related to this vulnerability. Kernel versions 2.6.20 and above are affected.
| | Author: | Robert Swiecki | | Homepage: | http://www.swiecki.net/ | | File Size: | 813 | | Last Modified: | Mar 29 02:02:12 2007 |
| MD5 Checksum: | 5a4c8586a8f76cfb8fd8494244694c0d |
|
| /// File Name: |
wpl3exp.c |
Description:
|
Unavailable.
| | File Size: | 6947 | | Last Modified: | Mar 29 02:00:56 2007 |
| MD5 Checksum: | bb438bd88d41e2d4c4cd779e6fe61413 |
|
| /// File Name: |
navicopa-201.txt |
Description:
|
This Metasploit module exploits a stack overflow in the NaviCopa HTTP server 2.01 (release version 6th October 2006 or earlier). It is not the same vulnerability as the one described in BID 20250.
| | Author: | skillTube | | Homepage: | http://www.skilltube.com/ | | File Size: | 3980 | | Last Modified: | Mar 29 01:59:38 2007 |
| MD5 Checksum: | 9af13150313142d7bbfee995b5be0c75 |
|
| /// File Name: |
linux-dccp.txt |
Description:
|
The Linux kernel suffers from a DCCP memory disclosure vulnerability. Proof of concept exploit included. Kernel versions 2.6.20 and above are affected.
| | Author: | Robert Swiecki | | Homepage: | http://www.swiecki.net/ | | File Size: | 3394 | | Last Modified: | Mar 29 01:54:07 2007 |
| MD5 Checksum: | 0a85b24758c65f57b208b459d9d1215a |
|
| /// File Name: |
advisory-481.txt |
Description:
|
FlexBB version 1.0.0 10005 Beta Release 1 suffers from a SQL injection vulnerability when parsing the user supplied cookie value.
| | Author: | trueend5 | | Homepage: | http://www.kapda.ir/ | | File Size: | 1485 | | Last Modified: | Mar 28 22:24:43 2007 |
| MD5 Checksum: | 3d55dac35b5fdff4341cec44eab21230 |
|
| /// File Name: |
xoops-blind.txt |
Description:
|
Xoops blind SQL injection exploit for print.php. Currently affects all versions.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1890 | | Last Modified: | Mar 28 22:22:08 2007 |
| MD5 Checksum: | 66ec680fd32bc0067496746440e31e8a |
|
| /// File Name: |
adv78-K-159-2007.txt |
Description:
|
C-Arbre versions 0.6PR7 and below suffer from a remote file inclusion vulnerability.
| | Author: | K-159 | | Homepage: | http://k-159.echo.or.id/ | | File Size: | 3984 | | Last Modified: | Mar 28 12:08:10 2007 |
| MD5 Checksum: | cbf44d2d3cdd34f17aa4dc23178a958a |
|
|
|
|
|