Section: .. / 0706-exploits /
| /// File Name: |
psb-rfi.txt |
Description:
|
phpSiteBackup version 0.1 suffers from a remote file inclusion vulnerability in pcltar.lib.php.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 536 | | Last Modified: | Jun 26 17:18:35 2007 |
| MD5 Checksum: | 23117a94d40d7fa68c2bad10f9dbda84 |
|
| /// File Name: |
edocstore-sql.txt |
Description:
|
eDocStore suffers from a remote SQL injection vulnerability in doc.php.
| | Author: | t0pp8uzz, xprog | | File Size: | 1297 | | Last Modified: | Jun 26 17:17:03 2007 |
| MD5 Checksum: | fadc6f18a30dd9fa7079e081ffc1ed55 |
|
| /// File Name: |
pagetool-sql.txt |
Description:
|
Pagetool version 1.07 suffers from a remote SQL injection vulnerability.
| | Author: | Katatafish | | File Size: | 532 | | Last Modified: | Jun 26 17:15:37 2007 |
| MD5 Checksum: | 547111a346c9b70a6b89c87aad35e158 |
|
| /// File Name: |
mj-rfi.txt |
Description:
|
Mambo and Joomla appear to suffer from multiple remote file inclusion vulnerabilities. Versions unavailable.
| | Author: | Spymeta | | File Size: | 3189 | | Last Modified: | Jun 26 17:12:23 2007 |
| MD5 Checksum: | 6496875d10fad93f88255ee6dc039e0f |
|
| /// File Name: |
dreamlog-upload.txt |
Description:
|
DreamLog version 0.5 suffers from an arbitrary file upload vulnerability in upload.php.
| | Author: | Dj7xpl | | Homepage: | http://Dj7xpl.2600.ir/ | | File Size: | 4236 | | Last Modified: | Jun 26 16:30:12 2007 |
| MD5 Checksum: | 3352a116fa92a00d2e655fe62e49df66 |
|
| /// File Name: |
sitedepth-lfi.txt |
Description:
|
SiteDepth CMS version 3.44 suffers from a classic local file inclusion vulnerability in ShowImage.php.
| | Author: | H4 / Team XPK | | File Size: | 1228 | | Last Modified: | Jun 26 16:29:12 2007 |
| MD5 Checksum: | ecafe17cbab96ff844f0d453c06b446f |
|
| /// File Name: |
6alblog-sql.txt |
Description:
|
6ALBlog suffers from a remote SQL injection vulnerability.
| | Author: | Crackers_Child | | File Size: | 2148 | | Last Modified: | Jun 26 16:27:24 2007 |
| MD5 Checksum: | f71611450ae2fa85e67d9012aac87f0b |
|
| /// File Name: |
bugmall-xss.txt |
Description:
|
BugMall Shopping Cart version 2.5 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | t0pp8uzz, xprog | | File Size: | 2112 | | Last Modified: | Jun 26 16:26:18 2007 |
| MD5 Checksum: | f2850d1b865478d159081e43295eb491 |
|
| /// File Name: |
b1gbb-rfi.txt |
Description:
|
b1gbb version 2.24.0 suffers from a remote file inclusion vulnerability in footer.inc.php.
| | Author: | Rf7awy | | File Size: | 441 | | Last Modified: | Jun 26 16:25:00 2007 |
| MD5 Checksum: | ceb82d73cdbe3ba189576cf25452f7ae |
|
| /// File Name: |
phptraffica-sql.txt |
Description:
|
phpTrafficA versions 1.4.2 and below suffer from a remote SQL injection vulnerability.
| | Author: | laurent gaffi | | File Size: | 1193 | | Last Modified: | Jun 26 16:23:36 2007 |
| MD5 Checksum: | ae223f2a81278f763cf1de5f9df6a3a7 |
|
| /// File Name: |
e107-upload.txt |
Description:
|
e107 versions 0.7.8 and below suffer from an arbitrary file upload vulnerability where it lacks validation of a files contents when uploaded, allowing for php code to be uploaded as an image, etc.
| | Author: | clorox | | Homepage: | http://www.g00ns.net/ | | File Size: | 2901 | | Last Modified: | Jun 26 16:22:33 2007 |
| MD5 Checksum: | 81c10fc3a33fb8c57bfdb3d9fd38169e |
|
| /// File Name: |
si2007-sql.txt |
Description:
|
Simple Invoices 2007 05 25 remote SQL injection exploit that makes use of index.php.
| | Author: | Kacper | | Homepage: | http://www.rahim.webd.pl/ | | File Size: | 4659 | | Last Modified: | Jun 26 16:19:34 2007 |
| MD5 Checksum: | 55a5836353a45c7ada038666304d9015 |
|
| /// File Name: |
dagger-rfi.txt |
Description:
|
DAGGER Web Engine versions 23Jan2007 and below suffer from a remote file inclusion vulnerability.
| | Author: | Katatafish | | File Size: | 347 | | Last Modified: | Jun 26 16:17:56 2007 |
| MD5 Checksum: | 6b60833ff2dd6990b5cc511abd20ea6b |
|
| /// File Name: |
pluxml031-exec.txt |
Description:
|
Pluxml version 0.3.1 remote code execution exploit.
| | Author: | DarkFig | | File Size: | 25659 | | Last Modified: | Jun 26 16:16:14 2007 |
| MD5 Checksum: | b6e5551cc940d4648530dec83d116eaf |
|
| /// File Name: |
pharmacy-sql.txt |
Description:
|
Pharmacy System versions 2 and below suffer from SQL injection vulnerabilities.
| | Author: | t0pp8uzz, xprog | | File Size: | 1834 | | Last Modified: | Jun 26 16:10:15 2007 |
| MD5 Checksum: | ea76db547c36edb60323da6f1f591ea8 |
|
| /// File Name: |
netclassifieds-multi.txt |
Description:
|
NetClassifieds Premium Edition suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | laurent gaffi | | File Size: | 4678 | | Last Modified: | Jun 26 16:04:37 2007 |
| MD5 Checksum: | 1c94535b07fb0fcffe4ee6408767c496 |
|
| /// File Name: |
myserver-xss.txt |
Description:
|
MyServer version 0.8.9 suffers from a cross site scripting vulnerability in post.mscgi.
| | Author: | Prili | | File Size: | 233 | | Last Modified: | Jun 26 15:56:50 2007 |
| MD5 Checksum: | 8f8155cfe9505c2596c8dbc655fd760f |
|
| /// File Name: |
myserver-disclose.txt |
Description:
|
MyServer version 0.8.9 suffers from a source code disclosure when a file's extension is capitalized.
| | Author: | Prili | | File Size: | 314 | | Last Modified: | Jun 26 15:54:55 2007 |
| MD5 Checksum: | 9e7d3bb9b02d3f9f6ccfd7b122077503 |
|
| /// File Name: |
pbxs11-exec.txt |
Description:
|
BitchX version 1.1-final remote command execution exploit.
| | Author: | clarity_ | | File Size: | 3668 | | Last Modified: | Jun 21 15:46:31 2007 |
| MD5 Checksum: | 47a1503cb6196dd165f47dde74391043 |
|
| /// File Name: |
serweb094-rfi.txt |
Description:
|
SerWeb version 0.9.4 remote file inclusion exploit that takes advantage of load_lang.php.
| | Author: | Kw3rLn | | Homepage: | http://rst-crew.net/ | | File Size: | 1755 | | Last Modified: | Jun 21 15:44:53 2007 |
| MD5 Checksum: | ae2ad0e3f93aaed562d0471b628c0b5a |
|
| /// File Name: |
httpsv162-dos.txt |
Description:
|
HTTP SERVER (httpsv) version 1.6.2 remote denial of service exploit that makes use of a 404 error.
| | Author: | Prili | | File Size: | 1166 | | Last Modified: | Jun 21 15:13:39 2007 |
| MD5 Checksum: | 27164b5dca0158989f739733fabc4429 |
|
| /// File Name: |
cissp-sql.txt |
Description:
|
The CISSP web site is susceptible to a SQL injection vulnerability.
| | Author: | Bozo Bad | | File Size: | 79 | | Last Modified: | Jun 21 15:10:05 2007 |
| MD5 Checksum: | f5b6a22b4b2e056c43e2ab9bdc9962e2 |
|
| /// File Name: |
vbultop-xss.txt |
Description:
|
vBulletin version 3.x suffers from a persistent cross site scripting bug due to a file inclusion vulnerability related to new topics.
| | Author: | rUnViRuS | | Homepage: | http://www.sec-area.com/ | | File Size: | 1506 | | Last Modified: | Jun 21 15:08:57 2007 |
| MD5 Checksum: | 3ab479da180bd88f35eda75f716b35c2 |
|
| /// File Name: |
vbulinclude-xss.txt |
Description:
|
vBulletin version 3.x suffers from a persistent cross site scripting bug due to a file inclusion vulnerability.
| | Author: | rUnViRuS | | Homepage: | http://www.sec-area.com/ | | File Size: | 1392 | | Last Modified: | Jun 21 15:07:49 2007 |
| MD5 Checksum: | 0ab5e54fee4833ab95276facb748d1d7 |
|
|
|
|
|