Section: .. / 0708-exploits /
| /// File Name: |
autoindexXSS.txt |
Description:
|
AutoIndex PHP Script versions 2.2.1 and below suffer from cross site scripting vulnerabilities.
| | Author: | d3hrdr8 | | Homepage: | http://darkcode.h1x.com/ | | File Size: | 1614 | | Last Modified: | Aug 25 15:20:55 2007 |
| MD5 Checksum: | e725972b059fd1da6ecee4f15827ead2 |
|
| /// File Name: |
auracms-sql.txt |
Description:
|
The forum module in AuraCMS suffers from a remote SQL injection vulnerability.
| | Author: | k1tk4t | | File Size: | 1588 | | Last Modified: | Aug 8 00:06:04 2007 |
| MD5 Checksum: | 759952dfb0039fbe1a06cd0e03903aa5 |
|
| /// File Name: |
litecommerce-sql.txt |
Description:
|
litecommerce 2004 suffers from a SQL injection vulnerability.
| | Author: | k1tk4t | | Homepage: | http://newhack.org/ | | File Size: | 1564 | | Last Modified: | Aug 21 16:50:09 2007 |
| MD5 Checksum: | bce2e4e7e8482f768a649617249b43bd |
|
| /// File Name: |
xampp-local.txt |
Description:
|
XAMPP for Windows version 1.6.3a local privilege escalation exploit.
| | Author: | Inphex | | File Size: | 1564 | | Last Modified: | Aug 27 22:58:09 2007 |
| MD5 Checksum: | c6ccbf09d52012d9314da6c2137fb5ae |
|
| /// File Name: |
arcadem-sql.txt |
Description:
|
Arcadem version 2.01 suffers from remote SQL injection and file inclusion vulnerabilities.
| | Author: | SmOk3 | | File Size: | 1552 | | Last Modified: | Aug 27 22:55:25 2007 |
| MD5 Checksum: | 228d641e92b3044472dff3869c1359aa |
|
| /// File Name: |
msdxmedia-exec.txt |
Description:
|
Micrsoft DXMedia SDK6 "SourceUrl" ActiveX remote code execution exploit.
| | Author: | Krystian Kloskowski | | File Size: | 1549 | | Last Modified: | Aug 11 17:51:44 2007 |
| MD5 Checksum: | 044a0ab234ccc3ae31ba8d8acd8cd732 |
|
| /// File Name: |
chilkat-insecure.txt |
Description:
|
CHILKAT ASP String SaveToFile() insecure method exploit that makes use of CkString.dll versions 1.1 and below.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 1546 | | Last Modified: | Aug 8 01:22:07 2007 |
| MD5 Checksum: | 2f4d4d1924d1578118776f075dc47f78 |
|
| /// File Name: |
edraw-insecure.txt |
Description:
|
EDraw Office Viewer Component version 5.1 HttpDownloadFile() insecure method exploit.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 1445 | | Last Modified: | Aug 16 21:21:40 2007 |
| MD5 Checksum: | 84c779928913e5da3e38f4c0ea24717c |
|
| /// File Name: |
phpcpoll-rfi.txt |
Description:
|
PHPCentral Poll Script version 1.0 is susceptible to a remote file inclusion vulnerability.
| | Author: | Rizgar | | File Size: | 1445 | | Last Modified: | Aug 13 23:28:04 2007 |
| MD5 Checksum: | 0dffc1662a53de30e385fb320562875d |
|
| /// File Name: |
phpbblinks-sql.txt |
Description:
|
phpBB Links MOD versions 1.2.2 and below remote SQL injection exploit.
| | Author: | Don | | File Size: | 1439 | | Last Modified: | Aug 31 12:45:56 2007 |
| MD5 Checksum: | f7c85f4b2a3d84bd57186a373ff8cce4 |
|
| /// File Name: |
liberoit-xss.txt |
Description:
|
The Italian ISP Libero.it suffers from cross site scripting vulnerabilities when the p_Query variable is manipulated.
| | Author: | Gianni Amato | | Homepage: | http://www.gianniamato.it/ | | File Size: | 1393 | | Last Modified: | Aug 8 02:43:57 2007 |
| MD5 Checksum: | b8672e43e5dcf3dcdf916264403d2e52 |
|
| /// File Name: |
moonware-multi.txt |
Description:
|
Moonware Software suffers from multiple vulnerabilities including CRLF and SQL injection.
| | Author: | s0cratex | | File Size: | 1390 | | Last Modified: | Aug 27 22:12:55 2007 |
| MD5 Checksum: | c31b437ecc4fc1eaebc0bc9135fb3317 |
|
| /// File Name: |
nvr-savexml-method.txt |
Description:
|
NVR SP2 version 2.0 SaveXMLFile() insecure method exploit that makes use of nvUtility.dll version 1.0.14.0.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 1366 | | Last Modified: | Aug 27 22:49:27 2007 |
| MD5 Checksum: | ec16d1fcd866eb8821e0d58a028f0b8d |
|
| /// File Name: |
gdi32-dos.txt |
Description:
|
Microsoft Windows denial of service exploit that makes use of GDI32.DLL. This vulnerability is related to MS07-046.
| | Author: | Gil-Dong / Woo-Chi | | File Size: | 1358 | | Last Modified: | Aug 30 03:03:14 2007 |
| MD5 Checksum: | 6b8e5d855533f6cd0c76c63947b807e6 |
|
| /// File Name: |
2wire-csrf.txt |
Description:
|
2wire routers versions 1701HG and 2071 Gateway are susceptible to cross site request forgery attacks.
| | Author: | hkm | | File Size: | 1357 | | Last Modified: | Aug 16 04:39:07 2007 |
| MD5 Checksum: | 1cd9dcc85c631ceb685b593c17d415a5 |
|
| /// File Name: |
wikiwebweaver-upload.txt |
Description:
|
WikiWebWeaver version 1.1 Beta suffers from a shell upload vulnerability.
| | Author: | yollubunlar | | File Size: | 1299 | | Last Modified: | Aug 8 00:30:17 2007 |
| MD5 Checksum: | 989ca6a1578878fb0323b6ee8a978bdc |
|
| /// File Name: |
phpnukesearch-xss.txt |
Description:
|
PHP-Nuke CMS suffers from multiple cross site scripting vulnerabilities.
| | Author: | Mikispag | | File Size: | 1269 | | Last Modified: | Aug 8 00:56:41 2007 |
| MD5 Checksum: | 8783e9d7d7d7232a061400c8669740a0 |
|
| /// File Name: |
simplefaq-sql.txt |
Description:
|
The Mambo component SimpleFAQ version 2.11 suffers from a SQL injection vulnerability.
| | Author: | k1tk4t | | Homepage: | http://newhack.org/ | | File Size: | 1255 | | Last Modified: | Aug 21 16:46:38 2007 |
| MD5 Checksum: | fc5bf24f8a52167f16f3615abb76e4f8 |
|
| /// File Name: |
cartweaver-sql.txt |
Description:
|
CartWeaver suffers from a remote SQL injection vulnerability in Details.cfm.
| | Author: | meoconx | | File Size: | 1252 | | Last Modified: | Aug 8 00:10:18 2007 |
| MD5 Checksum: | 24253b03e3a2e37014f4c6558ceb2305 |
|
| /// File Name: |
phpnukeclan-rfi.txt |
Description:
|
PHPNuke-Clan versions 4.2.0 and below suffer from a remote file inclusion vulnerability in mvcw_conver.php.
| | Author: | DNX | | File Size: | 1228 | | Last Modified: | Aug 29 00:27:57 2007 |
| MD5 Checksum: | 167c9ba6ce495d3de3731e4912a48952 |
|
| /// File Name: |
pabugs-sql.txt |
Description:
|
paBugs versions 2.0 Beta 3 and below remote SQL injection exploit that makes use of main.php.
| | Author: | uimp | | File Size: | 1223 | | Last Modified: | Aug 8 00:04:55 2007 |
| MD5 Checksum: | f2842c9844f0e265cf7ea1c293a8340d |
|
| /// File Name: |
mapos-rfi.txt |
Description:
|
Mapos Bilder Galerie version 1.0 suffers from a remote file inclusion vulnerability.
| | Author: | Rizgar | | File Size: | 1194 | | Last Modified: | Aug 11 17:32:30 2007 |
| MD5 Checksum: | f5794adc58bcd28bfe04b68437da04e6 |
|
| /// File Name: |
nvr-deletexml-method.txt |
Description:
|
NVR SP2 version 2.0 DeleteXMLFile() insecure method exploit that makes use of nvUtility.dll version 1.0.14.0.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 1192 | | Last Modified: | Aug 27 22:51:58 2007 |
| MD5 Checksum: | 8b1d8c961cae62c0a6701250dc6963b8 |
|
|
|
|
|