Section: .. / 0709-exploits /
| /// File Name: |
netkamp-sql.txt |
Description:
|
Netkamp Emlak Scripti is susceptible to a SQL injection vulnerability.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 1022 | | Last Modified: | Sep 30 02:33:04 2007 |
| MD5 Checksum: | 479f21229fd30636abe00776856203c4 |
|
| /// File Name: |
ohesa-sql.txt |
Description:
|
Ohesa Emlak Portal is susceptible to a SQL injection vulnerability.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 417 | | Last Modified: | Sep 30 02:32:12 2007 |
| MD5 Checksum: | 4ac9fe286f730946c3002dcd93578185 |
|
| /// File Name: |
gmailsteal_remote.scpt.txt |
Description:
|
This script can be used to steal G-Mail's keychained password by injecting javascript into Safari. When executed it opens G-Mail's login page, reads the saved password and sends it to a logging server by creating an hidden iframe into G-Mail's page.
| | Author: | poplix | | Homepage: | http://px.dynalias.org/ | | File Size: | 1165 | | Last Modified: | Sep 30 02:26:43 2007 |
| MD5 Checksum: | f25867c70c9f1546c6cf772d9272279f |
|
| /// File Name: |
gmailsteal_local.scpt.txt |
Description:
|
This script can be used to steal G-Mail's keychained password by injecting javascript into Safari. When executed it opens G-Mail's login page, reads the saved password and prompts it into an alert box.
| | Author: | poplix | | Homepage: | http://px.dynalias.org/ | | File Size: | 676 | | Last Modified: | Sep 30 02:24:52 2007 |
| MD5 Checksum: | be54b1b330d258fc5c3ba6851cf17ef2 |
|
| /// File Name: |
tor01216-rewrite.txt |
Description:
|
Tor versions below 0.1.2.16 ControlPort remote rewrite exploit.
| | Author: | elgCrew | | File Size: | 1998 | | Last Modified: | Sep 30 02:16:55 2007 |
| MD5 Checksum: | 77fb45cee39d5aa961bd1a6a6c903981 |
|
| /// File Name: |
mxbb233-rfi.txt |
Description:
|
mxBB module mx_glance version 2.3.3 suffers from a remote file inclusion vulnerability.
| | Author: | bd0rk | | Homepage: | http://www.soh-crew.it.tt/ | | File Size: | 1697 | | Last Modified: | Sep 30 02:15:03 2007 |
| MD5 Checksum: | f1a59522809926ca8a5303cd24e61e87 |
|
| /// File Name: |
mambads-sql.txt |
Description:
|
Mambo component Mambads versions 1.5 and below suffer from a remote SQL injection vulnerability.
| | Author: | Sniper456 | | File Size: | 839 | | Last Modified: | Sep 30 02:13:34 2007 |
| MD5 Checksum: | 565d5c84f94276d614a70859dfc5be3c |
|
| /// File Name: |
zomplog381-upload.txt |
Description:
|
Zomplog versions 3.8.1 and below suffer form an arbitrary file upload vulnerability.
| | Author: | InATeam | | Homepage: | http://inattack.ru/ | | File Size: | 5531 | | Last Modified: | Sep 30 02:10:15 2007 |
| MD5 Checksum: | a2253be0b71c1d9a269546061ca4b6f5 |
|
| /// File Name: |
pmm-rfi.txt |
Description:
|
Public Media Manager versions 1.3 and below suffer from a remote file inclusion vulnerability.
| | Author: | 0in | | File Size: | 236 | | Last Modified: | Sep 30 02:08:51 2007 |
| MD5 Checksum: | f49a36f127f9c16d09d6e979010f8e84 |
|
| /// File Name: |
phfito-rfi.txt |
Description:
|
PhFiTo version 1.3.0 suffers from a remote file inclusion vulnerability.
| | Author: | w0cker | | File Size: | 2796 | | Last Modified: | Sep 30 02:07:42 2007 |
| MD5 Checksum: | d18f9943c293e24203033ee2ea38b258 |
|
| /// File Name: |
integra-rfi.txt |
Description:
|
IntegraMOD Nederland version 1.4.2 suffers from a remote file inclusion vulnerability.
| | Author: | xoron | | File Size: | 380 | | Last Modified: | Sep 27 21:22:35 2007 |
| MD5 Checksum: | e02f9bfcac8a06e4198bab5489dec3de |
|
| /// File Name: |
chupix-rfi.txt |
Description:
|
Chupix CMS version 0.2.3 suffers from a remote file inclusion vulnerability.
| | Author: | 0in | | File Size: | 993 | | Last Modified: | Sep 27 21:21:44 2007 |
| MD5 Checksum: | 25dc55457762a2c2ba4a18c7b4e55091 |
|
| /// File Name: |
lustigcms-rfi.txt |
Description:
|
lustig.cms BETA version 2.5 suffers from a remote file inclusion vulnerability in forum.php.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 285 | | Last Modified: | Sep 27 21:20:46 2007 |
| MD5 Checksum: | 5de9a41421c4fafea1795507ff565489 |
|
| /// File Name: |
promise-root.txt |
Description:
|
The Promise NAS NS4300N web GUI allows an administrative user to change the root password.
| | Author: | Tor Houghton | | Homepage: | http://www.bogus.net/~torh | | File Size: | 1969 | | Last Modified: | Sep 27 21:15:51 2007 |
| MD5 Checksum: | 1264c688a0a91902e9a94babdb53fd1c |
|
| /// File Name: |
waraxe-2007-SA057.txt |
Description:
|
SiteX CMS is susceptible to an unauthorized file upload vulnerability.
| | Author: | waraxe | | Homepage: | http://www.waraxe.us/ | | File Size: | 3567 | | Last Modified: | Sep 27 21:07:45 2007 |
| MD5 Checksum: | 05102e83373625b3de5cb5a8e21092e8 |
|
| /// File Name: |
novus-sql.txt |
Description:
|
Novus version 1.0 suffers from a remote SQL injection vulnerability in notas.asp.
| | Author: | ka0x | | File Size: | 962 | | Last Modified: | Sep 26 22:42:59 2007 |
| MD5 Checksum: | 6ad8f9b8b1c45b57341b940c91955082 |
|
| /// File Name: |
softbiz-sql.txt |
Description:
|
Softbiz Classifieds PLUS suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1733 | | Last Modified: | Sep 26 22:41:52 2007 |
| MD5 Checksum: | 19dba9c69c9a38272686d797dd91548d |
|
| /// File Name: |
fa113-rfi.tt |
Description:
|
FrontAccounting version 1.13 suffers from remote file inclusion vulnerabilities.
| | Author: | kezzap66345 | | File Size: | 3756 | | Last Modified: | Sep 26 22:40:58 2007 |
| MD5 Checksum: | 7cd2f345bb9716d267fcb943d81cfb6c |
|
| /// File Name: |
CORE-2007-0817.txt |
Description:
|
Core Security Technologies Advisory - Remote command execution, HTML and JavaScript injection vulnerabilities in AOL's Instant Messaging software. Versions 6.1, 6.2, Pro, and Lite are affected.
| | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 31509 | | Related CVE(s): | CVE-2007-4901 | | Last Modified: | Sep 25 22:07:53 2007 |
| MD5 Checksum: | 9f6886148c8923f1548101c7a3d286c4 |
|
| /// File Name: |
simpgb14602-infodis.txt |
Description:
|
SimpGB version 1.46.02 suffers from an information disclosure vulnerability.
| | Author: | Jesper Jurcenoks | | Homepage: | http://www.netvigilance.com/ | | File Size: | 3069 | | Last Modified: | Sep 25 22:03:21 2007 |
| MD5 Checksum: | 00efdd2c2ad7840a33a130db04b99cbb |
|
|
|
|
|