Section: .. / 0906-exploits /
| /// File Name: |
phpsugar-lfi.txt |
Description:
|
PHP-Sugar version 0.80 suffers from a local file inclusion vulnerability.
| | Author: | ahmadbady | | File Size: | 575 | | Last Modified: | Jun 29 17:49:46 2009 |
| MD5 Checksum: | e95221ee9021764b4105699a398808c9 |
|
| /// File Name: |
phpwebthings-hashdisclose.txt |
Description:
|
phpWebThings versions 1.5.2 and below MD5 hash retrieval and file disclosure exploit.
| | Author: | StAkeR | | File Size: | 9685 | | Last Modified: | Jun 12 12:34:41 2009 |
| MD5 Checksum: | 453a637788efc22a52f3c153cdcef22d |
|
| /// File Name: |
phpwebthings-lfi.txt |
Description:
|
phpWebThings versions 1.5.2 and below suffer from a local file inclusion vulnerability in help.php.
| | Author: | Br0ly | | File Size: | 1310 | | Last Modified: | Jun 11 18:10:33 2009 |
| MD5 Checksum: | 580eb94b559b57a45c440c5b33349917 |
|
| /// File Name: |
pivot-xss.txt |
Description:
|
Pivot versions 1.40.4 and 1.40.7 suffer from cross site scripting and HTML injection vulnerabilities.
| | Author: | intern0t | | File Size: | 3429 | | Last Modified: | Jun 13 23:33:06 2009 |
| MD5 Checksum: | 80bb3e06941de31139b03acd0aae01a3 |
|
| /// File Name: |
pmapwn-inject.txt |
Description:
|
pmaPWN phpMyAdmin code injection remote command execution scanner and exploit.
| | Author: | Hacking Expose! | | Homepage: | http://hackingexpose.blogspot.com/ | | File Size: | 11429 | | Last Modified: | Jun 22 22:17:23 2009 |
| MD5 Checksum: | e7c644b7c2504538acb6a5e10a7ad68f |
|
| /// File Name: |
podcastgen-lfirfidisclose.txt |
Description:
|
Podcast Generator versions 1.2 and below suffer from local file disclosure, local file inclusion, remote file inclusion, and local file deletion vulnerabilities.
| | Author: | StAkeR | | File Size: | 3620 | | Last Modified: | Jun 2 23:58:56 2009 |
| MD5 Checksum: | 8a6b84e7fe6b4f3d230ab584ed4ce1ee |
|
| /// File Name: |
podcastgen-reinstall.txt |
Description:
|
Podcast Generator versions 1.2 and below unauthorized CMS re-installation exploit.
| | Author: | StAkeR | | File Size: | 5396 | | Last Modified: | Jun 4 18:28:22 2009 |
| MD5 Checksum: | e631be335ebcc8de3595f748aa6ff580 |
|
| /// File Name: |
propertymax-sqlxss.txt |
Description:
|
PropertyMax Pro FREE suffers from remote SQL injection and cross site scripting vulnerabilities.
| | Author: | SirGod | | Homepage: | http://www.insecurity.ro/ | | File Size: | 647 | | Last Modified: | Jun 2 23:50:32 2009 |
| MD5 Checksum: | 13dfecbcfbd2b2f9a95a5decc05fe3a0 |
|
| /// File Name: |
punbbaffiliations-blindsql.txt |
Description:
|
Versions 1.1 and below of the OUT module in PunBB suffers from a remote blind SQL injection vulnerability in Affiliations.php.
| | Author: | Dante90 | | Homepage: | http://www.warwolfz.org/ | | File Size: | 4226 | | Last Modified: | Jun 29 17:43:48 2009 |
| MD5 Checksum: | 8a70c90bed65350e655e76736ac8712c |
|
| /// File Name: |
punbbaffiliationsin-blindsql.txt |
Description:
|
Versions 1.1 and below of the IN module in PunBB suffers from a remote blind SQL injection vulnerability in Affiliations.php.
| | Author: | Dante90 | | Homepage: | http://www.warwolfz.org/ | | File Size: | 4222 | | Last Modified: | Jun 29 19:19:52 2009 |
| MD5 Checksum: | 3c330bf97acb5e107000af739551fbca |
|
| /// File Name: |
punbbapdb-sql.txt |
Description:
|
PunBB suffers from a remote SQL injection vulnerability when leveraging a cross site request forgery vulnerability in AP_DB_management.php.
| | Author: | Dante90 | | Homepage: | http://www.warwolfz.org/ | | File Size: | 1669 | | Last Modified: | Jun 29 17:42:25 2009 |
| MD5 Checksum: | 26bdb9534f50718e774efb1500d5e1ff |
|
| /// File Name: |
punbbvoteforus-blindsql.txt |
Description:
|
Versions 1.0.1 and below of the IN module in PunBB suffer from a remote blind SQL injection vulnerability in VoteForUs.php.
| | Author: | Dante90 | | Homepage: | http://www.warwolfz.org/ | | File Size: | 4205 | | Last Modified: | Jun 29 17:45:21 2009 |
| MD5 Checksum: | 56c9d705101a445b2a4546414f92ae76 |
|
| /// File Name: |
punbbvoteforusout-blindsql.txt |
Description:
|
Versions 1.0.1 and below of the OUT module in PunBB suffer from a remote blind SQL injection vulnerability in VoteForUs.php.
| | Author: | Dante90 | | Homepage: | http://www.warwolfz.org/ | | File Size: | 4209 | | Last Modified: | Jun 29 19:18:14 2009 |
| MD5 Checksum: | cb517c883119f24e4a14b567ed5ea258 |
|
| /// File Name: |
r2newsletterstore-disclose.txt |
Description:
|
R2 Newsletter Store suffers from a remote database disclosure vulnerability.
| | Author: | TiGeR-Dz | | Homepage: | http://www.h4ckf0u.com/ | | File Size: | 893 | | Last Modified: | Jun 2 23:27:43 2009 |
| MD5 Checksum: | c5452f4452391a24539cd7d464a20fe0 |
|
| /// File Name: |
radclassifieds-sql.txt |
Description:
|
RadCLASSIFIEDS Gold version 2 remote SQL injection exploit.
| | Author: | Br0ly | | File Size: | 3126 | | Last Modified: | Jun 2 22:52:08 2009 |
| MD5 Checksum: | b9a76e19faead7e30a43f5301b8d1d65 |
|
| /// File Name: |
roxiocineplayer32-overflow.txt |
Description:
|
Roxio CinePlayer version 3.2 remote buffer overflow exploit that leverages IAManager.dll.
| | Author: | His0k4 | | File Size: | 2262 | | Last Modified: | Jun 2 18:58:11 2009 |
| MD5 Checksum: | b60e4111cee6f3463edeac7763cb1970 |
|
| /// File Name: |
rscms-sql.txt |
Description:
|
RS-CMS version 2.1 suffers from a remote SQL injection vulnerability in rscms_mod_newsview.php.
| | Author: | Mr.tro0oqy | | File Size: | 991 | | Last Modified: | Jun 22 23:08:49 2009 |
| MD5 Checksum: | 4fc17596fd27d222504e29e84a7aec2b |
|
| /// File Name: |
safari-filetheft.txt |
Description:
|
Apple Safari versions prior to 4 may permit an evil web page to steal files from the local system by mounting an XXE attack against the parsing of the XSL XML.
| | Author: | Chris Evans | | File Size: | 1150 | | Last Modified: | Jun 9 14:55:38 2009 |
| MD5 Checksum: | 0c66cbfa46563336f3729fe78925cd1d |
|
| /// File Name: |
scmpx-overflow.txt |
Description:
|
SCMPX version 1.5.1 local heap overflow proof of concept exploit that creates a malicious .m3u file.
| | Author: | HACK4LOVE | | File Size: | 698 | | Last Modified: | Jun 29 14:03:46 2009 |
| MD5 Checksum: | 46ab36e070afc37d10d6d4959714b302 |
|
| /// File Name: |
scms-blindsql.txt |
Description:
|
S-CMS versions 2.0 Beta3 and below blind SQLi exploit.
| | Author: | YEnH4ckEr | | File Size: | 8716 | | Last Modified: | Jun 10 16:53:53 2009 |
| MD5 Checksum: | ec124b47bf2768fd0758a688aa7a76d5 |
|
| /// File Name: |
scms-sql.txt |
Description:
|
S-CMS versions 2.0 Beta3 and below suffer from multiple remote SQL injection vulnerabilities.
| | Author: | YEnH4ckEr | | File Size: | 4205 | | Last Modified: | Jun 10 16:52:45 2009 |
| MD5 Checksum: | f7297544906ef9ecc07a7a6e2d5550fd |
|
| /// File Name: |
scms20-lfi.txt |
Description:
|
S-CMS versions 2.0 Beta3 and below suffer from multiple local file inclusion vulnerabilities.
| | Author: | YEnH4ckEr | | File Size: | 2648 | | Last Modified: | Jun 9 15:04:02 2009 |
| MD5 Checksum: | e41d84c34540acc49e5dd85f2b937130 |
|
|
|
|
|