Section: .. / 0603-exploits /
| /// File Name: |
18ZLZA.txt |
Description:
|
18 ways to escalate privileges in Zone Labs ZoneAlarm Security Suite build 6.1.744.000.
| | Author: | Reed Arvin | | Homepage: | http://reedarvin.thearvins.com/ | | File Size: | 6033 | | Last Modified: | Mar 8 23:46:45 2006 |
| MD5 Checksum: | 4f373b619e885de89d6a5fa69001183d |
|
| /// File Name: |
plogger_b21_sql_xpl.html |
Description:
|
Plogger versions Beta 2.1 and below SQL injection / administrative credential disclosure exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 5711 | | Last Modified: | Apr 1 04:50:27 2006 |
| MD5 Checksum: | 25502883a23d70764a1f398028c6f987 |
|
| /// File Name: |
arinXSS.txt |
Description:
|
Arin.net suffers from a cross site scripting flaw.
| | Author: | Terminal Entry Security | | File Size: | 5263 | | Last Modified: | Mar 6 02:00:55 2006 |
| MD5 Checksum: | 085bc815a14dd760a445696a800225b6 |
|
| /// File Name: |
msie-createTextRang.pm.txt |
Description:
|
This Metasploit module exploits a vulnerability in Internet Explorer's setTextRange on a checkbox.
| | Author: | justfriends4n0w | | File Size: | 5160 | | Last Modified: | Apr 1 01:29:22 2006 |
| MD5 Checksum: | b13a5e3daf400216e2ff920ffd30ba9c |
|
| /// File Name: |
SquirrelFlaws.txt |
Description:
|
SquirrelMail versions 1.4.5 and below suffer from an IMAP injection flaw. Versions 1.2.7 and below suffer from a SMTP injection flaw. Details provided.
| | Author: | Vicente Aguilera Diaz | | File Size: | 4988 | | Related CVE(s): | CVE-2006-0377 | | Last Modified: | Mar 2 04:35:19 2006 |
| MD5 Checksum: | 9f9519268a99b8ca84b7c177df69bc29 |
|
| /// File Name: |
vs60bo.c |
Description:
|
Microsoft Visual Studio 6.0 SP6 malformed .dbp file buffer overflow exploit.
| | Author: | kozan, ATmaCA | | Homepage: | http://www.spyinstructors.com | | Related File: | vs60bo.txt | | File Size: | 4940 | | Last Modified: | Mar 8 02:31:31 2006 |
| MD5 Checksum: | a643f0ab059fdc6e15d141919250f44f |
|
| /// File Name: |
dropbear-PoC.c |
Description:
|
Dropbear SSH server remote denial of service exploit that makes use of a design error in the authorizations-pending connection code. Version 0.47 and below are susceptible to attack.
| | Author: | Pablo Fernandez | | File Size: | 4876 | | Last Modified: | Mar 8 23:28:50 2006 |
| MD5 Checksum: | f6db4d4791fb09c4b993870a82363ec3 |
|
| /// File Name: |
rev.txt |
Description:
|
Revilloc MailServer and Proxy version 1.21 remote proof of concept exploit for the USER directive heap overflow. Binds a shell to port 9191.
| | Author: | securma | | Homepage: | http://www.morx.org | | File Size: | 4779 | | Last Modified: | Mar 8 23:16:35 2006 |
| MD5 Checksum: | e71a7f8f572e8cd07296108df96cc4ae |
|
| /// File Name: |
RevilloC-poc.pl.txt |
Description:
|
exploit for a buffer overflow in RevilloC MailServer and Proxy version 1.21.
| | Author: | securma massine | | Homepage: | http://www.morx.org | | File Size: | 4733 | | Last Modified: | Mar 8 01:14:43 2006 |
| MD5 Checksum: | 779b406542cf3f0a4ac7c1cade675a28 |
|
| /// File Name: |
moz-15.txt |
Description:
|
Thunderbird's HTML rendering engine insufficiently filters the loading of external resources from inline HTML attachments. External files are download ed even if the "Block loading of remote images in mail messages" option is enabled. Proof of concept exploitation details provided.
| | Author: | crashfr | | Homepage: | http://www.sysdream.com | | File Size: | 4440 | | Last Modified: | Mar 2 05:27:21 2006 |
| MD5 Checksum: | 4053197c29d9f9058cde76a8f1d4144e |
|
| /// File Name: |
Advisory-20.txt |
Description:
|
PhotoBlogger versions 3.0 and below suffer from cross site scripting and SQL injection vulnerabilities.
| | Author: | Paisterist | | Homepage: | http://www.neosecurityteam.net/ | | File Size: | 3835 | | Last Modified: | Mar 8 00:44:30 2006 |
| MD5 Checksum: | 74b5d8487ec1d728577fea64a6e91476 |
|
| /// File Name: |
imlock2006.txt |
Description:
|
IM Lock 2006 suffers from a local password encryption weakness. Exploit included.
| | Author: | fRoGGz | | Homepage: | http://secubox.shadock.net | | File Size: | 3691 | | Last Modified: | Mar 8 03:45:25 2006 |
| MD5 Checksum: | 855c5b38e055c4c0743d0ac16cc28c81 |
|
| /// File Name: |
php_stats_0191_adv.txt |
Description:
|
PHP-Stats versions 0.1.9.1 and below suffer from remote directory traversal, SQL injection, and command execution flaws.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org | | File Size: | 3690 | | Last Modified: | Mar 7 23:34:46 2006 |
| MD5 Checksum: | 46b48d14cd54cc0a16b981246682e711 |
|
| /// File Name: |
sBlog_0.72_xss.txt |
Description:
|
sBlog version 0.7.2 suffers from multiple cross site scripting vulnerabilities.
| | Author: | Kiki | | Homepage: | http://kiki91.altervista.org/ | | File Size: | 3631 | | Last Modified: | Mar 8 23:23:46 2006 |
| MD5 Checksum: | 9f00c4aadfe47684ec317c01a4a46c52 |
|
| /// File Name: |
vBulletin174.txt |
Description:
|
Versions 1.74 and below of the ImpEx module for vBulletin are susceptible to a remote command execution vulnerability. Exploit included.
| | Author: | ReZEN | | File Size: | 3614 | | Last Modified: | Mar 31 22:42:12 2006 |
| MD5 Checksum: | 6637cdc84fc24929b09c639853bdad7d |
|
| /// File Name: |
Jiros.txt |
Description:
|
Jiros Banner Experience Pro versions 1.0 and below suffer from an authentication bypass vulnerability allowing any user to add a new administrative account. POC included.
| | Author: | Mustafa Can Bjorn | | Homepage: | http://www.nukedx.com | | File Size: | 3593 | | Last Modified: | Mar 9 19:45:49 2006 |
| MD5 Checksum: | 9296917cde276b6304fd51ab9780dcc3 |
|
| /// File Name: |
JirosBanner.txt |
Description:
|
Jiros Banner Experience Pro version 1.0 is susceptible to a remote privilege escalation flaw.
| | Author: | nukedx | | Homepage: | http://www.nukedx.com | | File Size: | 3405 | | Last Modified: | Mar 10 21:54:59 2006 |
| MD5 Checksum: | 51fb10b7e62aa42a940bf22e31e7f1c3 |
|
| /// File Name: |
WD-TMPLH.txt |
Description:
|
PHPLiveHelper version 1.8 remote command execution exploit.
| | Author: | Zod, rUnViRuS | | Homepage: | http://www.worlddefacers.de | | File Size: | 3364 | | Last Modified: | Apr 1 00:48:02 2006 |
| MD5 Checksum: | 8c6b33c2f431d431bf996faf6c8731de |
|
| /// File Name: |
ArGoSoft-1.4.3.5-DoS.cpp |
Description:
|
ArGoSoft FTP server versions 1.4.3.5 and below remote denial of service exploit.
| | Author: | Lympex | | Homepage: | http://L-Bytes.Tk | | File Size: | 3140 | | Last Modified: | Mar 2 04:25:54 2006 |
| MD5 Checksum: | d0098a8885796a2c9d8da6382e3e8f4f |
|
|
|
|
|