Section: .. / 0706-exploits /
| /// File Name: |
BTP00002P004AO.zip |
Description:
|
Demonstration code that exploits Outpost 4.0 which fails to sufficiently protect its own mutex outpost_ipc_hdr.
| | Homepage: | http://www.matousec.com/ | | Related File: | outpost40-insuff.txt | | File Size: | 4169 | | Last Modified: | Jun 6 19:11:39 2007 |
| MD5 Checksum: | 6cc8670357ac69ea20311c7a792d5202 |
|
| /// File Name: |
movieplay-overflow.txt |
Description:
|
MoviePlay version 4.76 .lst file local buffer overflow exploit.
| | Author: | n00b | | File Size: | 4003 | | Last Modified: | Jun 10 20:21:22 2007 |
| MD5 Checksum: | d8719ed5ec4321f73d0593bcf17dc3f1 |
|
| /// File Name: |
lrcf-inject.txt |
Description:
|
Link Request Contact Form version 3.4 suffers from a remote code injection vulnerability. Full exploit provided.
| | Author: | CorryL | | File Size: | 3977 | | Last Modified: | Jun 10 20:44:10 2007 |
| MD5 Checksum: | 109fdc0217d88005d5c86a79e1255b47 |
|
| /// File Name: |
avaxswf-write.txt |
Description:
|
Avaxswf.dll, a library included in the Avax Vector ActiveX version 1.3 software package from the Company Civitech, has a flaw that allows for arbitrary file overwrite on the underlying system.
| | Author: | callAX | | Homepage: | http://www.shellcode.com.ar/ | | File Size: | 3823 | | Last Modified: | Jun 26 17:30:00 2007 |
| MD5 Checksum: | a0fe9869974d6c8ac20ddbae2b54e9d8 |
|
| /// File Name: |
eqdkp-sql.txt |
Description:
|
EQdkp versions 1.3.2 and below remote SQL injection exploit that makes use of listmembers.php.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 3809 | | Last Modified: | Jun 7 01:36:47 2007 |
| MD5 Checksum: | fb6d2980eb37e68dda8bebb414bc40b2 |
|
| /// File Name: |
pbxs11-exec.txt |
Description:
|
BitchX version 1.1-final remote command execution exploit.
| | Author: | clarity_ | | File Size: | 3668 | | Last Modified: | Jun 21 15:46:31 2007 |
| MD5 Checksum: | 47a1503cb6196dd165f47dde74391043 |
|
| /// File Name: |
aceftp-dos.txt |
Description:
|
Ace-FTP client version 1.24a remote buffer overflow denial of service exploit.
| | Author: | n00b | | File Size: | 3630 | | Last Modified: | Jun 10 20:15:40 2007 |
| MD5 Checksum: | d52a831f8900ae5960b184332a920318 |
|
| /// File Name: |
ms-activex.txt |
Description:
|
Microsoft Speech API ActiveX control remote buffer overflow exploit for WinXP SP2.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 3530 | | Last Modified: | Jun 14 01:11:19 2007 |
| MD5 Checksum: | 4acaa1c61393a73ed1c0630702d3c675 |
|
| /// File Name: |
ym2.txt |
Description:
|
Yahoo! Messenger ywcvwr.dll ActiveX exploit (2 of 2).
| | Author: | Danny | | File Size: | 3513 | | Last Modified: | Jun 10 19:36:13 2007 |
| MD5 Checksum: | 770faca3e3ce551fc123f73e1240953d |
|
| /// File Name: |
mj-rfi.txt |
Description:
|
Mambo and Joomla appear to suffer from multiple remote file inclusion vulnerabilities. Versions unavailable.
| | Author: | Spymeta | | File Size: | 3189 | | Last Modified: | Jun 26 17:12:23 2007 |
| MD5 Checksum: | 6496875d10fad93f88255ee6dc039e0f |
|
| /// File Name: |
safenet-dos.c |
Description:
|
Proof of concept remote denial of service exploit for IPSecDrv.sys as shipped with SafeNET High Assurance Remote and SoftRemote versions 10.4.0.12.
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 3189 | | Last Modified: | Jun 10 20:07:44 2007 |
| MD5 Checksum: | e407b63b3016a3dc000844ea409ac074 |
|
| /// File Name: |
amx-activex.txt |
Description:
|
AMX Corp. VNC ActiveX control remote buffer overflow exploit that takes advantage of AmxVnc.dll version 1.0.13.0.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2912 | | Last Modified: | Jun 29 01:14:25 2007 |
| MD5 Checksum: | 5a542260d691cdb83d713acfe3cfdbfb |
|
| /// File Name: |
e107-upload.txt |
Description:
|
e107 versions 0.7.8 and below suffer from an arbitrary file upload vulnerability where it lacks validation of a files contents when uploaded, allowing for php code to be uploaded as an image, etc.
| | Author: | clorox | | Homepage: | http://www.g00ns.net/ | | File Size: | 2901 | | Last Modified: | Jun 26 16:22:33 2007 |
| MD5 Checksum: | 81c10fc3a33fb8c57bfdb3d9fd38169e |
|
| /// File Name: |
smf112-multi.tgz |
Description:
|
Simple Machines Forum (aka SMF) version 1.1.2 suffers from PHP injection and a weak CAPTCHA system. Exploit included to break the CAPTCHA.
| | Author: | ShAnKaR | | Homepage: | http://securityvulns.com/ | | File Size: | 2819 | | Last Modified: | Jun 19 16:39:00 2007 |
| MD5 Checksum: | e8f3b46e8d545baea77e9826adfefea5 |
|
| /// File Name: |
comicsense02-sql.txt |
Description:
|
Comicsense version 0.2 remote SQL injection exploit that makes use of index.php.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 2764 | | Last Modified: | Jun 7 02:22:01 2007 |
| MD5 Checksum: | 24f79e506185df3a94dfb9c6d924e859 |
|
| /// File Name: |
vsupportits-sql.txt |
Description:
|
vSupport Integrated Ticket System version 3.x suffers from a SQL injection vulnerability.
| | Author: | rUnViRuS | | Homepage: | http://www.sec-area.com/ | | File Size: | 2730 | | Last Modified: | Jun 10 20:40:38 2007 |
| MD5 Checksum: | 7c1c602e4261cd531100dca659708a99 |
|
| /// File Name: |
newssync-rfi.txt |
Description:
|
NewsSync for phpBB version 1.5.0rc6 remote file inclusion exploit.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 2694 | | Last Modified: | Jun 10 20:17:01 2007 |
| MD5 Checksum: | 0ceaf2423343495516cefb14e66ade8a |
|
| /// File Name: |
utopia-xss.txt |
Description:
|
Utopia News Pro version 1.4.0 suffers from a cross site scripting vulnerability.
| | Author: | Jesper Jurcenoks | | Homepage: | http://www.netvigilance.com/ | | File Size: | 2608 | | Related OSVDB(s): | 34165 | | Related CVE(s): | CVE-2007-3129 | | Last Modified: | Jun 19 16:35:12 2007 |
| MD5 Checksum: | fba3ea5c54fc78539067e653c97f04cd |
|
| /// File Name: |
csc-sqlxss.txt |
Description:
|
Comersus Shop Cart version 7.07 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 2530 | | Last Modified: | Jun 21 14:53:38 2007 |
| MD5 Checksum: | cfcfc7f81ef8c0d771a03091cd266aa9 |
|
| /// File Name: |
xoopsicontent-rfi.txt |
Description:
|
XOOPS module icontent version 1.0 remote file inclusion exploit.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 2487 | | Last Modified: | Jun 6 17:58:06 2007 |
| MD5 Checksum: | 3bccb0cb47951bd579366bf0f6138c82 |
|
|
|
|
|