Section: .. / 0711-exploits /
| /// File Name: |
projectalumni-disclose.txt |
Description:
|
Project Alumni version 1.0.9 suffers from a remote file disclosure vulnerability.
| | Author: | tomplixsee | | File Size: | 331 | | Last Modified: | Nov 27 22:48:20 2007 |
| MD5 Checksum: | 2fbbf2a27adfe838cf1ec5d39a673f76 |
|
| /// File Name: |
eurologon-sql.txt |
Description:
|
Eurologon CMS suffers from multiple SQL injection vulnerabilities.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1781 | | Last Modified: | Nov 27 22:38:44 2007 |
| MD5 Checksum: | d5d5b5cfe4219bfb4f02ca65321d6676 |
|
| /// File Name: |
eurologon-disclose.txt |
Description:
|
Eurologon CMS suffers from an arbitrary file download vulnerability via a directory traversal vulnerability.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1220 | | Last Modified: | Nov 27 22:38:01 2007 |
| MD5 Checksum: | 26c309a907c0ecad04e45639e78d3778 |
|
| /// File Name: |
phpslideshow0992-xss.txt |
Description:
|
PHPSlideShow version 0.9.9.2 suffers from a cross site scripting vulnerability in phpslideshow.php.
| | Author: | Josh Morin | | File Size: | 701 | | Last Modified: | Nov 27 21:56:12 2007 |
| MD5 Checksum: | 1c0a1c074d4691d0f178837b69fe09cf |
|
| /// File Name: |
figis-sql.txt |
Description:
|
FIGIS suffers from a bypass vulnerability due to a SQL injection vulnerability.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 603 | | Last Modified: | Nov 26 22:56:21 2007 |
| MD5 Checksum: | 6cb909cddd781ddf6bdc2244ceda860c |
|
| /// File Name: |
jlmforo-xss.txt |
Description:
|
The JLMForo System is susceptible to a cross site scripting vulnerability in modificarPerfil.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 1397 | | Last Modified: | Nov 26 22:54:30 2007 |
| MD5 Checksum: | 9717236e5545bbf5737f9801cfbc8ee6 |
|
| /// File Name: |
sentineldetails-traverse.txt |
Description:
|
SafeNet Inc.'s Sentinel Protection Server and Sentinel Keys Server products include web servers which are vulnerable to directory traversal attacks. Full details provided.
| | Author: | Elliot Kendall | | File Size: | 3204 | | Last Modified: | Nov 26 22:53:21 2007 |
| MD5 Checksum: | d6ebdd5f7c5aa730f18575ceabf0543a |
|
| /// File Name: |
phpnukensn-disclose.txt |
Description:
|
PHP-Nuke NSN Script Depository module versions 1.0.0 and below suffer from a remote source disclosure vulnerability.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1758 | | Last Modified: | Nov 26 22:50:32 2007 |
| MD5 Checksum: | c1b31b6050529af2d3f35a56e8151a33 |
|
| /// File Name: |
tildecms-sql.txt |
Description:
|
Tilde CMS versions 4.x and below suffer from a SQL injection vulnerability.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 2009 | | Last Modified: | Nov 26 22:48:35 2007 |
| MD5 Checksum: | 7e70684c3673ed557eabfc800e77eeb6 |
|
| /// File Name: |
deluxebb-bypass.txt |
Description:
|
DeluxeBB versions 1.09 and below remote change exploit that manipulates user or administrative e-mail addresses.
| | Author: | Nexen | | Homepage: | http://www.opencosmo.com/ | | File Size: | 5497 | | Last Modified: | Nov 26 22:47:26 2007 |
| MD5 Checksum: | 1f2e0c2f56f4076ec66a65805e668ac1 |
|
| /// File Name: |
calendarproverbs-sql.txt |
Description:
|
Calendar Proverbs versions 1.1 and below suffer from a remote SQL injection vulnerability in caladmin.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 908 | | Last Modified: | Nov 26 22:44:17 2007 |
| MD5 Checksum: | dad24ab9d8a5669fc8ad3bc60d0df5ac |
|
| /// File Name: |
simplegallery-xss.txt |
Description:
|
SimpleGallery version 0.1.3 suffers from a cross site scripting vulnerability in index.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 693 | | Last Modified: | Nov 26 22:43:39 2007 |
| MD5 Checksum: | 0e3a07b0c6578f33dccdf974d8410922 |
|
| /// File Name: |
phpslideshow-xss.txt |
Description:
|
PHPSlideShow suffers from a cross site scripting vulnerability in toonchapter8.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 681 | | Last Modified: | Nov 26 22:43:10 2007 |
| MD5 Checksum: | e36efd2549b517f78e97ef1ed52a692a |
|
| /// File Name: |
fmdeluxe-xss.txt |
Description:
|
FMDeluxe suffers from a cross site scripting vulnerability in index.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 670 | | Last Modified: | Nov 26 22:42:44 2007 |
| MD5 Checksum: | 761cb8f82aaf36d253b8957831e279be |
|
| /// File Name: |
mytvx-root.txt |
Description:
|
MyTV/x versions 3.6.6 and 4.0.8 appears to drop an end user into the Apple menu with root privileges when hitting the power button during the login sequence.
| | Author: | David Wharton | | File Size: | 5220 | | Last Modified: | Nov 26 22:39:34 2007 |
| MD5 Checksum: | 307fa19b182f606118812ed9ca42b885 |
|
| /// File Name: |
bytehoard-multi.txt |
Description:
|
Bytehoard version 2.1 suffers from multiple privilege escalation vulnerabilities.
| | Author: | Ernesto Alvarez | | File Size: | 20758 | | Last Modified: | Nov 26 22:33:07 2007 |
| MD5 Checksum: | 28c582a3a9d12827f6333704c996834f |
|
| /// File Name: |
gwextranet-multi.txt |
Description:
|
GWExtranet version 3.0 suffers from privilege escalation, cross site scripting, and remote file inclusion vulnerabilities.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 1829 | | Last Modified: | Nov 26 22:20:36 2007 |
| MD5 Checksum: | 8505ac430be163d75649eb8d4448beb1 |
|
| /// File Name: |
richfx-overflow.txt |
Description:
|
Multiple stack overflows exist in the RichFX nprfxins.dll ActiveX control.
| | Author: | Elazar Broad | | File Size: | 962 | | Last Modified: | Nov 26 22:14:30 2007 |
| MD5 Checksum: | 8b1215e3da7bdfd3dbde865f33c48044 |
|
| /// File Name: |
real-overflow.txt |
Description:
|
It appears that RealNetworks RealPlayer suffers from more stack overflow vulnerabilities in ierpplug.dll.
| | Author: | Elazar Broad | | File Size: | 2247 | | Last Modified: | Nov 26 22:13:40 2007 |
| MD5 Checksum: | fc4a3f5f53f505cbdae2277078a65d3c |
|
| /// File Name: |
gouae-sql.txt |
Description:
|
Gouae DWD Realty suffers from a SQL injection vulnerability.
| | Author: | The-0utl4w | | Homepage: | http://aria-security.net/ | | File Size: | 363 | | Last Modified: | Nov 26 22:10:40 2007 |
| MD5 Checksum: | 81768ff68d67e6d73163b5c491bf80b5 |
|
| /// File Name: |
softbix-sql.txt |
Description:
|
Softbiz Freelancers script version 1 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 4368 | | Last Modified: | Nov 26 22:09:27 2007 |
| MD5 Checksum: | 56584157a1cead9bb23e12823ccabd56 |
|
| /// File Name: |
wwwstatsHack.txt |
Description:
|
Simple exploit that demonstrates a script insertion vulnerability in wwwstats.
| | Author: | Jesus Olmos Gonzalez | | File Size: | 456 | | Last Modified: | Nov 26 22:02:16 2007 |
| MD5 Checksum: | ec5f4aab77adfa1a9be1add8fed7cc49 |
|
| /// File Name: |
dora-sql.txt |
Description:
|
Dora Emlak script version 2.0 suffers from a remote SQL injection vulnerability.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 615 | | Last Modified: | Nov 26 21:56:36 2007 |
| MD5 Checksum: | 9332e1ef4b8c3a8adba1985714f5dddd |
|
| /// File Name: |
iaprcommence-rfi.txt |
Description:
|
IAPR Commence version 1.3 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | ShAy6oOoN | | File Size: | 4216 | | Last Modified: | Nov 26 21:55:51 2007 |
| MD5 Checksum: | bd46682e18bbd8878540b8b08a82ed34 |
|
| /// File Name: |
runcms-overwrite.txt |
Description:
|
RunCMS versions 1.6 and below remote file overwrite exploit that makes use of disclaimer.php.
| | Author: | trueend5 | | Homepage: | http://www.kapda.ir/ | | File Size: | 4489 | | Last Modified: | Nov 26 21:54:21 2007 |
| MD5 Checksum: | 8650e6b1283922005077675e390f1cdb |
|
|
|
|
|