Section: .. / 0712-exploits /
| /// File Name: |
runcms-sql.txt |
Description:
|
RunCMS version 1.6 get admin cookie remote blind SQL injection exploit.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 6020 | | Last Modified: | Dec 28 17:25:14 2007 |
| MD5 Checksum: | 087b777aa997d970867589f82d3062e7 |
|
| /// File Name: |
auracms-admin.txt |
Description:
|
AuraCMS version 2.2 remote administrator addition exploit that makes use of admin_users.php.
| | Author: | k1tk4t | | Homepage: | http://newhack.org/ | | File Size: | 7634 | | Last Modified: | Dec 28 17:24:01 2007 |
| MD5 Checksum: | df158ce4f30ceec91a6626743af2fce6 |
|
| /// File Name: |
teamcal-rfilfi.txt |
Description:
|
TeamCalpro version 3.1.000 suffers from multiple remote and local file inclusion vulnerabilities.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 4627 | | Last Modified: | Dec 28 17:22:33 2007 |
| MD5 Checksum: | b4538f15fe51b92d7ea8c6340634d2d2 |
|
| /// File Name: |
skyfex-dos.txt |
Description:
|
SkyFex Client version 1.0 remote stack overflow proof of concept exploit that makes use of the ActiveX Start() method.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 2164 | | Last Modified: | Dec 28 17:18:39 2007 |
| MD5 Checksum: | 60acbdc4c0a19100cde1215ef246cab1 |
|
| /// File Name: |
badblue-overflow.txt |
Description:
|
BadBlue version 2.72 PassThru remote buffer overflow exploit that binds a shell to port 4444.
| | Author: | Jacopo Cervini | | Related Exploit: | badbluebof.zip | | File Size: | 4333 | | Related CVE(s): | CVE-2007-6379 | | Last Modified: | Dec 24 19:19:11 2007 |
| MD5 Checksum: | c4b6a955a3684ba4dbc25ba4c3285f11 |
|
| /// File Name: |
joomlamosdir-rfi.txt |
Description:
|
The Joomla component mosDirectory version 2.3.2 suffers from a remote file inclusion vulnerability.
| | Author: | ShockShadow | | Homepage: | http://www.yee7.com/ | | File Size: | 904 | | Last Modified: | Dec 24 19:16:10 2007 |
| MD5 Checksum: | e23084883ece1abd2fe944d65560852a |
|
| /// File Name: |
agares-rfilfi.txt |
Description:
|
Agares PhpAutoVideo version 2.21 suffers from remote and local file inclusion vulnerabilities.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1375 | | Last Modified: | Dec 24 19:14:35 2007 |
| MD5 Checksum: | 20dbcf2177650e68d90ab6a961d387cb |
|
| /// File Name: |
smf-xss.txt |
Description:
|
SimpleForum versions 4.6.2 and below suffer from a cross site scripting vulnerability.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 612 | | Last Modified: | Dec 24 19:02:12 2007 |
| MD5 Checksum: | 3b8d71dc0c877952f0d71455db0cefa4 |
|
| /// File Name: |
tikiwiki-traverse.txt |
Description:
|
The Tikiwiki CMS has a vulnerability that allows an attacker to get the first 1000 bytes from an arbitrary file through the tiki-listmovies.php script.
| | Author: | Jesus Olmos Gonzalez | | File Size: | 4142 | | Last Modified: | Dec 24 18:54:10 2007 |
| MD5 Checksum: | 5eee6c20979ac907f14a5250773f0b54 |
|
| /// File Name: |
installshield-overflow.txt |
Description:
|
The InstallShield Update Server Web Agent version 5.1.100.47363 suffers from a buffer overflow vulnerability.
| | Author: | Elazar Broad | | File Size: | 1196 | | Last Modified: | Dec 24 18:19:42 2007 |
| MD5 Checksum: | e0335db789d1c451693533c992dc9082 |
|
| /// File Name: |
dokeos-xss.txt |
Description:
|
Dokeos versions 1.8.4 and below suffer from cross site scripting vulnerabilities.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 1217 | | Last Modified: | Dec 24 18:15:00 2007 |
| MD5 Checksum: | cc5bf98f465124be2202a2bdf2034846 |
|
| /// File Name: |
myblogcms-rfi.txt |
Description:
|
MyBlog CMS suffers from a remote file inclusion vulnerability.
| | Author: | Beenu Arora | | File Size: | 338 | | Last Modified: | Dec 24 18:14:00 2007 |
| MD5 Checksum: | 36f41deef654c72db92896e627ab18c6 |
|
| /// File Name: |
zoomprayer.tgz |
Description:
|
Demonstration exploit for Zoom Player versions 6.00 beta 2 and below which suffer from a unicode related buffer overflow vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | zoomprayer.txt | | File Size: | 174 | | Last Modified: | Dec 24 15:06:13 2007 |
| MD5 Checksum: | cb173ed8790a016fa5d479a61d179912 |
|
| /// File Name: |
adaimage-traverse.txt |
Description:
|
Ada Image Server (ImgSvr) versions 0.6.21 and below suffer from a directory traversal vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | File Size: | 2137 | | Last Modified: | Dec 24 15:03:47 2007 |
| MD5 Checksum: | bf2c2031179d84f12653aab888a0d126 |
|
| /// File Name: |
vlcboffs.zip |
Description:
|
Proof of concept code that demonstrates format string and buffer overflow vulnerabilities in VideoLAN (VLC) versions 0.8.6d and below.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | vlcboffs.txt | | File Size: | 1225 | | Last Modified: | Dec 24 15:02:46 2007 |
| MD5 Checksum: | b7908e112e7acaa892b7c5240ba41697 |
|
| /// File Name: |
winuaebof.zip |
Description:
|
Proof of concept code for WinUAE versions 1.4.4 and below which suffer from a buffer overflow vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | winuaebof.txt | | File Size: | 3146 | | Last Modified: | Dec 24 14:50:59 2007 |
| MD5 Checksum: | d8bf74aded38d89e7e952c929cdb3902 |
|
| /// File Name: |
nmn-rfi.txt |
Description:
|
NmnNewsletter version 1.0.7 is susceptible to remote file inclusion attacks.
| | Author: | CraCkEr | | File Size: | 4774 | | Last Modified: | Dec 24 14:47:47 2007 |
| MD5 Checksum: | 59fdbe7befce99be4efa31de4d8196e1 |
|
| /// File Name: |
moodle-sql.txt |
Description:
|
It appears that the latest revision of Moodle may be susceptible to SQL injection attacks.
| | File Size: | 294 | | Last Modified: | Dec 24 14:46:38 2007 |
| MD5 Checksum: | 8f6d9c7245dd2434d7c77331df361e52 |
|
| /// File Name: |
domino-corrupt.txt |
Description:
|
The Domino Web Access Upload Module version 7.0.34.1 seems to suffer from a memory corruption issue that may allow the execution of arbitrary code.
| | Author: | Elazar Broad | | File Size: | 992 | | Last Modified: | Dec 24 14:41:22 2007 |
| MD5 Checksum: | 101c51fc90693db05a4fceb3648876e8 |
|
| /// File Name: |
megacheatz-sql.txt |
Description:
|
MeGaCheatz version 1.1 suffers from multiple remote SQL injection vulnerabilities.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 2619 | | Last Modified: | Dec 24 14:38:11 2007 |
| MD5 Checksum: | 2f6feb6cbff3c91ca747b2b3c47e15bb |
|
| /// File Name: |
themesitescript-rfi.txt |
Description:
|
ThemeSiteScript version 1.0 suffers from a remote file inclusion vulnerability.
| | Author: | Koller | | Homepage: | http://xaker.name/ | | File Size: | 1044 | | Last Modified: | Dec 24 14:37:17 2007 |
| MD5 Checksum: | eb4d8013f9baf6d709646f2271d94c75 |
|
| /// File Name: |
websihirbazi-sql.txt |
Description:
|
websihirbazi version 5.1.1 suffers from a remote blind SQL injection vulnerability.
| | Author: | bypass | | File Size: | 1586 | | Last Modified: | Dec 24 14:34:26 2007 |
| MD5 Checksum: | 9ce508c38df794abcc0010fe4506a72b |
|
|
|
|
|