Section: .. / 0801-exploits /
| /// File Name: |
aspired-sql.txt |
Description:
|
ASPired2Protect suffers from a login bypass vulnerability via SQL injection.
| | Homepage: | http://aria-security.net/ | | File Size: | 262 | | Last Modified: | Jan 28 12:31:02 2008 |
| MD5 Checksum: | a6b4345c35f881d627298b2115e8c907 |
|
| /// File Name: |
oracle-dropsql.txt |
Description:
|
Oracle 10g R1 xdb.xdb_pitrig_pkg.pitrig_drop SQL injection exploit that changes the system password.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 2268 | | Last Modified: | Jan 28 12:28:33 2008 |
| MD5 Checksum: | a5c30816e904606dd4f2254b3e1dcdfc |
|
| /// File Name: |
oracle-truncatesql.txt |
Description:
|
Oracle 10g R1 xdb.xdb_pitrig_pkg.pitrig_truncate SQL injection exploit that grabs password hashes.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 2338 | | Last Modified: | Jan 28 12:27:28 2008 |
| MD5 Checksum: | 4a412e9d0e2d8fe9a3efff112abeda14 |
|
| /// File Name: |
oracle-pitrigsql.txt |
Description:
|
Oracle 10g R1 xdb.xdb_pitrig_pkg.pitrig_drop SQL injection exploit that grabs password hashes.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 2334 | | Last Modified: | Jan 28 12:25:52 2008 |
| MD5 Checksum: | 70b1c21d4a29418bc05ff2304ef8c90f |
|
| /// File Name: |
oracle-xdboverflow.txt |
Description:
|
Oracle 10g R1 xdb.xdb_pitrig_pkg.pitrig_truncate buffer overflow proof of concept exploit.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 2635 | | Last Modified: | Jan 28 12:24:40 2008 |
| MD5 Checksum: | 777f96805c33108f566d3d08d6a96268 |
|
| /// File Name: |
f5asm-xss.txt |
Description:
|
The F5 BIG-IP ASM web management interface contains a cross site scripting vulnerability in the Security Report function.
| | Author: | nnposter | | File Size: | 1036 | | Last Modified: | Jan 27 22:31:47 2008 |
| MD5 Checksum: | 2559cf5cf02885b7f35bed00c2e760a0 |
|
| /// File Name: |
patchlink-pwn.txt |
Description:
|
The PatchLink Update Unix Client suffers from multiple file clobbering vulnerabilities allowing for privilege escalation.
| | Author: | Larry Cashdollar | | Homepage: | http://vapid.dhs.org | | File Size: | 1778 | | Last Modified: | Jan 25 19:16:55 2008 |
| MD5 Checksum: | accb2094f8acdb59cfd1d62387563748 |
|
| /// File Name: |
esmart-bypass.txt |
Description:
|
E-SMART CART suffers from a login bypass vulnerability via SQL injection.
| | Homepage: | http://aria-security.net/ | | File Size: | 210 | | Last Modified: | Jan 25 19:07:30 2008 |
| MD5 Checksum: | 46bb1f193df4b6e787cc9bb561452700 |
|
| /// File Name: |
predynamic-bypass.txt |
Description:
|
Pre Dynamic Institution suffers from a login bypass vulnerability via SQL injection.
| | Homepage: | http://aria-security.net/ | | File Size: | 221 | | Last Modified: | Jan 25 19:06:58 2008 |
| MD5 Checksum: | c11efbee19868311a051043388c683ca |
|
| /// File Name: |
prehotel-bypass.txt |
Description:
|
Pre Hotel and Resorts Reservation Portal suffers from a login bypass vulnerability via SQL injection.
| | Homepage: | http://aria-security.net/ | | File Size: | 231 | | Last Modified: | Jan 25 19:06:11 2008 |
| MD5 Checksum: | f29338549fe74663e11424ce255a732b |
|
| /// File Name: |
persits-overflow.txt |
Description:
|
Persits XUpload version 3.0 AddFile() remote buffer overflow exploit with calc.exe and port binding shellcode.
| | Author: | Elazar Broad | | File Size: | 6711 | | Last Modified: | Jan 25 19:03:56 2008 |
| MD5 Checksum: | 650bca174ccc4f7ea2d42f26f1d7e237 |
|
| /// File Name: |
sejoong-method.txt |
Description:
|
Sejoong Namo ActiveSquare 6 Namoinstaller.dll install method exploit.
| | Author: | plan-s | | Homepage: | http://www.plan-s.cn/ | | File Size: | 692 | | Last Modified: | Jan 25 19:01:43 2008 |
| MD5 Checksum: | 9e3cf85295dddb6e16b5cd1db5b3d716 |
|
| /// File Name: |
imageshack-poc.txt |
Description:
|
ImageShack Toolbar version 4.5.7 FileUploader class insecure method proof of concept exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 7445 | | Last Modified: | Jan 25 03:13:57 2008 |
| MD5 Checksum: | c9f37eec01b1afe5e9d468d0050e0b65 |
|
| /// File Name: |
gateway-overflow.txt |
Description:
|
Gateway WebLaunch ActiveX remote buffer overflow exploit with calc.exe and port binding shellcode.
| | Author: | Elazar Broad | | File Size: | 6739 | | Last Modified: | Jan 25 03:13:06 2008 |
| MD5 Checksum: | dd2662e9d783419b08e0da7a21538b2a |
|
| /// File Name: |
movenet-overflow.txt |
Description:
|
Move Networks Upgrade Manager Control buffer overflow exploit with calc.exe and port binding shellcode.
| | Author: | Elazar Broad | | File Size: | 6697 | | Last Modified: | Jan 25 03:12:04 2008 |
| MD5 Checksum: | a58074d9d40dae3928f1dc08f00dcc2c |
|
| /// File Name: |
flinx-sql.txt |
Description:
|
flinx versions 1.3 and below suffer from a remote SQL injection vulnerability in category.php.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1537 | | Last Modified: | Jan 25 03:10:14 2008 |
| MD5 Checksum: | c5a9f59824991b5c36257ce507a0271f |
|
| /// File Name: |
tiger-sql.txt |
Description:
|
Tiger PHP News System version 1.0b build 39 suffers from a remote SQL injection vulnerability.
| | Author: | 0in | | File Size: | 454 | | Last Modified: | Jan 25 03:08:49 2008 |
| MD5 Checksum: | 86d562aad2fbbdc279e6e428e2295a8a |
|
| /// File Name: |
seagull-lfi.txt |
Description:
|
Seagull STABLE version 0.6.3 suffers from a remote file disclosure vulnerability.
| | Author: | fuzion | | File Size: | 1292 | | Last Modified: | Jan 25 03:02:17 2008 |
| MD5 Checksum: | 9b3864ddb3fc4c06b139e595a9a8395f |
|
| /// File Name: |
phpbb2022-xsrf.txt |
Description:
|
phpBB version 2.0.22 suffers from a remote delete thread cross site request forgery vulnerability.
| | Author: | NBBN | | File Size: | 1105 | | Last Modified: | Jan 25 02:58:02 2008 |
| MD5 Checksum: | 3145ee1fe5f3c277613bd7d8184751ed |
|
| /// File Name: |
iphone-dos.txt |
Description:
|
Apple iPhone version 1.1.2 remote denial of service exploit that makes use of Safari.
| | Author: | c0ntex | | Homepage: | http://www.open-security.org | | File Size: | 645 | | Last Modified: | Jan 25 02:55:51 2008 |
| MD5 Checksum: | 0f28fba458c3357e71321054e38ead81 |
|
| /// File Name: |
seagull-063-xss.txt |
Description:
|
Seagull STABLE version 0.6.3 suffers from multiple cross site scripting vulnerabilities.
| | Author: | fuzion | | File Size: | 2026 | | Last Modified: | Jan 24 00:17:05 2008 |
| MD5 Checksum: | 3326cf537d1b57b15be26a61054722ce |
|
| /// File Name: |
efront-312-xss.txt |
Description:
|
efront e-learning LMS version 3.1.2 suffers from cross site scripting vulnerabilities.
| | Author: | fuzion | | File Size: | 1044 | | Last Modified: | Jan 24 00:14:37 2008 |
| MD5 Checksum: | 086205861befae80a69519274a357556 |
|
| /// File Name: |
comodo-exec.txt |
Description:
|
Comodo AntiVirus version 2.0 ExecuteStr() remote command execution exploit.
| | Author: | Krystian Kloskowski | | File Size: | 413 | | Last Modified: | Jan 24 00:13:27 2008 |
| MD5 Checksum: | 87f034874dab6b8dbf5cff29a04e62f1 |
|
| /// File Name: |
lycos-overflow.txt |
Description:
|
Lycos FileUploader Control buffer overflow exploit that can bind a shell to port 4444.
| | Author: | Elazar Broad | | File Size: | 6759 | | Last Modified: | Jan 24 00:12:31 2008 |
| MD5 Checksum: | af4cbaa2f63f150989aeb96121f5f9cd |
|
|
|
|
|