Section: .. / 0801-exploits /
| /// File Name: |
8e6-bypass.txt |
Description:
|
The HTTP URL filtering function provided by the 8e6 Technologies R3000 Internet Filter can be bypassed by simply splitting the HTTP request line (which contains the URI) into multiple packets.
| | Author: | nnposter | | File Size: | 1093 | | Last Modified: | Jan 17 00:03:15 2008 |
| MD5 Checksum: | cfb478e555033f51de080a891c1db3c5 |
|
| /// File Name: |
pixelpost-sql.txt |
Description:
|
PixelPost 1.7 remote blind SQL injection exploit that makes use of the Content-Length header.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 4598 | | Last Modified: | Jan 16 23:57:37 2008 |
| MD5 Checksum: | 48080eca3033ed47e6ab8f2318a4a92e |
|
| /// File Name: |
alitalk-multi.txt |
Description:
|
ALITALK version 1.9.1.1 suffers from severe remote SQL injection vulnerabilities.
| | Author: | tomplixsee | | File Size: | 4525 | | Last Modified: | Jan 16 23:55:49 2008 |
| MD5 Checksum: | 5bb7248777544f0cff8035d5ee8fbb18 |
|
| /// File Name: |
mailbee-rfd.txt |
Description:
|
MailBee WebMail Pro version 4.1 suffers from a remote file disclosure vulnerability.
| | Author: | -=M.o.B=- | | File Size: | 191 | | Last Modified: | Jan 16 23:52:15 2008 |
| MD5 Checksum: | 2cb34270f954118a07147d8a9b523a48 |
|
| /// File Name: |
quicktimebof.zip |
Description:
|
The Apple Quicktime Player versions 7.3.1.70 and below HTTP error message buffer overflow exploit.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | File Size: | 23540 | | Last Modified: | Jan 16 00:49:57 2008 |
| MD5 Checksum: | 582c598cb520c2e8aa051f3efe9ae9de |
|
| /// File Name: |
rtssentry-overflow.txt |
Description:
|
RTS Sentry Digital Surveillance buffer overflow exploit that makes use of CamPanel.dll version 2.1.0.2.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 3886 | | Last Modified: | Jan 16 00:31:37 2008 |
| MD5 Checksum: | 685635d822b87a4ae1e5bdf34ce6ecb1 |
|
| /// File Name: |
max-upload.txt |
Description:
|
Max's File Uploader allows for arbitrary PHP shell uploads.
| | Author: | Xcross87 | | File Size: | 452 | | Last Modified: | Jan 15 20:09:45 2008 |
| MD5 Checksum: | 22401c88fb461e31e0be4271cd348a1a |
|
| /// File Name: |
famp3-sql.txt |
Description:
|
FaScript FaMp3 version 1 suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 2011 | | Last Modified: | Jan 15 20:07:58 2008 |
| MD5 Checksum: | b0fd4aa907f14b15b1565b6541f3399a |
|
| /// File Name: |
faname-sql.txt |
Description:
|
FaScript FaName version 1 suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1946 | | Last Modified: | Jan 15 20:06:57 2008 |
| MD5 Checksum: | fc480facdb801dca35576c75eabaa354 |
|
| /// File Name: |
fapersianpetition-sql.txt |
Description:
|
FaScript FaPersianHack Petition suffers from a remote SQL injection vulnerability in show.php.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1575 | | Last Modified: | Jan 15 20:05:41 2008 |
| MD5 Checksum: | 570b30f0dc3c2642010c3089ec5543c4 |
|
| /// File Name: |
fapersianhack-sql.txt |
Description:
|
FaScript FaPersianHack version 1 suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1950 | | Last Modified: | Jan 15 20:04:33 2008 |
| MD5 Checksum: | a6648d67a77fb2f4691395a761804c9d |
|
| /// File Name: |
flexnet-execute.txt |
Description:
|
Macrovision FlexNet DownloadAndExecute method exploit that makes use of isusweb.dll.
| | Author: | Elazar Broad | | File Size: | 792 | | Last Modified: | Jan 15 19:56:49 2008 |
| MD5 Checksum: | 4a3668226b507bb6d030915499608b86 |
|
| /// File Name: |
lulieblog-bypass.txt |
Description:
|
LulieBlog version 1.0.1 suffers from a remote administrative bypass vulnerability.
| | Author: | ka0x | | File Size: | 1185 | | Last Modified: | Jan 15 18:05:19 2008 |
| MD5 Checksum: | 4c3e9fcfe16e8e8bdedaf89b04551d25 |
|
| /// File Name: |
richstrong-sql.txt |
Description:
|
RichStrong CMS remote SQL injection exploit that makes use of showproduct.asp.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 3266 | | Last Modified: | Jan 15 15:21:34 2008 |
| MD5 Checksum: | 6242307d6f420fc255d27402adea1d19 |
|
| /// File Name: |
xforum-sql.txt |
Description:
|
Xforum version 1.4 remote SQL injection exploit that makes use of liretopic.php.
| | Author: | j0j0 | | File Size: | 1989 | | Last Modified: | Jan 15 15:20:45 2008 |
| MD5 Checksum: | f1e13e2430184edcb6235a5c6ae4c448 |
|
| /// File Name: |
cpndrv-dos.c |
Description:
|
Cisco Systems VPN Client IPSec driver local kernel system pool corruption proof of concept exploit. Tested on CVPNDRVA.sys version 5.0.02.0090.
| | Author: | mu-b | | File Size: | 1909 | | Last Modified: | Jan 15 15:18:45 2008 |
| MD5 Checksum: | 9a950675a63993053f7e068a1d348056 |
|
| /// File Name: |
f5-xss.txt |
Description:
|
The F5 BIG-IP web management interface is susceptible to a cross site scripting vulnerability via the search functionality. Tested against version 9.4.3.
| | Author: | nnposter | | File Size: | 2669 | | Last Modified: | Jan 14 17:37:05 2008 |
| MD5 Checksum: | 2c83b193605b1fc8b97dd6bff5a1a5f9 |
|
| /// File Name: |
flexnet-overwrite.txt |
Description:
|
Macrovision FlexNet Connect download manager is susceptible to an arbitrary file download/overwrite vulnerability.
| | Author: | Elazar Broad | | File Size: | 2690 | | Last Modified: | Jan 14 17:35:29 2008 |
| MD5 Checksum: | cd3597bf1d417eee3e6df8ec35c24189 |
|
| /// File Name: |
pMachinePro-241-xss.txt |
Description:
|
pMachine Pro version 2.4.1 is susceptible to cross site scripting attacks.
| | Author: | fuzion | | File Size: | 627 | | Last Modified: | Jan 14 17:14:33 2008 |
| MD5 Checksum: | fe83c58f4225d3e5f7f95a30b17d3c91 |
|
| /// File Name: |
nuvico-heap.txt |
Description:
|
NUVICO DVR NVDV4 / PdvrAtl module with PdvrAtl.DLL version 1.0.1.25 remote heap overflow exploit for Internet Explorer 7 on Windows XP SP2.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2436 | | Last Modified: | Jan 14 14:30:00 2008 |
| MD5 Checksum: | 72b01f1ef6de7519689522b9fb5ea7e2 |
|
| /// File Name: |
xchat-sql.txt |
Description:
|
X7 Chat versions 2.0.5 and below remote SQL injection exploit.
| | Author: | Fernando Quintero aka nonroot | | File Size: | 2121 | | Last Modified: | Jan 14 14:12:05 2008 |
| MD5 Checksum: | 502a6ed151011c559c40fe3cf1d61073 |
|
| /// File Name: |
garment-lfi.txt |
Description:
|
Garment Center suffers from a local file inclusion vulnerability in index.cgi.
| | Author: | Smasher | | File Size: | 284 | | Last Modified: | Jan 14 14:08:47 2008 |
| MD5 Checksum: | 5fdca9f1efed89c1acd04649766bbf5a |
|
| /// File Name: |
agares221-sql.txt |
Description:
|
Agares PhpAutoVideo version 2.21 remote SQL injection exploit.
| | Author: | ka0x | | File Size: | 1981 | | Last Modified: | Jan 14 14:07:02 2008 |
| MD5 Checksum: | dcc451873891ff7192fdbf89996c27b3 |
|
| /// File Name: |
binn-sql.txt |
Description:
|
Binn SBuilder suffers from a remote blind SQL injection vulnerability.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 2785 | | Last Modified: | Jan 14 14:04:51 2008 |
| MD5 Checksum: | 3b1f0ee0373c08968f1b1d6f0aa20e9c |
|
| /// File Name: |
minimal-disclose.txt |
Description:
|
minimal Gallery version 0.8 suffers from a remote file disclosure vulnerability.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1355 | | Last Modified: | Jan 14 14:03:48 2008 |
| MD5 Checksum: | 5c2b5a8da6af2ae27b4148af6b3eea96 |
|
|
|
|
|