Section: .. / 0801-exploits /
| /// File Name: |
oracle-pitrigsql.txt |
Description:
|
Oracle 10g R1 xdb.xdb_pitrig_pkg.pitrig_drop SQL injection exploit that grabs password hashes.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 2334 | | Last Modified: | Jan 28 12:25:52 2008 |
| MD5 Checksum: | 70b1c21d4a29418bc05ff2304ef8c90f |
|
| /// File Name: |
oracle-dropsql.txt |
Description:
|
Oracle 10g R1 xdb.xdb_pitrig_pkg.pitrig_drop SQL injection exploit that changes the system password.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 2268 | | Last Modified: | Jan 28 12:28:33 2008 |
| MD5 Checksum: | a5c30816e904606dd4f2254b3e1dcdfc |
|
| /// File Name: |
blogcms-rfi.txt |
Description:
|
BLOG:CMS version 4.2.1.c suffers from multiple remote file inclusion vulnerabilities.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 2191 | | Last Modified: | Jan 21 20:56:08 2008 |
| MD5 Checksum: | 1b45ff0b8e8f618ca94999f8f6c1c1ea |
|
| /// File Name: |
bitdefen-file.txt |
Description:
|
BitDefender Update Server suffers from an unauthorized remote file access vulnerability.
| | Author: | Oliver Karow | | Homepage: | http://www.oliverkarow.de | | File Size: | 2186 | | Last Modified: | Jan 21 20:20:13 2008 |
| MD5 Checksum: | edaf7f166c351ee7a6b3e2e9b2da820f |
|
| /// File Name: |
xchat-sql.txt |
Description:
|
X7 Chat versions 2.0.5 and below remote SQL injection exploit.
| | Author: | Fernando Quintero aka nonroot | | File Size: | 2121 | | Last Modified: | Jan 14 14:12:05 2008 |
| MD5 Checksum: | 502a6ed151011c559c40fe3cf1d61073 |
|
| /// File Name: |
miniweb-multi.txt |
Description:
|
MiniWeb version 0.8.19 suffers from directory traversal and heap overflow vulnerabilities. Exploitation details provided.
| | Author: | Hamid Ebadi | | Homepage: | http://www.bugtraq.ir/ | | File Size: | 2109 | | Last Modified: | Jan 17 00:17:53 2008 |
| MD5 Checksum: | 3cf3d1412e7d0c3d130a2bdab0fc62c7 |
|
| /// File Name: |
xoopsgal-rfi.txt |
Description:
|
XOOPS mod_gallery suffers from a Zend_Hack_key and Extract remote file inclusion vulnerability.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 2100 | | Last Modified: | Jan 6 19:53:00 2008 |
| MD5 Checksum: | 964d3c80f455de41e8458fd9004378a9 |
|
| /// File Name: |
phpnuke80-sql.txt |
Description:
|
PHP-Nuke versions below 8.0 remote SQL injection exploit that makes use of modules.php.
| | Author: | 1dt.w0lf | | Homepage: | http://rst.void.ru | | File Size: | 2072 | | Last Modified: | Jan 23 23:39:52 2008 |
| MD5 Checksum: | 54fc26abea587a476207892c7b06954e |
|
| /// File Name: |
apache-mod-rewrite.rb.txt |
Description:
|
Apache mod_rewrite escape_absolute_uri() off-by-one buffer overflow Metasploit exploit module. This affects Apache versions 1.3.28 through 1.3.36, 2.0.46 through 2.0.58, and 2.2.1 through 2.2.2.
| | Author: | Marcin Kozlowski | | File Size: | 2052 | | Related OSVDB(s): | 27588 | | Related CVE(s): | CVE-2006-3747 | | Last Modified: | Jan 7 18:37:17 2008 |
| MD5 Checksum: | e71e56d7bfd5e229f331137228932628 |
|
| /// File Name: |
bigware-sql.txt |
Description:
|
Bigware Shop version 2.0 suffers from a remote SQL injection vulnerability.
| | Author: | D4m14n | | File Size: | 2043 | | Last Modified: | Jan 29 21:21:44 2008 |
| MD5 Checksum: | 74111637376167d2776562da097bbc59 |
|
| /// File Name: |
netrisk-rfilfi.txt |
Description:
|
NetRisk versions 1.9.7 and below suffer from remote file inclusion and local file inclusion vulnerabilities.
| | Author: | S.W.A.T. | | Homepage: | http://www.xmors.com/ | | File Size: | 2036 | | Last Modified: | Jan 4 19:14:26 2008 |
| MD5 Checksum: | 46d99364cc29c3ac7e98636c88a44113 |
|
| /// File Name: |
seagull-063-xss.txt |
Description:
|
Seagull STABLE version 0.6.3 suffers from multiple cross site scripting vulnerabilities.
| | Author: | fuzion | | File Size: | 2026 | | Last Modified: | Jan 24 00:17:05 2008 |
| MD5 Checksum: | 3326cf537d1b57b15be26a61054722ce |
|
| /// File Name: |
famp3-sql.txt |
Description:
|
FaScript FaMp3 version 1 suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 2011 | | Last Modified: | Jan 15 20:07:58 2008 |
| MD5 Checksum: | b0fd4aa907f14b15b1565b6541f3399a |
|
| /// File Name: |
PR07-38.txt |
Description:
|
sIFR version 2.0.2 suffers from a cross site scripting vulnerability.
| | Author: | Jan Fry | | Homepage: | http://www.procheckup.com/ | | File Size: | 2010 | | Last Modified: | Jan 22 12:18:45 2008 |
| MD5 Checksum: | 3d1b323bea36392382d2dcaba07f93ed |
|
| /// File Name: |
smartpub-exec.txt |
Description:
|
Smart Publisher version 1.0.1 suffers from a remote code execution vulnerability in disp.php.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 2005 | | Last Modified: | Jan 29 21:23:34 2008 |
| MD5 Checksum: | ded2528b4945ea8ad859c9a4d4e715be |
|
| /// File Name: |
xforum-sql.txt |
Description:
|
Xforum version 1.4 remote SQL injection exploit that makes use of liretopic.php.
| | Author: | j0j0 | | File Size: | 1989 | | Last Modified: | Jan 15 15:20:45 2008 |
| MD5 Checksum: | f1e13e2430184edcb6235a5c6ae4c448 |
|
| /// File Name: |
kcope-icmp.c |
Description:
|
SunOS version 5.10 remote ICMP kernel crash exploit that uses a null pointer dereference.
| | Author: | Kingcope | | File Size: | 1985 | | Last Modified: | Jan 10 18:00:17 2008 |
| MD5 Checksum: | 67d916dfe08effabd4d210efd86c23a7 |
|
| /// File Name: |
agares221-sql.txt |
Description:
|
Agares PhpAutoVideo version 2.21 remote SQL injection exploit.
| | Author: | ka0x | | File Size: | 1981 | | Last Modified: | Jan 14 14:07:02 2008 |
| MD5 Checksum: | dcc451873891ff7192fdbf89996c27b3 |
|
| /// File Name: |
DSECRG08-001.txt |
Description:
|
Tuned Studios Templates suffer from a local file inclusion vulnerability in index.php.
| | Author: | Sh2kerr,Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 1967 | | Last Modified: | Jan 9 13:16:21 2008 |
| MD5 Checksum: | 6e988cba5c3d9e0dfdab65521a64f961 |
|
| /// File Name: |
fapersianhack-sql.txt |
Description:
|
FaScript FaPersianHack version 1 suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1950 | | Last Modified: | Jan 15 20:04:33 2008 |
| MD5 Checksum: | a6648d67a77fb2f4691395a761804c9d |
|
| /// File Name: |
faname-sql.txt |
Description:
|
FaScript FaName version 1 suffers from a remote SQL injection vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1946 | | Last Modified: | Jan 15 20:06:57 2008 |
| MD5 Checksum: | fc480facdb801dca35576c75eabaa354 |
|
|
|
|
|