Packet Storm new exploits for April, 2004.
85f526a8ef74aa7fab235cec0a12d54aSample proof of concept exploit that demonstrates the TCP vulnerability discovered by Paul A. Watson.
2edd0e1dafca116fdae393cd4f64c383Another program that demonstrates the Rose Attack eating up CPU processing time on a Windows 2000 box.
c71f6be9ef9b5b7e9aaaa903c83d697cProgram that demonstrates the Rose Attack eating up CPU processing time on a Windows 2000 box.
abe79cdc4e802902cbc75e03bd7f4406PHP-Nuke Video Gallery Module version 0.1 Beta 5 is susceptible to full path disclosure and SQL injection attacks.
54acb3d8866b74c2e6d1ec256608e9d9Linux root and Windows NT/2000 Administrator remote exploit for HP Web JetAdmin 6.5.
5cd19d9db75680df1b4b9a5cd6ca9642Sample proof of concept exploit that demonstrates the TCP vulnerability discovered by Paul A. Watson. Python version.
46637e58111353af9ab2dffa5ac6e5a3Samsung SmartEther switches allow a remote attacker to login as admin without having a correct password. All that is required is that all of the characters that can fit in the buffer for the password be filled.
3960756959bce9934971104a4c4533b7Sample proof of concept exploit that demonstrates the TCP vulnerability discovered by Paul A. Watson. Perl version.
35eafe0e58f3157a7d65afbb26e29c04Linux eXtremail versions 1.5.9 and below remote root exploit that makes use of a format string vulnerability in its logging mechanism.
eb165abefc04759a78ee48e3da5a316dBGP proof of concept denial of service utility that sends out a RST flood to BGP connection providing the attacker has already gained knowledge of the source port and sequence number.
52fe0ea2108771280df6c0b70527aa60Sample proof of concept exploit that demonstrates the TCP vulnerability discovered by Paul A. Watson. Some modifications done by J 'Swoop' Barber.
b89b0241199fd7937f1cc29a3a32e3afSample proof of concept exploit that demonstrates the TCP vulnerability discovered by Paul A. Watson.
109c83b293fa1cd19507c8d844936b19Security Corporation Security Advisory [SCSA-028]: Nuked-KlaN versions b1.4 and b1.5 allows for directory traversal attacks and global variable overwriting.
9a1ed5e3d1ff8b9aeefee4487b9fa4e5THCIISSLame version 0.2 IIS 5 SSL remote root exploit. Uses a connect back shell.
b10bb6ba9138a6d29c48e148b7207004Proof of concept exploit for the Unreal engine developed by EpicGames which has a flaw with UMOD where it handles information from files without properly filtering for dangerous characters.
babab0ce107edf023e98cb9facc781f6PostNuke 0.726 Phoenix is susceptible to multiple path disclosure and cross site scripting vulnerabilities.
26c15fd38d1d3b31e7aacd5170f5c586The phprofession 2.5 module for PostNuke is susceptible to path disclose, cross site scripting, and possible SQL injection attacks.
60a7eb530f31c704d7281ef37d66a91aMambo OS versions 4.5 and 4.6 exploit written in PHP that insets an administrator user into the database.
4ecba7a08a0a8efe0a8826d3deec68e8This program will reset a TCP connection by guessing a valid sequence number.
f4ab099f779083bfa1ce46e3cdfdea5dLocal root exploit for Squirrelmail's chpasswd utility. Tested on Suse 9. Original bug found by Matias Neiff.
19cd768af23b86e42a4d1f020bd43aebXFree version 4.3.x local root exploit that makes use of the vulnerability that exists in the use of the CopyISOLatin1Lowered() function with the 'font_name' buffer.
02f09f93f2adb9197f86c2140e23e6eeEudora 6.1 still has attachment spoofing flaws along with a Nested MIME DoS vulnerability.
aee6853e3fb6b331288d903a8813c2daKinesphere Corporation Exchange POP3 e-mail gateway remote exploit that makes use of a buffer overflow.
6ab8a0b89d6c06af47d8d320cc7ab4aephpBB modified by PRzemo version 1.8 allows for arbitrary code execution due to improper filtering allowing for remote script inclusion.
56451f2f2af87fa042870c5de4688379