Packet Storm new exploits for November, 2004.
3fb9ef413eed6565c35700d6937a1ff3Remote denial of service exploit for Jana server 2 versions 2.4.4 and below.
22ecc84b906bffd5bc9d5d101be7570fUniversal remote exploit for the buffer overflow vulnerability in Mercury Mail 4.01 (Pegasus) IMAP server.
df3670644acf63435dd9a77c428eb3cfMercury Mail 4.01 (Pegasus) IMAP remote buffer overflow exploit.
f016a7e00aaf8c91e97a3f1f0e9aa791Remote proof of concept exploit for Orbz versions 2.10 and below which suffer from a buffer overflow in the password field of the join packet.
a35a9e2f70a3186a2be48a01942794d8Remote exploit for IPSwitch WS_FTP version 5.03 that binds a shell to port 4444.
bdf3611955ed2ad4e6a80a5a5b0adfa7A local privilege escalation vulnerability exists with MDaemon 7.2 that allows a user to gain SYSTEM level access.
ab98079c7abf569bb92b4d337713545bRemote denial of service exploit for games using the Serious engine. Generates UDP packets that have fake players enter a room. The system fails to limit the amount of users that can enter.
0ad8fba41b88800236ee2330ecee1271Simple remote exploit for the SQL injection vulnerability discovered in PHPNews.
3542945d30741fed34e9faa2fc32c92aphpBB versions below 2.0.11 suffer from addition SQL injection and directory traversal flaws.
3db6cdf08707e750aade88f2b48d5986PnTresMailer code browser version 6.03 is susceptible to path disclosure and directory traversal attacks.
62590d39a08e1474f473776fb3efc8d7MailEnable Professional Edition version 1.52 and MailEnable Enterprise Edition version 1.01 both suffer from a remote buffer overflow in their IMAP service. Full exploit included.
102445417417101b51b8c9f52b3d0bd8Exploit that makes use of the PHP memory limit vulnerability discovered in July of 2004.
7aadceaf9298a2f92f0e123e7baaf4afEZshopper is susceptible to a directory traversal attack. Exploitation included.
e2a9fe55accc25d065eb53bbcbb714c4Exploit for the Atari800 atari emulator. Allows for local privilege escalation to root six different ways.
ed16586d6fb2d85c7c96dabf3e66909fRemote test exploit for Star Wars Battlefront versions 1.11 and below that checks for buffer overflow and memory access flaws.
87011dbb3c49943fe2adbe77eb7ab5b5Proof of concept exploit for a buffer overflow vulnerability that exists in Open Dc Hub version 0.7.14.
e3de5e9b0a3845f37783964004b88ef8Exploit for the Winamp vulnerability existing in versions 5.06 and below making use of the IN_CDDA.dll remote buffer overflow.
b39f45ee690142f7e8e9e75f7fd5da0fSTG Security Advisory: Due to an input validation flaw, Zwiki is vulnerable to cross site scripting attacks.
ee307c282c2b83d763b5b423918746e0STG Security Advisory: Due to an input validation flaw, JSPWiki is vulnerable to cross site scripting attacks.
cea8374c7e4fd06bbe51b34084d7006eSTG Security Advisory: KorWeblog suffers from a directory traversal vulnerability that malicious attackers can get file lists of arbitrary directories.
bf3673a09ff52d676ea067fb60869653Remote proof of concept exploit for Soldier of Fortune II versions 1.0.3 gold and below that suffer from a typical sprintf() overflow.
cc8c46b475c92d775136290efc2c773eHalo: Combat Evolved versions 1.05 and below remote denial of service exploit.
5257b93c92f2170e0d3e1cce4033571bCoffeeCup Direct FTP 6.2.0.62 and CoffeeCup Free FTP 3.0.0.10 both suffer from an overflow that allows for arbitrary code execution. Exploit included that spawns a shell on port 5555.
0e0db67aab85ed49f32a9859c5300151WodFtpDLX versions below 2.3.2.97 are susceptible to a classic buffer overflow attack. Denial of service exploit included.
7f450c6c70ab44fd46130137dfaffb1f