Packet Storm new exploits for June, 2005.
6a33061f5d9ec915bb5a28d98edb37f1php 2.0.15 remote command execution exploit for viewtopic.php.
23b500675fdc94044a614e8292017bf9XOOPS versions 2.0.11 and below suffer from cross site scripting and SQL injection vulnerabilities.
af1cf3535febd29375a29411d13db4bbCommunity Link Pro Web Editor's Login.cgi script allows for remote code execution. Details on proper exploitation provided.
6fcf91a8d8b18dd115cf86f026958166WordPress 1.5.1.2 XMLRPC Interface SQL injection exploit that allows for remote command execution.
ce0fdd5e9eaafc05dff2dd948ea52e56WordPress versions 1.5.1.2 and below suffer from cross site scripting and SQL injection flaw.
8327b854df403cd160ea4930f97806f2Original imTRBBS versions 1.02 and below allow for remote command execution due to a lack of properly sanitized input in im_trbbs.cgi.
e2f1f4aed623bf85112f072bdb54fbc4A heap corruption vulnerability exists in the javaprxy.dll in Internet Explorer 6. Sample denial of service exploit included.
ca5d482698e5f9c6feeab50732b88227peercast version 1211 and below format string vulnerability exploit. FreeBSD version.
3ac111ba31587f6a38794505bfe7480bHosting Controller suffers from a cross site scripting flaw.
08cab0f5b3506af6f9266f460bc84b7bASPNuke versions 0.80 and below remote SQL injection exploit using comment_post.asp.
17f91b9995ed195bdd4d9b6322b7a733Infradig Systems Inframail Advantage Server Edition 6.0 suffers from multiple buffer overflows. Sample denial of service exploits included.
9ffd0b4310c54c96ad38236984614c66Community forum suffers from a cross site scripting flaw. Exploitation provided.
3eda9b0e950a5224de3379c5dd0b1c9eld.so from Solaris 9 and 10 does not check the LD_AUDIT environment variable when running setuid and setgid binaries, allowing a malicious party to run arbitrary code with elevated privileges.
02b0fa3de66ae2c25e511bb747ec86a9Nokia remote restart Bluetooth nickname exploit.
fd481422d913224ffc22db92933ccc97A denial of service vulnerability exists in the True North Software IA eMailServer Corporate Edition version 5.2.2. Build: 1051. Input to the IMAP4 LIST command is not properly checked. Perl exploit provided.
49463a1e24a79a951d044d3dadaa0090ASPNuke versions 0.80 and below SQL injection exploit that makes use of article.asp.
50df7997265f2e27e14b828757e8416fCross site scripting, HTTP Response splitting, and SQL injection vulnerabilities exist in ASP Nuke versions 0.80 and below.
0cd8b64d7f6e4e78b1a45cd1bfff8a67Veritas Backup Exec Agent CONNECT_CLIENT_AUTH Request exploit that makes use of a stack overflow.
0de18c58e6ab3fabdfbfa6b59a0a5c3bIP-DATALOOK versions 1.3 and below local denial of service exploit.
6647d59cdb87b50fed488336655dca48PHP-Fusion versions 6.00.105 and below suffer from allowing their database backups to be remotely downloadable due to being accessible in the webroot.
5e6eabb5d51a59ceae4f51a7ae65acd4SQL injection and cross site scripting vulnerabilities exist in ActiveBuyAndSell version 6.2.
ee5551b4a5153e5d71c800e2d028bb19traceroute under Solaris 10 is susceptible to a buffer overflow in the handling of the -g argument. Sample exploitation included.
12bfb0bfe843c6f3aff37ac9ae831254UBB Threads versions 6.5.2 Beta and below are susceptible to cross site scripting, SQL injection, HTTP response splitting, and local file inclusion vulnerabilities.
7626f1caa27e08854e48e3244bdbab85Windows SMB client transaction response handling exploit that makes use of the flaw detailed in MS05-011.
7b7b92ef6de49bb01c9943401145c68e