the original cloud security
Showing 76 - 84 of 84 RSS Feed

Files

alisveristrSQL.txt
Posted Dec 7, 2005
Authored by B3g0k

Alisveristr E-Commerce is susceptible to SQL injection attacks during the login phase of usage.

tags | exploit, sql injection
MD5 | 9ba76e5ba7fdd0e4f2889d7965f9b150
zencart_126d_xpl.html
Posted Dec 3, 2005
Authored by rgod | Site retrogod.altervista.org

Zen-Cart versions 1.2.6d and below are susceptible to blind SQL injection and remote command execution attacks. Exploit included.

tags | exploit, remote, sql injection
MD5 | a507099ecbfb1ccd22d23ed6ed3eca57
freeHelpInject.txt
Posted Dec 3, 2005
Authored by BiPi_HaCk | Site NightmareSecurity.net

It appears that the Free Help Desk software by Help Desk Reloaded leaves the install.php file in place post installation, allowing remote attackers to create accounts without any authentication or access.

tags | exploit, remote, php
MD5 | 59d3001cc14911fe89d6c74dc9fab115
AD20051202.txt
Posted Dec 3, 2005
Authored by Sowhat | Site secway.org

WinEggDropShell Eternity version 1.7 is susceptible to preauth stack overflows. Proof of concept denial of service exploit included.

tags | exploit, denial of service, overflow, proof of concept
MD5 | e2a03f701231a1f11975df0e44fadadb
phpMyChat0146.txt
Posted Dec 3, 2005
Authored by Louis Wang | Site fortinet.com

phpMyChat version 0.14.6 is susceptible to cross site scripting flaws in start_page.css.php, style.css.php, and users_popupL.php.

tags | exploit, php, xss
MD5 | aca7825d44871757fae3eb67dd784b18
EdgewallSQL.txt
Posted Dec 3, 2005
Authored by David Maciejak

Edgewall Trac version 0.9 is susceptible to a SQL injection attack due to a lack of sanity checking on the group variable.

tags | exploit, sql injection
MD5 | 7df147c2ac1998ed9869129658f50506
GameFlyXSS.txt
Posted Dec 3, 2005
Authored by Matthew Benenati

GameFly, the popular online video game rental service, suffers from a cross site scripting flaw.

tags | exploit, xss
MD5 | fd363324b7ba22cd1ed151f9e8b1cda4
webCalSQL.txt
Posted Dec 2, 2005
Authored by lwang

WebCalendar version 0.1.0 is susceptible to SQL injection attacks via activity_log.php and edit_report_handler.php. layers_toggle.php is susceptible to CRLF injection. Exploitation details provided.

tags | exploit, php, sql injection
MD5 | 46ca1f68ff71adaff29ee3145854d376
winCreateExp.txt
Posted Dec 2, 2005
Authored by nima salehi | Site Ashiyane.com

Microsoft Windows CreateRemoteThread denial of service exploit.

tags | exploit, denial of service
systems | windows
MD5 | 5802c87f4a75cb494ecd81206bc890ba
Page 4 of 4
Back1234Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close