Packet Storm new exploits for March, 2006.
6e2870b95f22691307873e48540a84e2WebAlbum versions 2.02pl and below remote command execution exploit.
2b35b203d44d7aed2694f32e67e072e7Simple PHP Blog versions 0.4.7.1 and below remote command execution exploit.
7c70cec2483fff42dfa53c91bc399c04Plogger versions Beta 2.1 and below SQL injection / administrative credential disclosure exploit.
25502883a23d70764a1f398028c6f987php iCalendar versions 2.21 and below remote command execution exploit.
f70d7a193e21ebc56efff2d4e4516b9cPHPCollab version 2.x sendpassword.php SQL injection exploit.
ac41a36d71628110c5f784cf1f0cc7a1PHP-Stats versions 0.1.9.1 and below option overwrite and remote command execution exploit.
930029cef7df6f23dda1fd0779e46c75Nodez version 4.6.1.1 Mercury remote exploit that makes use of arbitrary inclusion and authentication bypass flaws.
9f37c5ac993fd242788d489b76a9b7e0Gallery versions 2.0.3 and below stepOrder[] remote command execution exploit.
f7d7eb5902ff27604aec1548d2b1d76fClaroline versions 1.7.4 and below scormExport.inc.php remote command execution exploit.
ecddead0475064e486087781be6614daXHP CMS versions 0.5 and below remote command execution exploit.
eb4b5abd648f0f4d9c2689f36df1b6f8Proof of concept code for a buffer overflow in Zdaemon version 1.08.01.
b77a63d3c7ac98a933d080d8fb24173eWarcraft III Replay Parser version 1.8c is susceptible to remote command execution and cross site scripting flaws.
03c6ab62bc77543de49700758cb67c7eDBBS versions 2.0-alpha and below suffer from a SQL injection flaw.
aaa14d05ed0a0eb76b963629c5ba20a9Oxygen versions 1.x and below suffer from a SQL injection flaw.
9404e60c934957579c63b1af028dd155MediaSlash is susceptible to a remote file inclusion flaw that allows for code execution.
ccb56bcfefbf6e55cc05253ce7e638c3X-Changer version 0.2 Demo is susceptible to SQL injection attacks.
ec3325e82e060343cad546ac54ea6b90EzASPSite version 2.0 RC3 and below remote SQL injection exploit.
288348ce057b31fd0f4c35b11a628b9dSkull-Splitter's PHP Downloadcounter for Wallpapers version 1.0 suffers from SQL injection flaws.
f61c33eefe0a96021fdcf5284257b253Skull-Splitter's PHP Guestbook versions 2.6 and 2.7 suffer from cross site scripting flaws.
f643f73628a9e41a1a4253b0c7e49aa2RealPlayer versions 10.5 and below SWF buffer overflow proof of concept exploit.
37dd416c1d302552b1a0aa4f9b5b6bccPhxContacts is susceptible to cross site scripting and SQL injection attacks.
682e49133762d2607f1aef82b0a0c42bPHPKIT version 1.6.03 suffers from a cross site scripting flaw.
43608d5b3192dfdb0aaf8d553df66d9aArabPortal version 2.0 is susceptible to cross site scripting attacks.
635af60594927f71337350ab4f33c537Microsoft Internet Explorer createTextRang download shellcoded exploit. Second version.
92cc6b9991f51241d8147d69aca202db