evolve or die
Showing 101 - 125 of 244 RSS Feed

Files

FSA-017.txt
Posted Jun 26, 2006
Authored by Federico Fazzi

HotPlugCMS version 1.0 is susceptible to a cross site scripting flaw.

tags | exploit, xss
MD5 | 68419139cda674fc2852fc1e7cfd0fd4
ciscoXSS.txt
Posted Jun 26, 2006
Authored by Liam Romanis

Cisco Secure ACS LoginProxy.cgi has been found to be vulnerable to Cross Site Scripting attacks via both GET and POST requests due to a failure to properly filter undesirable user input. Successful exploitation could result in a loss of privacy of sensitive data, such as usernames and passwords. Exploitation details provided.

tags | exploit, cgi, xss
systems | cisco
MD5 | 845172879ee4eabd67b6dd8fc63bdca5
andysChat.txt
Posted Jun 25, 2006
Authored by SpC-x

Andy's Chat version 4.5 suffers from a remote file inclusion flaw.

tags | exploit, remote, file inclusion
MD5 | 54d0c155df2e7f3710a92df2b7696bda
hotplugCMS.txt
Posted Jun 25, 2006
Authored by peda

HotPlugCMS version 1.0 suffers from a SQL injection vulnerability.

tags | exploit, sql injection
MD5 | 5ae6290371c5086125e5f972cd621c33
rt-sa-2006-005.txt
Posted Jun 25, 2006
Authored by RedTeam Pentesting | Site redteam-pentesting.de

RedTeam has identified a SQL injection that can be triggered due to a lack of user input sanitization in phpBannerExchange versions 2.0 RC5 and below. It is possible to recover a password of a user and thereby overtake his account.

tags | exploit, sql injection
advisories | CVE-2006-3013
MD5 | 92155311e0e3fa99e3565e9110bfd108
rt-sa-2006-004.txt
Posted Jun 25, 2006
Authored by RedTeam Pentesting | Site redteam-pentesting.de

RedTeam has identified two SQL injections in phpBannerExchange versions 2.0 RC5 and below. It is possible to bypass user authentication with them.

tags | exploit, sql injection
advisories | CVE-2006-3012
MD5 | dcf1d508958fda127419fa69e6985f18
biblenet.txt
Posted Jun 25, 2006
Authored by Luny

Biblenet.net suffers from multiple cross site scripting flaws.

tags | exploit, xss
MD5 | 59f9f6f3325aa27a95dda4d9a3bc85b8
mp3search.txt
Posted Jun 25, 2006
Authored by Luny

MP3 Search/Archive version 1.2 suffer from a cross site scripting flaw.

tags | exploit, xss
MD5 | 8c545ba5555fc22c8370947c38d6d935
b3ta.txt
Posted Jun 25, 2006
Authored by Luny

B3ta.com suffers from a cross site scripting flaw.

tags | exploit, xss
MD5 | 302bf74fc34d92a0ab210209e06c2dac
APBoardSQL.txt
Posted Jun 21, 2006
Authored by 666 | Site SR-Crew.de.tt

APBoard versions 2.2-r3 and below suffer from SQL injection flaws.

tags | exploit, sql injection
MD5 | 03d63143b493ae2eed24039dd8574d2d
eprayer.txt
Posted Jun 21, 2006
Authored by Luny

Eprayer is susceptible to cross site scripting attacks.

tags | exploit, xss
MD5 | da47d3ea18f5669a9cb96cec6b8be537
iPlanet.txt
Posted Jun 21, 2006
Authored by php0t | Site zorro.hu

Setuid programs that are part of the iPlanet Messaging Server version 5.2 HotFix 1.16 try to read the configuration file msg.conf. If the environment variable CONFIGROOT is set, the configuration is read from that directory. A symlink attack is possible, and as a result it is possible to read the first line of any file with uid 0 privileges.

tags | exploit
MD5 | 928ac1ba0a1465275897f4e0bcc8bda5
confixx3-2.txt
Posted Jun 21, 2006
Authored by p0w3r

Confixx versions 3 and below suffer from a cross site scripting flaw in ftp_index.php.

tags | exploit, php, xss
MD5 | 28ad70896c517ba9b17d446625d24112
FSA-016.txt
Posted Jun 21, 2006
Authored by Federico Fazzi

ISPConfig version 2.2.3 suffers from a file inclusion vulnerability.

tags | exploit, file inclusion
MD5 | b782559adcd80e1598ecadd366d2c0fd
phpbluedragon.txt
Posted Jun 21, 2006
Authored by Federico Fazzi

PhpBlueDragon CMS version 2.9.1 suffers from a file inclusion vulnerability.

tags | exploit, file inclusion
MD5 | e361634b53e1bd8ef5e8e4ee76f5506c
confixx3.txt
Posted Jun 21, 2006
Authored by p0w3r

Confixx versions 3 and below suffer from a cross site scripting flaw.

tags | exploit, xss
MD5 | b51dd8db8c1e829026757a9d968af2c6
secunia-deluxebb.txt
Posted Jun 21, 2006
Authored by Andreas Sandblad | Site secunia.com

Secunia Research has discovered some vulnerabilities in DeluxeBB version 1.06, which can be exploited by malicious people to conduct SQL injection attacks and compromise a vulnerable system.

tags | exploit, vulnerability, sql injection
advisories | CVE-2006-2914, CVE-2006-2915
MD5 | 6ece499572842c432fef3343e082165d
fusionpolls.txt
Posted Jun 21, 2006
Authored by SpC-x

Fusion Polls appear susceptible to a remote file inclusion vulnerability.

tags | exploit, remote, file inclusion
MD5 | 8637349cdeedfcbafa7db28c5191541a
flipper.txt
Posted Jun 21, 2006
Authored by SpC-x

Flipper Poll appears susceptible to a remote file inclusion vulnerability.

tags | exploit, remote, file inclusion
MD5 | cb3c3bb37682185e6e39dffca184f9cf
RahnemaCo.txt
Posted Jun 21, 2006
Authored by Breeeeh | Site alshmokh.com

RahnemaCo appears susceptible to a remote file inclusion vulnerability.

tags | exploit, remote, file inclusion
MD5 | 345d482fef764c28f0330436b36049e0
technorati.txt
Posted Jun 21, 2006
Authored by Luny

Technorati.com appears vulnerable to cross site scripting attacks.

tags | exploit, xss
MD5 | 6d2c00500418068c204886960c33dd6e
43things.txt
Posted Jun 21, 2006
Authored by Luny

43things.com appears vulnerable to cross site scripting attacks.

tags | exploit, xss
MD5 | 4ef916296ab0d7daf0a051ac8b9dc694
blogspot.txt
Posted Jun 21, 2006
Authored by Luny

Blogspot.com appears vulnerable to cross site scripting attacks.

tags | exploit, xss
MD5 | c5506d67c5b124b617c7769095970d18
ashop.txt
Posted Jun 21, 2006
Authored by The_BeKiR, ErNe, EntriKa

The Ashop search module is susceptible to SQL injection attacks.

tags | exploit, sql injection
MD5 | 957aa3324427d9f7c8a7342221eb2682
iso.txt
Posted Jun 21, 2006
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

ISO.org appears vulnerable to cross site scripting attacks.

tags | exploit, xss
MD5 | 7a255cb0ea03b64eeb44dbd1d885a1a2
Page 5 of 10
Back34567Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Vote Likely On Facebook Privacy Policy Changes
Posted May 22, 2012

tags | headline, privacy, facebook, social
Anonymous Hacks Bureau Of Justice, Leaks 1.7GB Of Data
Posted May 22, 2012

tags | headline, hacker, government, usa, anonymous
Backdoor Sniffed In ZTE's US Android Smartphones
Posted May 22, 2012

tags | headline, phone, google, backdoor
Defend Your Phone Against Loose Networks? There's An App For that
Posted May 22, 2012

tags | headline, hacker, phone, google
Researchers Crack Samsung Galaxy S3 Handset
Posted May 21, 2012

tags | headline, hacker, linux, phone
T-Mobile Slip Exposes 1,100 Email Addresses
Posted May 21, 2012

tags | headline, privacy, phone, data loss
Google Must Answer EU Antitrust Concerns Over Search
Posted May 21, 2012

tags | headline, government, privacy, google
Anonymous Takes Out Indian CERT As Attacks Continue
Posted May 21, 2012

tags | headline, hacker, government, india, denial of service, anonymous
FBI Looking At Law Making Websites WIretap Ready
Posted May 19, 2012

tags | headline, government, privacy, fbi
Facebook Sued For $15 Billion Over Alleged Privacy Infractions
Posted May 19, 2012

tags | headline, privacy, facebook, social
View More News →
packet storm

© 2012 Packet Storm. All rights reserved.

close