Section: .. / 0701-exploits /
| /// File Name: |
MsgEng.py.txt |
Description:
|
Heap overflow exploit for msgeng.exe in Computer Associates BrightStor ARCserve Backup.
| | Author: | Winny Thomas | | Related File: | LS-20060313.pdf | | File Size: | 3279 | | Last Modified: | Jan 29 11:35:08 2007 |
| MD5 Checksum: | 007fb8db9780785af6cfbae92d4c03d4 |
|
| /// File Name: |
galeria-lfi.txt |
Description:
|
Local file inclusion exploit for zd_numer.php in Galeria Zdjec versions 3.0 and below.
| | Author: | ajann | | File Size: | 3259 | | Last Modified: | Jan 30 23:16:04 2007 |
| MD5 Checksum: | ed0e666593ebe110ce6d291e86dd7173 |
|
| /// File Name: |
oracle--isa-xss.txt |
Description:
|
The Oracle Reports Web Cartridge (RWCGI60) is susceptible to cross site scripting vulnerabilities.
| | Author: | Vicente Aguilera Diaz | | File Size: | 3197 | | Last Modified: | Jan 19 20:38:57 2007 |
| MD5 Checksum: | 65270c446e599966e5729e8f948b2d04 |
|
| /// File Name: |
aiocp-bypass.txt |
Description:
|
AIOCP versions 1.3.009 and below suffer from a login bypass vulnerability due to another SQL injection flaw.
| | Author: | Coloss | | File Size: | 3076 | | Last Modified: | Jan 13 20:03:53 2007 |
| MD5 Checksum: | d9029f6c2fc59e53e0d3c2f01c26a401 |
|
| /// File Name: |
stego-crack.txt |
Description:
|
Steganography version 1.7.1 and 1.8 suffer from a vulnerability that allows access to encrypted files.
| | Author: | NtWaK0, NoPh0BiA | | File Size: | 3011 | | Last Modified: | Jan 13 16:30:00 2007 |
| MD5 Checksum: | a145599fa19c14ceadb35ab1bac9b06d |
|
| /// File Name: |
phpgenlib-rfi.txt |
Description:
|
Generic PHP remote file inclusion exploit framework.
| | Author: | X-Turk | | File Size: | 2945 | | Last Modified: | Jan 30 22:54:18 2007 |
| MD5 Checksum: | ba3e49e8bcc3b517ab2b46f3ec2a4cb1 |
|
| /// File Name: |
microcms35.txt |
Description:
|
Micro CMS version 3.5 remote file inclusion exploit.
| | Author: | ilker Kandemir | | File Size: | 2937 | | Last Modified: | Jan 13 19:51:09 2007 |
| MD5 Checksum: | cf1dc9b125479366ba6be62ac8c4766d |
|
| /// File Name: |
qksmtp.pl.txt |
Description:
|
QK SMTP versions 3.01 and below remote buffer overflow exploit that makes use of RCPT TO.
| | Author: | acaro | | File Size: | 2936 | | Last Modified: | Jan 1 22:12:52 2007 |
| MD5 Checksum: | ef122d66506af00a279bb7acd2b24c47 |
|
| /// File Name: |
votepro40-exec.txt |
Description:
|
Vote-Pro version 4.0 remote code execution exploit that makes use of poll_frame.php.
| | Author: | r0ut3r | | File Size: | 2932 | | Last Modified: | Jan 24 00:11:50 2007 |
| MD5 Checksum: | 77fd1fc711a31cbbaf61d993e5dae923 |
|
| /// File Name: |
ppc-rfi.txt |
Description:
|
ppc engine suffers from a remote file inclusion flaw.
| | Author: | IbnuSina | | File Size: | 2916 | | Last Modified: | Jan 13 17:55:04 2007 |
| MD5 Checksum: | 96815d24c4045e92fc84f60919eee714 |
|
| /// File Name: |
exploit-of-the-apes.rb.txt |
Description:
|
Month of Apple Bugs - Exploit for the Application Enhancer (APE), which is affected by a local privilege escalation vulnerability that allows local users to gain root privileges.
| | Author: | LMH, Johnny Pwnerseed | | Homepage: | http://projects.info-pull.com/moab/index.html | | File Size: | 2812 | | Last Modified: | Jan 13 17:43:30 2007 |
| MD5 Checksum: | ba29c0afc8360ed6c048e0ad74fcdca5 |
|
| /// File Name: |
navicopa.meta.txt |
Description:
|
This Metasploit module exploits a classical stack overflow in Navicopa Web Server 2.01 version. Credit to h07 for the discovery of this vulnerability. This is a port to the original h07 c code.
| | Author: | acaro | | File Size: | 2653 | | Last Modified: | Jan 13 18:54:08 2007 |
| MD5 Checksum: | fa87642387987833c8864f03a9fb99c1 |
|
| /// File Name: |
ezboxxezroot.txt |
Description:
|
Ezboxx Portal System Beta versions 0.7.6 and below suffer from numerous cross site scripting, path disclosure, and SQL injection vulnerabilities.
| | Author: | Doron P, Eyal G | | Homepage: | http://www.bugsec.com/ | | File Size: | 2623 | | Last Modified: | Jan 13 19:40:45 2007 |
| MD5 Checksum: | 1146e409b61103ec682d7cf92f356491 |
|
| /// File Name: |
MOAB-15-01-2007.rb.txt |
Description:
|
Month of Apple Bugs - Proof of concept exploit for a local privilege escalation vulnerability on Mac OS X. Multiple binaries inside the /Applications directory tree are setuid root, but remain writable by users in the admin group (ex. first user by default in a non-server Mac OS X installation), allowing privilege escalation.
| | Author: | LMH | | Homepage: | http://projects.info-pull.com/moab/ | | File Size: | 2520 | | Last Modified: | Jan 19 22:11:37 2007 |
| MD5 Checksum: | 6762c468a26eb0f93504c63d879495d9 |
|
| /// File Name: |
arsdigita-traverse.txt |
Description:
|
Ars Digita Community System (ACS) versions 3.4.10 and below suffer from a directory traversal vulnerability.
| | Author: | Elliot Kendall | | File Size: | 2517 | | Last Modified: | Jan 19 22:36:56 2007 |
| MD5 Checksum: | bccdd934e449d00f30ebc95270f1c1bb |
|
| /// File Name: |
mercur-imap.txt |
Description:
|
Mercur Messaging 2005 IMAP remote buffer overflow exploit.
| | Author: | acaro | | File Size: | 2406 | | Last Modified: | Jan 15 22:28:32 2007 |
| MD5 Checksum: | 1b381d141fbf7ecd27cebbed61f42012 |
|
| /// File Name: |
prdelka-vs-GNU-mbsebbs.c |
Description:
|
GNU/Linux mbse-bbs versions 0.70.0 and below local root exploit that makes use of a stack overflow.
| | Author: | prdelka | | Homepage: | https://prdelka.blackart.org.uk/ | | File Size: | 2374 | | Last Modified: | Jan 19 22:29:43 2007 |
| MD5 Checksum: | ceb4aa8738a2e9e9172391ee528ad4f4 |
|
| /// File Name: |
MOAB-16-01-2007.rb.txt |
Description:
|
Month of Apple Bugs - Proof of concept exploit for Colloquy. Colloquy is vulnerable to a format string vulnerability in the handling of INVITE requests, that can be abused by remote users and requires no interaction at all, leading to a denial of service and potential arbitrary code execution.
| | Author: | LMH,Kevin Finisterre | | Homepage: | http://projects.info-pull.com/moab/ | | File Size: | 2324 | | Last Modified: | Jan 19 22:14:45 2007 |
| MD5 Checksum: | cdd6c9e0e59a872c2790c1ee93429dcd |
|
| /// File Name: |
bitweaver-xss.txt |
Description:
|
Bitweaver version 1.3.1 is susceptible to cross site scripting attacks.
| | Author: | CorryL | | Homepage: | http://www.x0n3-h4ck.org | | File Size: | 2255 | | Last Modified: | Jan 24 01:00:32 2007 |
| MD5 Checksum: | 31e2f77c874db26053b7f2fcac26e80a |
|
| /// File Name: |
eiq-dos.txt |
Description:
|
Remote exploitation of a null pointer dereference exception allows for remote attackers to crash the EIQ Network Security Analyzer DataCollector service. Proof of concept code included.
| | Author: | Ethan Hunt | | File Size: | 2250 | | Last Modified: | Jan 13 18:39:57 2007 |
| MD5 Checksum: | f3b7362c12eb882f06fbaf7707f94a45 |
|
| /// File Name: |
xero-rfi.txt |
Description:
|
Xero Portal version 1.2 local file inclusion exploit.
| | Author: | XORON | | File Size: | 2204 | | Last Modified: | Jan 26 22:19:32 2007 |
| MD5 Checksum: | 756c7e0650eeb11ea0d4ba52e3936bf9 |
|
|
|
|
|