Section: .. / 0703-exploits /
| /// File Name: |
MOPB-sessionunset.txt |
Description:
|
Month of PHP Bugs - PHP versions below 4.4.5 and below 5.2.1 _SESSION unset() local exploit.
| | Author: | Stefan Esser | | Homepage: | http://hardened-php.net/ | | File Size: | 1994 | | Last Modified: | Mar 26 22:52:06 2007 |
| MD5 Checksum: | d6f54b24b651fbafff73fd4feca2ca0d |
|
| /// File Name: |
icebb-1.0.txt |
Description:
|
IceBB version 1.0-rc5 remote create Admin exploit.
| | Author: | Hessam-x | | Homepage: | http://www.hessamx.net | | File Size: | 1984 | | Last Modified: | Mar 26 22:35:19 2007 |
| MD5 Checksum: | 9c3ccd258c21eb6b5130b74eba9b15f2 |
|
| /// File Name: |
mercur-v1.txt |
Description:
|
Mercur IMAPD exploit that makes use of several bugs in the NTLM implementation. It gives the attacker complete control over a memcpy to a stack variable and the outcome is a denial of service (crash).
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 1965 | | Last Modified: | Mar 20 23:07:46 2007 |
| MD5 Checksum: | 87ed6a45532c6dd6285bbe5460e56edc |
|
| /// File Name: |
joomlacom-rfi.txt |
Description:
|
Joomla com_joomlaboard 1.1.x Branch suffers from multiple remote file inclusion vulnerabilities.
| | Author: | Cold Zero | | File Size: | 1901 | | Last Modified: | Mar 26 22:20:41 2007 |
| MD5 Checksum: | 9fdc68eca03a9629576a8b5093c01223 |
|
| /// File Name: |
joomlamambo-rfi.txt |
Description:
|
Joomla/Mambo component SWmenuFre version 4.0 suffers from a remote file inclusion vulnerability.
| | Author: | Cold Zero | | File Size: | 1893 | | Last Modified: | Mar 23 21:03:06 2007 |
| MD5 Checksum: | 352021f60edafc6c6ee37d882f550e1d |
|
| /// File Name: |
xoops-blind.txt |
Description:
|
Xoops blind SQL injection exploit for print.php. Currently affects all versions.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1890 | | Last Modified: | Mar 28 22:22:08 2007 |
| MD5 Checksum: | 66ec680fd32bc0067496746440e31e8a |
|
| /// File Name: |
MOPB-fdf.txt |
Description:
|
Month of PHP Bugs - PHP versions 5.2.0 and below ext/filter FDF post filter bypass exploit.
| | Author: | Stefan Esser | | Homepage: | http://hardened-php.net/ | | File Size: | 1874 | | Last Modified: | Mar 19 23:46:08 2007 |
| MD5 Checksum: | 7232a87f3e1275ce8ec773d3f141c2a5 |
|
| /// File Name: |
hp-dos.txt |
Description:
|
HP JetDirect print servers suffers from a remote denial of service flaw.
| | Author: | Handrix | | Homepage: | http://www.morx.org/ | | File Size: | 1811 | | Last Modified: | Mar 29 02:17:34 2007 |
| MD5 Checksum: | 0d35f082f181f32b807931a800f07f59 |
|
| /// File Name: |
serendipity-sql.txt |
Description:
|
Serendipity version 1.1.1 suffers from a SQL injection vulnerability.
| | Author: | Samenspender | | File Size: | 1798 | | Last Modified: | Mar 6 00:31:48 2007 |
| MD5 Checksum: | 499b8b633b3bcc8dd3c8987b3221fc7b |
|
| /// File Name: |
vista-pwn.txt |
Description:
|
The Microsoft Vista Windows mail client is susceptible to a code execution vulnerability when a user clicks on a maliciously prepared link. Vista's mail client will execute any executable file if a folder exists with the same name.
| | Author: | Kingcope | | File Size: | 1795 | | Last Modified: | Mar 23 21:54:11 2007 |
| MD5 Checksum: | 576571e3d4a3bfef2c4fda6141412fd7 |
|
| /// File Name: |
pb-sql.txt |
Description:
|
Particle Blogger version 1.1.2 remote SQL injection exploit that makes use of Post.PHP.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1745 | | Last Modified: | Mar 20 11:04:05 2007 |
| MD5 Checksum: | 1a38bd225956c948465942776bf22320 |
|
| /// File Name: |
jgbbs-sql.txt |
Description:
|
JGBBS version 3.0beta1 Search.ASP "Author" SQL injection exploit.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org | | File Size: | 1738 | | Last Modified: | Mar 13 22:34:09 2007 |
| MD5 Checksum: | a0a173b66e3337563c419b5eb13a8a62 |
|
| /// File Name: |
wsnguest-sql.txt |
Description:
|
WSN Guest version 1.2.1 Comments.PHP SQL injection exploit.
| | Author: | UniquE-Key | | File Size: | 1726 | | Last Modified: | Mar 19 23:29:30 2007 |
| MD5 Checksum: | 24e0d298f960f2dadf84ae8e60b9f8fd |
|
| /// File Name: |
fantastico-lfi.txt |
Description:
|
Fantastico in all versions of CPanel 10.x suffers from a local file inclusion vulnerability.
| | Author: | cyb3rt, 020 | | File Size: | 1697 | | Last Modified: | Mar 13 21:11:22 2007 |
| MD5 Checksum: | 44959ebb638a503a2e52ed963cd48840 |
|
| /// File Name: |
mplayer-overflow.txt |
Description:
|
MPlayer version 1.0rc1 suffers from a buffer overflow that can be exploited with a maliciously crafted video file.
| | Author: | Moritz Jodeit | | File Size: | 1681 | | Last Modified: | Mar 6 00:25:03 2007 |
| MD5 Checksum: | 35a80921e5becfbcc7d8bc5cfb21d662 |
|
| /// File Name: |
advisory-php-gaestebuch-en.txt |
Description:
|
PHP-Gaestebuch versions 6.3 and below suffer from a HTML injection vulnerability that can allow for cross site scripting attacks.
| | Author: | Trew | | Homepage: | http://trew.icenetx.net/ | | File Size: | 1680 | | Last Modified: | Mar 8 17:49:33 2007 |
| MD5 Checksum: | e96009e3d4f28ab83d7f80c155f39a2a |
|
| /// File Name: |
MOPB-sessiondecode.txt |
Description:
|
Month of PHP Bugs - PHP version 4.4.5 and 4.4.6 session_decode() double free proof of concept exploit.
| | Author: | Stefan Esser | | Homepage: | http://hardened-php.net/ | | File Size: | 1667 | | Last Modified: | Mar 29 02:03:23 2007 |
| MD5 Checksum: | ac64d9748ea8b560e47f968fba2f7558 |
|
| /// File Name: |
phpfusion2-sql.txt |
Description:
|
The PHP-Fusion Calendar_Panel module suffers from a remote SQL injection vulnerability in show_event.php.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1629 | | Last Modified: | Apr 2 18:48:45 2007 |
| MD5 Checksum: | 5f95af930c27dac3b82f063ca8367c85 |
|
| /// File Name: |
wp-compromise.txt |
Description:
|
It appears that the WordPress blogging software was compromised and backdoored on Feb 25th, 2007 on the WordPress site.
| | Author: | Ivan Fratric | | File Size: | 1613 | | Last Modified: | Mar 8 17:33:33 2007 |
| MD5 Checksum: | f35a0b1a03674d0546e774db9d353d4d |
|
| /// File Name: |
rps62-sql.txt |
Description:
|
RPS version 6.2 SQL injection exploit.
| | Author: | s0cratex | | File Size: | 1554 | | Last Modified: | Mar 8 17:41:04 2007 |
| MD5 Checksum: | 77c4660ac82ece56ba2af200963a3f81 |
|
| /// File Name: |
advisory-481.txt |
Description:
|
FlexBB version 1.0.0 10005 Beta Release 1 suffers from a SQL injection vulnerability when parsing the user supplied cookie value.
| | Author: | trueend5 | | Homepage: | http://www.kapda.ir/ | | File Size: | 1485 | | Last Modified: | Mar 28 22:24:43 2007 |
| MD5 Checksum: | 3d55dac35b5fdff4341cec44eab21230 |
|
| /// File Name: |
mybb-change.txt |
Description:
|
MyBB suffers from a change password vulnerability.
| | Author: | HACKERS PAL | | Homepage: | http://www.soqor.net/ | | File Size: | 1456 | | Last Modified: | Apr 2 17:47:07 2007 |
| MD5 Checksum: | 5bfaff25882035091a22070b75e179e3 |
|
|
|
|
|