Packet Storm new exploits for May, 2007.
88ce2a935e348eaada9bfaf7bdcfdfeaphpPgAdmin versions 3.5 through 4.1.1 suffer from a cross site scripting vulnerability.
41861f832f4f404ef0ec4c6b49c08d35RMForum suffers from a direct database download vulnerability.
7d692e4ef81abedb792f54ca73ec3893Zindizayn Okul Web Sistemi version 1.0 suffers from a SQL injection vulnerability allowing for login bypass.
2df5f3c34a378de4d1c8763414d3c6deEudora version 7.1.0.9 (IMAP FLAGS) remote SEH overwrite exploit that executes calc.exe.
adc472a9782300d452fe16055e649264EDraw Office Viewer component unsafe method exploit that wipes system.ini.
54917b0d39240a41cbb62d8830a6c4fbZenturi ProgramChecker ActiveX arbitrary file download/overwrite exploit.
08ad9abdbfe6cdf80072b801fd725d69Apache version 2.0.58 mod_rewrite remote overflow exploit for win32. Binds a shell to port 4445.
d13fe4b22535aa7ea1182a7adefdbf1eInternet Explorer 6 / Ademco, co., ltd. ATNBaseLoad100 module remote buffer overflow exploit.
56c58cedd347bd08af09e4f1274a51d5webCMS version 1.00 suffers from a direct database download vulnerability.
b9ddf9e0b2e849198725fa028f9256acPligg version 9.5 is susceptible to a guessable confirmation code for password reset.
5597d486303de0a4db8f126c6df61634Digirez version 3.4 suffers from cross site scripting vulnerabilities.
073da0002be51c3f8355a2c6218f06e1A format string vulnerability exists in vpnd. By running the vpnd command with maliciously crafted arguments, a local user can trigger the vulnerability which may lead to arbitrary code execution with system privileges. This file exploits this vulnerability on Mac OS X.
d4ec295389ec8876f7c4a5ab80e10776UltraISO versions 8.6.2.2011 and below local buffer overflow exploit that executes calc.exe.
77ce42012847759f9f065f2e0e5f3316UltraISO versions 8.6.2.2011 and below local buffer overflow exploit that executes calc.exe.
ca9ddbaf8d9a04bf8301d168381abc42Vizayn Urun Tanitim Sistemi version 0.2 suffers from a remote SQL injection vulnerability.
3900b189c191ea2ef7a1ec52e958232cPheap version 2.0 administrative bypass and remote code execution exploit.
3429af595f537c94f06aec89e83b9fd1AdminBot version 9.0.5 suffers from a remote file inclusion vulnerability in live_status.lib.php.
db1fcebf183a69827b88459336331523Inout Search Engine remote code execution exploit that affects all versions.
1d149695148bdf19c2c3dbab3428d9a1Joomla Component Phil-a-Form versions 1.2.0.0 and below remote SQL injection exploit.
7b230309b2dc27df84cd928e0612a621WAnewsletter versions 2.1.3 and below suffer from a remote file inclusion vulnerability.
1c47306dcc3cc5b00256654cfd8447e8Vistered Little version 1.6a suffers from a remote file disclosure vulnerability.
60888e1c8e8bb8b90f0f6879c8e4b689Fundanemt versions 2.2.0 and below exploit that makes use of a remote code execution vulnerability in spellcheck.php.
ea310d949c5c4e364176d62ae8940178Frequency Check version 0.1 Beta suffers from remote file inclusion vulnerabilities.
e7a7a55927225d74e932d9a50f19d36fTROforum version 0.1 suffers from a remote file inclusion vulnerability in admin.php.
0c91e3b3092002eac724bd3505c0082d