Packet Storm new exploits for June, 2007.
f0851623213da3a886df304206213807WheatBlog version 1.1 suffers from remote file inclusion and SQL injection vulnerabilities.
ab5adcdb7ee7973e78bf3f06411a127aBuddy Zone version 1.5 suffers from a SQL injection vulnerability in view_sub_cat.php.
6b02a46081981df486cc15d6e714f36bW3Filer version 2.1.3 remote stack overflow denial of service exploit.
f9883ae6ed53977343346b0f757b7433YouTube.com suffers from an age verification bypass vulnerability.
e315ab84e1331eec71c614ae24e85508VBZooM version 1.12 suffers from a SQL injection vulnerability.
4b80d4c45e974162b7270da7e2cc7d95XEForum suffers from a privilege escalation vulnerability via cookie modification.
8ee7b6d3bb2d0780afe128db342a7e54AMX Corp. VNC ActiveX control remote buffer overflow exploit that takes advantage of AmxVnc.dll version 1.0.13.0.
5a542260d691cdb83d713acfe3cfdbfbWebChat version 0.78 suffers from a remote SQL injection vulnerability in login.php.
50bb1ba14795269346632ba50a1f71d8GL-SH Deaf Forum versions 6.4.4 and below suffer from local file inclusion vulnerabilities.
33ba10bae756ec62ed5b742f69f4f10cb1gbb version 2.24.0 suffers from SQL injection and cross site scripting vulnerabilities.
f73b85189616edcd37f4e1e1fca2ea8aeTicket version 1.5.5 suffers from a cross site scripting vulnerability.
a1c07d9004514c4431101e175ebb8229Conti FTP server version 1.0 remote denial of service exploit.
0d50024b84b54ca804ec478b2474ba52Checkpoint VPN-1 UTM Edge suffers from a cross site request forgery vulnerability. Proof of concept included.
1d625994269984c1d11f5b64905bb3c6hpqxml.dll version 2.0.0.133 from the HP Photo Digital Imaging software package has a flaw that allows for arbitrary file overwrite on the underlying system.
ed9a0e85dfccbaaf566f375358fe5611QuickTicket version 1.2 suffers from a local file inclusion vulnerability in qti_checkname.php.
c2cbba6b68ccb9717f7d12a67062929aQuickTalk forum version 1.3 suffers from local file inclusion vulnerabilities.
e2c03a6e71b9f8724f895988242995c3Sony Network Camera SNC-P5 version 1.0 ActiveX viewer heap overflow proof of concept denial of service exploit.
7f6ec6c790d64e72e75a8d885aa218e2RealNetworks RealPlayer/Helix Player SMIL wallclock stack overflow proof of concept denial of service exploit.
5ea5648d9c4a70a3b1bb4a3f39676ce3eNdonesia version 8.4 suffers from a SQL injection vulnerability.
b05f2b8ec443ec5454390221262305e0Avaxswf.dll, a library included in the Avax Vector ActiveX version 1.3 software package from the Company Civitech, has a flaw that allows for arbitrary file overwrite on the underlying system.
a0fe9869974d6c8ac20ddbae2b54e9d8NCTAudioEditor2 ActiveX DLL NCTWMAFile2.dll version 2.6.2.157 exploit.
70fa6e91920615de4b2bf4283807bf81NCTAudioStudio2 ActiveX DLL version 2.6.1.148 CreateFile() insecure method exploit.
abe13224856a372be31e479e44f160f7WordPress version 2.2 arbitrary file upload exploit that makes use of wp-app.php.
996a3b387c8678d1724cc686d094a408EVA-Web versions 1.1 through 2.2 suffer from a remote file inclusion vulnerability in index.php3.
31e2a9e8306a224bf5bc18ed11eff6d9