Packet Storm new exploits for October, 2007.
b8850194b0738c65eb4e403ac8879cf1ISPworker version 1.21 suffers from a remote file disclosure vulnerability in download.php.
d4cffdfc29150b20d013d7117e1fdd2aModuleBuilder version 1.0 suffers from a remote file disclosure vulnerability.
176200e6d0e88ad2ab7115f6be4c1b1cILIAS versions 3.8.3 and below suffer from a cross site scripting vulnerability.
e2cf2c6d9b0345c010809efe44cb8a12phpFaber URLInn version 2.0.5 is susceptible to a remote file inclusion vulnerability.
aa3ec3909a003ef50aefc9885845f05eminiBB version 2.1 suffers from a remote SQL injection vulnerability.
32ec948a368bf1c5324024b9afd116f0Django version 0.96 suffers from a cross site request forgery vulnerability in the administrative panel.
504747b3d7afb6e64ae7ce12ec45e9afProfileCMS version 1.0 suffers from a remote shell upload vulnerability.
cc9a0d86156cc39fe512179d41031b7cMySpace Resource Script (MSRC) version 1.21 suffers from a remote file inclusion vulnerability.
0ba39ef71aee45e02c91539364b43533Omnistar Live suffers from a cross site scripting vulnerability.
340f3a10d92b45cb8261cd6a98f03d9dAGTC-Membership system version 1.1a remote add administrator exploit.
cea2966bc9432a1cf7c3a00af3ec44abGOM Player version 2.1.6.3499 remote overflow exploit that makes use of GomWeb3.dll version 1.0.0.12. Spawns calc.exe.
1a969f1e631cb5f7a248e6899e0ec867Kodak Image Viewer code execution exploit that takes advantage of the MS07-055 TIFF vulnerability. Spawns calc.exe.
a47148e6cad48f39a925a5d6ebaf22f0Sony CONNECT Player M3U playlist processing stack buffer overflow local exploit.
9a99e9a20cb08c637c0d7c4c24bdd3aaSAXON version 5.4 is susceptible to a SQL injection vulnerability.
dceaa951132307f07f9c85e02598c610SAXON version 5.4 is susceptible to a cross site scripting vulnerability.
1e0202d3a8c8e4462972c4f33bb5ee32Smart-Shop Shopping Cart is susceptible to cross site scripting vulnerabilities.
e284f976e6cbaf5fcae51e53a096c7c3teatro version 1.6 suffers from a remote file inclusion vulnerability.
f0d8d793c7e5d007c1d6792453709587Sige version 0.1 suffers from a remote file inclusion vulnerability in sige_init.php.
6c01010e4ac57933b0b79f2c279eaf66FireConfig version 0.5 suffers from a remote file disclosure vulnerability in dl.php.
3872222df077af09a025d9eef31a2eaaemagiC CMS.NET version 4.0 suffers from a remote SQL injection vulnerability.
88e8e7c70253eb140cbd222f2f6ca9e3CaupoShop Pro version 2.x suffers from a remote file inclusion vulnerability.
cecc5c4e58d8e92e05dbffe2ec650f68JobSite Professional version 2.0 suffers from remote SQL injection vulnerabilities.
0dd8bb1c7c55ed44c8dff47da3e0594fGoSamba version 1.0.1 suffers from multiple remote file inclusion vulnerabilities.
ded539734a495905010157a9316bafeeWordPress version 2.3 is susceptible to a cross site scripting vulnerability in edit-post-rows.php.
088bb9a48f19e34fa6db61543f841501