Packet Storm new exploits for August, 2008.
184cd67a37917e6fd64905a12d080661Mimo Multimedia CMS suffers from a remote SQL injection vulnerability.
57753ed22fd73cdba9561afb16bafdf6Proof of concept exploit for the local root vulnerability in Postfix. Original discovery by Sebastian Krahmer.
e50ae990fd30f85f0bfef02ad05927b0@mail version 5.42 suffers from multiple cross site scripting vulnerabilities.
cb6f43b09dc5d8db5d406e149c695169OpenSharePoint version 0.4.0 RC3 suffers from remote SQL injection, cross site scripting, and cross site request forgery vulnerabilities.
227d9adef73b8f2eb1305c87d7330205Open Media Collectors Database version 1.0.6 suffers from cross site scripting and cross site request forgery vulnerabilities.
e65c4773c1c2723a5b9ccab3ce9d6438WeBid version 0.5.4 suffers from SQL injection and cascading style sheet editing vulnerabilities.
335cef97e7354fd8b02fb9e3f927c68dmyPHPNuke versions below 1.8.8_8rc2 suffer from cross site scripting and remote SQL injection vulnerabilities.
c4538c573fd2f683930218f2e7e36064Words Tag Script version 1.2 suffers from a SQL injection vulnerability.
22e3f522816cf3404917fdc26c9a4635Web Directory Script version 1.5.3 suffers from a SQL injection vulnerability.
79368d862335903a7e309c5f4da8c602Brim version 2.0.0 suffers from remote SQL injection and cross site scripting vulnerabilities.
f1327883034190b13e571ff582d8936fFriendly Technologies read/write register/read files exploit.
d61b3427133c88dc3f1060f4c457bea6Full PHP Emlak Script suffers from a remote SQL injection vulnerability in landsee.php.
0d78a18e819716d1f441a5ad3024be3eLogMeIn remote access utility Active-X memory consumption denial of service exploit.
e12c30e8f96bf5c07afba2181139dc26Najdi.si Toolbar Active-X remote buffer overflow proof of concept exploit.
4a245592d331db41db8244311ef61d31Invision Power Board versions 2.3.5 and below remote exploit that brute forces, attempts IDS evasion, and more.
a4f25aaae79e8aa14fd8d1ea7af1c1d9Sun Solaris 8/9/10 and OpenSolaris versions below snv_96 snoop utility remote exploit.
808193e9a074d86648b31609b4886635dotProject version 2.1.2 suffers from cross site scripting and SQL injection vulnerabilities.
1b9c35808b2257054fb9d7ccb5a78d0cMercadolibre.com suffers from cross site scripting and remote javascript insertion vulnerabilities.
26ab2008a67c3c1880359d16155ec80fFriendly Technologies Active-X related remote command execution exploit that leverages fwRemoteCfg.dll.
4ca334d8cb11512389b2598b255c2e16Friendly Technologies Active-X remote buffer overflow exploit that leverages fwRemoteCfg.dll.
89e10b34b9b9cc0ea532944e20fc1f6fAcoustica Mixcraft versions 4.2 Build 98 and below mx4 file local buffer overflow exploit.
88d4635a1cb1ff5e03e8fe080c837dd4Kyocera Command Center suffers from a directory traversal vulnerability.
b1469751eb65919a9b8435ad1055dc09Search Engine suffers from a remote SQL injection vulnerability in viewcat.php.
63fc260d89bd02c73d5d2647cb1356d3iG Shop suffers from a remote SQL injection vulnerability in display_review.php.
e73b22fbec473ddd5750c3cbf0d66b60