preserving full disclosure
Showing 101 - 125 of 247 RSS Feed

Files

FuzzyLime CMS 3.03a Local File Inclusion
Posted Jun 17, 2009
Authored by StAkeR

FuzzyLime CMS versions 3.03a and below suffer from local file inclusion and file corruption vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
MD5 | 975d753b19444b0b622e5aba0a0eb372
TekBase All-In-One 3.1 SQL Injection
Posted Jun 17, 2009
Authored by n3wb0ss

TekBase All-In-One version 3.1 suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
MD5 | f3bcbc315cef5f48d89de52fab9b13c1
phpFK 7.03 Local File Inclusion
Posted Jun 17, 2009
Authored by ahmadbady

phpFK version 7.03 suffers from a local file inclusion vulnerability in page_bottom.php.

tags | exploit, local, php, file inclusion
MD5 | a82759bd3e1374033cae98262bd97190
XOOPS 2.3.3 File Disclosure
Posted Jun 16, 2009
Authored by Luca De Fulgentis

XOOPS versions 2.3.3 and below suffer from a remote arbitrary file disclosure vulnerability.

tags | exploit, remote, arbitrary, info disclosure
MD5 | d3383d0571dec0813287ad40736edd9b
Green Dam URL Processing Buffer Overflow
Posted Jun 16, 2009
Authored by Trancer | Site rec-sec.com

This Metasploit module exploits a stack-based buffer overflow in Green Dam Youth Escort version 3.17 in the way it handles overly long URLs. By setting an overly long URL, an attacker can overrun a buffer and execute arbitrary code. This module uses the .NET DLL memory technique by Alexander Sotirov and Mark Dowd and should bypass DEP, NX and ASLR.

tags | exploit, overflow, arbitrary
MD5 | 5a08d81c955f53de749118fe4a316053
McAfee 3.6.0.608 Active-X Data Write
Posted Jun 16, 2009
Authored by callAX | Site goodfellas.shellcode.com.ar

McAfee version 3.6.0.608 Policy Manager arbitrary data write vulnerability that leverages naPolicyManager.dll.

tags | exploit, arbitrary, activex
MD5 | 4c5df1fcd6485bd93819ee73fa5af730
phpMyTourney Remote File Inclusion
Posted Jun 16, 2009
Authored by Am!r | Site irist.ir

phpMyTourney suffers from a remote file inclusion vulnerability in adminfunctions.php. This is using the same variable as was discovered in September of 2007.

tags | exploit, remote, php, code execution, file inclusion
MD5 | c9f20b1023cdbda2c0b35fff5f1faac0
Carom3D 5.06 Denial Of Service
Posted Jun 16, 2009
Authored by LiquidWorm | Site zeroscience.mk

Carom3D version 5.06 unicode buffer overrun and denial of service exploit.

tags | exploit, denial of service, overflow
MD5 | 18f8e3a30bcb80cd9f8c33d58d6733f1
Joomla Jumi Blind SQL Injection
Posted Jun 16, 2009
Authored by Chip D3 Bi0s

Joomla Jumi component remote blind SQL injection exploit.

tags | exploit, remote, sql injection
MD5 | 618b2e887f79a3e25691b03cfcfc0f6b
Phportal SQL Injection
Posted Jun 16, 2009
Authored by XORON

Phportal version 1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 1fd55c6c3823142e8f98dbcad92fc29b
Netgear DG632 Denial Of Service
Posted Jun 15, 2009
Authored by Tom Neaves | Site tomneaves.co.uk

The Netgear DG632 router suffers from a remote denial of service vulnerability.

tags | exploit, remote, denial of service
MD5 | 3ea7235afb1bf8d9e7732c3d144eb1ad
Netgear DG632 Authentication Bypass
Posted Jun 15, 2009
Authored by Tom Neaves | Site tomneaves.co.uk

The Netgear DG632 router suffers from a remote authentication bypass vulnerability.

tags | exploit, remote, bypass
MD5 | 4e97805ae8520e6ace344301fb1cde47
phpCollegeExchange 0.1.5c SQL Injection
Posted Jun 15, 2009
Authored by SirGod | Site insecurity.ro

phpCollegeExchange version 0.1.5c suffers from a remote SQL injection vulnerability in listing_view.php.

tags | exploit, remote, php, sql injection
MD5 | 1435b5e0946bec97b48d7ceefb95d72b
Joomla iJoomla RSS Blind SQL Injection
Posted Jun 15, 2009
Authored by XORON

Blind remote SQL injection exploit for the Joomla iJoomla RSS component.

tags | exploit, remote, sql injection
MD5 | 686ac400adcafb1c96e1339a3e5a3a1d
Apple QuickTime CRGN Atom Overflow
Posted Jun 15, 2009
Authored by webDEViL

Apple QuickTime CRGN Atom stack overflow exploit that creates a malicious .mov file.

tags | exploit, overflow
systems | apple
MD5 | 960a151888b6385f6673b834eda30cc2
vBulletin Radio And TV Player Cross Site Scripting
Posted Jun 15, 2009
Authored by d3v1l

The vBulletin Radio and TV Player add-on suffers from cross site scripting, iframe injection, and redirect vulnerabilities.

tags | exploit, vulnerability, xss
MD5 | 9d30bf5c833defd5e2234ff1d2a085be
TorrentTrader Classic 1.09 SQL Injection
Posted Jun 15, 2009
Authored by Janek Vind aka waraxe | Site waraxe.us

TorrentTrader Classic version 1.09 suffers from information leakage, forced database backup, and multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
MD5 | 3efb1d3b6eb1efe55bc19a375db2cc85
WordPress Photoracer SQL Injection
Posted Jun 15, 2009
Authored by Kacper | Site devilteam.pl

The WordPress Photoracer plugin version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | b1d8ee75997910943b39ac151ab323de
SugarCRM 5.2.0e Code Execution
Posted Jun 15, 2009
Authored by Francesco Ongaro, Antonio Parata, Giovanni Pellerano | Site ush.it

SugarCRM versions 5.2.0e and below suffer from a remote code execution vulnerability.

tags | exploit, remote, code execution
MD5 | f81ce65d75a4b29de7ebbf23b6cb8179
AdaptWeb 0.9.2 LFI / SQL Injection
Posted Jun 15, 2009
Authored by SirGod | Site insecurity.ro

AdaptWeb version 0.9.2 suffers from local file inclusion and remote SQL injection vulnerabilities.

tags | exploit, remote, local, vulnerability, sql injection, file inclusion
MD5 | ef34cc401c4229cd027748e7745a3394
Elvin BTS 1.2.0 XSS / LFI / SQL Injection
Posted Jun 15, 2009
Authored by SirGod | Site insecurity.ro

Elvin BTS version 1.2.0 suffers from remote SQL injection, cross site scripting, cross site request forgery, and local file inclusion vulnerabilities.

tags | exploit, remote, local, vulnerability, xss, sql injection, file inclusion, csrf
MD5 | c13a26271db1a6d777a40ddf773a9989
DB Top Sites 1.0 Local File Inclusion
Posted Jun 15, 2009
Authored by SirGod | Site insecurity.ro

DB Top Sites version 1.0 suffers from a local file inclusion vulnerability in index.php.

tags | exploit, local, php, file inclusion
MD5 | 7276359065dc4404ab5b73e46eb1e570
DB Top Sites 1.0 Code Execution
Posted Jun 15, 2009
Authored by SirGod | Site insecurity.ro

DB Top Sites version 1.0 remote command execution exploit.

tags | exploit, remote
MD5 | 7c40b84001425d40461b8fff28bc115d
Impleo Music Collection 2.0 XSS / SQL Injection
Posted Jun 15, 2009
Authored by SirGod | Site insecurity.ro

Impleo Music Collection version 2.0 suffers from remote SQL injection and cross site scripting vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
MD5 | 3314aaacab092a943b541c5e85581790
Evernew Free Joke Script 1.2 Password Changer
Posted Jun 15, 2009
Authored by Hakxer

Evernew Free Joke Script version 1.2 remote change password exploit.

tags | exploit, remote
MD5 | 52dcbd188b32e1b21aec358f84cf8d87
Page 5 of 10
Back34567Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Armenia Jails Bredolab Botmaster For 4 Years
Posted May 24, 2012

tags | headline, government, cybercrime, botnet, fraud
Police Given 350 Mobile Fingerprint Scanners For Olympics
Posted May 24, 2012

tags | headline, government, privacy, britain
Researcher Needles Oracle Over Java Security
Posted May 24, 2012

tags | headline, flaw, oracle, java
35,000 Passwords Reset After BigPond GameArena Hacked
Posted May 24, 2012

tags | headline, hacker, data loss, password
Indian SMBs Facing Advanced Attack Threats
Posted May 23, 2012

tags | headline, hacker, india, denial of service, symantec
Jailed Facebook Hack Brit Targeted Justin Bieber's Girlfriend
Posted May 23, 2012

tags | headline, hacker, britain, facebook, social
123-Reg Hosted Websites Go Offline After 'China Attack'
Posted May 23, 2012

tags | headline, china, denial of service
Google To Alert Thousands Over Loss Of Internet Risk From DNSChanger Trojan
Posted May 23, 2012

tags | headline, malware, trojan, dns, google
Microsoft's Rozzle Bolsters Drive-By Malware Defenses
Posted May 22, 2012

tags | headline, malware, microsoft
Chinese Social Network To Recruit In-House Censor
Posted May 22, 2012

tags | headline, china, social, twitter, censorship
View More News →
packet storm

© 2012 Packet Storm. All rights reserved.

close