This Metasploit module exploits a vulnerability in the history component of TWiki. By passing a 'rev' parameter containing shell metacharacters to the TWikiUsers script, an attacker can execute arbitrary OS commands.
2484d1f845372d8b4a4a3cc3df399f1eEasy FTP Server version 1.7.0.2 remote buffer overflow exploit.
1142b312a82ca80068306eaf46c006e3This Metasploit module exploits a vulnerability in the picEditor.php script of Coppermine Photo Gallery. When configured to use the ImageMagick library, the 'quality', 'angle', and 'clipval' parameters are not properly escaped before being passed. NOTE: Use of the ImageMagick library is a non-default option. However, a user can specify its use at installation time.
348630ab822d73fca3d6902525794666vBseo version 3.1.0 suffers from a local file inclusion vulnerability.
372aa0c7a496a2bee62b4492d386796aVideoSearchScript Pro version 3.5 suffers from a cross site scripting vulnerability.
9941f2cc175fc630645236a59b24df7cvBulletin version 4.0.2 suffers from a cross site scripting vulnerability.
36a5005ae53eb8772ae6e2a6f1192a52Coupons suffers from a direct access administrative bypass vulnerability.
5887f82eafb23b35b11b2de6d5e62b05Symev CMS suffers from a remote SQL injection vulnerability.
0ce7c0745339ccc89ffad3c0ba5ed6bbphpBugTracker version 1.0.1 suffers from a file disclosure vulnerability.
32cef8a0f4f80ef27d5cef18089af9b4FlatFile System suffers from a remote password disclosure vulnerability.
acfecb7f1d688db654eb1e793f527726TimeClock cross site request forgery add administrator exploit.
3bfacf29cc5c18ec223dbb2d9eb2c3aephpAutoVideo suffers from a cross site request forgery vulnerability.
4d30bc155571221a02a79eee40088322The Joomla Recipe component suffers from remote SQL injection vulnerabilities.
2936aa3564c4f114a551d37c12793881Litespeed Web Server version 4.0.12 suffers from cross site request forgery and cross site scripting vulnerabilities.
ce74ef87bb422bc0736a8e2839357e5fWSC CMS suffers from a remote SQL injection vulnerability that allows for authentication bypass.
8e0d13e098b3311e67ede3b4f67af506Amelia CMS suffers from a remote SQL injection vulnerability.
cfa93d450d437ae2b513d6180829d1d3Easy FTP Server version 1.7.0.2 HTTP remote buffer overflow exploit.
f64bf41e2f128c4b5b6a732075f25d65Kusaba X versions 0.9 and below suffer from cross site request forgery and cross site scripting vulnerabilities.
b7f49e39bb6a267c46ea1006f7dcf93dTrixbox version 2.2.4 suffers from a remote SQL injection vulnerability in PhonecDirectory.php.
cd1129948fa822023b87fafceca0a22fPHP-Kit version 1.6.1 suffers from a remote SQL injection vulnerability in member.php.
46555c0554552701c2f04dd08748fd4aThe Joomla Community Polls component suffers from a local file inclusion vulnerability.
231b0080cfec609c4a5154dca2612837SphereCMS version 1.1 Alpha suffers from a remote blind SQL injection vulnerability.
b7e2a1e5e04606fb621b1425e933a696New-CMS version 1.08 suffers from cross site request forgery, cross site scripting, local file inclusion and shell upload vulnerabilities.
39d6ce1a45885ec8d935830e7ce48508Open Source Classifieds version 1.1.0 Alpha suffers from cross site scripting and remote SQL injection vulnerabilities.
6ce5bef409461fcc5c50fc32b3a1b57eFileApp version 1.7 for iPhone / iPod remote denial of service exploit.
c0099f631a52cda4c304d5792578c7fd