Section: .. / 0603-exploits /
| /// File Name: |
vbulletinXSSpasswd.txt |
Description:
|
vBulletin versions 3.0.12 through 3.5.3 are susceptible to cross site scripting.
| | Author: | imei addmimistrator | | File Size: | 1477 | | Last Modified: | Mar 3 04:09:00 2006 |
| MD5 Checksum: | 1d1e7f3c2996a5952be1f855e95d55a0 |
|
| /// File Name: |
joomla.txt |
Description:
|
Joomla! CMS version 1.0.7 is susceptible to arbitrary file creation and denial of service flaws.
| | Author: | Foster | | Homepage: | http://rst.void.ru/ | | File Size: | 1578 | | Last Modified: | Mar 3 03:20:09 2006 |
| MD5 Checksum: | cbd8a8e2905436bf59ace2879d86f52c |
|
| /// File Name: |
Advisory-17.txt |
Description:
|
WordPress version 2.0.1 suffers from cross site scripting, path disclosure, and directory listing flaws.
| | Author: | K4P0 | | Homepage: | http://NeoSecurityTeam.net/ | | File Size: | 8099 | | Last Modified: | Mar 3 03:16:42 2006 |
| MD5 Checksum: | fc67013206b6707896634932471b8d86 |
|
| /// File Name: |
FusionPHP.txt |
Description:
|
FusionPHP version 1.0 is susceptible to cross site scripting, remote command execution, and remote file inclusion flaws. Exploitation details provided.
| | Author: | 0o_zeus_o0 | | Homepage: | http://www.elitemexico.org | | File Size: | 2013 | | Last Modified: | Mar 3 03:14:01 2006 |
| MD5 Checksum: | c9feafdc236ba3023ab7a0cb9394caa4 |
|
| /// File Name: |
xosx-passwd.pl.txt |
Description:
|
/usr/bin/passwd local root exploit for Mac OS X.
| | Author: | vade79 | | File Size: | 2022 | | Last Modified: | Mar 3 03:10:39 2006 |
| MD5 Checksum: | 0b8e98d93c5a075a72311800794cc7c5 |
|
| /// File Name: |
woltlabBB2x.txt |
Description:
|
Woltlab Burning Board 2.x is susceptible to SQL injection and cross site scripting vulnerabilities. Exploitation details provided.
| | Author: | Mustafa Can Bjorn | | Homepage: | http://www.nukedx.com | | File Size: | 1894 | | Last Modified: | Mar 2 22:47:37 2006 |
| MD5 Checksum: | 2fe6023ee04779a32375970d6123e33f |
|
| /// File Name: |
SMBlog.txt |
Description:
|
SMBlog version 1.2 is susceptible to a remote command execution vulnerability. Exploitation details provided.
| | Author: | Botan, B3g0k, Seyh, Nistiman | | File Size: | 248 | | Last Modified: | Mar 2 22:44:16 2006 |
| MD5 Checksum: | 08731864fd7dd2ca93aa05bf1c1c8527 |
|
| /// File Name: |
4images.txt |
Description:
|
4images versions 1.7.1 and below suffer from a remote code execution vulnerability. Exploitation details provided.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2702 | | Last Modified: | Mar 2 22:42:53 2006 |
| MD5 Checksum: | 6339c00f34725372eba032b04f571e40 |
|
| /// File Name: |
PEHEPE-XSS.txt |
Description:
|
The PEHEPE Membership Management System is susceptible to cross site scripting and remote command execution vulnerabilities.
| | Author: | Yunus Emre Yilmaz | | File Size: | 1323 | | Last Modified: | Mar 2 05:30:06 2006 |
| MD5 Checksum: | 57c900167f4630182e410d8d12d91d89 |
|
| /// File Name: |
moz-15.txt |
Description:
|
Thunderbird's HTML rendering engine insufficiently filters the loading of external resources from inline HTML attachments. External files are download ed even if the "Block loading of remote images in mail messages" option is enabled. Proof of concept exploitation details provided.
| | Author: | crashfr | | Homepage: | http://www.sysdream.com | | File Size: | 4440 | | Last Modified: | Mar 2 05:27:21 2006 |
| MD5 Checksum: | 4053197c29d9f9058cde76a8f1d4144e |
|
| /// File Name: |
qwikiXSS.txt |
Description:
|
QwikiWiki version 1.4 is susceptible to cross site scripting attacks.
| | Author: | Dr. Death | | File Size: | 310 | | Last Modified: | Mar 2 05:22:06 2006 |
| MD5 Checksum: | e35c4b1fd7da7ee276025a0d34785604 |
|
| /// File Name: |
EJ3-XSS.txt |
Description:
|
EJ3 Topo version 2.2.178 is susceptible to cross site scripting attacks.
| | Author: | Yunus Emre Yilmaz | | File Size: | 689 | | Last Modified: | Mar 2 05:21:13 2006 |
| MD5 Checksum: | 53dcd2f633032e3c614cb637916c8690 |
|
| /// File Name: |
myBB-SQL.txt |
Description:
|
MyBB version 1.3 is susceptible to SQL injection attacks via a malformed user supplied cookie.
| | Author: | D3vil-0x1 | | File Size: | 1217 | | Last Modified: | Mar 2 05:20:19 2006 |
| MD5 Checksum: | f269a3fe79b009d85a081d597b2dc880 |
|
| /// File Name: |
n8cmsFlaws.txt |
Description:
|
n8cms versions 1.1 and 1.2 are susceptible to SQL injection and cross site scripting attacks.
| | Author: | Liz0ziM | | Homepage: | http://biyosecurity.be/ | | File Size: | 1442 | | Last Modified: | Mar 2 05:17:26 2006 |
| MD5 Checksum: | 92171ee3a1eb9257b01cac39f2ba087f |
|
| /// File Name: |
EV0081.txt |
Description:
|
PerlBlog versions 1.09b, 1.09, and 1.08 have been discovered as being susceptible to arbitrary file creation, directory traversal, and cross site scripting flaws. Exploit details provided.
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 2467 | | Related CVE(s): | CVE-2006-0780, CVE-2006-0781, CVE-2006-0782 | | Last Modified: | Mar 2 05:07:43 2006 |
| MD5 Checksum: | 8e837043ac08193746cfc53cb2dbae6d |
|
| /// File Name: |
pixelExec.txt |
Description:
|
PixelArtKingdom TopSites version 0.x is susceptible to remote command execution.
| | Author: | botan | | File Size: | 176 | | Last Modified: | Mar 2 05:03:52 2006 |
| MD5 Checksum: | 2a72742377936b1052fd7b28b323f3d4 |
|
| /// File Name: |
SquirrelFlaws.txt |
Description:
|
SquirrelMail versions 1.4.5 and below suffer from an IMAP injection flaw. Versions 1.2.7 and below suffer from a SMTP injection flaw. Details provided.
| | Author: | Vicente Aguilera Diaz | | File Size: | 4988 | | Related CVE(s): | CVE-2006-0377 | | Last Modified: | Mar 2 04:35:19 2006 |
| MD5 Checksum: | 9f9519268a99b8ca84b7c177df69bc29 |
|
| /// File Name: |
cgiCal27XSS.txt |
Description:
|
CGI Calendar version 2.7 is susceptible to cross site scripting attacks.
| | Author: | Revnic Vasile | | File Size: | 485 | | Last Modified: | Mar 2 04:28:40 2006 |
| MD5 Checksum: | 1bd4f131ff1398fc37e1999c9b45b5dd |
|
| /// File Name: |
D3JeebSQL.txt |
Description:
|
D3Jeeb Pro 3 is susceptible to multiple SQL injection attacks.
| | Author: | SAUDI | | File Size: | 347 | | Last Modified: | Mar 2 04:27:38 2006 |
| MD5 Checksum: | b0a00732d2fc455a15664c8e2c5bb784 |
|
| /// File Name: |
FantasticSQL.txt |
Description:
|
Fantastic News version 2.1.1 is susceptible to multiple SQL injection attacks.
| | Author: | SAUDI | | File Size: | 302 | | Last Modified: | Mar 2 04:27:02 2006 |
| MD5 Checksum: | fa473eaf52926915c94050468dcc155a |
|
| /// File Name: |
ArGoSoft-1.4.3.5-DoS.cpp |
Description:
|
ArGoSoft FTP server versions 1.4.3.5 and below remote denial of service exploit.
| | Author: | Lympex | | Homepage: | http://L-Bytes.Tk | | File Size: | 3140 | | Last Modified: | Mar 2 04:25:54 2006 |
| MD5 Checksum: | d0098a8885796a2c9d8da6382e3e8f4f |
|
|
|
|
|