Section: .. / 0801-exploits /
| /// File Name: |
cutenews-exec.txt |
Description:
|
CuteNews version 1.1.1 suffers from a remote code execution vulnerability in html.php.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1542 | | Last Modified: | Jan 6 19:56:58 2008 |
| MD5 Checksum: | 62c6f4f302e8e6d20ea1776b6f7671f4 |
|
| /// File Name: |
dcpportal-sql.txt |
Description:
|
DCP-Portal versions 6.11 and below remote SQL injection exploit.
| | Author: | x0kster | | File Size: | 1940 | | Last Modified: | Jan 6 20:05:02 2008 |
| MD5 Checksum: | 2771e17a68073489632fb8210a12dce5 |
|
| /// File Name: |
ddc-overflow.txt |
Description:
|
Digital Data Communications RtspVaPgCtrl Class remote buffer overflow exploit that makes use of RtspVapgDecoder.dll version 1.1.0.29.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 3821 | | Last Modified: | Jan 18 04:47:53 2008 |
| MD5 Checksum: | 6a0a8b13d29b2e96b334b84fbcb83b9c |
|
| /// File Name: |
deluxebb-xss.txt |
Description:
|
DeluxeBB version 1.1 suffers from a cross site scripting vulnerability.
| | Author: | NBBN | | File Size: | 580 | | Last Modified: | Jan 22 15:16:14 2008 |
| MD5 Checksum: | fff7d0e543d5a2c253ef5d3f27d2866a |
|
| /// File Name: |
digitalhive-sql.txt |
Description:
|
DigitalHive versions 2.0 RC2 and below remote SQL injection exploit.
| | Author: | j0j0 | | File Size: | 4182 | | Last Modified: | Jan 11 13:10:22 2008 |
| MD5 Checksum: | 525b21c2074db9c590ff049286dcbbe2 |
|
| /// File Name: |
docebo-exec.txt |
Description:
|
Docebo versions 3.5.0.3 and below command execution exploit that makes use of lib.regset.php.
| | Author: | EgiX | | File Size: | 4688 | | Last Modified: | Jan 10 03:34:59 2008 |
| MD5 Checksum: | 1cdbe2343ef0f75ecc0b82e8aa16725a |
|
| /// File Name: |
docebo-sql.txt |
Description:
|
Docebo versions 3.5.02 and below SQL injection exploit that makes use of lib.regset.php.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 4554 | | Last Modified: | Jan 11 13:31:07 2008 |
| MD5 Checksum: | c662a66d86f6e0a1ec8c413772eccd25 |
|
| /// File Name: |
domphp-admin.txt |
Description:
|
DomPHP versions 0.81 and below remote add administrator exploit.
| | Author: | j0j0 | | File Size: | 8488 | | Last Modified: | Jan 10 03:36:36 2008 |
| MD5 Checksum: | 50034623ab2708b9b329d6da333fcc8e |
|
| /// File Name: |
domphp-rfi.txt |
Description:
|
DomPHP version 0.81 suffers from a remote file inclusion vulnerability.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1043 | | Last Modified: | Jan 10 17:53:53 2008 |
| MD5 Checksum: | d84e069ca681350934edf1586257b7bc |
|
| /// File Name: |
domphp081-sql.txt |
Description:
|
DomPHP version 0.81 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1522 | | Last Modified: | Jan 11 13:13:40 2008 |
| MD5 Checksum: | 574472e4bbfb227dfd165abc107703c9 |
|
| /// File Name: |
DSECRG-08-002.txt |
Description:
|
aria version 0.99-6 suffers from a local file inclusion vulnerability in arias/help/effect.php.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 1639 | | Last Modified: | Jan 17 00:19:10 2008 |
| MD5 Checksum: | 4fb4c670f8e8b3609f7d951393ac6d1c |
|
| /// File Name: |
DSECRG-08-003.txt |
Description:
|
Blogcms version 4.2.1b suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 3660 | | Last Modified: | Jan 17 00:19:57 2008 |
| MD5 Checksum: | 195261491e46e14fbbd48b0c2b63df83 |
|
| /// File Name: |
DSECRG-08-006.txt |
Description:
|
Nucleus CMS version 3.31 suffers from a cross site scripting vulnerability.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 1720 | | Last Modified: | Jan 29 21:54:53 2008 |
| MD5 Checksum: | f36ae354c56c03e88f058f9b282a125e |
|
| /// File Name: |
DSECRG-08-007.txt |
Description:
|
The OpenBSD BGPD web interface on OpenBSD 4.1 suffers from a cross site scripting vulnerability.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 1916 | | Last Modified: | Jan 31 23:30:08 2008 |
| MD5 Checksum: | f7e06b130f3eefb98b5ad9697e94a408 |
|
| /// File Name: |
DSECRG08-001.txt |
Description:
|
Tuned Studios Templates suffer from a local file inclusion vulnerability in index.php.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 1967 | | Last Modified: | Jan 9 13:16:21 2008 |
| MD5 Checksum: | 6e988cba5c3d9e0dfdab65521a64f961 |
|
| /// File Name: |
efront-312-xss.txt |
Description:
|
efront e-learning LMS version 3.1.2 suffers from cross site scripting vulnerabilities.
| | Author: | fuzion | | File Size: | 1044 | | Last Modified: | Jan 24 00:14:37 2008 |
| MD5 Checksum: | 086205861befae80a69519274a357556 |
|
| /// File Name: |
eggblog310-sql.txt |
Description:
|
Eggblog versions 3.1.0 and below cookie stealing remote SQL injection exploit.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 5364 | | Last Modified: | Jan 7 14:19:12 2008 |
| MD5 Checksum: | 84551c02c0216357e58a10e2b7d77a5a |
|
| /// File Name: |
ekinboard-upload.txt |
Description:
|
EkinBoard versions 1.1.0 and below suffer from remote file upload and authentication bypass vulnerabilities.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1592 | | Last Modified: | Jan 7 14:18:14 2008 |
| MD5 Checksum: | f5668e2c1c098ca1eb67d7773f34925a |
|
| /// File Name: |
endian-xss.txt |
Description:
|
The Endian Firewall version 2.1.2 suffers from a cross site scripting vulnerability.
| | Author: | syniack | | Homepage: | http://bsecure.net.pk/ | | File Size: | 868 | | Last Modified: | Jan 28 13:55:11 2008 |
| MD5 Checksum: | 4144ecb5203b4800e3759eee7e4687c9 |
|
| /// File Name: |
esmart-bypass.txt |
Description:
|
E-SMART CART suffers from a login bypass vulnerability via SQL injection.
| | Homepage: | http://aria-security.net/ | | File Size: | 210 | | Last Modified: | Jan 25 19:07:30 2008 |
| MD5 Checksum: | 46bb1f193df4b6e787cc9bb561452700 |
|
| /// File Name: |
eticket-multi.txt |
Description:
|
eTicket version 1.5.5.2 suffers from SQL injection, cross site scripting, and cross site request forgery vulnerabilities.
| | Author: | L4teral | | File Size: | 3335 | | Last Modified: | Jan 7 14:16:54 2008 |
| MD5 Checksum: | 9901795955dc3d263b9505c186d3a22c |
|
| /// File Name: |
evilboard-sqlxss.txt |
Description:
|
EvilBoard version 0.1a suffers from remote SQL injection and cross site scripting vulnerabilities.
| | Author: | seaofglass | | File Size: | 815 | | Last Modified: | Jan 8 12:12:05 2008 |
| MD5 Checksum: | c529facaf09ea9c50efd4e755e7cfe4d |
|
| /// File Name: |
f5-xss.txt |
Description:
|
The F5 BIG-IP web management interface is susceptible to a cross site scripting vulnerability via the search functionality. Tested against version 9.4.3.
| | Author: | nnposter | | File Size: | 2669 | | Last Modified: | Jan 14 17:37:05 2008 |
| MD5 Checksum: | 2c83b193605b1fc8b97dd6bff5a1a5f9 |
|
|
|
|
|