Section: .. / 0802-exploits /
| /// File Name: |
Bypass-Myspace-Phisher-Block.txt |
Description:
|
A brief example describing a method of bypassing the Myspace.com Phishing blocker.
| | Author: | IMC EXE | | File Size: | 466 | | Last Modified: | Mar 3 14:31:38 2008 |
| MD5 Checksum: | 133da45353d3874c82a8b990c8daa402 |
|
| /// File Name: |
netoffice-exec.txt |
Description:
|
netOffice Dwins versions 1.3 suffers from remote code execution vulnerabilities.
| | Author: | dB | | File Size: | 3075 | | Last Modified: | Mar 3 14:23:18 2008 |
| MD5 Checksum: | 0b9b3369a59031e6305282004d0246b3 |
|
| /// File Name: |
phpmyt-rfi.txt |
Description:
|
PHPMyTourney suffers from a remote file inclusion vulnerability in index.php.
| | Author: | HACKERS PAL | | Homepage: | http://www.soqor.net/ | | File Size: | 771 | | Last Modified: | Mar 3 14:22:12 2008 |
| MD5 Checksum: | 8b6acb62363309113a7a28e2b7fbf163 |
|
| /// File Name: |
ghostscript-poc.txt |
Description:
|
Proof of concept exploit that demonstrates a buffer overflow vulnerability in Ghostscript versions 8.61 and below.
| | Author: | Will Drewry | | Related File: | ghostscript-overflow.txt | | File Size: | 4416 | | Last Modified: | Mar 3 14:16:56 2008 |
| MD5 Checksum: | 68b371030bdbb5deb3fbdb2b286fa2ef |
|
| /// File Name: |
symantecback-overflow.txt |
Description:
|
Symantec BackupExec Calendar Control (PVCalendar.ocx) buffer overflow exploit. and spawns calc.exe or a shell on tcp/4444.
| | Author: | Elazar Broad | | File Size: | 6816 | | Last Modified: | Mar 3 14:11:23 2008 |
| MD5 Checksum: | 2c1cff8c354f4a88ca29b3119d31f0a3 |
|
| /// File Name: |
koobicms-sql.txt |
Description:
|
Koobi CMS versions 4.3.0 through 4.2.3 suffer from a remote SQL injection vulnerability in index.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 1419 | | Last Modified: | Mar 3 14:09:21 2008 |
| MD5 Checksum: | 5dec46e2c630f88bfe6fdce9b79e0e8e |
|
| /// File Name: |
PR07-41.txt |
Description:
|
Juniper Networks Secure Access 2000 versions prior to 5.5R3 are vulnerable to a cross site scripting vulnerability. Full details provided.
| | Author: | Richard Brain | | Homepage: | http://www.procheckup.com/ | | File Size: | 2563 | | Last Modified: | Feb 28 15:51:02 2008 |
| MD5 Checksum: | 152ed43ef865a56f7d6d4d31c80eef6b |
|
| /// File Name: |
123flash-rfi.txt |
Description:
|
The 123 Flash Chat module for phpBB suffers from a remote file inclusion vulnerability.
| | Author: | F10 | | Homepage: | http://www.by-f10.com/ | | File Size: | 1345 | | Last Modified: | Feb 28 15:43:21 2008 |
| MD5 Checksum: | 9d6c7f8df76cf13706d4a3f20938366e |
|
| /// File Name: |
centreon-disclose.txt |
Description:
|
Centreon versions 1.4.2.3 and below suffer from a remote file disclosure vulnerability in get_image.php.
| | Author: | Julien CAYSSOL | | File Size: | 1304 | | Last Modified: | Feb 28 15:41:51 2008 |
| MD5 Checksum: | b184119ee973ba67d5ea86c8c6bffa6c |
|
| /// File Name: |
phpnukemye-sql.txt |
Description:
|
The PHP-Nuke module My_eGallery versions 2.7.9 and below suffer from a remote SQL injection vulnerability.
| | Author: | The-0utl4w | | Homepage: | http://aria-security.net/ | | File Size: | 480 | | Last Modified: | Feb 28 15:41:01 2008 |
| MD5 Checksum: | d214880bc233b425e1eaf52aa1d89ed6 |
|
| /// File Name: |
barry-rfi.txt |
Description:
|
Barryvan Compo Manager version 0.3 suffers from a remote file inclusion vulnerability.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1000 | | Last Modified: | Feb 28 15:40:04 2008 |
| MD5 Checksum: | eb0aff9e45edf06dea75fae13d99264a |
|
| /// File Name: |
podcast-rfidisclose.txt |
Description:
|
The Podcast Generator versions 1.0 BETA 2 and below suffer from remote file inclusion and file disclosure vulnerabilities.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 1602 | | Last Modified: | Feb 28 15:39:12 2008 |
| MD5 Checksum: | 32f783c56777ec7a0df62dfad5879cfd |
|
| /// File Name: |
sbe-rfi.txt |
Description:
|
SiteBuilderElite version 1.2 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 961 | | Last Modified: | Feb 28 15:37:52 2008 |
| MD5 Checksum: | a7bd287447a140f9954f160ff51025f7 |
|
| /// File Name: |
koobipro-sql.txt |
Description:
|
Koobi Pro version 5.7 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | Cr@zy_King | | File Size: | 620 | | Last Modified: | Feb 28 15:37:05 2008 |
| MD5 Checksum: | dbf431ffa1e35fc3f37dade6f4419fdc |
|
| /// File Name: |
crysis-format.txt |
Description:
|
Crysis versions 1.1.1.5879 and below suffer from a remote format string denial of service vulnerability.
| | Author: | Long Poke | | File Size: | 1101 | | Last Modified: | Feb 28 15:36:01 2008 |
| MD5 Checksum: | 62aca6acf2796db98921ea721efa5df2 |
|
| /// File Name: |
groupe-rfi.txt |
Description:
|
GROUP-E version 1.6.41 suffers from a remote file inclusion vulnerability.
| | Author: | CraCkEr | | File Size: | 4591 | | Last Modified: | Feb 27 21:37:44 2008 |
| MD5 Checksum: | bbffd69ee536b82c53330ea105a20935 |
|
| /// File Name: |
CORE-2008-0130.txt |
Description:
|
Core Security Technologies Advisory - The VideoLAN (VLC) media player package is vulnerable to an arbitrary memory corruption vulnerability, which can be exploited by malicious remote attackers to compromise a user's system. VLC versions 0.8.6d and below and Miro Player versions 1.1 and below are vulnerable. Proof of concept code included.
| | Author: | Felipe Manzano, Anibal Sacco | | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 15037 | | Related CVE(s): | CVE-2008-0984 | | Last Modified: | Feb 27 15:02:21 2008 |
| MD5 Checksum: | f24730594bd1527fb6468a67590f93bf |
|
| /// File Name: |
officescaz.zip |
Description:
|
Proof of concept exploits for Trend Micro OfficeScan Corporate Edition versions 8.0 Patch 2 and below and versions 7.3 Patch 3 and below which suffer from buffer overflow and dead process vulnerabilities. To use the exploits, nc SERVER 8080 -v -v < file.txt.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | officescaz.txt | | File Size: | 1004 | | Last Modified: | Feb 27 14:58:55 2008 |
| MD5 Checksum: | 7033f1fd4968dd98d7eb37813ca6ad2b |
|
| /// File Name: |
authentix-xss.txt |
Description:
|
The AuthentiX administration page suffers from cross site scripting vulnerabilities.
| | Author: | Chris Castaldo, William Hicks | | File Size: | 1089 | | Last Modified: | Feb 27 13:32:49 2008 |
| MD5 Checksum: | ed02c1dde9d866834a78ff9c804d195c |
|
| /// File Name: |
eazyportal-sql.txt |
Description:
|
EazyPortal versions 1.0 and below cookie-related remote SQL injection exploit.
| | Author: | Iron | | Homepage: | http://ironwarez.info/ | | File Size: | 3962 | | Last Modified: | Feb 27 13:27:38 2008 |
| MD5 Checksum: | 13e541481db75adc5d988fdfac0c56a7 |
|
| /// File Name: |
mambosimple-sql.txt |
Description:
|
Mambo Simpleboard Forum component version 1.0.3 Stable suffers from a remote SQL injection vulnerability.
| | Author: | it's my | | Homepage: | http://www.antichat.ru/ | | File Size: | 727 | | Last Modified: | Feb 27 13:26:28 2008 |
| MD5 Checksum: | 9f276da2b96a8c5a6c1318ca0ba8c36d |
|
| /// File Name: |
ezyedit-xss.txt |
Description:
|
ezyEdit 2007 is susceptible to cross site scripting vulnerabilities.
| | Author: | cybermilitant | | Homepage: | http://www.hacktime.org/ | | File Size: | 1887 | | Last Modified: | Feb 26 18:57:01 2008 |
| MD5 Checksum: | 01204d9c5dc6055fd3e58aa9af2f8f1e |
|
|
|
|
|