Section: .. / 0804-exploits /
| /// File Name: |
xplod-sql.txt |
Description:
|
XplodPHP AutoTutorials versions 2.1 and below suffer from a remote SQL injection vulnerability.
| | Author: | c02 | | Homepage: | http://www.dz-secure.com/ | | File Size: | 732 | | Last Modified: | Apr 16 17:42:50 2008 |
| MD5 Checksum: | 0e263d2dff0fae00315d50b52be54771 |
|
| /// File Name: |
gallarific-xss.txt |
Description:
|
Gallarific appears susceptible to persistent cross site scripting vulnerabilities.
| | Author: | Thomas Pollet | | File Size: | 723 | | Last Modified: | Apr 15 21:50:42 2008 |
| MD5 Checksum: | 5018a6cf6981ad46114f4c9d8886cdac |
|
| /// File Name: |
runcms11a-sql.txt |
Description:
|
The RunCMS module bamagalerie3 suffers from a remote SQL injection vulnerability.
| | Author: | DreamTurk | | File Size: | 715 | | Last Modified: | Apr 3 01:05:13 2008 |
| MD5 Checksum: | 6e5c018427deb7e6627dd7c4fedca562 |
|
| /// File Name: |
bosnews0206-direct.txt |
Description:
|
BosNews versions 2002-2006 appear to allow direct user addition without authentication.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 714 | | Last Modified: | Apr 15 22:00:05 2008 |
| MD5 Checksum: | 568d81adb5c172eb9441eeb87719f5bb |
|
| /// File Name: |
xinelib-overflow.txt |
Description:
|
xine-lib versions 1.1.12 and below suffer from a stack-based buffer overflow vulnerability in the NES sound format demuxer (demux_nsf.c).
| | Author: | Guido Landi | | File Size: | 708 | | Last Modified: | Apr 17 13:40:07 2008 |
| MD5 Checksum: | 41575cac046f8a7bcba8c4586122dbc4 |
|
| /// File Name: |
lasernetcms-sql.txt |
Description:
|
Lasernet CMS version 1.5 suffers from a remote SQL injection vulnerability.
| | Author: | c02 | | Homepage: | http://www.dz-secure.com/ | | File Size: | 698 | | Last Modified: | Apr 15 22:24:19 2008 |
| MD5 Checksum: | ba34c8b6cc62515f8997cc28bcb03bd9 |
|
| /// File Name: |
bosnews40-direct.txt |
Description:
|
BosNews version 4.0 appears to allow direct user addition without authentication.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 690 | | Last Modified: | Apr 15 21:59:30 2008 |
| MD5 Checksum: | 02bede2cf1b979f1adceacd9f853e739 |
|
| /// File Name: |
wikepage-xss.txt |
Description:
|
Wikepage Wiki version 2007-2 suffers from a cross site scripting vulnerability.
| | Author: | Attila Gerendi | | File Size: | 687 | | Last Modified: | Apr 18 14:18:16 2008 |
| MD5 Checksum: | 7049845824040de42e181b4fe65528b0 |
|
| /// File Name: |
smallbizcms-sql.txt |
Description:
|
SmallBiz 4 Seasons CMS suffers from a remote SQL injection vulnerability.
| | Author: | c02 | | Homepage: | http://www.dz-secure.com/ | | File Size: | 675 | | Last Modified: | Apr 14 18:40:06 2008 |
| MD5 Checksum: | 670f43482765a9f3a4bf7c21ccba0f9e |
|
| /// File Name: |
cevado-sql.txt |
Description:
|
Cevado Technologies Real Estate CMS suffers from a SQL injection vulnerability.
| | Author: | Joseph Giron | | File Size: | 616 | | Last Modified: | Apr 1 22:13:00 2008 |
| MD5 Checksum: | 1edc9552d5d3baea186c3706445cf0dd |
|
| /// File Name: |
hostdir-cookie.txt |
Description:
|
HostDirectory Pro suffers from an insecure handling of cookies vulnerability.
| | Author: | Crackers_Child | | File Size: | 608 | | Last Modified: | Apr 21 17:09:09 2008 |
| MD5 Checksum: | 54f0c86a0bd527995cd627d78e7fbf9c |
|
| /// File Name: |
lotus-exec.txt |
Description:
|
Lotus Symphony Expeditor suffers from an arbitrary code execution vulnerability via the handling of URIs with rcplauncher.
| | Author: | Thomas Pollet | | File Size: | 605 | | Last Modified: | Apr 24 16:33:34 2008 |
| MD5 Checksum: | 75febdef7a73a4c6e21c145294d9f0ff |
|
| /// File Name: |
runcmsmyartcles-sql.txt |
Description:
|
The RunCMS MyArticles module version 0.6 Beta-1 suffers from a remote SQL injection vulnerability.
| | Author: | Cr@zy_King | | File Size: | 603 | | Last Modified: | Apr 28 11:02:21 2008 |
| MD5 Checksum: | a33acd308ffd65afd399f138f07ad7b5 |
|
| /// File Name: |
scopkgadd-local.txt |
Description:
|
SCO UnixWare versions below 7.1.4 p534589 pkgadd local root exploit.
| | Author: | qaaz | | File Size: | 594 | | Last Modified: | Apr 4 18:57:54 2008 |
| MD5 Checksum: | cb9d3c1345fb5708a02266e84ca29e31 |
|
| /// File Name: |
fifthave-sql.txt |
Description:
|
5th Avenue Shopping Cart suffers from a SQL injection vulnerability.
| | Author: | The-0utl4w | | Homepage: | http://aria-security.net/ | | File Size: | 592 | | Last Modified: | Apr 18 14:33:09 2008 |
| MD5 Checksum: | 98652c830b5eb269ba066d5b9beede65 |
|
| /// File Name: |
chicomas-rfilfi.txt |
Description:
|
Chicomas version 2.0.4 suffers from local and remote file inclusion vulnerabilities.
| | Author: | Hadi Kiamarsi | | File Size: | 591 | | Last Modified: | Apr 28 18:20:31 2008 |
| MD5 Checksum: | 01bd0864d3d832b4319229c4c2d60c29 |
|
| /// File Name: |
pbcs-multi.txt |
Description:
|
Project Based Calendaring System (PBCS) version 0.7.1 suffers from remote file upload and remote file disclosure vulnerabilities.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 577 | | Last Modified: | Apr 30 20:39:09 2008 |
| MD5 Checksum: | 2842f27b5e4fd3bf299d2c22d3b54ec1 |
|
| /// File Name: |
swiki-xss.txt |
Description:
|
Swiki version 1.5 suffers from cross site scripting vulnerabilities.
| | Author: | Brad Antoniewicz | | File Size: | 560 | | Last Modified: | Apr 8 22:47:25 2008 |
| MD5 Checksum: | 731a5f2f8d926bd42260477d35c961a8 |
|
| /// File Name: |
kubelance-lfi.txt |
Description:
|
Kubelance suffers from a local file inclusion vulnerability in ipn.php.
| | Author: | Crackers_Child | | File Size: | 558 | | Last Modified: | Apr 21 17:09:50 2008 |
| MD5 Checksum: | c1c5d18ef98a52c90c3040c4d3e7160d |
|
| /// File Name: |
pligg-sql.txt |
Description:
|
Pligg CMS version 9.9.0 suffers from a remote SQL injection vulnerability in editlink.php.
| | Author: | Guido Landi | | File Size: | 539 | | Last Modified: | Apr 8 22:42:21 2008 |
| MD5 Checksum: | 0e9ff27639af7c7886f628d386baed62 |
|
| /// File Name: |
bsplayer-overflow.txt |
Description:
|
BS.Player version 2.27 Build 959 .SRT file buffer overflow exploit. denial of service exploit.
| | Author: | j0rgan | | Homepage: | http://www.jorgan.users.cg.yu/ | | File Size: | 515 | | Last Modified: | Apr 16 17:57:55 2008 |
| MD5 Checksum: | 198c713ca85cc6c329fd4374d39dfb07 |
|
| /// File Name: |
phpaddressbook211-sql.txt |
Description:
|
phpAddressBook version 2.11 suffers from a SQL injection vulnerability in view.php.
| | Author: | Cr@zy_King | | File Size: | 497 | | Last Modified: | Apr 14 16:18:07 2008 |
| MD5 Checksum: | 42d16302b61da57693814d3f483a3289 |
|
|
|
|
|