Section: .. / 0612-exploits /
| /// File Name: |
mowdbb.txt |
Description:
|
mowdBB RC-6 suffers from a cross site scripting flaw.
| | Author: | ScReAmDz | | File Size: | 1341 | | Last Modified: | Dec 6 01:14:03 2006 |
| MD5 Checksum: | 4847acaad48a98c7421c355331644640 |
|
| /// File Name: |
envolution.txt |
Description:
|
Remote code execution exploit for Envolution versions 1.1.0 and below.
| | Author: | Kacper | | Homepage: | http://www.rahim.webd.pl/ | | File Size: | 13954 | | Last Modified: | Dec 6 01:11:07 2006 |
| MD5 Checksum: | 1e8dcd6da9786a4e9e8c12f659ad841f |
|
| /// File Name: |
blazevideo.txt |
Description:
|
BlazeVideo HDTV Player versions 2.1 and below malformed PLF buffer overflow proof of concept exploit.
| | Author: | Greg Linares | | File Size: | 5619 | | Last Modified: | Dec 6 01:07:52 2006 |
| MD5 Checksum: | 5f17838629967b7725af835c06997f18 |
|
| /// File Name: |
atftp.txt |
Description:
|
AT-TFTP version 1.9 and below remote buffer overflow exploit that makes use of long filenames.
| | Author: | Liu Qixu, acaro | | File Size: | 1641 | | Last Modified: | Dec 6 01:06:21 2006 |
| MD5 Checksum: | 211c5300388fa1e0595f4ecf7b3ce368 |
|
| /// File Name: |
fprot-dos.txt |
Description:
|
Two vulnerabilities in F-Prot Antivirus version 4.6.6 for Unix platforms could allow a remote attacker to cause a denial of service or execute arbitrary code. Exploit included.
| | Author: | Evgeny Legerov | | Homepage: | http://gleg.net/ | | File Size: | 4284 | | Last Modified: | Dec 6 00:50:34 2006 |
| MD5 Checksum: | ae96141504b7e9a401df8956712104e1 |
|
| /// File Name: |
vtforum-13.txt |
Description:
|
Vt-Forum Lite System version 1.3 suffers from a cross site scripting flaw.
| | Author: | St@rExT | | File Size: | 530 | | Last Modified: | Dec 6 00:29:27 2006 |
| MD5 Checksum: | bdd641f3d956d6512e8d79309624bc1c |
|
| /// File Name: |
ac4p.txt |
Description:
|
ac4p suffers from cross site scripting vulnerabilities.
| | Author: | SwEET-DeViL | | File Size: | 772 | | Last Modified: | Dec 6 00:26:06 2006 |
| MD5 Checksum: | aed64f9e3d51ba485f7abe71b0f205ee |
|
| /// File Name: |
vg-onlinebookmarks-3-12-2006.txt |
Description:
|
OnLine Bookmarks version 0.6.12 suffers from cross site scripting and SQL injection vulnerabilities.
| | Homepage: | http://www.vigilon.com/ | | File Size: | 2034 | | Last Modified: | Dec 6 00:17:06 2006 |
| MD5 Checksum: | 94b22cf2b29e0833d0922ba383f27dff |
|
| /// File Name: |
ISAA-2006-011.txt |
Description:
|
Improper command and information validation transmitted by Hastymail to the mail servers during the normal use of this application facilitates that an authenticated malicious user could inject arbitrary IMAP/SMTP commands into the mail servers used by Hastymail across parameters used by the webmail front-end in its communication with these mail servers. This vulnerability has been found in development version 1.5 and stable version 1.0.2.
| | Author: | Vicente Aguilera Diaz | | File Size: | 5044 | | Last Modified: | Dec 6 00:12:33 2006 |
| MD5 Checksum: | 04f55c3688204ba691e9c3cae8912fdf |
|
| /// File Name: |
ISAA-2006-010.txt |
Description:
|
ISMail version 2.0 is vulnerable to a cross site scripting attack.
| | Author: | Vicente Aguilera Diaz | | File Size: | 3334 | | Last Modified: | Dec 6 00:10:29 2006 |
| MD5 Checksum: | 2e7ceb53b334e4eea7a4ae911a0112e9 |
|
| /// File Name: |
listpics.txt |
Description:
|
Listpics version 5 suffers from a direct database download vulnerability.
| | Author: | blasterim | | File Size: | 506 | | Last Modified: | Dec 6 00:08:55 2006 |
| MD5 Checksum: | 7466ff0190830498310099b39bb38254 |
|
| /// File Name: |
metyus.txt |
Description:
|
Metyus Okul Ynetim Sistemi version 1.0 suffers from a SQL injection vulnerability.
| | Author: | ShaFuck31 | | File Size: | 991 | | Last Modified: | Dec 5 23:56:01 2006 |
| MD5 Checksum: | 9e3eaf904ec8a8029c8451f9e94d3f80 |
|
| /// File Name: |
ISAA-2006-007.txt |
Description:
|
The BlueSocket web administration interface is vulnerable to a cross site scripting attack. Versions below 5.2 are susceptible.
| | Author: | Jesus Olmos Gonzalez | | File Size: | 3020 | | Last Modified: | Dec 5 23:53:15 2006 |
| MD5 Checksum: | cde2ee3ca53a545cca5919eb8071d8df |
|
| /// File Name: |
aria-dupaypal.txt |
Description:
|
DuWare DuPaypal suffers from a SQL injection vulnerability.
| | Homepage: | http://www.aria-security.com/ | | File Size: | 504 | | Last Modified: | Dec 5 23:50:50 2006 |
| MD5 Checksum: | b95a2ebaed7d22fa5b672d77c3951a78 |
|
| /// File Name: |
aria-duforum.txt |
Description:
|
DuWare DuForum version 3.0 suffers from a SQL injection vulnerability.
| | Homepage: | http://www.aria-security.com/ | | File Size: | 465 | | Last Modified: | Dec 5 23:50:32 2006 |
| MD5 Checksum: | 9640af1a541c4d455641518ba8d3c88b |
|
| /// File Name: |
aria-portal.txt |
Description:
|
DuWare DuPortal pro version 3.4 suffers from a SQL injection vulnerability.
| | Homepage: | http://www.aria-security.com/ | | File Size: | 686 | | Last Modified: | Dec 5 23:49:30 2006 |
| MD5 Checksum: | f54cd3b508a2846167dcf639ed651f02 |
|
| /// File Name: |
aria-duclass.txt |
Description:
|
DuWare DuClassMate suffers from a SQL injection vulnerability.
| | Homepage: | http://www.aria-security.com/ | | File Size: | 466 | | Last Modified: | Dec 5 23:48:50 2006 |
| MD5 Checksum: | 1ca1e2fe9ef1e4b14373f2648f6ba7d2 |
|
| /// File Name: |
aria-dudown.txt |
Description:
|
DuWare DuDownloads suffers from a SQL injection vulnerability.
| | Homepage: | http://www.aria-security.com/ | | File Size: | 505 | | Last Modified: | Dec 5 23:48:28 2006 |
| MD5 Checksum: | 17013f100d6dadc6855be76f0936f35e |
|
| /// File Name: |
aria-dunews.txt |
Description:
|
DuNews suffers from a SQL injection vulnerability.
| | Homepage: | http://www.aria-security.com/ | | File Size: | 553 | | Last Modified: | Dec 5 23:47:53 2006 |
| MD5 Checksum: | ca02e6948e4e7a4c278ee6aaf2320ca1 |
|
| /// File Name: |
phpnews130-xss.txt |
Description:
|
PHPNews version 1.3.0 suffers from cross site scripting vulnerabilities.
| | Author: | Detefix | | File Size: | 637 | | Last Modified: | Dec 5 23:31:44 2006 |
| MD5 Checksum: | e13c60e34230f45f167f5413f01fd1e5 |
|
| /// File Name: |
aspee.txt |
Description:
|
Aspee Ziyareti Defteri suffers from a SQL injection vulnerability.
| | Author: | ShaFuck31 | | File Size: | 880 | | Last Modified: | Dec 5 23:30:04 2006 |
| MD5 Checksum: | 9f16e60d4e5661c7d79d4b762e9290b9 |
|
| /// File Name: |
ig207-sql.txt |
Description:
|
Invision Gallery version 2.0.7 suffers from a SQL injection vulnerability.
| | Author: | infection | | File Size: | 233 | | Last Modified: | Dec 5 23:24:47 2006 |
| MD5 Checksum: | 91ecb1f59a22459c686574007ad0114f |
|
| /// File Name: |
dc-arbitrary.txt |
Description:
|
deV!L`z Clanportal version 1.3.6 allows arbitrary files to be uploaded and stored on the server's filesystem, which enables anyone, even without a user account, to upload PHP code and execute it, leading to arbitrary code execution.
| | Author: | Tim Weber | | File Size: | 3691 | | Last Modified: | Dec 5 22:55:56 2006 |
| MD5 Checksum: | 7bcadbd2176548538534f8ccfa098a29 |
|
|
|
|
|