Section: .. / 0703-exploits /
| /// File Name: |
fus-rfi.txt |
Description:
|
File Upload System version 1.0 suffers from a remote file inclusion vulnerability.
| | Author: | IbnuSina, jipank | | File Size: | 820 | | Last Modified: | Mar 26 22:23:19 2007 |
| MD5 Checksum: | d744ab33e68660e8eb37f3df32890a6b |
|
| /// File Name: |
asterisk-Invite.txt |
Description:
|
Proof of concept denial of service exploit for the Asterisk PBX that is susceptible to a remote denial of service vulnerability via a specially crafted INVITE message. Affected versions include 1.2.14, 1.2.15, 1.2.16, 1.4.1, and possibly earlier versions.
| | Author: | Radu State, Humberto J. Abdelnur, Olivier Festor | | File Size: | 1158 | | Last Modified: | Mar 26 22:22:09 2007 |
| MD5 Checksum: | eb08101e49a7f01a1c8ed41340647a1a |
|
| /// File Name: |
joomlacom-rfi.txt |
Description:
|
Joomla com_joomlaboard 1.1.x Branch suffers from multiple remote file inclusion vulnerabilities.
| | Author: | Cold Zero | | File Size: | 1901 | | Last Modified: | Mar 26 22:20:41 2007 |
| MD5 Checksum: | 9fdc68eca03a9629576a8b5093c01223 |
|
| /// File Name: |
vista-pwn.txt |
Description:
|
The Microsoft Vista Windows mail client is susceptible to a code execution vulnerability when a user clicks on a maliciously prepared link. Vista's mail client will execute any executable file if a folder exists with the same name.
| | Author: | Kingcope | | File Size: | 1795 | | Last Modified: | Mar 23 21:54:11 2007 |
| MD5 Checksum: | 576571e3d4a3bfef2c4fda6141412fd7 |
|
| /// File Name: |
cpg-rfi.txt |
Description:
|
A remote file inclusion vulnerability exists in Coppermine Photo Gallery.
| | Author: | Hasadya Raed | | File Size: | 870 | | Last Modified: | Mar 23 21:49:39 2007 |
| MD5 Checksum: | 09dfdbc3259713f5ad66fcbdb21b6a17 |
|
| /// File Name: |
dnsfun.c |
Description:
|
Exploiting Microsoft DNS dynamic updates for fun and profit.
| | Author: | Andres Tarasco | | Homepage: | http://www.514.es/ | | File Size: | 15378 | | Last Modified: | Mar 23 21:16:31 2007 |
| MD5 Checksum: | 6c4af2bef05d82e19d8cb3a3912fd004 |
|
| /// File Name: |
futuresoft-seh.txt |
Description:
|
FutureSoft TFTP Server 2000 remote SEH overwrite exploit.
| | Author: | Umesh Wanve | | File Size: | 4339 | | Last Modified: | Mar 23 21:08:52 2007 |
| MD5 Checksum: | 31dc7c494c54a6cfac38b6fe682bf664 |
|
| /// File Name: |
etherleak.txt |
Description:
|
Ethernet device drivers frame padding information leakage exploit.
| | Author: | Jon Hart | | Homepage: | http://spoofed.org/ | | File Size: | 5938 | | Last Modified: | Mar 23 21:07:03 2007 |
| MD5 Checksum: | 83295a72d9cd10f46c8027056b53b40a |
|
| /// File Name: |
ewebquiz8-sql.txt |
Description:
|
eWebquiz version 8 and below remote SQL injection exploit.
| | Author: | ajann | | File Size: | 2214 | | Last Modified: | Mar 23 21:04:08 2007 |
| MD5 Checksum: | 879072c93b645af0df5e3b9099a96ff0 |
|
| /// File Name: |
joomlamambo-rfi.txt |
Description:
|
Joomla/Mambo component SWmenuFre version 4.0 suffers from a remote file inclusion vulnerability.
| | Author: | Cold Zero | | File Size: | 1893 | | Last Modified: | Mar 23 21:03:06 2007 |
| MD5 Checksum: | 352021f60edafc6c6ee37d882f550e1d |
|
| /// File Name: |
an-sql.txt |
Description:
|
Active Newsletter versions 4.3 and below SQL injection exploit that makes use of ViewNewspapers.asp.
| | Author: | ajann | | File Size: | 2230 | | Last Modified: | Mar 23 21:01:42 2007 |
| MD5 Checksum: | d32139ea26fb96f1d280567bfd4e71db |
|
| /// File Name: |
philex-disclose.txt |
Description:
|
Philex versions 0.2.3 and below suffer from remote file inclusion and file disclosure vulnerabilities.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 938 | | Last Modified: | Mar 23 20:59:43 2007 |
| MD5 Checksum: | e3e6ba2cc2b74d424cd67e13e96ded28 |
|
| /// File Name: |
abs-sql.txt |
Description:
|
ActiveBuyandSell versions 6.2 suffers from a SQL injection vulnerability in buyersend.asp.
| | Author: | CyberGhost | | Homepage: | http://aspspider.org/cgsecurity | | File Size: | 656 | | Last Modified: | Mar 23 20:58:16 2007 |
| MD5 Checksum: | 689633599e3252ce3bfdc2fa1c7fc57a |
|
| /// File Name: |
aar-sql.txt |
Description:
|
Active Auction Pro version 7.1 suffers from a SQL injection vulnerability in default.asp.
| | Author: | CyberGhost | | Homepage: | http://aspspider.org/cgsecurity | | File Size: | 629 | | Last Modified: | Mar 23 20:56:46 2007 |
| MD5 Checksum: | b82c74f498612da09d1f4e44e4e739c6 |
|
| /// File Name: |
atr-sql.txt |
Description:
|
Active Trade version 2 suffers from a SQL injection vulnerability in default.asp.
| | Author: | CyberGhost | | Homepage: | http://aspspider.org/cgsecurity | | File Size: | 625 | | Last Modified: | Mar 23 20:54:04 2007 |
| MD5 Checksum: | e5fbab1ba69d8d812a1430046e5a295b |
|
| /// File Name: |
roc-lfi.txt |
Description:
|
RoseOnlineCMS version 3 beta 2 local file inclusion exploit.
| | Author: | Mahmood_ali | | File Size: | 3272 | | Last Modified: | Mar 23 20:52:38 2007 |
| MD5 Checksum: | 718b499f5d18594f162dc23f5e4e9ba0 |
|
| /// File Name: |
aspwebcal-sql.txt |
Description:
|
aspWebCalendar version 4.5 suffers from a SQL injection vulnerability in calendar.asp.
| | Author: | parad0x | | Homepage: | http://www.p4r4d0x.com/ | | File Size: | 695 | | Last Modified: | Mar 23 20:51:07 2007 |
| MD5 Checksum: | ad7ef9b60b75f9cd24de6e8bdf6066c2 |
|
| /// File Name: |
lms-rfi.txt |
Description:
|
LMS versions 1.8.9 and below suffer from remote file inclusion vulnerabilities.
| | Author: | Kacper | | Homepage: | http://www.rahim.webd.pl/ | | File Size: | 590 | | Last Modified: | Mar 23 20:49:57 2007 |
| MD5 Checksum: | 55339d467a2e5f2dba34d6df336e6569 |
|
| /// File Name: |
portal-sql.txt |
Description:
|
PortailPHP version 2.0 remote SQL injection exploit.
| | Author: | xoron | | File Size: | 1261 | | Last Modified: | Mar 23 20:46:19 2007 |
| MD5 Checksum: | 1e33454937c88a7fa12c0137da66f22d |
|
| /// File Name: |
classweb-rfi.txt |
Description:
|
ClassWeb version 2.0.3 suffers from remote file inclusion vulnerabilities.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 347 | | Last Modified: | Mar 23 20:44:10 2007 |
| MD5 Checksum: | db2784d53cd960121db98b9507481898 |
|
| /// File Name: |
helix-1101.txt |
Description:
|
Helix Server version 11.0.1 remote heap overflow exploit for win2k SP4. Binds a shell to tcp/4444.
| | Author: | Winny Thomas | | File Size: | 6501 | | Last Modified: | Mar 21 21:52:13 2007 |
| MD5 Checksum: | 4140b638e2cfb7b688f74fa64985f9a7 |
|
| /// File Name: |
grandstream-dos.txt |
Description:
|
The Grandstream Budge Tone-200 IP phone is susceptible to denial of service attacks. Exploit included.
| | Author: | Humberto J. Abdelnur, Radu State, Olivier Festor | | Homepage: | http://madynes.loria.fr/ | | File Size: | 3439 | | Last Modified: | Mar 21 21:40:37 2007 |
| MD5 Checksum: | 9ebee1b7d1d227148e557f9ff1a36b05 |
|
| /// File Name: |
MOPB-hash.txt |
Description:
|
Month of PHP Bugs - PHP versions 5.2.1 and below hash_update_file() freed resource usage exploit.
| | Author: | Stefan Esser | | Homepage: | http://hardened-php.net/ | | File Size: | 4206 | | Last Modified: | Mar 20 23:24:31 2007 |
| MD5 Checksum: | d99f6441ca1d1ec17ba6a4e6419f7266 |
|
|
|
|
|