Section: .. / 0704-exploits /
| /// File Name: |
mlw-xss.txt |
Description:
|
My Little Weblog suffers from a cross site scripting vulnerability.
| | Author: | the_Edit0r | | Homepage: | http://www.xmors-security.com/ | | File Size: | 1130 | | Last Modified: | Apr 18 20:46:06 2007 |
| MD5 Checksum: | 110bac1b77ad3513cbc5ea644144f4eb |
|
| /// File Name: |
gizzar-rfi.txt |
Description:
|
Gizzar is susceptible to a remote file inclusion vulnerability.
| | Author: | BorN To K!LL | | File Size: | 917 | | Last Modified: | Apr 18 20:44:17 2007 |
| MD5 Checksum: | 61c8c4167a0a9e6097fe92e892cde428 |
|
| /// File Name: |
phpnuke-bypass-sql.txt |
Description:
|
PHP-Nuke versions 8.0.0.3.3b and below suffer from a flaw that allows the SQL injection protection to be bypassed thus allowing for attacks. Details provided.
| | Author: | Aleksandar aka sale83 | | File Size: | 4702 | | Last Modified: | Apr 17 13:14:46 2007 |
| MD5 Checksum: | 6928b5bfa2f7257b5246640c3360611a |
|
| /// File Name: |
wabbit-xss.txt |
Description:
|
Wabbit PHP Gallery version 0.9 suffers from a cross site scripting vulnerability.
| | Author: | the_Edit0r | | Homepage: | http://www.xmors-security.com/ | | File Size: | 1218 | | Last Modified: | Apr 17 13:06:25 2007 |
| MD5 Checksum: | cebd42b369f67c7ac72a1e5d6cc6c66c |
|
| /// File Name: |
ivan-rfi.txt |
Description:
|
Ivan Gallery Script version 0.1 remote file inclusion exploit.
| | Author: | seko | | File Size: | 2404 | | Last Modified: | Apr 17 12:33:26 2007 |
| MD5 Checksum: | d3561bc6d5a17086c2e530fd547f8b93 |
|
| /// File Name: |
action-rfi.txt |
Description:
|
ActionPoll PhpOpenChat version 1.1.0 suffers from a remote file inclusion vulnerability.
| | Author: | seko | | File Size: | 1769 | | Last Modified: | Apr 17 12:27:46 2007 |
| MD5 Checksum: | c9e0a1d87538e129910cd419d0b71143 |
|
| /// File Name: |
msdns_zonename.rb.txt |
Description:
|
This Metasploit module exploits a stack overflow in the RPC interface of the Microsoft DNS service. The vulnerability is triggered when a long zone name is supplied that contains escaped characters. This exploit will NOT work on Windows 2003 SP1 or SP2 if hardware DEP is enabled.
| | Author: | H D Moore | | Homepage: | http://metasploit.com/ | | File Size: | 4618 | | Related CVE(s): | CVE-2007-1748 | | Last Modified: | Apr 17 12:24:55 2007 |
| MD5 Checksum: | 5eaf4ad4892980ab9394b2204f8b0a6f |
|
| /// File Name: |
BTP00001P000ZA.zip |
Description:
|
Proof of concept exploit that demonstrates a denial of service condition in ZoneAlarm 6.
| | Homepage: | http://www.matousec.com/ | | Related File: | zonealarm6.txt | | File Size: | 3484 | | Last Modified: | Apr 17 00:59:50 2007 |
| MD5 Checksum: | 65ad6955722d70aba40ad9cc38ec61f7 |
|
| /// File Name: |
mswin-dns-overflow.txt |
Description:
|
Microsoft Windows DNS DnssrvQuery() stack overflow exploit. Binds a shell to TCP port 4444.
| | Author: | devcode | | File Size: | 7706 | | Related CVE(s): | CVE-2007-1748 | | Last Modified: | Apr 17 00:42:18 2007 |
| MD5 Checksum: | 4a2e7876cfab200e59d3ea8bb266a13d |
|
| /// File Name: |
xampp-rgod.txt |
Description:
|
XAMPP for Windows version 1.60a and below remote buffer overflow exploit that makes use of adodb.php/mssql_connect().
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 7081 | | Last Modified: | Apr 17 00:40:20 2007 |
| MD5 Checksum: | 85c6773f5353801d539543719907cdaa |
|
| /// File Name: |
mswin-dns-meta.txt |
Description:
|
Remote exploit for the Microsoft Windows DNS RPC service vulnerability. Tested on Windows 2000 SP4. Binds a shell to TCP port 4444.
| | Author: | Winny Thomas | | File Size: | 4837 | | Last Modified: | Apr 17 00:39:07 2007 |
| MD5 Checksum: | 59a3274fb97bad7d806445dbcd5c4d08 |
|
| /// File Name: |
nctaudio.txt |
Description:
|
Internet Explorer NCTAudioFile2.AudioFile Active-X remote overflow exploit.
| | Author: | InTeL | | File Size: | 5994 | | Last Modified: | Apr 17 00:36:59 2007 |
| MD5 Checksum: | 59f94064307fdf81b44d7a9eaad77f59 |
|
| /// File Name: |
tsdisp-rfi.txt |
Description:
|
XOOPS module tsdisplay4xoops version 0.1 suffers from a remote file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 355 | | Last Modified: | Apr 17 00:33:08 2007 |
| MD5 Checksum: | e452dcf4efba07a3f0459bd26aebbb52 |
|
| /// File Name: |
storefront-rfi.txt |
Description:
|
StoreFront for Gallery suffers froma remote file inclusion vulnerability.
| | Author: | Alkomandoz | | File Size: | 344 | | Last Modified: | Apr 17 00:32:09 2007 |
| MD5 Checksum: | b011aa28b45ecc5529532af59aedf7a2 |
|
| /// File Name: |
sunshop-rfi.txt |
Description:
|
SunShop Shopping Cart versions 3.5 and 4.0 suffer from a remote file inclusion vulnerability.
| | Author: | irvian | | File Size: | 657 | | Last Modified: | Apr 17 00:31:26 2007 |
| MD5 Checksum: | 44aef146edd96169fe17f69a5da8b721 |
|
| /// File Name: |
openmairie-lfi.txt |
Description:
|
openMairie version 1.10 suffers from a local file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 351 | | Last Modified: | Apr 17 00:29:57 2007 |
| MD5 Checksum: | 6f38e2ae30dbb97ef659d3c04556126f |
|
| /// File Name: |
webslider-rfi.txt |
Description:
|
Web Slider verison 0.6 suffers from a remote file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 427 | | Last Modified: | Apr 17 00:29:17 2007 |
| MD5 Checksum: | fcb94341715d1a67f7483e0a23aa1faf |
|
| /// File Name: |
audiocms-rfi.txt |
Description:
|
audioCMS arash version 0.1.4 suffers from a remote file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 550 | | Last Modified: | Apr 17 00:28:51 2007 |
| MD5 Checksum: | cba46b761141e91eb79988c244f35ba3 |
|
| /// File Name: |
gal125-rfi.txt |
Description:
|
Gallery version 1.2.5 suffers from a remote file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 373 | | Last Modified: | Apr 17 00:28:18 2007 |
| MD5 Checksum: | 32de178081838da9264e9e538180f13f |
|
| /// File Name: |
nmdeluxe-lfi.txt |
Description:
|
NMDeluxe version 1.0.1 suffers from a local file inclusion vulnerability in footer.php.
| | Author: | BeyazKurt | | File Size: | 3173 | | Last Modified: | Apr 17 00:27:19 2007 |
| MD5 Checksum: | 2ce99adf41be7bfe0177adb544ce650a |
|
| /// File Name: |
cnstats-rfi.txt |
Description:
|
CNStats version 2.9 suffers from a remote file inclusion vulnerability.
| | Author: | irvian | | File Size: | 535 | | Last Modified: | Apr 17 00:26:21 2007 |
| MD5 Checksum: | fce1c7cd7cc1d22862cff1254c0c4f3f |
|
| /// File Name: |
papoo-sql.txt |
Description:
|
Papoo versions 3.02 and below remote SQL injection exploit.
| | Author: | Kacper | | Homepage: | http://www.rahim.webd.pl/ | | File Size: | 4770 | | Last Modified: | Apr 17 00:25:33 2007 |
| MD5 Checksum: | 714df45c45ed23bea86a7c36313a74d2 |
|
|
|
|
|