Section: .. / 0802-exploits /
| /// File Name: |
punbb-blindpasswd.txt |
Description:
|
PunBB versions 1.2.16 and below blind password recovery exploit.
| | Author: | EpiBite | | Related File: | SE-2008-01.txt | | File Size: | 4329 | | Last Modified: | Feb 21 00:30:59 2008 |
| MD5 Checksum: | a6ab2960f28c522ad67633a821fe3579 |
|
| /// File Name: |
multicart-blindsql.txt |
Description:
|
MultiCart version 2.0 remote SQL injection exploit that leverages productdetails.php.
| | Author: | t0pp8uzz, xprog | | File Size: | 4159 | | Last Modified: | Feb 20 23:52:13 2008 |
| MD5 Checksum: | 081be277b7230808c29c7db576e01320 |
|
| /// File Name: |
wbb-blindsql.txt |
Description:
|
Woltlab Burning Board version 3.0.x remote blind SQL injection exploit.
| | Author: | NBBN | | File Size: | 2954 | | Last Modified: | Feb 20 23:43:54 2008 |
| MD5 Checksum: | 95093184b721b66508eaea65302f1521 |
|
| /// File Name: |
phpnukeinhalt-sql.txt |
Description:
|
The PHP-Nuke module Inhalt is susceptible to a SQL injection vulnerability.
| | Author: | Crackers_Child | | File Size: | 512 | | Last Modified: | Feb 20 23:42:24 2008 |
| MD5 Checksum: | 2076adc78e3275ed040eb5c3c378c5d3 |
|
| /// File Name: |
xoops2016-rfi.txt |
Description:
|
XOOPS version 2.0.16 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | F10 | | Homepage: | http://www.by-f10.com/ | | File Size: | 6815 | | Last Modified: | Feb 20 23:30:40 2008 |
| MD5 Checksum: | 38b931a601d0133c143d32b5a00b8300 |
|
| /// File Name: |
globsy-disclose.txt |
Description:
|
Globsy version 1.0 suffers from a remote file disclosure vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 220 | | Last Modified: | Feb 20 23:29:14 2008 |
| MD5 Checksum: | d4452fe0380e98ec80529be962970eab |
|
| /// File Name: |
phpnukedocum-sql.txt |
Description:
|
The PHP-Nuke Docum module suffers from a SQL injection vulnerability.
| | Author: | DamaR | | File Size: | 695 | | Last Modified: | Feb 20 23:28:28 2008 |
| MD5 Checksum: | 14416b1f6c2d2effaa8b893473a476f4 |
|
| /// File Name: |
joomlahwdvideo-sql.txt |
Description:
|
The Joomla com_hwdvideoshare module suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 945 | | Last Modified: | Feb 20 23:27:46 2008 |
| MD5 Checksum: | 35d4804cae76bc6119e761f680766f40 |
|
| /// File Name: |
phpnukeokul-sql.txt |
Description:
|
PHP-Nuke module Okul version 1.0 suffers from a remote SQL injection vulnerability.
| | Author: | xoron | | File Size: | 619 | | Last Modified: | Feb 20 23:27:01 2008 |
| MD5 Checksum: | 7cd6874d0e98c24b033c9482d226703b |
|
| /// File Name: |
nowsmsz.zip |
Description:
|
Exploit code for Now SMS/MMS Gateway versions 2007.06.27 and below which suffer from multiple buffer overflow vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | nowsmsz.txt | | File Size: | 7864 | | Last Modified: | Feb 20 01:34:48 2008 |
| MD5 Checksum: | 7ef5e425563efa2503a4ad19bc42450b |
|
| /// File Name: |
freesshdnull.zip |
Description:
|
Demonstration exploit for freeSSHd versions 1.2.0 and below which suffer from a NULL pointer crash vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | freesshdnull.txt | | File Size: | 7457 | | Last Modified: | Feb 20 01:23:06 2008 |
| MD5 Checksum: | 9b63465202226423409b8da66e71db1a |
|
| /// File Name: |
wachof.zip |
Description:
|
Exploit for Foxit Remote Access Server (WAC Server) versions 2.0 Build 3503 and below which suffer from telnet option heap overflow and SSH packet heap overflow vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | wachof.txt | | File Size: | 8140 | | Last Modified: | Feb 20 01:19:28 2008 |
| MD5 Checksum: | 995101a5dc42b8713acf0dec749b894c |
|
| /// File Name: |
woltlab303-sql.txt |
Description:
|
Woltlab Burning Board version 3.0.3 PL1 suffers from a SQL injection vulnerability.
| | Author: | NBBN | | File Size: | 1600 | | Last Modified: | Feb 20 00:48:26 2008 |
| MD5 Checksum: | 51eb5302369a6688464100f5430ad11d |
|
| /// File Name: |
PR06-12.txt |
Description:
|
BEA Plumtree Foundation portal version 6.0 and BEA AquaLogic Interaction version 6.1 are both vulnerable to a cross site scripting vulnerability.
| | Author: | Jan Fry, Adrian Pastor | | Homepage: | http://www.procheckup.com/ | | File Size: | 3746 | | Last Modified: | Feb 20 00:45:12 2008 |
| MD5 Checksum: | dc1477e78b6d8ae015da20f40d8399ed |
|
| /// File Name: |
DSECRG-08-016.txt |
Description:
|
Jinzora Media Jukebox version 2.7.5 suffers from multiple cross site scripting vulnerabilities.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 2869 | | Last Modified: | Feb 20 00:42:17 2008 |
| MD5 Checksum: | 10082ff9ad8e464e5774e99ad5183951 |
|
| /// File Name: |
sara-malware.tar.gz |
Description:
|
SARA Malware that exploits the vmsplice bug in the Linux kernel. Affects kernel versions 2.6.17 through 2.6.24.1. Successful exploitation allows the disabling of INPUT rules on the firewall, opens TCP port 1407 for execution of remote commands, and more.
| | Author: | si0ux security | | File Size: | 9756 | | Related CVE(s): | CVE-2008-0600 | | Last Modified: | Feb 20 00:40:42 2008 |
| MD5 Checksum: | 0882810cff3705278c7bc27760e0015b |
|
| /// File Name: |
ourgame-overflow.txt |
Description:
|
Ourgame GLWorld version 2.x ActiveX buffer overflow exploit that makes use of hgs_startNotify() and spawns calc.exe.
| | Author: | luoluo | | Homepage: | http://www.ph4nt0m.org/ | | File Size: | 1109 | | Last Modified: | Feb 20 00:32:24 2008 |
| MD5 Checksum: | 12a1151119759fb0db567dc8ee6a7bc7 |
|
| /// File Name: |
thecus-rfi.txt |
Description:
|
The Thecus NS200Pro NAS server control panel suffers from a remote file inclusion vulnerability.
| | Author: | Crackers_Child | | File Size: | 1119 | | Last Modified: | Feb 20 00:29:04 2008 |
| MD5 Checksum: | 2f1936d31230a0d35dedfafc6b4ae0ef |
|
| /// File Name: |
xorg-disclose.txt |
Description:
|
X.Org xorg-server version 1.1.1-48.13 and below probe for files proof of concept exploit.
| | Author: | vl4dZ | | File Size: | 1018 | | Last Modified: | Feb 20 00:12:51 2008 |
| MD5 Checksum: | 3c92df7102f55147baa1e740988e328a |
|
| /// File Name: |
PR08-01.txt |
Description:
|
Several cross site scripting flaws, a cross domain redirect, and a webroot disclosure exist in Spyce - Python Server Pages (PSP).
| | Author: | Richard Brain, Jan Fry, Bruno Kovacs | | Homepage: | http://www.procheckup.com/ | | File Size: | 3635 | | Last Modified: | Feb 20 00:10:37 2008 |
| MD5 Checksum: | 68df521d657fa95bfec5fd3c0a54fd58 |
|
| /// File Name: |
DSECRG-08-015.txt |
Description:
|
Dokeos E-Learning System version 1.8.4 suffers from multiple SQL injection and cross site scripting vulnerabilities.
| | Author: | Sh2kerr, Stas Svistunovich | | Homepage: | http://www.dsec.ru/ | | File Size: | 4817 | | Last Modified: | Feb 20 00:07:49 2008 |
| MD5 Checksum: | 0962f6debaa8fedf66c71abb3a7f2c8a |
|
| /// File Name: |
deslock-pown-v2.c |
Description:
|
DESlock+ versions 3.2.6 and below local kernel ring0 SYSTEM exploit.
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 9061 | | Last Modified: | Feb 20 00:00:51 2008 |
| MD5 Checksum: | e2a2f509fbdd52e0e89131360b14d9c5 |
|
| /// File Name: |
deslock-list-zero-v2.c |
Description:
|
DESlock+ versions 3.2.6 and below local kernel ring0 link list zero SYSTEM exploit.
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 8345 | | Last Modified: | Feb 19 23:59:56 2008 |
| MD5 Checksum: | 0ee5fa2cca87562ccf9bac727f3140cf |
|
| /// File Name: |
deslock-list-leak.c |
Description:
|
DESlock+ versions 3.2.6 and below local kernel memory leak proof of concept exploit.
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 2222 | | Last Modified: | Feb 19 23:58:21 2008 |
| MD5 Checksum: | 71c20531ae29d3c1601e294dcfde84e9 |
|
|
|
|
|