Section: .. / 0602-exploits /
| /// File Name: |
eyeOS089.txt |
Description:
|
eyeOS versions 0.8.9 and below suffer from a remote command execution flaw.
| | Homepage: | http://www.gulftech.org/ | | File Size: | 1857 | | Last Modified: | Feb 8 00:20:50 2006 |
| MD5 Checksum: | 540a336a52918c998c078556aa64a34b |
|
| /// File Name: |
eZpublishXSS.txt |
Description:
|
eZ publish versions 3.7.3 and below suffer from cross site scripting flaws.
| | Author: | nukedx | | Homepage: | http://www.nukedx.com | | File Size: | 953 | | Last Modified: | Feb 25 23:59:17 2006 |
| MD5 Checksum: | ab2d214203503739e143e64a1888a525 |
|
| /// File Name: |
farsiInclusion.txt |
Description:
|
FarsiNews versions 2.1 and below suffer from a remote file inclusion vulnerability.
| | Author: | Hamid Ebadi | | Homepage: | http://hamid.ir/security | | File Size: | 1303 | | Last Modified: | Feb 2 06:00:10 2006 |
| MD5 Checksum: | 9c475f3fd5fe557762169d53553da102 |
|
| /// File Name: |
farsiNews.txt |
Description:
|
FarsiNews versions 2.5 and below suffer from various local file inclusion and direct file access flaws.
| | Author: | Hamid Ebadi | | Homepage: | http://hamid.ir/security | | File Size: | 1991 | | Last Modified: | Feb 13 01:43:37 2006 |
| MD5 Checksum: | bca38a41aa58750435700d49091876b2 |
|
| /// File Name: |
Fortinet-url.txt |
Description:
|
It is possible to bypass Fortinet URL blocker by making special HTTP requests. Proof of concept perl script provided.
| | Author: | Mathieu Dessus | | File Size: | 2540 | | Last Modified: | Feb 13 19:36:23 2006 |
| MD5 Checksum: | 5f931ff8373ea0ff85abc57ef3100446 |
|
| /// File Name: |
geeklog-1.3.11.txt |
Description:
|
Geeklog is vulnerable to a number of different attacks such as SQL Injection, and arbitrary file inclusion. These attacks can be combined to ultimately execute code on the vulnerable web server in a very reliable manner.
| | Author: | GulfTech Security Research | | Homepage: | http://www.gulftech.org/?node=research&article_id=00102-02192006 | | File Size: | 4908 | | Last Modified: | Feb 22 14:33:09 2006 |
| MD5 Checksum: | b8d327eed304a17382aeea3644d954b8 |
|
| /// File Name: |
gexp-openvmpsd.c |
Description:
|
OpenVMPSd versions 1.3 and below remote format string exploit. Binds a shell to port 31337.
| | Author: | barros, xgc | | Homepage: | http://gotfault.net/ | | File Size: | 8061 | | Last Modified: | Feb 14 02:59:15 2006 |
| MD5 Checksum: | 9c0d6272bd7bf0b699a00bbb8cac7440 |
|
| /// File Name: |
gexp-powerd.c |
Description:
|
Power Daemon versions 2.0.2 and below remote format string exploit.
| | Author: | barros, xgc | | Homepage: | http://gotfault.net/ | | File Size: | 9813 | | Last Modified: | Feb 14 03:00:32 2006 |
| MD5 Checksum: | bf56b8e1706fc8e7b5799af013ff3a49 |
|
| /// File Name: |
guestbook06.txt |
Description:
|
Login - Guestbox version 0.6 suffers from cross site scripting and administrative bypass flaws.
| | Author: | l0om | | Homepage: | http://www.excluded.org | | File Size: | 2771 | | Last Modified: | Feb 25 17:09:24 2006 |
| MD5 Checksum: | 524976647523d018bdecb03ae121f0db |
|
| /// File Name: |
guestbookPHP.txt |
Description:
|
gastbuch versions 1.3.2 and below are susceptible to cross site scripting.
| | Author: | Micha Borrmann | | File Size: | 1092 | | Last Modified: | Feb 14 02:37:21 2006 |
| MD5 Checksum: | 144ce0b21664236abeb439e709045dc9 |
|
| /// File Name: |
halfLifeDoS.txt |
Description:
|
Remote denial of service exploit for Half-Life engines that cause it to fall in an infinite loop and stop processing requests.
| | Author: | Firestorm | | File Size: | 1080 | | Last Modified: | Feb 9 00:06:48 2006 |
| MD5 Checksum: | 66d32b957f64c66400a685f8b6a22b1e |
|
| /// File Name: |
HotmailCookieXploit.txt |
Description:
|
Hotmail/MSN cross site scripting exploit.
| | Author: | Simo Ben youssef | | File Size: | 7107 | | Last Modified: | Feb 25 23:52:58 2006 |
| MD5 Checksum: | b87ded6d6ee6ee2ea0ef065c9c27d979 |
|
| /// File Name: |
htmlws.c |
Description:
|
Microsoft HTML Help Workshop .hhp file compiled file header buffer overflow exploit.
| | Author: | k3xji, darkeagle | | Homepage: | http://www.guvenliklab.com | | File Size: | 2196 | | Last Modified: | Feb 14 02:56:43 2006 |
| MD5 Checksum: | 2209e4c4bd89df614b3e6c8b6b192f0f |
|
| /// File Name: |
HYSA-2006-003.txt |
Description:
|
HYSA-2006-003 h4cky0u.org Advisory 012 - Oi! Email Marketing version 3.0 is susceptible to SQL injection attacks.
| | Author: | Illuminatus | | Homepage: | http://www.h4cky0u.org | | File Size: | 2296 | | Last Modified: | Feb 25 22:56:06 2006 |
| MD5 Checksum: | 9109bf4ab6e816ee8bfcfad1e0d171be |
|
| /// File Name: |
icqmailXSS.txt |
Description:
|
ICQmail.com and Mail2World.com suffer from cross site scripting flaws.
| | Author: | nukedx | | Homepage: | http://www.nukedx.com | | File Size: | 1333 | | Last Modified: | Feb 25 23:58:29 2006 |
| MD5 Checksum: | c3fee6f7605d4b6c0b0ed69706cf3e4e |
|
| /// File Name: |
igenus_remote.txt |
Description:
|
iGENUS WebMail versions 2.0.2 and below remote command execution exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2080 | | Last Modified: | Feb 26 00:15:24 2006 |
| MD5 Checksum: | 7f5249c4a254c90842c0495c2fadd6bc |
|
| /// File Name: |
imageVue16.1.txt |
Description:
|
The upload script in ImageVue 16.1 does not perform proper checking, thus allowing an attacker to upload a file to any writable directory.
| | Author: | zjieb | | File Size: | 887 | | Last Modified: | Feb 13 03:54:22 2006 |
| MD5 Checksum: | ac2fd08ac3d1f1bf95a207cbda525b77 |
|
|
|
|
|