Section: .. / 0602-exploits /
| /// File Name: |
dragonfly9.0.6.1_incl_xpl.html |
Description:
|
CPGNuke Dragonfly version 9.0.6.1 remote command execution exploit that makes use of an arbitrary local inclusion flaw.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org | | File Size: | 57266 | | Last Modified: | Feb 8 23:54:04 2006 |
| MD5 Checksum: | f976ab73fdd4af3d5416535861bd7144 |
|
| /// File Name: |
srvcheck2.zip |
Description:
|
Privilege escalation exploit for Windows networks using weak service restrictions.
| | Author: | aT4r | | Homepage: | http://www.haxorcitos.com | | Related File: | winval.pdf | | File Size: | 36799 | | Last Modified: | Feb 13 23:54:07 2006 |
| MD5 Checksum: | ad3eb5a3df759022d366d2a22d076536 |
|
| /// File Name: |
noccw_10_incl_xpl.txt |
Description:
|
NOCC Webmail versions 1.0 and below suffer from arbitrary local file inclusion, PHP injection, remote code execution, and cross site scripting flaws. Exploit included.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org | | File Size: | 26011 | | Last Modified: | Feb 25 22:40:59 2006 |
| MD5 Checksum: | 4d3b9d4aac222e9b667ee87dabc67164 |
|
| /// File Name: |
runcms_13a_xpl.html |
Description:
|
RunCMS versions 1.2 and below arbitrary remote inclusion exploit. Also allows for code execution on RunCMS versions 1.3a2 and below by making use of an upload flaw via FCKEditor.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org | | File Size: | 19460 | | Last Modified: | Feb 13 01:17:25 2006 |
| MD5 Checksum: | 41ab4e99ce769362efd908d736fd7ce0 |
|
| /// File Name: |
imap4d_expl.c |
Description:
|
GNU mailutils imap4d format string vulnerability exploit.
| | Author: | crash-x | | File Size: | 15404 | | Last Modified: | Feb 1 18:14:29 2006 |
| MD5 Checksum: | 3e5f51b8cef911e8d64bec8c9636a0c8 |
|
| /// File Name: |
MyBB-1.03.txt |
Description:
|
MyBB 1.03 suffers from multiple SQL injection vulnerabilities. POC included.
| | Author: | HACKERS PAL | | Homepage: | http://WwW.SoQoR.NeT | | File Size: | 14802 | | Last Modified: | Feb 14 18:51:12 2006 |
| MD5 Checksum: | 093be3134f64c642c65ed7b31820c1c9 |
|
| /// File Name: |
safari_safefiles_exec.pm.txt |
Description:
|
This Metasploit module exploits a vulnerability in Safari's "Safe file" feature, which will automatically open any file with one of the allowed extensions. This can be abused by supplying a zip file, containing a shell script, with a metafile indicating that the file should be opened by Terminal.app. This module depends on the 'zip' command-line utility.
| | Author: | H D Moore | | Homepage: | http://www.metasploit.com | | File Size: | 12432 | | Last Modified: | Feb 26 00:11:18 2006 |
| MD5 Checksum: | caf3501268c966ac68fd12049bcd0d09 |
|
| /// File Name: |
XOR-HostAdmin.txt |
Description:
|
XOR Crew :: Security Advisory - HostAdmin - Remote Command Execution Vulnerability. POC Included.
| | Homepage: | http://www.xorcrew.net/ | | File Size: | 11974 | | Last Modified: | Feb 20 16:35:41 2006 |
| MD5 Checksum: | a3822c6af19d6986347f2440fb18ad65 |
|
| /// File Name: |
XOR-iUser.txt |
Description:
|
XOR Crew :: Security Advisory - iUser Ecommerce - Remote Command Execution Vulnerability. POC exploit included.
| | Author: | Scott Dewey | | Homepage: | http://www.xorcrew.net/ | | File Size: | 11528 | | Last Modified: | Feb 20 16:33:39 2006 |
| MD5 Checksum: | 9e024c74b23959c5aea8d0c1a202b516 |
|
| /// File Name: |
spip_182g_shell_inj_xpl.html |
Description:
|
SPIP versions 1.8.2g and below remote command execution exploit that makes use of an arbitrary local inclusion flaw and SQL injection.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org | | File Size: | 11464 | | Last Modified: | Feb 8 23:56:53 2006 |
| MD5 Checksum: | 66a4f913c42aa8b6ab29bec9dfa02183 |
|
| /// File Name: |
shoutcast_expl.c |
Description:
|
Shoutcast versions 1.9.4 and below HTTP GET filename request remote format string exploit that binds to port 7000.
| | Author: | crash-x | | File Size: | 10252 | | Last Modified: | Feb 1 18:16:04 2006 |
| MD5 Checksum: | d399666b22163efa3814d4715651ab91 |
|
| /// File Name: |
gexp-powerd.c |
Description:
|
Power Daemon versions 2.0.2 and below remote format string exploit.
| | Author: | barros, xgc | | Homepage: | http://gotfault.net/ | | File Size: | 9813 | | Last Modified: | Feb 14 03:00:32 2006 |
| MD5 Checksum: | bf56b8e1706fc8e7b5799af013ff3a49 |
|
| /// File Name: |
Clever_Copy_V3_sql.txt |
Description:
|
Clever Copy versions less than or equal to 3.0 SQL injection / Admin authentication details disclosure exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org | | File Size: | 9117 | | Last Modified: | Feb 5 22:49:24 2006 |
| MD5 Checksum: | 3497f9c0e0afef2ba2ffc424485322e9 |
|
| /// File Name: |
XOR-Wimpy.txt |
Description:
|
XOR Crew :: Security Advisory - Wimpy MP3 Player - Text file overwrite. (lame)
| | Homepage: | http://www.xorcrew.net/ | | File Size: | 8569 | | Last Modified: | Feb 20 16:36:51 2006 |
| MD5 Checksum: | 0b5e63b0baed4e4d3df620e5da8c8711 |
|
|
|
|
|