Section: .. / 0602-exploits /
| /// File Name: |
PHPNuke-sp3x.c |
Description:
|
PHPNuke versions 7.8 and below remote SQL injection exploit that makes use of the vulnerability in the Your_Account module.
| | Author: | sp3x | | Homepage: | http://www.securityreason.com/ | | File Size: | 3447 | | Last Modified: | Feb 24 20:17:20 2006 |
| MD5 Checksum: | ae7a89cb77d6ee2b1f417f96db41addd |
|
| /// File Name: |
MiniNukeCMS.txt |
Description:
|
The MiniNuke CMS system suffers from a SQL injection vulnerability in pages.asp. Detailed exploitation provided.
| | Author: | nukedx a.k.a nuker | | Homepage: | http://www.nukedx.com/ | | File Size: | 3418 | | Last Modified: | Feb 22 14:29:47 2006 |
| MD5 Checksum: | fefcb5dd1aeaff6889c62dfd06aface4 |
|
| /// File Name: |
BuHa-7.txt |
Description:
|
BuHa Security-Advisory #7 - Mantis 1.00rc4 suffers from XSS and SQL injection.
| | Author: | BuHa-Security | | Homepage: | http://morph3us.org/ | | File Size: | 3328 | | Last Modified: | Feb 16 19:13:08 2006 |
| MD5 Checksum: | 2883004e35a214438caabfbb8f06034f |
|
| /// File Name: |
Sof-PunkBuster.txt |
Description:
|
It is possible to DOS Soldier of Fortune II with PunkBuster enabled by crashing the server.
| | Author: | aluigi | | Homepage: | http://aluigi.altervista.org | | File Size: | 3193 | | Last Modified: | Feb 21 19:40:23 2006 |
| MD5 Checksum: | b6993537feb0131685ead405062c0ea7 |
|
| /// File Name: |
mysql-4x50.c |
Description:
|
Local privilege escalation exploit for MySQL 4.x and 5.0 that makes use of UDFs.
| | Author: | Marco Ivaldi | | File Size: | 3178 | | Last Modified: | Feb 26 00:13:53 2006 |
| MD5 Checksum: | 80e3856c846d6dcafeb92c1d3ef8eecf |
|
| /// File Name: |
ZRCSA-200601.txt |
Description:
|
Various SQL injection and cross site scripting vulnerabilities have been discovered in SPIP versions 1.8.2-e and below and 1.9 Alpha 2 and below.
| | Author: | Siegfried | | Homepage: | http://www.zone-h.fr | | File Size: | 2971 | | Last Modified: | Feb 2 06:56:15 2006 |
| MD5 Checksum: | e14e51d79a8abda6e77f3d50c444d101 |
|
| /// File Name: |
ArescomDoS.c |
Description:
|
Arescom NetDSL-1000 remote denial of service exploit that floods the telnetd of the device.
| | Author: | Fabian Ramirez S. | | Homepage: | http://www.framirez.com | | File Size: | 2860 | | Last Modified: | Feb 2 05:21:55 2006 |
| MD5 Checksum: | 5542b28f173d5f235e8f2a6996e64774 |
|
| /// File Name: |
EveryoneXSS.txt |
Description:
|
everyone.net suffers from a cross site scripting vulnerability.
| | Author: | Simo Ben youssef | | Homepage: | http://www.morx.org | | File Size: | 2860 | | Last Modified: | Feb 14 00:17:23 2006 |
| MD5 Checksum: | 8fafb9701be58a46551e5886bcc89d87 |
|
| /// File Name: |
DBeSession102.txt |
Description:
|
DB_eSession 1.0.2 is susceptible to SQL injection attacks. Details provided.
| | Homepage: | http://www.gulftech.org/ | | File Size: | 2812 | | Last Modified: | Feb 13 23:45:03 2006 |
| MD5 Checksum: | 1689d07a74662034a1dc635361cb6f16 |
|
| /// File Name: |
guestbook06.txt |
Description:
|
Login - Guestbox version 0.6 suffers from cross site scripting and administrative bypass flaws.
| | Author: | l0om | | Homepage: | http://www.excluded.org | | File Size: | 2771 | | Last Modified: | Feb 25 17:09:24 2006 |
| MD5 Checksum: | 524976647523d018bdecb03ae121f0db |
|
| /// File Name: |
redms06-005.py.txt |
Description:
|
Microsoft Windows Media Player BMP handling buffer overflow denial of service exploit.
| | Author: | redsand | | File Size: | 2707 | | Last Modified: | Feb 26 00:06:01 2006 |
| MD5 Checksum: | a08077d3cdc17d30808fcbc0c03e6191 |
|
| /// File Name: |
cpanelXSS.txt |
Description:
|
Cpanel is susceptible to multiple cross site scripting attacks.
| | Author: | _6m0_HaCk | | Homepage: | http://www.morx.org/ | | File Size: | 2706 | | Last Modified: | Feb 4 09:44:37 2006 |
| MD5 Checksum: | 0ac71a93bc5ecd11950451fee3d52619 |
|
| /// File Name: |
155022006-nokia_n70.txt |
Description:
|
The Bluetooth stack on Nokia N70 cellular phones is susceptible to a remote denial of service attack.
| | Author: | Pierre BETOUIN | | Homepage: | http://www.secuobs.com/ | | File Size: | 2606 | | Last Modified: | Feb 24 20:13:10 2006 |
| MD5 Checksum: | 9256b6a4f5115440cb1e63a12ff9b211 |
|
| /// File Name: |
Fortinet-url.txt |
Description:
|
It is possible to bypass Fortinet URL blocker by making special HTTP requests. Proof of concept perl script provided.
| | Author: | Mathieu Dessus | | File Size: | 2540 | | Last Modified: | Feb 13 19:36:23 2006 |
| MD5 Checksum: | 5f931ff8373ea0ff85abc57ef3100446 |
|
| /// File Name: |
oprofile.txt |
Description:
|
OProfile versions 0.9.1 and below suffer from an insecure path vulnerability that allows for privilege escalation.
| | Author: | Luis Miguel Ferreira da Silva | | File Size: | 2343 | | Last Modified: | Feb 8 00:18:05 2006 |
| MD5 Checksum: | de21c1464c1dae6ec3fe4ad71c8e36c0 |
|
| /// File Name: |
cpaint202XSS.txt |
Description:
|
CPAINT versions 2.0.2 and below suffer from a cross site scripting flaw.
| | Homepage: | http://www.gulftech.org/ | | File Size: | 2312 | | Last Modified: | Feb 13 01:20:02 2006 |
| MD5 Checksum: | 958a02b7f621147375687639902e1cb9 |
|
| /// File Name: |
neomailXSS.txt |
Description:
|
Neomail is susceptible to cross site scripting attacks.
| | Author: | _6m0_HaCk | | Homepage: | http://www.morx.org/ | | File Size: | 2312 | | Last Modified: | Feb 4 09:45:16 2006 |
| MD5 Checksum: | 88aeea8ef919caf59647315ad9b84868 |
|
| /// File Name: |
HYSA-2006-003.txt |
Description:
|
HYSA-2006-003 h4cky0u.org Advisory 012 - Oi! Email Marketing version 3.0 is susceptible to SQL injection attacks.
| | Author: | Illuminatus | | Homepage: | http://www.h4cky0u.org | | File Size: | 2296 | | Last Modified: | Feb 25 22:56:06 2006 |
| MD5 Checksum: | 9109bf4ab6e816ee8bfcfad1e0d171be |
|
| /// File Name: |
xfocus-SD-060206.txt |
Description:
|
Test exploit to see if a BCB compiler is susceptible to an integer overflow. Versions BCB6+ent_upd4 and below are susceptible.
| | Homepage: | http://www.xfocus.org | | File Size: | 2265 | | Last Modified: | Feb 7 23:36:25 2006 |
| MD5 Checksum: | 762827aa2f720d62f47699b6bbb2a57e |
|
|
|
|
|