Section: .. / 0703-exploits /
| /// File Name: |
wdc-lfi.txt |
Description:
|
Weekly Drawing Contest version 0.0.1 suffers from a local file disclosure vulnerability.
| | Author: | BorN To K!LL | | File Size: | 920 | | Last Modified: | Mar 13 22:20:28 2007 |
| MD5 Checksum: | 6c0d144e61bb69493ad6e8181ff77ef7 |
|
| /// File Name: |
aonat-xss.txt |
Description:
|
aon.at suffers from a cross site scripting vulnerability.
| | Author: | Florian Stinglmayr | | File Size: | 354 | | Last Modified: | Mar 13 22:19:31 2007 |
| MD5 Checksum: | 9a1005a55999ceb7c7a0ede1b9eaecbb |
|
| /// File Name: |
eplus-xss.txt |
Description:
|
www.eplus.de suffers from cross site scripting and remote file inclusion vulnerabilities.
| | Author: | Hanno Boeck | | Homepage: | http://www.hboeck.de/ | | File Size: | 888 | | Last Modified: | Mar 13 22:07:09 2007 |
| MD5 Checksum: | 750d332b1b3783554163c56392c909ca |
|
| /// File Name: |
assetman24-lfi.txt |
Description:
|
AssetMan version 2.4a suffers from a local file disclosure vulnerability.
| | Author: | BorN To K!LL | | File Size: | 932 | | Last Modified: | Mar 13 21:18:58 2007 |
| MD5 Checksum: | f4ee51ef7a944b6317ed9db89bf3ac60 |
|
| /// File Name: |
fantastico-lfi.txt |
Description:
|
Fantastico in all versions of CPanel 10.x suffers from a local file inclusion vulnerability.
| | Author: | cyb3rt, 020 | | File Size: | 1697 | | Last Modified: | Mar 13 21:11:22 2007 |
| MD5 Checksum: | 44959ebb638a503a2e52ed963cd48840 |
|
| /// File Name: |
clipshare-rfi.txt |
Description:
|
A remote file inclusion vulnerability exists in ClipShare version 1.5.3.
| | Author: | Hasadya Raed | | File Size: | 816 | | Last Modified: | Mar 13 21:09:43 2007 |
| MD5 Checksum: | 05367d1dc7ac867e07172b32de3d6777 |
|
| /// File Name: |
phpmysport-rfi.txt |
Description:
|
phpMySport CMS suffers from a remote file inclusion vulnerability in menu.php.
| | Author: | vitux | | File Size: | 1425 | | Last Modified: | Mar 13 20:54:45 2007 |
| MD5 Checksum: | 9f72aef7689c249716a0e74b0aa79af6 |
|
| /// File Name: |
NukeSentinel-sql.txt |
Description:
|
NukeSentinel versions 2.5.06 and below SQL injection exploit for use with mysql versions 4.0.24 and above.
| | Author: | DarkFig | | Homepage: | http://www.acid-root.new.fr/ | | File Size: | 6743 | | Last Modified: | Mar 13 20:41:03 2007 |
| MD5 Checksum: | bf37e57e370ad5fbb9632dc3aea56b31 |
|
| /// File Name: |
grayscale-multi.txt |
Description:
|
Grayscale Blog version 0.8.0 suffers from SQL injection, security bypass, and cross site scripting vulnerabilities.
| | Author: | omnipresent | | File Size: | 3093 | | Last Modified: | Mar 13 20:38:31 2007 |
| MD5 Checksum: | 2918d72fe508a8bae80cff4f9ea28405 |
|
| /// File Name: |
duyuru-sql.txt |
Description:
|
Duyuru Scripti remote blind SQL injection exploit.
| | Author: | Cr@zy_King | | File Size: | 3768 | | Last Modified: | Mar 13 20:37:13 2007 |
| MD5 Checksum: | 631e71b26a87f1f9ea1583a0527521d1 |
|
| /// File Name: |
softnews-rfi.txt |
Description:
|
A remote file inclusion vulnerability exists in SoftNews Media Group.
| | Author: | Hasadya Raed | | File Size: | 597 | | Last Modified: | Mar 13 20:35:33 2007 |
| MD5 Checksum: | feca0d13d5c6f9ca74e137e6adf6bda7 |
|
| /// File Name: |
SubDog-rfi.txt |
Description:
|
A remote file inclusion vulnerability exists in Script Premod SubDog 2.
| | Author: | Hasadya Raed | | File Size: | 665 | | Last Modified: | Mar 13 20:34:58 2007 |
| MD5 Checksum: | 54c346f0f09cfb266fa69298a3c927f3 |
|
| /// File Name: |
phpnuke80-cookie.txt |
Description:
|
PHP Nuke versions 8.0 and below suffer from a cookie manipulation flaw that allows for SQL injection and local file inclusion attacks.
| | Author: | Aleksandar aka sale83 | | File Size: | 2296 | | Last Modified: | Mar 13 20:33:53 2007 |
| MD5 Checksum: | ecc57cedced612963236828e709a1272 |
|
| /// File Name: |
hcnews-blindsql.txt |
Description:
|
HC NewsSystem version 1.0-4 suffers from a blind SQL injection vulnerability in index.php.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 856 | | Last Modified: | Mar 13 18:52:10 2007 |
| MD5 Checksum: | cbbea38cc4b916b693749f9fc5bf2ea5 |
|
| /// File Name: |
script-rfi.txt |
Description:
|
A remote file inclusion vulnerability exists in Script copyright (c) James Coyle.
| | Author: | Hasadya Raed | | File Size: | 488 | | Last Modified: | Mar 13 18:41:15 2007 |
| MD5 Checksum: | dc1108925e674c3eec7e40f804108bf6 |
|
| /// File Name: |
copperminepg-rfi.txt |
Description:
|
Coppermine Photo Gallery suffers from some remote file inclusion vulnerabilities.
| | Author: | Hasadya Raed | | File Size: | 931 | | Last Modified: | Mar 13 18:39:57 2007 |
| MD5 Checksum: | 1d1b7ded143dc8d26ae6e764d99ae3da |
|
| /// File Name: |
deviantART-xss.txt |
Description:
|
deviantART suffers from a cross site scripting vulnerability.
| | Author: | Raed | | File Size: | 570 | | Last Modified: | Mar 13 18:30:14 2007 |
| MD5 Checksum: | 7c272a8857658bbdd73a04a191251ec0 |
|
| /// File Name: |
csa-driver.txt |
Description:
|
COMPASS SECURITY ADVISORY - The Linux drivers for the Omnikey CardMan 4040 smartcard reader contains a buffer overflow vulnerability. Local attackers with direct or indirect write permissions to a cmx device file can execute arbitrary code with kernel privileges or may cause a denial of service condition. Proof of concept exploit included.
| | Author: | Daniel Roethlisberger | | Homepage: | http://www.csnc.ch/ | | File Size: | 4704 | | Related CVE(s): | CVE-2007-0005 | | Last Modified: | Mar 13 18:26:05 2007 |
| MD5 Checksum: | 7dca159ebdcc3579a8aef062fa5d499b |
|
| /// File Name: |
serviziinformazionesicurezza_gov_it..> |
Description:
|
There is a cross site scripting vulnerability in www.serviziinformazionesicurezza.gov.it.
| | Author: | samsainsekt | | File Size: | 279 | | Last Modified: | Mar 13 18:24:14 2007 |
| MD5 Checksum: | 57a0685f67b7362991d9b76add881277 |
|
| /// File Name: |
php-importreqvar.txt |
Description:
|
PHP versions greater than or equal to 4.0.7 and less than or equal to 5.2.1 suffer from an arbitrary variable overwrite in import_request_variables().
| | Author: | Stefano di Paola, Francesco Ongaro | | Homepage: | http://www.wisec.it/ | | File Size: | 8343 | | Last Modified: | Mar 8 22:25:31 2007 |
| MD5 Checksum: | 7caa19415b07b0f1e5e2e58ca201d09d |
|
|
|
|
|