Section: .. / 0711-exploits /
| /// File Name: |
edrawflow-insecure.txt |
Description:
|
EDraw Flowchart ActiveX control HttpDownloadFile() insecure method exploit that makes use of EDImage.ocx version 2.0.2005.1104.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 1181 | | Last Modified: | Nov 2 11:47:21 2007 |
| MD5 Checksum: | db390b9b9707f39dbeaf9cb518aacea4 |
|
| /// File Name: |
myspaceclone-sql.txt |
Description:
|
MySpace Clone Script suffers from a remote SQL injection vulnerability.
| | Author: | t0pp8uzz, xprog | | File Size: | 1181 | | Last Modified: | Nov 13 20:57:17 2007 |
| MD5 Checksum: | 75c895c8ba777b89181a948cb170de95 |
|
| /// File Name: |
syndeocms-rfi.txt |
Description:
|
syndeoCMS version 2.5.01 suffers from a remote file inclusion vulnerability.
| | Author: | mdx | | Homepage: | http://www.by-mdx.com/ | | File Size: | 1135 | | Last Modified: | Nov 5 10:55:10 2007 |
| MD5 Checksum: | bfc94ed9a38be2421c1cb8e59cd95d62 |
|
| /// File Name: |
hotscripts-sql.txt |
Description:
|
HotScripts Clone Script suffers from a remote SQL injection vulnerability.
| | Author: | t0pp8uzz, xprog | | File Size: | 1099 | | Last Modified: | Nov 26 16:30:53 2007 |
| MD5 Checksum: | 9516555e9a8a8637314f6910ed21b114 |
|
| /// File Name: |
charrays-rfi.txt |
Description:
|
Charrays CMS version 0.9.3 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1085 | | Last Modified: | Nov 28 20:10:12 2007 |
| MD5 Checksum: | 03378f132fba2d0c8642c5e906af52c1 |
|
| /// File Name: |
ehcp-rfi.txt |
Description:
|
EHCP versions 0.22.8 and below suffer from multiple remote file inclusion vulnerabilities.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1057 | | Last Modified: | Nov 28 20:09:25 2007 |
| MD5 Checksum: | 96d23787130e22bae7ab1aae6b53c59a |
|
| /// File Name: |
wow-sql.txt |
Description:
|
WorkingOnWeb version2.0.1400 suffers from a remote SQL injection vulnerability.
| | Author: | ka0x | | File Size: | 1044 | | Last Modified: | Nov 26 21:24:44 2007 |
| MD5 Checksum: | 0a79c1248df5f1acffaffc70f6b03ffd |
|
| /// File Name: |
smf-upload.txt |
Description:
|
SMF Forum suffers from a remote PHP shell upload vulnerability.
| | Author: | mas_bloon | | File Size: | 1001 | | Last Modified: | Nov 26 16:09:40 2007 |
| MD5 Checksum: | de9795ae118e266d90d4f666a34c8f30 |
|
| /// File Name: |
richfx-overflow.txt |
Description:
|
Multiple stack overflows exist in the RichFX nprfxins.dll ActiveX control.
| | Author: | Elazar Broad | | File Size: | 962 | | Last Modified: | Nov 26 22:14:30 2007 |
| MD5 Checksum: | 8b1215e3da7bdfd3dbde865f33c48044 |
|
| /// File Name: |
phphelpdesk-lfisql.txt |
Description:
|
phphelpdesk version 0.6.16 appears susceptible to local file inclusion and SQL injection vulnerabilities.
| | Author: | Joseph Giron | | File Size: | 958 | | Last Modified: | Nov 5 11:00:06 2007 |
| MD5 Checksum: | 1d22a25eef362ec45a59291c07232805 |
|
| /// File Name: |
pmapper-rfi.txt |
Description:
|
p.mapper version 3.2.0 suffers from a remote file inclusion vulnerability.
| | Author: | ShAy6oOoN | | File Size: | 931 | | Last Modified: | Nov 27 23:01:51 2007 |
| MD5 Checksum: | 95cff3614ec14efae28f68ea8533d20a |
|
| /// File Name: |
webmeetme-disclose.txt |
Description:
|
Web-MeetMe version 3.0.3 suffers from a remote file disclosure vulnerability in play.php.
| | Author: | Evil.Man | | Homepage: | http://www.tryag.cc/ | | File Size: | 925 | | Last Modified: | Nov 30 00:49:55 2007 |
| MD5 Checksum: | d4655f22240f4a2600afd9d831200b17 |
|
| /// File Name: |
i386_set_ldt-dos.txt |
Description:
|
Apple Mac OS X 10.4.x kernel i386_set_ldt() integer overflow proof of concept exploit.
| | Homepage: | http://www.risesecurity.org/ | | File Size: | 915 | | Last Modified: | Nov 26 12:12:59 2007 |
| MD5 Checksum: | 34a577aefb5c5cb73fecdb277747bf56 |
|
| /// File Name: |
calendarproverbs-sql.txt |
Description:
|
Calendar Proverbs versions 1.1 and below suffer from a remote SQL injection vulnerability in caladmin.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 908 | | Last Modified: | Nov 26 22:44:17 2007 |
| MD5 Checksum: | dad24ab9d8a5669fc8ad3bc60d0df5ac |
|
| /// File Name: |
docusafe-sql.txt |
Description:
|
DocuSafe is susceptible to SQL injection attacks via the search section.
| | Author: | The-0utl4w | | Homepage: | http://aria-security.net/ | | File Size: | 908 | | Last Modified: | Nov 14 19:22:09 2007 |
| MD5 Checksum: | 0f347b2d172b36637b5c0a727c7cfc30 |
|
| /// File Name: |
ezchatbox-xss.txt |
Description:
|
EZChatbox version 1.01 suffers from cross site scripting vulnerabilities.
| | Author: | ShAy6oOoN | | File Size: | 902 | | Last Modified: | Nov 26 17:24:34 2007 |
| MD5 Checksum: | 05559475ba427958d8cb5fa2c9f423c7 |
|
| /// File Name: |
x7-xss.txt |
Description:
|
X7 Chat version 2.0.4 is susceptible to cross site scripting vulnerabilities.
| | Author: | ShAy6oOoN | | File Size: | 888 | | Last Modified: | Nov 12 23:33:25 2007 |
| MD5 Checksum: | 7454cfb6a641f1cf7961dc3a698d282f |
|
| /// File Name: |
apc-flaw.txt |
Description:
|
APC PDU products appear to be susceptible to a login bypass vulnerability.
| | Author: | Gary Simat, Randy Kent | | File Size: | 872 | | Last Modified: | Nov 30 01:06:55 2007 |
| MD5 Checksum: | 4bc09aa79a448444bcbdde8d01b65592 |
|
| /// File Name: |
flexgrid-overflow.txt |
Description:
|
The FlexGrid component version 7.1 suffers from stack overflows.
| | Author: | Elazar Broad | | File Size: | 856 | | Last Modified: | Nov 16 02:21:03 2007 |
| MD5 Checksum: | f10dc195b91a28edd7c47f499acc4115 |
|
| /// File Name: |
aurigma-overflows.txt |
Description:
|
Proof of concept exploit for multiple stack overflows in Aurigma ImageUploader ActiveX control version 4.1.
| | Author: | Elazar Broad | | File Size: | 831 | | Last Modified: | Nov 26 18:07:21 2007 |
| MD5 Checksum: | 89a2d6bee0208fe86ae2fc32955302b1 |
|
| /// File Name: |
setlocate-local.txt |
Description:
|
IBM AIX versions 5.3.0 and below setlocale() local privilege escalation exploit.
| | Author: | Thomas Pollet | | File Size: | 825 | | Related CVE(s): | CVE-2006-4254 | | Last Modified: | Nov 7 02:57:23 2007 |
| MD5 Checksum: | 819234988ee6683a72080dff03d470a4 |
|
| /// File Name: |
evanced-sqlxss.txt |
Description:
|
E-vanced Solutions suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | Joseph Giron | | File Size: | 823 | | Last Modified: | Nov 26 18:00:05 2007 |
| MD5 Checksum: | 2eda6235ab8f905bdbdc1c8654869f80 |
|
| /// File Name: |
phpbbviet-rfi.txt |
Description:
|
phpBBViet version 0.22 suffers from a remote file inclusion vulnerability.
| | Author: | xoron | | File Size: | 779 | | Last Modified: | Nov 26 16:27:38 2007 |
| MD5 Checksum: | a61ff8c141874c56084412e9c9b62100 |
|
| /// File Name: |
citrix-xss.txt |
Description:
|
Citrix NetScaler version 8.0 suffers from a cross site scripting vulnerability in the web management interface.
| | Author: | nnposter | | File Size: | 775 | | Last Modified: | Nov 26 17:17:07 2007 |
| MD5 Checksum: | 2f2c386e1c668badc918bae31863ed37 |
|
| /// File Name: |
nah-sql.txt |
Description:
|
NetAuctionHelp suffers from a remote SQL injection vulnerability.
| | Homepage: | http://aria-security.net/ | | File Size: | 765 | | Last Modified: | Nov 26 18:08:19 2007 |
| MD5 Checksum: | 41a2c90839c20b1b56debdc6d721e3a5 |
|
|
|
|
|