Section: .. / 0712-exploits /
| /// File Name: |
moodle-sql.txt |
Description:
|
It appears that the latest revision of Moodle may be susceptible to SQL injection attacks.
| | File Size: | 294 | | Last Modified: | Dec 24 14:46:38 2007 |
| MD5 Checksum: | 8f6d9c7245dd2434d7c77331df361e52 |
|
| /// File Name: |
mpaa-xss.txt |
Description:
|
The MPAA web site suffers from cross site scripting vulnerabilities.
| | Author: | Kristian Erik Hermansen | | File Size: | 1401 | | Last Modified: | Dec 5 23:38:57 2007 |
| MD5 Checksum: | 3b9dc6bc500b98fcd582ed4ec8eae1bf |
|
| /// File Name: |
mpc-overflow.txt |
Description:
|
Media Player Classic version 6.4.9 MP4 stack overflow that spawns a shell on port 49152.
| | Author: | SYS 49152 | | File Size: | 5800 | | Last Modified: | Dec 8 17:36:37 2007 |
| MD5 Checksum: | b07e824571fddb46fa6ac45f05631500 |
|
| /// File Name: |
mwopen-sql.txt |
Description:
|
MWOpen E-Commerce suffers from a remote SQL injection vulnerability in leggi_comenti.asp.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1156 | | Last Modified: | Dec 7 12:44:20 2007 |
| MD5 Checksum: | 5b0a6832a26a1f55655f928e7f22557b |
|
| /// File Name: |
myblogcms-rfi.txt |
Description:
|
MyBlog CMS suffers from a remote file inclusion vulnerability.
| | Author: | Beenu Arora | | File Size: | 338 | | Last Modified: | Dec 24 18:14:00 2007 |
| MD5 Checksum: | 36f41deef654c72db92896e627ab18c6 |
|
| /// File Name: |
myphp-sql.txt |
Description:
|
MyPHP Forum versions 3.0 and below suffer from multiple SQL injection vulnerabilities.
| | Author: | x0kster | | File Size: | 1443 | | Last Modified: | Dec 31 16:19:36 2007 |
| MD5 Checksum: | 8b4f2ec6e5581e96d2cc91ba6e64d847 |
|
| /// File Name: |
neuron-multi.txt |
Description:
|
neuron news version 1.0 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | virangar security team | | Homepage: | http://www.virangar.org/ | | File Size: | 1203 | | Last Modified: | Dec 17 20:32:16 2007 |
| MD5 Checksum: | 1c19196b58d4e49202752785ccd0fbc1 |
|
| /// File Name: |
nmn-rfi.txt |
Description:
|
NmnNewsletter version 1.0.7 is susceptible to remote file inclusion attacks.
| | Author: | CraCkEr | | File Size: | 4774 | | Last Modified: | Dec 24 14:47:47 2007 |
| MD5 Checksum: | 59fdbe7befce99be4efa31de4d8196e1 |
|
| /// File Name: |
nokia-dos.txt |
Description:
|
The Nokia RM-159 version 12.0.013 suffers from a denial of service vulnerability when accepting a special sequence of SIP messages. Demonstration exploit included.
| | Author: | Humberto J. Abdelnur, Olivier Festor, Radu State | | File Size: | 5351 | | Last Modified: | Dec 6 00:59:46 2007 |
| MD5 Checksum: | 427fc82126eac8abc607bf6ba463852a |
|
| /// File Name: |
nullsoft-overflow.txt |
Description:
|
Nullsoft Winamp MP4 tags stack overflow exploit. Tuned for version 5.32. Spawns a shell on port 49152.
| | Author: | SYS 49152 | | File Size: | 6512 | | Last Modified: | Dec 8 17:35:08 2007 |
| MD5 Checksum: | 715c0d7d777fc6bc1e246e7fb86ab62c |
|
| /// File Name: |
omt-bofpoc.txt |
Description:
|
Online Media Technologies remote buffer overflow proof of concept exploit that makes use of AVSMJPEGFILE.DLL version 1.1.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 3339 | | Last Modified: | Dec 11 22:15:36 2007 |
| MD5 Checksum: | 607e92729c5e1b9c1712e24a81c68631 |
|
| /// File Name: |
oneschool-sql.txt |
Description:
|
oneSCHOOL remote SQL injection exploit that makes use of admin/login.asp.
| | Author: | Guga360 | | File Size: | 1555 | | Last Modified: | Dec 31 16:37:05 2007 |
| MD5 Checksum: | 8cbdbe99b911320a85050c36c1aecd08 |
|
| /// File Name: |
onl25-xss.txt |
Description:
|
OpenNewsLetter versions 2.5 and below suffer from a cross site scripting vulnerability.
| | Author: | Manu | | File Size: | 826 | | Last Modified: | Dec 7 19:28:16 2007 |
| MD5 Checksum: | ae2f13a05da6d2c33645a3f34a4db2a0 |
|
| /// File Name: |
openbiblio-multi.txt |
Description:
|
OpenBiblio versions 0.5.2-pre4 and below suffer from multiple vulnerabilities including local file file inclusion, SQL injection, and cross site scripting.
| | Author: | Juan Galiana | | File Size: | 3843 | | Last Modified: | Dec 28 20:11:49 2007 |
| MD5 Checksum: | 9a5479bc738ad230c1cf2130e5c081d7 |
|
| /// File Name: |
oreon-rfi.txt |
Description:
|
Oreon version 1.4 and Centreon version 1.4.1 appear to suffer from multiple remote file inclusion vulnerabilities.
| | Author: | Michael Brooks | | File Size: | 1023 | | Last Modified: | Dec 17 20:17:30 2007 |
| MD5 Checksum: | 03480e4857cbabc71d36c72b3e5262cc |
|
| /// File Name: |
peercasthof.zip |
Description:
|
Demonstration exploit for PeerCast versions 0.1217 and below which suffer from a heap overflow vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | peercasthof.txt | | File Size: | 6263 | | Last Modified: | Dec 17 21:14:55 2007 |
| MD5 Checksum: | 8d0618fd0df19daa84101c681e64f52e |
|
| /// File Name: |
persists-addfolder.txt |
Description:
|
Exploit that will spawn winexec or a bindshell when making use of a buffer overflow vulnerability in the AddFolder() method of the Persists Software XUpload control version 2.1.0.1.
| | Author: | Elazar Broad | | File Size: | 6784 | | Last Modified: | Dec 28 19:39:53 2007 |
| MD5 Checksum: | df4a253830283d22460d93d3c1b40c92 |
|
| /// File Name: |
persists-overflow.txt |
Description:
|
There is a buffer overflow vulnerability in the AddFolder() method of the Persists Software XUpload control version 2.1.0.1.
| | Author: | Elazar Broad | | File Size: | 999 | | Last Modified: | Dec 28 17:31:47 2007 |
| MD5 Checksum: | e5beae5b8fc1022ccf97dd19f8f30c76 |
|
| /// File Name: |
phcdownload-xss.txt |
Description:
|
PHCDownload suffers from a cross site scripting vulnerability in search.php.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 2735 | | Last Modified: | Dec 28 20:26:19 2007 |
| MD5 Checksum: | a12bd0e79671216f9a7f1c56d27268e8 |
|
| /// File Name: |
phpay-lfi.txt |
Description:
|
Phpay version 2.02.1 appears to suffer from a local file inclusion vulnerability.
| | Author: | Michael Brooks | | File Size: | 1367 | | Last Modified: | Dec 17 20:15:46 2007 |
| MD5 Checksum: | a3b69fdb8732ef914a2238963220893c |
|
| /// File Name: |
phpbbgarage-sql.txt |
Description:
|
phpBB Garage version 1.2.0 Beta 3 suffers from a remote SQL injection vulnerability.
| | Author: | maku234 | | File Size: | 386 | | Last Modified: | Dec 3 23:48:46 2007 |
| MD5 Checksum: | 3bc79074d4647541dfc4d95c296b04bb |
|
| /// File Name: |
phpical-xss.txt |
Description:
|
PHP iCalendar versions 2.24 and below suffer from cross site scripting vulnerabilities.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 642 | | Last Modified: | Dec 20 16:28:49 2007 |
| MD5 Checksum: | 72333e20084620f94a3f683ddf732b96 |
|
| /// File Name: |
phpmychat-xssrfi.txt |
Description:
|
phpMyChat version 0.14.5 suffers from remote file inclusion and multiple cross site scripting vulnerabilities.
| | Author: | Beenu Arora | | File Size: | 2929 | | Last Modified: | Dec 5 22:57:32 2007 |
| MD5 Checksum: | 47d7ea0ce4d04c53719094b296d3c0df |
|
|
|
|
|