Section: .. / 0801-exploits /
| /// File Name: |
socialurl-xss.txt |
Description:
|
SocialURL suffers from a cross site scripting vulnerability during the login sequence.
| | Author: | Josh Morin | | File Size: | 350 | | Last Modified: | Jan 7 14:26:46 2008 |
| MD5 Checksum: | bb3409ee15e50b42cbee4831f34eb9dd |
|
| /// File Name: |
tutos-exec.txt |
Description:
|
TUTOS version 1.3 is susceptible to a remote command execution vulnerability leveraging cmd.php.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1460 | | Last Modified: | Jan 7 14:24:49 2008 |
| MD5 Checksum: | 651e2b1a49c68b1ec0b02b302419c5fb |
|
| /// File Name: |
TISA2008-01.txt |
Description:
|
Team Intell Security Advisory TISA2008-01 - The Linksys WRT54 GL suffers from an authentication bypass flaw via a cross site request forgery vulnerability.
| | Author: | Maldin d.o.o | | Homepage: | http://www.teamintell.com/ | | File Size: | 3902 | | Last Modified: | Jan 7 14:23:33 2008 |
| MD5 Checksum: | 9f561c253ba2d390a495ec2bc45f2c83 |
|
| /// File Name: |
snitz-multi.txt |
Description:
|
Snitz Forums versions 3.4.06 and below suffer from direct database download and cross site scripting vulnerabilities.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 1761 | | Last Modified: | Jan 7 14:20:54 2008 |
| MD5 Checksum: | 347539301ac0cfdcaeac8d49618e6276 |
|
| /// File Name: |
eggblog310-sql.txt |
Description:
|
Eggblog versions 3.1.0 and below cookie stealing remote SQL injection exploit.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 5364 | | Last Modified: | Jan 7 14:19:12 2008 |
| MD5 Checksum: | 84551c02c0216357e58a10e2b7d77a5a |
|
| /// File Name: |
ekinboard-upload.txt |
Description:
|
EkinBoard versions 1.1.0 and below suffer from remote file upload and authentication bypass vulnerabilities.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1592 | | Last Modified: | Jan 7 14:18:14 2008 |
| MD5 Checksum: | f5668e2c1c098ca1eb67d7773f34925a |
|
| /// File Name: |
eticket-multi.txt |
Description:
|
eTicket version 1.5.5.2 suffers from SQL injection, cross site scripting, and cross site request forgery vulnerabilities.
| | Author: | L4teral | | File Size: | 3335 | | Last Modified: | Jan 7 14:16:54 2008 |
| MD5 Checksum: | 9901795955dc3d263b9505c186d3a22c |
|
| /// File Name: |
flexbb-sql.txt |
Description:
|
FlexBB versions 0.6.3 and below cookie stealing remote SQL injection exploit.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 6652 | | Last Modified: | Jan 7 14:16:01 2008 |
| MD5 Checksum: | 3b4c04eeeaeccdaa33c9551e94d27429 |
|
| /// File Name: |
netrisk-sqlxss.txt |
Description:
|
NetRisk version 1.9.7 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | virangar security team | | Homepage: | http://www.virangar.org/ | | File Size: | 1264 | | Last Modified: | Jan 6 20:11:57 2008 |
| MD5 Checksum: | 0f3dc11c3b39771b14781a9eacd9640a |
|
| /// File Name: |
dcpportal-sql.txt |
Description:
|
DCP-Portal versions 6.11 and below remote SQL injection exploit.
| | Author: | x0kster | | File Size: | 1940 | | Last Modified: | Jan 6 20:05:02 2008 |
| MD5 Checksum: | 2771e17a68073489632fb8210a12dce5 |
|
| /// File Name: |
sinecms-lfiexec.txt |
Description:
|
Sine CMS versions 2.3.5 and below suffer from local file inclusion and remote code execution vulnerabilities.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 3875 | | Last Modified: | Jan 6 20:02:32 2008 |
| MD5 Checksum: | 43b9f3ac5db76bec5996ddf8b5452482 |
|
| /// File Name: |
shopscript-disclose.txt |
Description:
|
Shop-Script version 2.0 suffers from a remote file disclosure vulnerability in index.php.
| | Author: | Fisher762 | | File Size: | 874 | | Last Modified: | Jan 6 20:00:00 2008 |
| MD5 Checksum: | c276724674872b9087d5a89d23d7605c |
|
| /// File Name: |
cutenews-exec.txt |
Description:
|
CuteNews version 1.1.1 suffers from a remote code execution vulnerability in html.php.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1542 | | Last Modified: | Jan 6 19:56:58 2008 |
| MD5 Checksum: | 62c6f4f302e8e6d20ea1776b6f7671f4 |
|
| /// File Name: |
horde-disclose.txt |
Description:
|
Horde Web-Mail version 3.x suffers from a remote file disclosure vulnerability in go.php.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1821 | | Last Modified: | Jan 6 19:56:06 2008 |
| MD5 Checksum: | 7f75a18c21013f2d00b95a6a05b8bfae |
|
| /// File Name: |
loudblog-exec.txt |
Description:
|
LoudBlog versions 0.6.1 and below suffer from a remote code execution vulnerability.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 1660 | | Last Modified: | Jan 6 19:55:01 2008 |
| MD5 Checksum: | ce12a14bf27ce7ab789ea0c483aa55c4 |
|
| /// File Name: |
xoopsgal-rfi.txt |
Description:
|
XOOPS mod_gallery suffers from a Zend_Hack_key and Extract remote file inclusion vulnerability.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 2100 | | Last Modified: | Jan 6 19:53:00 2008 |
| MD5 Checksum: | 964d3c80f455de41e8458fd9004378a9 |
|
| /// File Name: |
runcmsnewbb-sql.txt |
Description:
|
RunCMS Newbb_plus versions 0.92 and below client IP remote SQL injection exploit.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 9162 | | Last Modified: | Jan 6 19:50:32 2008 |
| MD5 Checksum: | 181ae0b31f2b5ff64f1c2620448c6bad |
|
| /// File Name: |
wpfile-upload.txt |
Description:
|
Wordpress plugin WP-FileManager version 1.2 suffers from a remote upload vulnerability.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1445 | | Last Modified: | Jan 6 19:49:15 2008 |
| MD5 Checksum: | 6bef1d24c4ae01399bfed859abcfb1b2 |
|
| /// File Name: |
halflife-dos.txt |
Description:
|
Half-Life CSTRIKE Server version 1.6 denial of service exploit.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 5222 | | Last Modified: | Jan 6 19:47:22 2008 |
| MD5 Checksum: | 2bd996f70a611cf86b13e17a613c1245 |
|
| /// File Name: |
rapidshare-xss.txt |
Description:
|
The RapidShare Database Script is susceptible to a cross site scripting vulnerability.
| | Author: | GeFORC3 | | Homepage: | http://WwW.GeFORC3.Org | | File Size: | 389 | | Last Modified: | Jan 6 19:43:40 2008 |
| MD5 Checksum: | fcdb5300e8f28fe64456d4d099909548 |
|
| /// File Name: |
PortalApp40.txt |
Description:
|
PortalApp version 4.0 is susceptible to SQL injection and cross site scripting vulnerabilities.
| | Author: | r3dm0v3 | | Homepage: | http://r3dm0v3.persianblog.ir/ | | File Size: | 6250 | | Last Modified: | Jan 6 19:42:02 2008 |
| MD5 Checksum: | 2149eb3f42dec44f908df87d4f05a3c1 |
|
| /// File Name: |
clipshare26-passwd.txt |
Description:
|
ClipShare version 2.6 remote user password change exploit.
| | Author: | Pr0metheuS | | File Size: | 1529 | | Last Modified: | Jan 5 19:19:30 2008 |
| MD5 Checksum: | f52f09700ac22bce339c413c8c9fccea |
|
|
|
|
|