Section: .. / 0802-exploits /
| /// File Name: |
philipsvoip-multi.txt |
Description:
|
The Philips VOIP841 DECT cordless phone with an embedded Skype client suffers from a hidden administrative interface with a default login, directory traversal, and cross site scripting vulnerabilities.
| | Author: | Luca Carettoni | | Homepage: | http://www.securenetwork.it/ | | File Size: | 6615 | | Last Modified: | Feb 14 18:13:24 2008 |
| MD5 Checksum: | a3d7eab1ce5c455c869a8cc9e3a2905f |
|
| /// File Name: |
lookstrike-rfilfi.txt |
Description:
|
Lookstrike Lan Manager version 0.9 suffers from remote and local file inclusion vulnerabilities.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 2081 | | Last Modified: | Feb 14 18:09:36 2008 |
| MD5 Checksum: | 11fa3ea483ba61c7f1504bb4451f3ffa |
|
| /// File Name: |
joomlamedia-sql.txt |
Description:
|
Joomla component mediaslide blind SQL injection exploit that makes use of index.php.
| | Author: | Inphex | | File Size: | 1864 | | Last Modified: | Feb 14 18:07:55 2008 |
| MD5 Checksum: | 4a5233d78249b95629dfd3b30aa48260 |
|
| /// File Name: |
joomlaquiz-sql.txt |
Description:
|
The Joomla Quiz component versions 0.81 and below suffer from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1631 | | Last Modified: | Feb 14 18:05:14 2008 |
| MD5 Checksum: | 4d39804543dec1e910aa2585fef0f8bd |
|
| /// File Name: |
joomlamcquiz-sql.txt |
Description:
|
The Joomla MCQuiz component version 0.9 Final suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1711 | | Last Modified: | Feb 14 18:04:28 2008 |
| MD5 Checksum: | 3b22968a89aa8aa95496220bbb26e9cb |
|
| /// File Name: |
joomlapaxx-sq.txt |
Description:
|
The Joomla paxxgallery component version 0.2 suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1636 | | Last Modified: | Feb 14 18:03:22 2008 |
| MD5 Checksum: | 5e34af65d9a371ea4d8faac3cf355f1e |
|
| /// File Name: |
joomlaoldconfig-rfi.txt |
Description:
|
Joomla versions 1.0.13 through 1.0.14 suffer from a remote file inclusion vulnerability if the old configuration.php is left intact during upgrade.
| | Author: | Hendrik Jan Verheij | | File Size: | 2422 | | Last Modified: | Feb 14 15:05:36 2008 |
| MD5 Checksum: | f692f9d7f4f35ead80a79c7ec8f3d36e |
|
| /// File Name: |
elfdump-exploit.c |
Description:
|
Exploit that demonstrates an elfdump crash flaw when analyzing a specially crafted ELF file.
| | Author: | David Reguera Garcia | | File Size: | 16945 | | Last Modified: | Feb 14 14:56:57 2008 |
| MD5 Checksum: | 401aa3eba32521d7670fe9b8e403dae0 |
|
| /// File Name: |
nuboard-sql.txt |
Description:
|
nuBoard version 0.5 suffers from a SQL injection vulnerability in threads.php.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1943 | | Last Modified: | Feb 14 13:15:08 2008 |
| MD5 Checksum: | 8ef12716cda5257591797e2c1237037f |
|
| /// File Name: |
affiliate-sqlxss.txt |
Description:
|
Affiliate Market versions 0.1 BETA cross site scripting and SQL injection exploit.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 5165 | | Last Modified: | Feb 14 13:14:05 2008 |
| MD5 Checksum: | ca48520d0ba517dea5b4c11adc607a38 |
|
| /// File Name: |
unleashed-xss.txt |
Description:
|
Search Unleashed version 0.2.10 suffers from a javascript inject vulnerability that can lead to cross site scripting.
| | Author: | Krzysztof Burghardt | | Homepage: | http://www.burghardt.pl/ | | File Size: | 676 | | Last Modified: | Feb 14 13:12:02 2008 |
| MD5 Checksum: | e4e95480f048f3815d64bc2156381834 |
|
| /// File Name: |
gkrellweather2sh.c |
Description:
|
Local stack overflow exploit for the gkrellweather plugin version 0.2.7 that works with gkrellm version 2.2.9. Note that this is a proof of concept and only escalates privileges if the binary is setuid or spawned with sudo. By default, this binary is not normally setuid.
| | Author: | Manuel Gebele | | File Size: | 3034 | | Last Modified: | Feb 13 19:40:17 2008 |
| MD5 Checksum: | f41fa689c86509020b4e6d2bf676f3ec |
|
| /// File Name: |
artmedic-multiplelfi.txt |
Description:
|
The artmedic weblog suffers from multiple local file inclusion vulnerabilities.
| | Author: | muuratsalo | | File Size: | 397 | | Last Modified: | Feb 13 19:38:55 2008 |
| MD5 Checksum: | 6dc512cc53cdac30937caee97c097f98 |
|
| /// File Name: |
jspwiki-multi.txt |
Description:
|
An input validation problem in JSPWiki allows the execution of arbitrary local .jsp files. Cross site scripting vulnerabilities also exist. Versions 2.4.104 and 2.5.139 are vulnerable. Earlier versions may also be susceptible.
| | Author: | Moshe BA | | Homepage: | http://www.bugsec.com/ | | File Size: | 3182 | | Last Modified: | Feb 13 19:37:28 2008 |
| MD5 Checksum: | f47e521f82f1a19f74584fcba6558722 |
|
| /// File Name: |
joomlaomni-sql.txt |
Description:
|
The Joomla com_omnirealestate component suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 567 | | Last Modified: | Feb 13 19:35:15 2008 |
| MD5 Checksum: | 0d4e299701cbcd5e24f7b2ad3455a039 |
|
| /// File Name: |
joomlamodel-sql.txt |
Description:
|
The Joomla com_model component suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 389 | | Last Modified: | Feb 13 19:34:37 2008 |
| MD5 Checksum: | 9a3053b7cb61b643855ba6fb35624a54 |
|
| /// File Name: |
joomlauhp-upload.txt |
Description:
|
The Joomla com_uhp component suffers from a file upload vulnerability allowing for arbitrary code execution.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1096 | | Last Modified: | Feb 13 19:34:07 2008 |
| MD5 Checksum: | 637220aa404c57ee4fd39cedf6f027b9 |
|
| /// File Name: |
forumsasp-sql.txt |
Description:
|
forums.asp suffers from a remote SQL injection vulnerability in content.asp.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1213 | | Last Modified: | Feb 13 19:32:54 2008 |
| MD5 Checksum: | d8ee87d97fcae9d1af97b1cba86b3c36 |
|
| /// File Name: |
phpauto-rfi.txt |
Description:
|
phpAutoVideo suffers from a remote file inclusion vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1035 | | Last Modified: | Feb 13 19:32:11 2008 |
| MD5 Checksum: | e3c0fca5ad219cef2a48fd0b54688511 |
|
| /// File Name: |
pds-sql.txt |
Description:
|
The "Provided By Development Solutions" Real Estate software is vulnerable to a SQL injection vulnerability in agentlist.php.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1073 | | Last Modified: | Feb 13 19:31:33 2008 |
| MD5 Checksum: | 17f71afdcd927b8d86c6319dd38e1836 |
|
| /// File Name: |
joomlaxfaq-sql.txt |
Description:
|
The Joomla xfaq component version 1.2 suffers from a remote SQL injection vulnerability.
| | Author: | S@BUN | | Homepage: | http://www.hackturkiye.com/ | | File Size: | 1438 | | Last Modified: | Feb 13 19:30:19 2008 |
| MD5 Checksum: | 9871df23b5771a43f6655bd7be41c577 |
|
| /// File Name: |
netkom-sql.txt |
Description:
|
Netkom Internet Solutions suffers from a remote SQL injection vulnerability.
| | Author: | Cr@zy_King | | File Size: | 721 | | Last Modified: | Feb 13 19:20:25 2008 |
| MD5 Checksum: | ab6df074c5563432005bdee4473867f1 |
|
| /// File Name: |
affiliate-lfi.txt |
Description:
|
Affiliate Market version 0.1 BETA suffers from a local file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 237 | | Last Modified: | Feb 13 17:24:24 2008 |
| MD5 Checksum: | 2401aa0939594cdb23640ecfacb42fec |
|
| /// File Name: |
aquick-overflow.txt |
Description:
|
Apple QuickTime versions 7.4.1 and below suffer from multiple stack overflow vulnerabilities in QTPlugin.ocx.
| | Author: | laurent gaffi | | File Size: | 1098 | | Last Modified: | Feb 13 17:22:14 2008 |
| MD5 Checksum: | 2e50070555637afeeb24e0eb3f061c97 |
|
| /// File Name: |
pumpernikiel.c |
Description:
|
Microsoft Office 2003 WPS file reading stack overflow exploit that launches calc.exe.
| | Author: | chujwamwdupe | | File Size: | 12587 | | Related CVE(s): | CVE-2008-0108 | | Last Modified: | Feb 13 16:41:17 2008 |
| MD5 Checksum: | b19ed9c9e60170c45917ed6009863833 |
|
|
|
|
|