Section: .. / 0605-exploits /
| /// File Name: |
phpBBcharts.txt |
Description:
|
The phpBB charts.php code suffers from cross site scripting and SQL injection flaws.
| | Homepage: | http://www.LoK-Crew.de | | File Size: | 369 | | Last Modified: | May 21 15:09:44 2006 |
| MD5 Checksum: | 0ee5e39913d36a618fd750a4cfd02138 |
|
| /// File Name: |
phpFoX.txt |
Description:
|
phpFoX could allow a malicious person to log in as any user by editing their cookie.
| | Author: | mx | | Homepage: | http://www.hackmx.net | | File Size: | 872 | | Last Modified: | May 26 18:49:30 2006 |
| MD5 Checksum: | 03bb9735c4b2d18d60f219d1f501b3c0 |
|
| /// File Name: |
phpfusion600306-2.txt |
Description:
|
PHP-Fusion versions 6.00.306 and below "srch_where" SQL injection and administrative credential disclosure exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 4798 | | Last Modified: | May 22 01:17:07 2006 |
| MD5 Checksum: | 9ea60d7d3da3e9dfdfbe79e9ddd7259d |
|
| /// File Name: |
phpfusion600306.txt |
Description:
|
PHPFusion versions 6.00.306 and below avatar mod_mime arbitrary file upload and local inclusion exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 22633 | | Last Modified: | May 17 03:21:56 2006 |
| MD5 Checksum: | f5bcf8710f13d1708ad87f44dc1fa466 |
|
| /// File Name: |
PhpListPro.txt |
Description:
|
PhpListPro version 2.01 is susceptible to a remote file inclusion vulnerability that allows for remote code execution.
| | Author: | SnoB | | Homepage: | http://www.cyber-security.org/ | | File Size: | 518 | | Last Modified: | May 17 03:23:23 2006 |
| MD5 Checksum: | 532a808c011007c7299cec5265b0d6ab |
|
| /// File Name: |
phpmydir1044.txt |
Description:
|
phpMyDirectory versions 10.4.4 and below are susceptible to multiple remote file inclusion flaws.
| | Author: | ajann | | File Size: | 1738 | | Last Modified: | May 24 05:05:42 2006 |
| MD5 Checksum: | ddf52740ccfa9c0613badfb7d550972b |
|
| /// File Name: |
phpRaid-1.txt |
Description:
|
phpRaid versions 3.0.b3 through 2.9.5 suffer from a remote file inclusion vulnerability when used with the phpBB portal.
| | Author: | botan | | File Size: | 1379 | | Last Modified: | May 9 16:43:48 2006 |
| MD5 Checksum: | dc48606f7b4e33e7d2897d47f1e2f3b7 |
|
| /// File Name: |
phpRaid-2.txt |
Description:
|
phpRaid versions 3.0.b3 through 2.9.5 suffer from a remote file inclusion vulnerability when used with SMF.
| | Author: | botan | | File Size: | 1064 | | Last Modified: | May 9 16:44:29 2006 |
| MD5 Checksum: | 387d548a7f99e28373b8167d10209d24 |
|
| /// File Name: |
phpRaidXSS.txt |
Description:
|
phpRaid version 2.9.5 is susceptible to cross site scripting attacks.
| | Author: | TeufeL | | File Size: | 653 | | Last Modified: | May 23 03:58:52 2006 |
| MD5 Checksum: | 0618b8bad25e1fbf6d67f28e83cd2da9 |
|
| /// File Name: |
PhpRemoteView.txt |
Description:
|
PhpRemoteView is susceptible to multiple cross site scripting vulnerabilities.
| | Author: | Soot | | Homepage: | http://www.shabgard.org/ | | File Size: | 896 | | Last Modified: | May 22 00:57:12 2006 |
| MD5 Checksum: | 5351a2f8b1618c246b3b77802e56bbb4 |
|
| /// File Name: |
playersXSS.txt |
Description:
|
players.py on Alexadex.com is susceptible to cross site scripting.
| | Author: | skinnypuppy | | File Size: | 628 | | Last Modified: | May 9 16:17:40 2006 |
| MD5 Checksum: | 237031cada8ca278debea6d8fe2395e5 |
|
| /// File Name: |
portmap-PoC.c |
Description:
|
Local DOS exploit for portmap.
| | Author: | Federico L. Bossi Bonin | | File Size: | 3055 | | Last Modified: | May 26 18:45:47 2006 |
| MD5 Checksum: | 8760c07f15308affb930e53f085cc32c |
|
| /// File Name: |
powerInclude.txt |
Description:
|
PHP Easy Galerie version 1.1 is susceptible to a remote file inclusion vulnerability.
| | Author: | Craziest, BrEakerS | | File Size: | 664 | | Last Modified: | May 23 04:23:17 2006 |
| MD5 Checksum: | 32d094cd2d199e2f87dc100680630fed |
|
| /// File Name: |
punBB1211.txt |
Description:
|
PunBB version 1.2.11 suffers from a cross site scripting flaw.
| | Author: | o.y.6 | | File Size: | 557 | | Last Modified: | May 6 16:52:25 2006 |
| MD5 Checksum: | cd9a4662240a496e53ca8057d18b4518 |
|
| /// File Name: |
PunkBuster-1.229.txt |
Description:
|
The WebTool service of PunkBuster is vulnerable to a buffer overflow. POC included.
| | Homepage: | http://aluigi.org | | File Size: | 5214 | | Last Modified: | May 26 18:36:08 2006 |
| MD5 Checksum: | 284bbeb329bfd03f9b7c11de0fc64f32 |
|
| /// File Name: |
QuezzaBB.txt |
Description:
|
Quezza BB versions 1.0 and below suffer from a file inclusion vulnerability.
| | Author: | nukedx | | Homepage: | http://www.nukedx.com/ | | File Size: | 1529 | | Last Modified: | May 22 01:22:31 2006 |
| MD5 Checksum: | b629a43bae9348b96115853a5eb0a0ad |
|
| /// File Name: |
R7-0024.txt |
Description:
|
Rapid7 Security Advisory - The Caucho Resin web application server for Windows contains a directory traversal vulnerability that allows remote unauthenticated users to download any file from the system. It is possible to download files from any drive on the system. Versions 3.0.18 and 3.0.17 for Windows are vulnerable.
| | Homepage: | http://www.rapid7.com/ | | File Size: | 2894 | | Related CVE(s): | CVE-2006-1953 | | Last Modified: | May 22 01:15:39 2006 |
| MD5 Checksum: | 31d1931060c9dac4600df99620e3a12f |
|
| /// File Name: |
RaceEventManagement.txt |
Description:
|
RaceEventManagement version 0.7.6 is susceptible to SQL injection and cross site scripting attacks.
| | Author: | Mr-X | | Homepage: | http://www.alshmokh.com/ | | File Size: | 183 | | Last Modified: | May 22 03:10:18 2006 |
| MD5 Checksum: | 7a177bc8fcc946dc89f049364cebfed4 |
|
| /// File Name: |
radlance.txt |
Description:
|
RadLance Gold version 7 suffers from a local inclusion vulnerability.
| | Author: | Mr. CrackerZ | | File Size: | 2111 | | Last Modified: | May 21 23:19:54 2006 |
| MD5 Checksum: | b164d558acea37b4874dded4e65aa3eb |
|
| /// File Name: |
raydiumx.zip |
Description:
|
Remote proof of concept exploit for Raydium versions SVN revision 309 and below.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | raydiumx.txt | | File Size: | 7354 | | Last Modified: | May 21 18:42:01 2006 |
| MD5 Checksum: | 840c51521229c96ec8befa14174f520e |
|
| /// File Name: |
rt-sa-2006-002.txt |
Description:
|
RedTeam identified a security flaw in prodder versions 0.4 and below which makes it possible for a malicious podcast server to execute arbitrary shell commands on the victim's client.
| | Author: | RedTeam Pentesting | | Homepage: | http://www.redteam-pentesting.de/ | | File Size: | 4296 | | Last Modified: | May 24 04:50:14 2006 |
| MD5 Checksum: | 4c214e8d424dc4c7144691cb7239ed0e |
|
| /// File Name: |
rt-sa-2006-003.txt |
Description:
|
RedTeam identified a security flaw in perlpodder versions 0.4 and below which makes it possible for a malicious podcast server to execute arbitrary shell commands on the victim's client.
| | Author: | RedTeam Pentesting | | Homepage: | http://www.redteam-pentesting.de/ | | File Size: | 4895 | | Last Modified: | May 24 04:51:45 2006 |
| MD5 Checksum: | 2ce1556c7e33703d3897b94f9c7ad28c |
|
| /// File Name: |
russcomMultiple.txt |
Description:
|
Russcom.net's Loginphp script is susceptible to cross site scripting attacks and mail spoofing.
| | Author: | Nomenumbra | | File Size: | 1532 | | Last Modified: | May 6 15:51:47 2006 |
| MD5 Checksum: | f9d9908151ad12ce517dd9bd0207a657 |
|
| /// File Name: |
sa-caucho.txt |
Description:
|
ScanAlert Security Advisory - Caucho Resin versions 3.0.17 and 3.0.18 suffer from arbitrary file access and information disclosure vulnerabilities.
| | Homepage: | http://www.scanalert.com/ | | File Size: | 3480 | | Last Modified: | May 22 01:04:15 2006 |
| MD5 Checksum: | e6eb58aae907535140edb0006d174b53 |
|
| /// File Name: |
SaPHPLession30.txt |
Description:
|
SaPHPLesson version 3.0 is susceptible to arbitrary input and SQL injection flaws.
| | Author: | D3vil-0x1 | | File Size: | 2271 | | Last Modified: | May 6 17:35:48 2006 |
| MD5 Checksum: | c4124fc93145874e0d63d7369e73e6ff |
|
|
|
|
|