Section: .. / 0701-exploits /
| /// File Name: |
openpinboard-rfi.txt |
Description:
|
OpenPinboard version 2.0 suffers from a remote file inclusion vulnerability.
| | Author: | ZooZ | | File Size: | 1380 | | Last Modified: | Jan 3 21:55:26 2007 |
| MD5 Checksum: | bda44ea4348866f6be4d39492cfb3b14 |
|
| /// File Name: |
rixstep_pwnage.c |
Description:
|
Rixstep arbitrary file overwrite exploit.
| | Author: | Rixstep Pwned | | File Size: | 1323 | | Last Modified: | Jan 15 21:19:16 2007 |
| MD5 Checksum: | e78ef787388f9941ec108bede01866e7 |
|
| /// File Name: |
paypal-inject.txt |
Description:
|
The PayPal Subscription Manager suffers from cross site scripting and SQL injection flaws.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 1321 | | Last Modified: | Jan 23 22:55:16 2007 |
| MD5 Checksum: | 12d26a70beadc998e42fa9b36ecc28db |
|
| /// File Name: |
smefilemailer-sql.txt |
Description:
|
SmE FileMailer version 1.21 suffers from a SQL injection vulnerability.
| | Author: | CorryL | | Homepage: | http://www.x0n3-h4ck.org | | File Size: | 1284 | | Last Modified: | Jan 19 20:34:40 2007 |
| MD5 Checksum: | 9f071d74b21651a2904e04e471223296 |
|
| /// File Name: |
mkportalfun.txt |
Description:
|
Fun little exploit to make all guests administrators on MkPortal using a malicious Shockwave Flash file.
| | Author: | info | | Homepage: | http://headburn.altervista.org/ | | File Size: | 1254 | | Last Modified: | Jan 5 00:38:05 2007 |
| MD5 Checksum: | 409d15ac5cf9552294d0a8f6813a2d4b |
|
| /// File Name: |
phpircbot-rfi.txt |
Description:
|
PHPIrc_bot version 0.2 suffers from a remote file inclusion vulnerability.
| | Author: | ZooZ | | File Size: | 1200 | | Last Modified: | Jan 1 22:03:44 2007 |
| MD5 Checksum: | ddaed6c5b0309c59141f8b5e3a97d637 |
|
| /// File Name: |
enigma-rfi.txt |
Description:
|
Enigma Coppermine Bridge suffers from a remote file inclusion vulnerability.
| | Author: | xoron | | File Size: | 1169 | | Last Modified: | Jan 1 21:57:03 2007 |
| MD5 Checksum: | 2b50d808d8f1150b09f27cf59a7e3da6 |
|
| /// File Name: |
sami-dos.txt |
Description:
|
Sami HTTP Server version 2.0.1 remote denial of service exploit.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 1165 | | Last Modified: | Jan 24 00:08:36 2007 |
| MD5 Checksum: | 2d6c62525975eb3ba152376a50f73523 |
|
| /// File Name: |
enigmawp-rfi.txt |
Description:
|
Enigma WordPress Bridge suffers from a remote file inclusion vulnerability.
| | Author: | xoron | | File Size: | 1164 | | Last Modified: | Jan 1 21:57:42 2007 |
| MD5 Checksum: | 275de4b10c6be977d9c20f42ade8f941 |
|
| /// File Name: |
mynews-rfi.txt |
Description:
|
MyNews versions 4.2.2 and below suffer from a remote file inclusion vulnerability.
| | Author: | GolD_M | | File Size: | 1163 | | Last Modified: | Jan 30 23:12:09 2007 |
| MD5 Checksum: | 46cde9b29df8c857c2a41d7ae5ae08e6 |
|
| /// File Name: |
instant-xss.txt |
Description:
|
InstantForum.NET software suffers from cross site scripting vulnerabilities.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 1162 | | Last Modified: | Jan 15 21:12:24 2007 |
| MD5 Checksum: | 4684c2bf84511d35cbc8ae7f918392a4 |
|
| /// File Name: |
siteman-pass.txt |
Description:
|
Siteman version 2.0.x2 suffers from a remote password disclosure flaw.
| | Author: | CorryL | | Homepage: | http://www.x0n3-h4ck.org | | File Size: | 1150 | | Last Modified: | Jan 26 22:27:10 2007 |
| MD5 Checksum: | 5a31a127acf8c785249d78f747c33195 |
|
| /// File Name: |
sabros17-xss.txt |
Description:
|
sabros.us version 1.7 is susceptible to a cross site scripting vulnerability.
| | Author: | CorryL | | Homepage: | http://www.x0n3-h4ck.org | | File Size: | 1137 | | Last Modified: | Jan 19 22:33:07 2007 |
| MD5 Checksum: | 956a4b877bc8ecf1a1a893b75459ad6c |
|
| /// File Name: |
flog112-disclose.txt |
Description:
|
Flog version 1.1.2 suffers from a remote administrative password disclosure flaw.
| | Author: | CorryL | | Homepage: | http://www.x0n3-h4ck.org | | File Size: | 1127 | | Last Modified: | Jan 13 15:34:40 2007 |
| MD5 Checksum: | d4afdf04bc63ed5aef6a7af6151398de |
|
| /// File Name: |
bbclone-rfi.txt |
Description:
|
BBClone version 0.31 suffers from a remote file inclusion vulnerability in selectlang.php.
| | Author: | Dr Max Virus | | File Size: | 1115 | | Last Modified: | Jan 24 00:10:43 2007 |
| MD5 Checksum: | 31741c2736b05fd8e448bbebe0919141 |
|
| /// File Name: |
igshop10-multiple.txt |
Description:
|
IG Shop version 1.0 suffers from multiple remote vulnerabilities relating to eval usage and SQL injection.
| | Author: | Michael Brooks | | File Size: | 1115 | | Last Modified: | Jan 5 02:53:33 2007 |
| MD5 Checksum: | eebdab6c03e2deb92ec884f0aeea8c20 |
|
| /// File Name: |
gallery-rfi.txt |
Description:
|
Gallery versions 1.4.4-pl4 and below suffer from a remote file inclusion vulnerability.
| | Author: | BorN To K!LL | | File Size: | 1110 | | Last Modified: | Jan 19 19:36:23 2007 |
| MD5 Checksum: | bf00728bc9d799f72c715181f8d26feb |
|
| /// File Name: |
MOAB-17-01-2007.rb.txt |
Description:
|
Month of Apple Bugs - Proof of concept exploit for slpd. slpd is vulnerable to a buffer overflow condition when processing the attr-list field of a registration request, leading to an exploitable denial of service condition and potential arbitrary execution. It would allow unprivileged local (and possibly remote) users to execute arbitrary code under root privileges.
| | Author: | LMH,Kevin Finisterre | | Homepage: | http://projects.info-pull.com/moab/ | | File Size: | 1101 | | Last Modified: | Jan 19 22:16:28 2007 |
| MD5 Checksum: | 4e5ef169ae8d60a1ea2d97be091df8b0 |
|
| /// File Name: |
naig052-rfi.txt |
Description:
|
Naig versions 0.5.2 and below suffer from a remote file inclusion vulnerability.
| | Author: | BorN To K!LL | | File Size: | 1059 | | Last Modified: | Jan 13 20:04:40 2007 |
| MD5 Checksum: | a4d7756e4f08c3630a58c27ec9694c69 |
|
| /// File Name: |
cascadianfaq-sql.txt |
Description:
|
CascadianFAQ versions 4.1 and below suffer from a remote SQL injection vulnerability in index.php.
| | Author: | ajann | | File Size: | 1040 | | Last Modified: | Jan 30 23:13:15 2007 |
| MD5 Checksum: | b1e7140613128993a9d09d391615c462 |
|
| /// File Name: |
MOAB-21-01-2007.rb.txt |
Description:
|
Month of Apple Bugs - The preference panes setuid helper, writeconfig, makes use of a shell script which lacks of PATH sanitization, allowing users to execute arbitrary binaries under root privileges. This is the proof of concept exploit that demonstrates this vulnerability.
| | Author: | LMH,Kevin Finisterre | | Homepage: | http://projects.info-pull.com/moab/ | | File Size: | 1034 | | Related CVE(s): | CVE-2007-0022 | | Last Modified: | Jan 24 00:23:36 2007 |
| MD5 Checksum: | c16f4b258d9bb1185318cdd04d6a3967 |
|
| /// File Name: |
nukedklan17.txt |
Description:
|
Nuked Klan versions 1.7 and below suffer from a remote cookie disclosure vulnerability.
| | Author: | NeoSSJ, Kad | | File Size: | 1030 | | Last Modified: | Jan 3 21:50:08 2007 |
| MD5 Checksum: | 2e8c36d8a3a90c6e910dd5b79d34bf45 |
|
| /// File Name: |
fcCMS10-xss.txt |
Description:
|
Fix and Chip CMS version 1.0 suffers from cross site scripting flaws.
| | Author: | Luny | | File Size: | 1025 | | Last Modified: | Jan 13 16:08:48 2007 |
| MD5 Checksum: | 9bdf726f3e557f0ae598977fa4b054af |
|
| /// File Name: |
cmsimple27-rfi.txt |
Description:
|
cmsimple version 2.7 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | Alkomandoz | | File Size: | 1008 | | Last Modified: | Jan 23 23:00:41 2007 |
| MD5 Checksum: | 9d71b2a9beaa7c3922282824c1db1410 |
|
|
|
|
|