Section: .. / 0707-exploits /
| /// File Name: |
webcit-multi.txt |
Description:
|
WebCit versions below 7.11 suffer from session riding and cross site scripting vulnerabilities.
| | Author: | Christopher Schwardt | | File Size: | 3263 | | Last Modified: | Jul 17 03:29:35 2007 |
| MD5 Checksum: | e57b0c351ffeef0b0c3c40e9cee6ae6e |
|
| /// File Name: |
versalsoft-overflow.txt |
Description:
|
Versalsoft HTTP File Uploader AddFile() remote buffer overflow exploit that makes use of UFileUploaderD.dll version 6.0.0.38.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 3187 | | Last Modified: | Jul 20 01:57:31 2007 |
| MD5 Checksum: | e279dd085cc55aef91282147b3d4deb5 |
|
| /// File Name: |
axis-camcontrol.txt |
Description:
|
AXIS Camera Control remote buffer overflow exploit that makes use of AxisCamControl.ocx version 1.0.2.15.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 3156 | | Last Modified: | Jul 6 23:32:52 2007 |
| MD5 Checksum: | 9e04d3b23191d0e24ad8153a942ba515 |
|
| /// File Name: |
zenturiNixon-overflow.txt |
Description:
|
Zenturi NixonMyPrograms Class remote buffer overflow exploit that makes use of sasatl.dll version 1.5.0.531.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 3155 | | Last Modified: | Jul 23 22:35:05 2007 |
| MD5 Checksum: | 580a69f3a996c333616b633d5d3c6fb7 |
|
| /// File Name: |
vikingboard-xss.txt |
Description:
|
Vikingboard version 0.1.2 suffers from multiple cross site scripting vulnerabilities.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 2785 | | Last Modified: | Jul 26 00:35:47 2007 |
| MD5 Checksum: | f2d4e99130b768599b9d088675a93dbf |
|
| /// File Name: |
apache_modjk_overflow.rb.txt |
Description:
|
Metasploit module for the buffer overflow vulnerability in Apache mod_jk version 1.2.20. Written to work on Win23.
| | Author: | Nicob | | File Size: | 2715 | | Related CVE(s): | CVE-2007-0774 | | Last Modified: | Jul 9 20:59:41 2007 |
| MD5 Checksum: | b4b22d53df77e3f9138159dff0fe7fed |
|
| /// File Name: |
PR07-19.txt |
Description:
|
A cross site scripting vulnerability exists in the Webbler CMS admin login page. Version 3.1.3 is affected.
| | Author: | Adrian Pastor | | File Size: | 2711 | | Last Modified: | Jul 24 23:45:54 2007 |
| MD5 Checksum: | fa144cbd7851f71ec2921a2168666323 |
|
| /// File Name: |
explorergif-dos.txt |
Description:
|
Microsoft Windows Explorer.exe GIF image denial of service exploit.
| | Author: | Reza.Yavari | | Homepage: | http://www.deltahacking.net/ | | File Size: | 2635 | | Last Modified: | Jul 23 22:30:50 2007 |
| MD5 Checksum: | 0f0a13a3e19cf15b1768262583a169db |
|
| /// File Name: |
mailmachine-lfi.txt |
Description:
|
Mail Machine versions 3.989 and below suffer from a local file inclusion vulnerability.
| | Author: | H4 / Team XPK | | File Size: | 2469 | | Last Modified: | Jul 11 02:42:13 2007 |
| MD5 Checksum: | d4f1e431b180bb42b908180b52c32f4b |
|
| /// File Name: |
PR07-18.txt |
Description:
|
A cross site scripting vulnerability exists in index.php of Webbler CMS version 3.1.3.
| | Author: | Adrian Pastor | | File Size: | 2395 | | Last Modified: | Jul 24 23:49:34 2007 |
| MD5 Checksum: | 0b6a5f872894844df5c7510bb0403db5 |
|
| /// File Name: |
firefox-2005.html |
Description:
|
Firefox version 2.0.0.5, Netscape Navigator 9, and Mozilla suffer from remote command execution vulnerabilities via improperly registered URIs.
| | Author: | Nate McFeters, Billy (BK) Rios | | Homepage: | http://xs-sniper.com/ | | File Size: | 2279 | | Last Modified: | Jul 26 00:24:47 2007 |
| MD5 Checksum: | bf533c231ed878d02a3c8c86fa1ef069 |
|
| /// File Name: |
simpleblog-sql.txt |
Description:
|
SimpleBlog version 3.0 remote SQL injection exploit that makes use of comments_get.asp.
| | Author: | TrinTiTTY, MurderSkillz | | Homepage: | http://www.g00ns.net/ | | File Size: | 2250 | | Last Modified: | Jul 31 00:12:58 2007 |
| MD5 Checksum: | 212158da48ea0f607cef159a4a68631f |
|
| /// File Name: |
php523-snmpget.txt |
Description:
|
PHP versions 5.2.3 and below snmpget() object id local buffer overflow eip overwrite exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2226 | | Last Modified: | Jul 20 22:27:50 2007 |
| MD5 Checksum: | 9b8e0f09a63c69d8435d009466711697 |
|
| /// File Name: |
prozilla-sql.txt |
Description:
|
Prozilla suffers from a SQL injection vulnerability in directory.php.
| | Author: | t0pp8uzz, xprog | | File Size: | 2210 | | Last Modified: | Jul 17 02:33:00 2007 |
| MD5 Checksum: | 37dbb3c8a38631e95ff2bd8254c24a15 |
|
| /// File Name: |
TISA2007-06-Public.txt |
Description:
|
Element CMS suffers from a script insertion vulnerability.
| | Author: | Maldin d.o.o | | Homepage: | http://www.teamintell.com/ | | File Size: | 2202 | | Last Modified: | Jul 17 03:26:48 2007 |
| MD5 Checksum: | 37bb8dbfd26a997990e91efc7e2733c2 |
|
| /// File Name: |
07122007-symTDI_advisory.rar |
Description:
|
Symantec Norton Security suffers from a local privilege escalation vulnerability in symTDI.sys. Exploit included.
| | Author: | Zohiartze Herce | | Homepage: | http://www.48bits.com/ | | File Size: | 2197 | | Last Modified: | Jul 12 21:21:32 2007 |
| MD5 Checksum: | 37c5027d781bfe10925281d2d8660006 |
|
| /// File Name: |
vbzoom1x-sql.txt |
Description:
|
vbzoom version 1.x suffers from a remote SQL injection vulnerability in forum.php.
| | Author: | Cold z3ro | | Homepage: | http://www.hack-teach.com/ | | File Size: | 2186 | | Last Modified: | Jul 2 19:48:47 2007 |
| MD5 Checksum: | dfadb6cc73d6a4652099969277927166 |
|
| /// File Name: |
yoggie-exec.txt |
Description:
|
The Yoggie Pico Pro security appliance suffers from a remote code execution vulnerability.
| | Author: | Cody Brocious | | File Size: | 2145 | | Last Modified: | Jul 2 20:15:07 2007 |
| MD5 Checksum: | c11ac66079a64477d6eda3c71009ef03 |
|
| /// File Name: |
linux-26202.txt |
Description:
|
Linux kernel IPV6_Getsockopt_Sticky memory leak proof of concept exploit. This affects versions below 2.6.20.2.
| | Author: | dreyer | | File Size: | 2107 | | Related CVE(s): | CVE-2007-1000 | | Last Modified: | Jul 11 03:13:59 2007 |
| MD5 Checksum: | 181354724a1931cfa3e703c382761aed |
|
| /// File Name: |
ddaa-insecure.txt |
Description:
|
Data Dynamics ActiveBar ActiveX insecure methods exploit that affects actbar3.ocx versions 3.1 and below.
| | Author: | shinnai | | Homepage: | http://shinnai.altervista.org/ | | File Size: | 2034 | | Last Modified: | Jul 18 00:07:03 2007 |
| MD5 Checksum: | 8d25701331c34f7a80075e412fb405e7 |
|
| /// File Name: |
major_rls51.txt |
Description:
|
Virtual Hosting Control System (VHCS) versions 2.4.7.1 and below suffer from a session fixation issue.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 2003 | | Last Modified: | Jul 23 00:24:56 2007 |
| MD5 Checksum: | 1cd624b692b6801508ec08ff978198ce |
|
|
|
|
|