Section: .. / 0702-exploits /
| /// File Name: |
maildisable-v5.pl.txt |
Description:
|
MailEnable Pro/Enterprise versions below 2.351 proof of concept exploit that makes use of an out of bounds memory read in the NTLM authentication routines.
| | Author: | mu-b | | File Size: | 1816 | | Last Modified: | Feb 14 22:21:28 2007 |
| MD5 Checksum: | 40cb4c0dc389db110f093feaf9d26a17 |
|
| /// File Name: |
maildisable-v6.pl.txt |
Description:
|
Mail Enable Professional versions 2.35 and below remote exploit. Binds a shell to port 1337.
| | Author: | mu-b | | File Size: | 4299 | | Last Modified: | Feb 17 05:50:00 2007 |
| MD5 Checksum: | 5526079197ebd97d09e0b9f5c2a02765 |
|
| /// File Name: |
maildisable-v7.pl.txt |
Description:
|
MailEnable Pro/Enterprise version 2.37 proof of concept exploit that makes use of an out of bounds memory read in the NTLM authentication routines.
| | Author: | mu-b | | File Size: | 1610 | | Last Modified: | Feb 14 22:22:27 2007 |
| MD5 Checksum: | 29f826ef0ba28ec861252188df4484ac |
|
| /// File Name: |
mediawiki-xss.txt |
Description:
|
MediaWiki versions 1.9.2 and below suffer from cross site scripting flaws.
| | Author: | Moshe BA | | Homepage: | http://www.bugsec.com/ | | File Size: | 1270 | | Last Modified: | Feb 23 23:54:05 2007 |
| MD5 Checksum: | 90bbf828a6d3d753a5e90c893c987519 |
|
| /// File Name: |
mina-rfi.txt |
Description:
|
Mina Ajans Script suffers from a remote file inclusion flaw.
| | Author: | CanberX, BLaCKWHITE | | File Size: | 921 | | Last Modified: | Feb 6 06:46:08 2007 |
| MD5 Checksum: | 5ae593b038727e080e79ad0c61c927fc |
|
| /// File Name: |
mini-traverse.txt |
Description:
|
Miniwebsvr version 0.0.6 appears to be susceptible to a one level directory traversal flaw.
| | Author: | Daniel Nystrom, Fredrik Wessberg | | File Size: | 273 | | Last Modified: | Feb 13 09:49:05 2007 |
| MD5 Checksum: | 782d565e5e78814c9a75aeeaa184aaa2 |
|
| /// File Name: |
mne-rfi.txt |
Description:
|
MySQLNewsEngine suffers from a remote file inclusion vulnerability.
| | Author: | Blaster, CanberX | | File Size: | 488 | | Last Modified: | Feb 8 06:20:53 2007 |
| MD5 Checksum: | 9dc235e4e3a1a66579a835b2bd8472da |
|
| /// File Name: |
msie6-npd.txt |
Description:
|
Microsoft Internet Explorer 6 mshtml.dll null pointer derefence exploit.
| | Author: | AmesianX | | File Size: | 1283 | | Last Modified: | Feb 6 06:47:53 2007 |
| MD5 Checksum: | 471fa4258ccebe6eb43a24994ad5b1c9 |
|
| /// File Name: |
mycal-xss.txt |
Description:
|
MyCalendar suffers from cross site scripting flaws.
| | Author: | sn0oPy | | File Size: | 636 | | Last Modified: | Feb 23 23:49:41 2007 |
| MD5 Checksum: | d761e8f55ef0bde8e963cd4ae3d13ced |
|
| /// File Name: |
nabopoll-sql.txt |
Description:
|
Nabopoll suffers from a blind SQL injection vulnerability.
| | Author: | s0cratex | | File Size: | 1416 | | Last Modified: | Feb 24 01:10:49 2007 |
| MD5 Checksum: | c5aa3f02228701520e6b329724518f44 |
|
| /// File Name: |
NETRAGARD-20070220-1.txt |
Description:
|
Netragard, L.L.C Advisory - McAfee Virex contains an exploitable feature that enables users to define what files should be excluded for scanning. This feature relies on a configuration file with insecure privileges and is located in /Library/Application Support. Any user on the system can modify or delete the configuration file thus affecting what Virex will scan. Versions 7.7 and below are affected.
| | Author: | Kevin Finisterre | | Homepage: | http://www.netragard.com/html/recent_research.html | | File Size: | 8039 | | Last Modified: | Mar 6 05:20:27 2007 |
| MD5 Checksum: | 7a113c2b8adb0d5f52d1d955c4363497 |
|
| /// File Name: |
newsbin-local.txt |
Description:
|
News Bin Pro version 5.33 local buffer overflow exploit for .NBI files.
| | Author: | Marsu | | File Size: | 6136 | | Last Modified: | Feb 24 03:15:42 2007 |
| MD5 Checksum: | 8d420915619ab331438c6eaac89dfac1 |
|
| /// File Name: |
NGS-traversal.txt |
Description:
|
Oracle 10g R2 Enterprise Manager suffers from a classic directory traversal flaw. Details provided.
| | Author: | Mark Litchfield | | Homepage: | http://www.ngssoftware.com/ | | File Size: | 2489 | | Last Modified: | Feb 1 05:49:30 2007 |
| MD5 Checksum: | 0c5b1958a382b2b56a78fd3ccad8e0f0 |
|
| /// File Name: |
nortel-sh.txt |
Description:
|
Nortel SSL VPN Linux Client versions 6.0.3 and below local privilege escalation exploit.
| | Author: | Jon Hart | | File Size: | 4950 | | Last Modified: | Feb 24 03:14:53 2007 |
| MD5 Checksum: | 8bc27550159049196e9c42b7bc334d88 |
|
| /// File Name: |
nukesentinel-disclose.txt |
Description:
|
NukeSentinel version 2.5.05 file disclosure exploit that makes use of nukesentinel.php.
| | Author: | DarkFig | | File Size: | 5824 | | Last Modified: | Feb 24 00:47:11 2007 |
| MD5 Checksum: | 1d6fc2db5821eaa86245b905de861f29 |
|
| /// File Name: |
nukesentinel-sql.txt |
Description:
|
NukeSentinel version 2.5.05 blind SQL injection exploit that makes use of nsbypass.php.
| | Author: | DarkFig | | File Size: | 5706 | | Last Modified: | Feb 24 00:46:36 2007 |
| MD5 Checksum: | 1b3ca86641caa030276996454fea744e |
|
| /// File Name: |
omegaboard-rfi.txt |
Description:
|
Omegaboard version 1.0b4 suffers from a remote file inclusion flaw in phpbb_root_path.
| | Author: | xoron | | File Size: | 1087 | | Last Modified: | Feb 6 05:02:41 2007 |
| MD5 Checksum: | 7ce5971025d22b8ca37e1aaf1ce834c3 |
|
| /// File Name: |
openssh-timing.txt |
Description:
|
Portable OpenSSH versions 3.6.1p-PAM / 4.1-SUSE and below timing attack exploit.
| | Author: | Marco Ivaldi | | File Size: | 2277 | | Last Modified: | Feb 14 23:23:28 2007 |
| MD5 Checksum: | 293040e79450f8a12b90cd78eb7f3bc6 |
|
| /// File Name: |
oracle-sql.txt |
Description:
|
Oracle 9i/10g DBMS_EXPORT_EXTENSION SQL injection exploit.
| | Author: | bunker | | Homepage: | http://rawlab.mindcreations.com/ | | File Size: | 3078 | | Last Modified: | Feb 6 06:53:15 2007 |
| MD5 Checksum: | e8c1ad7a358b928402e6586d17beed9f |
|
| /// File Name: |
otscms-multi.txt |
Description:
|
OTSCMS version 2.1.5 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | GregStar | | Homepage: | http://c4f.pl/ | | File Size: | 1516 | | Last Modified: | Feb 8 06:13:34 2007 |
| MD5 Checksum: | 5fb6c23e527774a79090f994364e459c |
|
| /// File Name: |
ovidentia5x-rfi.txt |
Description:
|
Ovidentia version 5.x remote file inclusion exploit.
| | Author: | Hotturk | | File Size: | 2077 | | Last Modified: | Feb 13 07:06:58 2007 |
| MD5 Checksum: | 5994fe7e672751b845e5bac5dfb3b932 |
|
|
|
|
|