Section: .. / 0703-exploits /
| /// File Name: |
MOPB-already.txt |
Description:
|
Month of PHP Bugs - PHP versions 4.4.6 and below and versions 5.2.1 and below ext/gd already fixed resources usage exploit.
| | Author: | Stefan Esser | | Homepage: | http://hardened-php.net/ | | File Size: | 5447 | | Last Modified: | Mar 20 23:22:38 2007 |
| MD5 Checksum: | bae3cbbd5ac3157734ec91fd835d09c1 |
|
| /// File Name: |
phpraid-rfi.txt |
Description:
|
phpRaid versions 3.0.7 and below suffer from a remote file inclusion vulnerability.
| | Author: | Cold Zero | | File Size: | 2697 | | Last Modified: | Mar 20 23:20:27 2007 |
| MD5 Checksum: | 2656dc0a423e40b1f65ac1dbf8b746c1 |
|
| /// File Name: |
htmltonuke-rfi.txt |
Description:
|
PHP-Nuke module htmltonuke version 2.0alpha suffers from a remote file inclusion vulnerability.
| | Author: | Cold Zero | | File Size: | 2063 | | Last Modified: | Mar 20 23:19:35 2007 |
| MD5 Checksum: | 038e0e6a616c96a24499889a91d7a5a1 |
|
| /// File Name: |
geblog01-lfi.txt |
Description:
|
GeBlog version 0.1 local file inclusion exploit.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 3553 | | Last Modified: | Mar 20 23:18:17 2007 |
| MD5 Checksum: | 3a88c21fd98452eb92aed8db09f9b763 |
|
| /// File Name: |
helix-heap.txt |
Description:
|
Helix Server version 11.1.2 suffers from a remote heap overflow vulnerability that allows a remote attacker to gain root privileges. Proof of concept exploit included.
| | Author: | Evgeny Legerov | | Homepage: | http://gleg.net/ | | File Size: | 4456 | | Last Modified: | Mar 20 23:09:25 2007 |
| MD5 Checksum: | f718962de1e831186f17e57c489b63c7 |
|
| /// File Name: |
mercur-v1.txt |
Description:
|
Mercur IMAPD exploit that makes use of several bugs in the NTLM implementation. It gives the attacker complete control over a memcpy to a stack variable and the outcome is a denial of service (crash).
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 1965 | | Last Modified: | Mar 20 23:07:46 2007 |
| MD5 Checksum: | 87ed6a45532c6dd6285bbe5460e56edc |
|
| /// File Name: |
wagora-multi.txt |
Description:
|
w-agora suffers from file upload, full patch disclosure, cross site scripting and SQL injection flaws.
| | Author: | laurent gaffi | | File Size: | 2431 | | Last Modified: | Mar 20 23:03:27 2007 |
| MD5 Checksum: | 11a9ea5a5891173499c0c433079802fe |
|
| /// File Name: |
webwiz805-sql.txt |
Description:
|
The MySQL version of Web Wiz version 8.05 suffers from a SQL injection vulnerability.
| | Author: | Ivan Fratric | | Homepage: | http://ifsec.blogspot.com/ | | File Size: | 2134 | | Last Modified: | Mar 20 23:02:09 2007 |
| MD5 Checksum: | 4ec1cbb50de81b81a4f3f1add8cb3469 |
|
| /// File Name: |
npds-exec.txt |
Description:
|
Net Portal Dynamic System (NPDS) versions 5.10 and below remote code execution exploit.
| | Author: | DarkFig | | Homepage: | http://www.acid-root.new.fr/ | | File Size: | 8849 | | Last Modified: | Mar 20 11:22:55 2007 |
| MD5 Checksum: | 1dce29ddb8906e6662ec1afd9f300077 |
|
| /// File Name: |
overtheledger.txt |
Description:
|
LedgerSMB versions below 1.1.10 and SQL-Ledger versions below 2.6.27 suffer from arbitrary code execution flaws. SQL-Ledger also suffers from an authentication bypass vulnerability. Details provided.
| | Author: | Chris Travers | | File Size: | 3546 | | Last Modified: | Mar 20 11:21:17 2007 |
| MD5 Checksum: | 1df79a09478cc2fde3152194518168e9 |
|
| /// File Name: |
clbox-rfi.txt |
Description:
|
CLBOX version 1.0.1 suffers from a remote file inclusion vulnerability.
| | Author: | BorN To K!LL | | File Size: | 782 | | Last Modified: | Mar 20 11:09:12 2007 |
| MD5 Checksum: | 069fc061a3803025f5cabacf46c4c511 |
|
| /// File Name: |
pb-sql.txt |
Description:
|
Particle Blogger version 1.1.2 remote SQL injection exploit that makes use of Post.PHP.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1745 | | Last Modified: | Mar 20 11:04:05 2007 |
| MD5 Checksum: | 1a38bd225956c948465942776bf22320 |
|
| /// File Name: |
rot13-lfi.txt |
Description:
|
Rot 13 suffers from a remote file disclosure vulnerability in enkrypt.php.
| | Author: | BorN To K!LL | | File Size: | 899 | | Last Modified: | Mar 20 02:00:31 2007 |
| MD5 Checksum: | ee398040cb4838318c34e70005f1cee1 |
|
| /// File Name: |
aig-mssql.txt |
Description:
|
Absolute Image Gallery version 2.0 MS-SQL injection exploit that makes use of Gallery.ASP.
| | Author: | UniquE-Key | | File Size: | 6631 | | Last Modified: | Mar 20 01:11:37 2007 |
| MD5 Checksum: | 981577bb3461453ed8495f9677a39a2c |
|
| /// File Name: |
webcal-rfi.txt |
Description:
|
WebCalendar version 0.9.45 suffers from a remote file inclusion vulnerability in login.php.
| | Author: | Drackanz | | File Size: | 2045 | | Last Modified: | Mar 20 01:04:23 2007 |
| MD5 Checksum: | ac3da074b5f2488bdcd42054e6154088 |
|
| /// File Name: |
viperweb-rfi.txt |
Description:
|
ViperWeb Portal suffers from a remote file inclusion vulnerability.
| | Author: | Abdus Samad | | File Size: | 328 | | Last Modified: | Mar 20 00:54:00 2007 |
| MD5 Checksum: | 4018b895d3d97337ffc2b4a8d6cda65d |
|
| /// File Name: |
BTP00012P002NF.zip |
Description:
|
Proof of concept exploit that demonstrates how Norton insufficiently protects its driver \Device\SymEvent against manipulation.
| | Homepage: | http://www.matousec.com/ | | Related File: | Norton-symtdi.txt | | File Size: | 3655 | | Last Modified: | Mar 20 00:53:25 2007 |
| MD5 Checksum: | 33aa94922de497dc63585160afb6e8e2 |
|
| /// File Name: |
caid-msgeng.txt |
Description:
|
CA BrightStor ARCserve remote stack overflow exploit that takes advantage of msgeng.exe.
| | Author: | Winny Thomas | | File Size: | 6766 | | Last Modified: | Mar 19 23:59:23 2007 |
| MD5 Checksum: | 1388521454aee2669c9a327a37223708 |
|
| /// File Name: |
warftp-2.txt |
Description:
|
WarFTP version 1.65 USER remote buffer overflow SEH overflow exploit.
| | Author: | Umesh Wanve | | File Size: | 4081 | | Last Modified: | Mar 19 23:57:18 2007 |
| MD5 Checksum: | dedc74245969270fc3fa2a485009042e |
|
| /// File Name: |
warftp-1.txt |
Description:
|
WarFTP version 1.65 USER remote buffer overflow exploit for win2k SP4.
| | Author: | Winny Thomas | | File Size: | 5126 | | Last Modified: | Mar 19 23:56:08 2007 |
| MD5 Checksum: | e09f0d69f3deb46e56422910621d8e19 |
|
| /// File Name: |
newsreactor-2.txt |
Description:
|
NewsReactor 20070220 article grabbing remote buffer overflow exploit. Version 2.
| | Author: | Marsu | | File Size: | 8085 | | Last Modified: | Mar 19 23:55:14 2007 |
| MD5 Checksum: | 83e617ba02b413f48ca2840ca1c50933 |
|
|
|
|
|