Section: .. / 0703-exploits /
| /// File Name: |
winamp512-overflow.txt |
Description:
|
Winamp versions 5.12 and below crafted .PLS file remote buffer overflow exploit. Written in Perl.
| | Author: | Umesh Wanve | | File Size: | 2666 | | Last Modified: | Mar 8 21:49:55 2007 |
| MD5 Checksum: | 41c3a7c3969f9df5042520f40c2cdd81 |
|
| /// File Name: |
winzip-heap.txt |
Description:
|
WinZip versions 10.0.7245 and below FileView ActiveX buffer overflow exploit.
| | Author: | prdelka | | Homepage: | http://blogs.23.nu/prdelka | | File Size: | 2139 | | Last Modified: | Mar 8 21:48:51 2007 |
| MD5 Checksum: | 913c84a6dd47879e09db4eeadfb75fc3 |
|
| /// File Name: |
esser-php.txt |
Description:
|
PHP versions 4.4.5 and below and 5.2.1 and below shmop SSL RSA private key disclosure exploit.
| | Author: | Stefan Esser | | Homepage: | http://www.hardened-php.net/ | | File Size: | 2329 | | Last Modified: | Mar 8 21:45:26 2007 |
| MD5 Checksum: | 3625f9fdc8d9132a625db7e2ce1735a7 |
|
| /// File Name: |
snort-dos.txt |
Description:
|
Snort versions 2.6.1.1, 2.6.1.2, and 2.7.0 remote denial of service exploit.
| | Author: | Antimatt3r | | File Size: | 6957 | | Last Modified: | Mar 8 21:36:08 2007 |
| MD5 Checksum: | 6e20a13f424102045efa3174b98dae4b |
|
| /// File Name: |
Advisory2-24012007.txt |
Description:
|
PhpMyAdmin versions 2.9.2 and below suffer from cross site scripting and cross site request forgery flaws.
| | Author: | AlFa | | Homepage: | http://www.virtuax.be/ | | File Size: | 8232 | | Last Modified: | Mar 8 21:28:44 2007 |
| MD5 Checksum: | 74a320204d81438afaf88dc1f55d7263 |
|
| /// File Name: |
mercurypown-v1.pl.txt |
Description:
|
Proof of concept denial of service exploit for Mercury/32 version 4.01b IMAPD.
| | Author: | mu-b | | File Size: | 2072 | | Last Modified: | Mar 8 19:12:37 2007 |
| MD5 Checksum: | 865f160b544e2e843cddeb0978ede745 |
|
| /// File Name: |
advisory-php-gaestebuch-en.txt |
Description:
|
PHP-Gaestebuch versions 6.3 and below suffer from a HTML injection vulnerability that can allow for cross site scripting attacks.
| | Author: | Trew | | Homepage: | http://trew.icenetx.net/ | | File Size: | 1680 | | Last Modified: | Mar 8 17:49:33 2007 |
| MD5 Checksum: | e96009e3d4f28ab83d7f80c155f39a2a |
|
| /// File Name: |
vcard26-xss.txt |
Description:
|
vCard version 2.6 suffers from a cross site scripting flaw.
| | Author: | Hasadya Raed | | File Size: | 544 | | Last Modified: | Mar 8 17:43:31 2007 |
| MD5 Checksum: | 0cb36465410185ec40bcfe946ff99180 |
|
| /// File Name: |
asterisk-sip-kill.c |
Description:
|
Remote denial of service exploit for Asterisk PBX that makes use of a bug in the SIP channel driver. Versions below 1.2.16 and below 1.4.1 are affected.
| | Author: | Anonymous | | File Size: | 2817 | | Last Modified: | Mar 8 17:42:48 2007 |
| MD5 Checksum: | 7bc997a83ca3b9c66f2f973b835daed5 |
|
| /// File Name: |
rps62-sql.txt |
Description:
|
RPS version 6.2 SQL injection exploit.
| | Author: | s0cratex | | File Size: | 1554 | | Last Modified: | Mar 8 17:41:04 2007 |
| MD5 Checksum: | 77c4660ac82ece56ba2af200963a3f81 |
|
| /// File Name: |
rapidleech.txt |
Description:
|
Rapidleech remote code execution exploit.
| | Author: | Dark L0rD, Red_Dragon | | Homepage: | http://www.onhackerline.com/ | | File Size: | 2014 | | Last Modified: | Mar 8 17:40:32 2007 |
| MD5 Checksum: | ac848836151759e2ac216d59bc718d6e |
|
| /// File Name: |
tyger-sqlxss.txt |
Description:
|
Tyger bug tracking system version 1.1.3 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | CorryL | | File Size: | 1326 | | Last Modified: | Mar 8 17:38:09 2007 |
| MD5 Checksum: | 61dc6d5fbbfc1fc0114e2e01a19b4059 |
|
| /// File Name: |
bj-xss.txt |
Description:
|
BJ Webring suffers from a cross site scripting flaw.
| | Author: | sn0oPy | | File Size: | 372 | | Last Modified: | Mar 8 17:37:14 2007 |
| MD5 Checksum: | b2bf61a76f253dc9651d72ba528f4b2d |
|
| /// File Name: |
webspell-exec.txt |
Description:
|
webSPELL versions 4.01.02 and below remote code execution exploit.
| | Author: | DarkFig | | File Size: | 4751 | | Last Modified: | Mar 8 17:35:50 2007 |
| MD5 Checksum: | c3322c9522b95d88534d18e71a00d5f1 |
|
| /// File Name: |
wp-compromise.txt |
Description:
|
It appears that the WordPress blogging software was compromised and backdoored on Feb 25th, 2007 on the WordPress site.
| | Author: | Ivan Fratric | | File Size: | 1613 | | Last Modified: | Mar 8 17:33:33 2007 |
| MD5 Checksum: | f35a0b1a03674d0546e774db9d353d4d |
|
| /// File Name: |
netrekfs.zip |
Description:
|
Proof of concept exploit for Netrek versions 2.12.0 and below which suffer from a format string vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | netrekfs.txt | | File Size: | 14409 | | Last Modified: | Mar 8 17:26:41 2007 |
| MD5 Checksum: | 7d0fda35161f28a0a988a3bae5206b7a |
|
| /// File Name: |
woltlab236-xss.txt |
Description:
|
Woltlab version 2.3.6 appears susceptible to cross site scripting vulnerabilities.
| | Author: | Samenspender | | File Size: | 6585 | | Last Modified: | Mar 6 03:55:24 2007 |
| MD5 Checksum: | cfb07028d27d24d80fc678a4c7ba4501 |
|
| /// File Name: |
maildisable-v4.pl.txt |
Description:
|
Mail Enable Professional/Enterprise version 2.32 through 2.34 (Win32) remote exploit. Binds a shell to port 1337.
| | Author: | mu-b | | File Size: | 4188 | | Last Modified: | Mar 6 02:35:57 2007 |
| MD5 Checksum: | a9920e0ee1961c4837e2ccd77f52e245 |
|
| /// File Name: |
dbimage-rfi.txt |
Description:
|
DBImageGallery version 1.2.2 suffers from remote file inclusion vulnerabilities.
| | Author: | Hasadya Raed | | File Size: | 1410 | | Last Modified: | Mar 6 02:33:45 2007 |
| MD5 Checksum: | b7ffe3d09b3c6fd0e6fd07047944bdbe |
|
| /// File Name: |
spaw-rfi.txt |
Description:
|
SPAW Editor PHP Edition versions 1.2.3 and 1.2.4 suffer from a remote file inclusion vulnerability.
| | Author: | Hasadya Raed | | File Size: | 614 | | Last Modified: | Mar 6 02:32:58 2007 |
| MD5 Checksum: | 899df16d74977f3fe997a1a853c739d3 |
|
|
|
|
|