Section: .. / 0705-exploits /
| /// File Name: |
navboard260-exec.txt |
Description:
|
NavBoard version 2.6.0 remote code execution exploit.
| | Author: | Dj7xpl | | Homepage: | http://Dj7xpl.2600.ir/ | | File Size: | 26503 | | Last Modified: | May 30 17:18:08 2007 |
| MD5 Checksum: | e13f5f2f82fbc550e7284af692e87254 |
|
| /// File Name: |
gimp2214-overflow.txt |
Description:
|
Gimp version 2.2.14 .RAS file download/execute buffer overflow exploit for Win32.
| | Author: | Kristian Hermansen | | File Size: | 19106 | | Last Modified: | May 9 23:37:50 2007 |
| MD5 Checksum: | bb61062ede000212eb68b2fa109e54f5 |
|
| /// File Name: |
tsp-exec.txt |
Description:
|
AlstraSoft Template Seller Pro versions 3.25 and below remote code execution exploit.
| | Author: | BlackHawk | | Homepage: | http://itablackhawk.altervista.org/ | | File Size: | 15112 | | Last Modified: | May 20 23:25:19 2007 |
| MD5 Checksum: | 011b92e77529011193e5a2d895caaa9c |
|
| /// File Name: |
xwdp-cygwin.c |
Description:
|
Webdesproxy version 0.0.1 GET request remote buffer overflow exploit.
| | Author: | vade79 | | Homepage: | http://fakehalo.us/ | | File Size: | 11759 | | Last Modified: | May 16 20:20:04 2007 |
| MD5 Checksum: | 243346b09ad17b18f42d97c551a609cb |
|
| /// File Name: |
etrust.c |
Description:
|
Privilege escalation exploit that makes use of a stack-based buffer overflow in the eTrust Antivirus Agent r8.
| | Author: | binagres | | Homepage: | http://www.48bits.com/ | | File Size: | 11560 | | Last Modified: | May 11 22:35:12 2007 |
| MD5 Checksum: | 52c7b71b75ef45acea7854270bab62f2 |
|
| /// File Name: |
monalbum-exec.txt |
Description:
|
Monalbum version 0.8.7 remote code execution exploit.
| | Author: | Dj7xpl | | Homepage: | http://Dj7xpl.2600.ir/ | | File Size: | 10837 | | Last Modified: | May 16 19:31:11 2007 |
| MD5 Checksum: | 6556e9eea99b575f19b59c5fa95727db |
|
| /// File Name: |
xoops121-blindsql.txt |
Description:
|
XOOPS Module resmanager versions 1.21 and below blind SQL injection exploit.
| | Author: | ajann | | File Size: | 10234 | | Last Modified: | May 16 20:11:58 2007 |
| MD5 Checksum: | 1895632f69a76dd0efe7ac2939103aa4 |
|
| /// File Name: |
3proxy-overflow.txt |
Description:
|
3proxy version 0.5.3g proxy.c logurl() remote buffer overflow exploit. Uses the reverse connect-back method.
| | Author: | Xpl017Elz | | Homepage: | http://x82.inetcop.org | | File Size: | 10036 | | Last Modified: | May 2 23:07:16 2007 |
| MD5 Checksum: | 88c2dd6160b7a6b3c9f6f8697c7219f6 |
|
| /// File Name: |
runcms152-sql.txt |
Description:
|
RunCMS versions 1.5.2 and below SQL injection and credential disclosure exploit.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 8826 | | Last Modified: | May 8 03:29:46 2007 |
| MD5 Checksum: | 4fcb0510d967af251ec5e5285524b75a |
|
| /// File Name: |
gcards-sql-exec.txt |
Description:
|
gCards versions 1.46 and below SQL injection and remote code execution exploit.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 8799 | | Last Modified: | May 30 18:29:47 2007 |
| MD5 Checksum: | 92ba41159dda3c9c4cb68fea13c310fc |
|
| /// File Name: |
fundanemt-exec.txt |
Description:
|
Fundanemt versions 2.2.0 and below exploit that makes use of a remote code execution vulnerability in spellcheck.php.
| | Author: | Kacper | | Homepage: | http://www.rahim.webd.pl/ | | File Size: | 8499 | | Last Modified: | May 30 18:40:32 2007 |
| MD5 Checksum: | ea310d949c5c4e364176d62ae8940178 |
|
| /// File Name: |
apache2058-rewrite.txt |
Description:
|
Apache version 2.0.58 mod_rewrite remote overflow exploit for win32. Binds a shell to port 4445.
| | Author: | fabio/b0x | | File Size: | 8182 | | Related CVE(s): | CVE-2006-3747 | | Last Modified: | May 30 23:17:51 2007 |
| MD5 Checksum: | d13fe4b22535aa7ea1182a7adefdbf1e |
|
| /// File Name: |
pheap20-exec.txt |
Description:
|
Pheap version 2.0 administrative bypass and remote code execution exploit.
| | Author: | Silentz | | Homepage: | http://www.w4ck1ng.com/ | | File Size: | 7989 | | Last Modified: | May 30 18:47:41 2007 |
| MD5 Checksum: | 3429af595f537c94f06aec89e83b9fd1 |
|
| /// File Name: |
SA-20070509-0.txt |
Description:
|
SEC Consult Security Advisory 20070509-0 - The Nokia Intellisync Mobile Suite is susceptible to cross site scripting, source code disclosure, and denial of service vulnerabilities. Details provided. Versions known vulnerable include 6.4.31.2, 6.6.0.107, and 6.6.2.2.
| | Author: | Johannes Greil | | Homepage: | http://www.sec-consult.com/ | | File Size: | 7342 | | Last Modified: | May 9 23:48:54 2007 |
| MD5 Checksum: | a1c8532f618a799a07f22f81e3e18cbf |
|
| /// File Name: |
xnotepad.c |
Description:
|
notepad++ version 4.1 ruby file processing buffer overflow exploit for win32.
| | Author: | vade79 | | File Size: | 7068 | | Last Modified: | May 15 01:44:25 2007 |
| MD5 Checksum: | 7d9f4e6f0fe368c14e601e299c42f65d |
|
| /// File Name: |
exploit-NPDS-5.10.txt |
Description:
|
MPDS versions 5.10 and below remote code execution exploit.
| | Author: | Gu1ll4um3r0m41n | | File Size: | 6918 | | Last Modified: | May 8 03:42:07 2007 |
| MD5 Checksum: | 3de78712257bbc1c6fae5db5e9774844 |
|
| /// File Name: |
wp213-ajax.txt |
Description:
|
Wordpress version 2.1.3 suffers from a blind SQL injection vulnerability in admin-ajax.php.
| | Author: | Janek Vind aka waraxe | | Homepage: | http://www.waraxe.us/ | | File Size: | 6834 | | Last Modified: | May 21 21:25:15 2007 |
| MD5 Checksum: | 47caf61b09da8f59d36df1644408eec8 |
|
| /// File Name: |
BTP00002P005CF.zip |
Description:
|
Proof of concept code that demonstrates a flaw with how Comodo Firewall uses process identifiers in Microsoft Windows allowing for complete bypass.
| | Homepage: | http://www.matousec.com/ | | Related File: | bypassing-pwf-hips.txt | | File Size: | 6268 | | Last Modified: | May 16 21:37:07 2007 |
| MD5 Checksum: | a52ac420ca7716f99be0fb512788583a |
|
| /// File Name: |
0x82-x1_fc6.c |
Description:
|
Fedora Core 6 (exec-shield) based Webdesproxy version 0.0.1 remote root exploit.
| | Author: | Xpl017Elz | | Homepage: | http://x82.inetcop.org | | File Size: | 5824 | | Last Modified: | May 15 02:36:03 2007 |
| MD5 Checksum: | 9f1800894ead4793a02e0a1bfcaa650f |
|
| /// File Name: |
sriweb-xss.txt |
Description:
|
The SRI (Romanian Secret Service) web site suffers from a cross site scripting vulnerability.
| | Author: | fl0 fl0w | | Homepage: | http://popesculescu.lx.ro/ | | File Size: | 5188 | | Last Modified: | May 23 01:24:22 2007 |
| MD5 Checksum: | 047461264b56d37f93539e465d354c21 |
|
| /// File Name: |
BTP00000P000ZA.zip |
Description:
|
Proof of concept code that demonstrates a flaw with how ZoneAlarm uses process identifiers in Microsoft Windows allowing for complete bypass.
| | Homepage: | http://www.matousec.com/ | | Related File: | bypassing-pwf-hips.txt | | File Size: | 5126 | | Last Modified: | May 16 21:35:12 2007 |
| MD5 Checksum: | 8000bd70c5341bd4a19fe358e745fb1d |
|
|
|
|
|