Section: .. / 0805-exploits /
| /// File Name: |
alkalinephp-sql.txt |
Description:
|
AlkalinePHP versions 0.80.00 beta and below remote SQL injection exploit that takes advantage of thread.php.
| | Author: | Stack-Terrorist | | Homepage: | http://v4-team.com/ | | File Size: | 3612 | | Last Modified: | May 19 21:05:38 2008 |
| MD5 Checksum: | 80419c4f1d7a8f38578af68a6cf65bac |
|
| /// File Name: |
alm-sql.txt |
Description:
|
Advanced Links Management version 1.52 suffers from a remote SQL injection vulnerability.
| | Author: | His0k4 | | File Size: | 787 | | Last Modified: | May 12 10:09:25 2008 |
| MD5 Checksum: | c278efde166d49766cb85c9dfdcf4447 |
|
| /// File Name: |
apache-utf7xss.txt |
Description:
|
Apache versions 2.2.x and 1.3.x suffer from a cross site scripting vulnerability leveraging UTF-7 encoding on 403 forbidden pages.
| | Author: | Yaniv Miron, Yossi Yakubov | | File Size: | 1125 | | Last Modified: | May 9 13:40:07 2008 |
| MD5 Checksum: | 776e48651cff4b6c45bf15019e486f5c |
|
| /// File Name: |
applemail-dos.txt |
Description:
|
Apple Mail versions 3.1 and 3.2 suffer from a denial of service vulnerability when reading a specially crafted e-mail.
| | Author: | David Wharton | | File Size: | 3760 | | Last Modified: | May 30 14:40:21 2008 |
| MD5 Checksum: | ce912545b903fa38b3114b0702de84f7 |
|
| /// File Name: |
appservopen-xss.txt |
Description:
|
AppServ Open Project versions 2.5.10 and below suffer from a cross site scripting vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1688 | | Last Modified: | May 20 16:28:53 2008 |
| MD5 Checksum: | 55c3025076b6e369ac78c52ac1e2021e |
|
| /// File Name: |
articlelive-xss.txt |
Description:
|
Interspire ArticleLive NX is vulnerable to a cross site scripting vulnerability.
| | Author: | SkyOut | | Homepage: | http://wired-security.net/ | | File Size: | 2778 | | Last Modified: | May 13 11:07:49 2008 |
| MD5 Checksum: | 9fa199b5cd48bc7fdf7cc96985762f98 |
|
| /// File Name: |
asgastracker-cookie.txt |
Description:
|
AS-GasTracker version 1.0.0 suffers from an insecure cookie handling vulnerability.
| | Author: | t0pp8uzz | | File Size: | 1385 | | Last Modified: | May 15 03:34:16 2008 |
| MD5 Checksum: | 94b5d6605cfcdc708076e832bbe4154d |
|
| /// File Name: |
asus-overflow.txt |
Description:
|
ASUS DPC proxy versions 2.0.0.16 and 2.0.0.19 remote buffer overflow exploit that binds a shell to port 4444.
| | Author: | Heretic2 | | File Size: | 16141 | | Last Modified: | May 30 14:34:35 2008 |
| MD5 Checksum: | 699076b2a1cd858005940e45fc27c360 |
|
| /// File Name: |
azuresites-sql.txt |
Description:
|
AzureSites CMS suffers from insecure cookie handling and SQL injection vulnerabilities.
| | Author: | Lidloses_Auge | | File Size: | 1474 | | Last Modified: | May 31 15:30:25 2008 |
| MD5 Checksum: | 3513c24689e3199ef778f5b611d771fd |
|
| /// File Name: |
barracuda-xss.txt |
Description:
|
The Barracuda Spam Firewall device web administration interface is vulnerable to a reflected cross site scripting vulnerability which may allow theft of administrative credentials or downloading of malicious content. IRM confirmed the presence of this vulnerability in Barracuda Spam Firewall 600 Firmware 3.5.11.020. The vendor has confirmed the issue exists in all versions prior to 3.5.11.025.
| | Homepage: | http://www.irmplc.com/ | | File Size: | 2611 | | Related CVE(s): | CVE-2008-2333 | | Last Modified: | May 22 12:06:44 2008 |
| MD5 Checksum: | f01c0c0fe4ef87f37db05af1e4b203b2 |
|
| /// File Name: |
bcoos-traverse.txt |
Description:
|
Bcoos versions 1.0.13 and below suffer from an arbitrary file read vulnerability via highlight.php.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 1888 | | Last Modified: | May 19 21:20:56 2008 |
| MD5 Checksum: | 00de1d9337e4ff835501c7099f9ba870 |
|
| /// File Name: |
bigace-rfi.txt |
Description:
|
BIGACE version 2.4 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | BiNgZa | | File Size: | 2924 | | Last Modified: | May 12 15:49:59 2008 |
| MD5 Checksum: | 3cf0449edfa61d072ac4cf33885c2cb1 |
|
| /// File Name: |
blackbook-xss.txt |
Description:
|
BlackBook version 1.0 suffers from multiple cross site scripting vulnerabilities.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1573 | | Last Modified: | May 2 15:19:56 2008 |
| MD5 Checksum: | 285c67d71992e75fb3a8e3946ba1ad57 |
|
| /// File Name: |
blogmephp-sql.txt |
Description:
|
BlogMe PHP suffers from a remote SQL injection vulnerability in comments.php.
| | Author: | His0k4 | | File Size: | 629 | | Last Modified: | May 5 13:29:49 2008 |
| MD5 Checksum: | ed1e063df1f3427638bc885e5e69eae6 |
|
| /// File Name: |
blur6ex-lfi.txt |
Description:
|
blur6ex version 0.3.462 suffers from a local file inclusion vulnerability.
| | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 986 | | Last Modified: | May 2 16:43:52 2008 |
| MD5 Checksum: | 2a8b552807b884753cbc7ddaaddf559b |
|
| /// File Name: |
bmforum-xss.txt |
Description:
|
BMForum Remote version 5.6 suffers from multiple cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1336 | | Last Modified: | May 22 19:43:19 2008 |
| MD5 Checksum: | 7ddc7fa5253171ff16e2189b6bb97788 |
|
| /// File Name: |
bpblog-sql.txt |
Description:
|
BP Blog version 6.0 suffers from a remote blind SQL injection vulnerability in template_permalink.asp.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 2924 | | Last Modified: | May 31 15:19:01 2008 |
| MD5 Checksum: | 2e1b090d5a3112d606a84882feb3f514 |
|
| /// File Name: |
brownbear-xss.txt |
Description:
|
Brown Bear Software's Calcium Web Calendar suffers from a reflected cross site scripting vulnerability.
| | Author: | Marvin Simkin | | File Size: | 4264 | | Last Modified: | May 28 20:22:47 2008 |
| MD5 Checksum: | a9302f71812065c0a65a5007f0b5d8dd |
|
| /// File Name: |
calogic-sql.txt |
Description:
|
CaLogic Calendars version 1.2.2 suffers from a remote SQL injection vulnerability.
| | Author: | His0k4 | | File Size: | 937 | | Last Modified: | May 13 15:44:30 2008 |
| MD5 Checksum: | 5fdfcd69e2d4b0ce12411c5ea8574b5a |
|
| /// File Name: |
campusbb-multi.txt |
Description:
|
Campus Bulletin Board version 3.4 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | unohope | | Homepage: | http://www.chroot.org/ | | File Size: | 1500 | | Last Modified: | May 27 18:16:11 2008 |
| MD5 Checksum: | 1683e78b258f8878266fde50da633721 |
|
| /// File Name: |
chicomas204-xss.txt |
Description:
|
Chicomas CMS version 2.0.4 suffers from a cross site scripting vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 1526 | | Last Modified: | May 2 15:26:06 2008 |
| MD5 Checksum: | 7838ce43bdbea1052d5a8fab75d4d3a0 |
|
| /// File Name: |
ciscobbsm-xss.txt |
Description:
|
Cisco BBSM Captive Portal suffers from a cross site scripting vulnerability.
| | Author: | Brad Antoniewicz | | File Size: | 1069 | | Related CVE(s): | CVE-2008-2165 | | Last Modified: | May 13 17:42:20 2008 |
| MD5 Checksum: | 2ca2083dc04f5038f679e2cf05a831d8 |
|
| /// File Name: |
ckgold25-sql.txt |
Description:
|
CKGold Shopping Cart version 2.5 suffers from a remote SQL injection vulnerability in item.php.
| | Author: | Cr@zy_King | | File Size: | 450 | | Last Modified: | May 27 19:29:55 2008 |
| MD5 Checksum: | 3d8c17d09ee51921f40fb9c447b3596b |
|
|
|
|
|