Section: .. / 0806-exploits /
| /// File Name: |
vbulletin-xss.txt |
Description:
|
vBulletin versions 3.7.1 and below and 3.6.10 and below suffer from an obscure cross site scripting vulnerability.
| | Author: | Jessica Hope | | File Size: | 4576 | | Last Modified: | Jun 13 12:34:37 2008 |
| MD5 Checksum: | e94f99bc7326a589a3f209566081b941 |
|
| /// File Name: |
vbulletin365-rfi.txt |
Description:
|
vBulletin version 3.6.5 suffers from remote file inclusion vulnerabilities.
| | Author: | Hasadya Raed | | File Size: | 566 | | Last Modified: | Jun 19 18:16:08 2008 |
| MD5 Checksum: | 6cf481df5defdc3778b228d21ba1c92c |
|
| /// File Name: |
vim-exec.txt |
Description:
|
Vim (Vi IMproved) versions 7.1.314 and 6.4 suffer from various code execution vulnerabilities.
| | Author: | Jan Minar | | File Size: | 25564 | | Last Modified: | Jun 16 19:09:39 2008 |
| MD5 Checksum: | 3b81c7d93e637c9a25e736386f3b97a6 |
|
| /// File Name: |
viraldx-sql.txt |
Description:
|
E-Topbiz ViralDX version 2.07 suffers from a SQL injection vulnerability in adclick.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1646 | | Last Modified: | Jun 25 18:52:16 2008 |
| MD5 Checksum: | beea2118cf33026421809d3882282a37 |
|
| /// File Name: |
vistareseller-xss.txt |
Description:
|
VistaReseller Panel BETA suffers from a cross site scripting vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 949 | | Last Modified: | Jun 16 20:03:05 2008 |
| MD5 Checksum: | 9cfa7936ab3a88794eac9a4f86c963ef |
|
| /// File Name: |
visualsentinel-cas.txt |
Description:
|
VisualSentinel version 0.7 suffers from a cross site scripting vulnerability using the user agent that will be stored in a web viewable log.
| | Author: | Alfredo Panzera | | Homepage: | http://www.opencosmo.com/ | | File Size: | 890 | | Last Modified: | Jun 2 15:54:52 2008 |
| MD5 Checksum: | ab9dd6fe2911f2b783f07a966b2de891 |
|
| /// File Name: |
vsftpd-dos.txt |
Description:
|
vsftpd version 2.0.5 remote post-auth memory consumption exploit.
| | Author: | Praveen Darshanam | | File Size: | 1068 | | Last Modified: | Jun 16 19:11:28 2008 |
| MD5 Checksum: | a494e7e4311750c0168d09dfa2ef76ca |
|
| /// File Name: |
w1l3d4-sqlxss.txt |
Description:
|
W1L3D4 Philboard version 1.2 suffers from blind SQL injection and cross site scripting vulnerabilities.
| | Author: | Bl@ckbe@rd | | File Size: | 687 | | Last Modified: | Jun 28 10:52:36 2008 |
| MD5 Checksum: | 861e1f8aa925cd21c10102b4cbd1f982 |
|
| /// File Name: |
webalbum-xss.txt |
Description:
|
WEBAlbum version 2.0 and below suffer from a remote stored cross site scripting vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1171 | | Last Modified: | Jun 6 18:52:43 2008 |
| MD5 Checksum: | 4c884085802d1607928c753f217fbcdf |
|
| /// File Name: |
webcal104-rfi.txt |
Description:
|
WebCalendar version 1.0.4 suffers from a remote file inclusion vulnerability in send_reminders.php.
| | Author: | Cr@zy_King | | Related Exploit: | webcal-rfi.txt | | File Size: | 330 | | Last Modified: | Jun 18 18:02:53 2008 |
| MD5 Checksum: | eea29a82f1bd14d1547c5107143085b2 |
|
| /// File Name: |
webchamado-admin.txt |
Description:
|
WebChamado version 1.1 arbitrary add administrator exploit.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2932 | | Last Modified: | Jun 13 12:25:41 2008 |
| MD5 Checksum: | 6587651ea67811c45d042fdd17ad333d |
|
| /// File Name: |
webchamado-sql.txt |
Description:
|
WebChamado version 1.1 suffers from a SQL injection vulnerability.
| | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 1044 | | Last Modified: | Jun 13 19:00:29 2008 |
| MD5 Checksum: | c662c016ecfd922bf9d8c9d8daf9b817 |
|
| /// File Name: |
webdevindo-sql.txt |
Description:
|
Webdevindo-CMS version 0.1 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1408 | | Last Modified: | Jun 25 19:40:31 2008 |
| MD5 Checksum: | f0051f3d547cf5b031f6ebb1450f7473 |
|
| /// File Name: |
webta-xss.txt |
Description:
|
webTA systems, used by many federal employees, suffer from cross site scripting vulnerabilities.
| | Author: | Alex Eden | | File Size: | 1046 | | Last Modified: | Jun 9 15:49:03 2008 |
| MD5 Checksum: | 86ac13051157fea2a135f6481bebf2f6 |
|
| /// File Name: |
wellyblog-xss.txt |
Description:
|
WellyBlog Open Source Blog Portal suffers from a cross site scripting vulnerability.
| | Author: | the_Edit0r | | Homepage: | http://www.virangar.org/ | | File Size: | 831 | | Last Modified: | Jun 27 12:02:44 2008 |
| MD5 Checksum: | 2f0660f20ffa6fdd5e51d9c536d72cd7 |
|
| /// File Name: |
wicboom.zip |
Description:
|
Proof of concept exploit for World in Conflict versions 1.008 and below which suffer from a NULL pointer vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | wicboom.txt | | File Size: | 6339 | | Last Modified: | Jun 23 18:34:57 2008 |
| MD5 Checksum: | 00c2c161d9e10ecf793ba966d65e1367 |
|
| /// File Name: |
wordpad-crash.tgz |
Description:
|
A vulnerability has been reported in Microsoft Word, which can be exploited by malicious people to compromise the system. The vulnerability is caused due to an unspecified error when opening and parsing the document. This can be exploited to corrupt memory via a specially crafted function in a Word document. Successful exploitation allows execution of arbitrary code. Demonstration .DOC file included.
| | Author: | Ivan Sanchez | | Homepage: | http://www.nullcode.com.ar/ | | File Size: | 6754 | | Last Modified: | Jun 20 15:36:43 2008 |
| MD5 Checksum: | 1bcc6097a1574a2b2094a864cbbc296e |
|
| /// File Name: |
xchat-exec.txt |
Description:
|
XChat versions 2.8.7b and below remote code execution exploit that leverages Internet Explorer versions 6 and 7.
| | Author: | securfrog | | File Size: | 1323 | | Last Modified: | Jun 13 12:29:38 2008 |
| MD5 Checksum: | 84cee33d092ab1735f90ec4e6869aae9 |
|
| /// File Name: |
xecms-cookie.txt |
Description:
|
xeCMS versions 1.0.0 RC2 and below suffer from an insecure cookie handling vulnerability.
| | Author: | t0pp8uzz | | File Size: | 1272 | | Last Modified: | Jun 16 19:51:29 2008 |
| MD5 Checksum: | 29402abbdf3dbfbe7cb59a242461b551 |
|
| /// File Name: |
xoopsuploader-lfi.txt |
Description:
|
XOOPS module Uploader version 1.1 suffers from a file disclosure vulnerability.
| | Author: | MEEKAAH | | File Size: | 1348 | | Last Modified: | Jun 9 10:26:13 2008 |
| MD5 Checksum: | da8e2236a129c546e1113bd4a0eb9b70 |
|
| /// File Name: |
xpoll-upload.txt |
Description:
|
X-Poll version 2.0 allows for arbitrary file uploads without being authenticated.
| | Author: | e.wiZz! | | File Size: | 1048 | | Last Modified: | Jun 12 22:00:32 2008 |
| MD5 Checksum: | acfac3409453dacf0ef8201d8cc1d7ad |
|
| /// File Name: |
yblog-multi.txt |
Description:
|
yBlog version 0.2.2.2 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | unohope | | Homepage: | http://www.chroot.org/ | | File Size: | 2290 | | Last Modified: | Jun 10 20:35:05 2008 |
| MD5 Checksum: | ed2e53b9fcbc81530060ab65ca992f88 |
|
|
|
|
|