Section: .. / 0603-exploits /
| /// File Name: |
JupiterCMS.txt |
Description:
|
Jupiter CMS versions 1.1.5 and below suffer from multiple cross site scripting attack vectors. Details provided.
| | Author: | zerogue | | Homepage: | http://0x4f4c.awardspace.com | | File Size: | 1528 | | Last Modified: | Mar 12 16:58:46 2006 |
| MD5 Checksum: | 2a7b56e72aceb285d2cee9f31217e29b |
|
| /// File Name: |
knowledgebase.pl.txt |
Description:
|
KnowledgebasePublisher 1.2 Remote Code Execution Exploit.
| | Author: | uid0 | | Homepage: | http://ExploiterCode.com | | File Size: | 2650 | | Last Modified: | Mar 15 15:09:17 2006 |
| MD5 Checksum: | c93b667a57ed15c44c82ed65f1185ec6 |
|
| /// File Name: |
lieroxxx.zip |
Description:
|
Proof of concept exploit for Liero Xtreme versions 0.62b and below which suffer from server freeze and format string vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.altervista.org | | Related File: | lieroxxx.txt | | File Size: | 9456 | | Last Modified: | Mar 8 03:21:55 2006 |
| MD5 Checksum: | 87da63e074c37ba13b1d4b6a1c8c294f |
|
| /// File Name: |
loudCMS.txt |
Description:
|
Loudblog CMS is susceptible to SQL injection and a couple inclusion flaws.
| | Author: | kuze | | File Size: | 898 | | Last Modified: | Mar 8 23:17:59 2006 |
| MD5 Checksum: | 2c5b5c11197eb503e2a0b96aa6c5e60f |
|
| /// File Name: |
mediaslashInclude.txt |
Description:
|
MediaSlash is susceptible to a remote file inclusion flaw that allows for code execution.
| | Author: | Simo64 Moroccan Security Team | | File Size: | 846 | | Last Modified: | Apr 1 02:01:24 2006 |
| MD5 Checksum: | ccb56bcfefbf6e55cc05253ce7e638c3 |
|
| /// File Name: |
Mercur-5.0.c |
Description:
|
Mercur IMAPD 5.0 SP3 Remote Exploit
| | Author: | Tang Ellison | | File Size: | 6766 | | Last Modified: | Mar 21 19:58:25 2006 |
| MD5 Checksum: | eecccc1153e0e8bbc610c412e6755046 |
|
| /// File Name: |
moz-15.txt |
Description:
|
Thunderbird's HTML rendering engine insufficiently filters the loading of external resources from inline HTML attachments. External files are download ed even if the "Block loading of remote images in mail messages" option is enabled. Proof of concept exploitation details provided.
| | Author: | crashfr | | Homepage: | http://www.sysdream.com | | File Size: | 4440 | | Last Modified: | Mar 2 05:27:21 2006 |
| MD5 Checksum: | 4053197c29d9f9058cde76a8f1d4144e |
|
| /// File Name: |
msie-createTextRang-script.txt |
Description:
|
Microsoft Internet Explorer createTextRang remote command execution exploit. Tested against WinXP SP2 RUS IE 6.0.
| | Author: | darkeagle | | Homepage: | http://unl0ck.net | | File Size: | 2592 | | Last Modified: | Apr 1 01:27:47 2006 |
| MD5 Checksum: | 2d6bba0b009df812a439684198916ea2 |
|
| /// File Name: |
msie-createTextRang.pm.txt |
Description:
|
This Metasploit module exploits a vulnerability in Internet Explorer's setTextRange on a checkbox.
| | Author: | justfriends4n0w | | File Size: | 5160 | | Last Modified: | Apr 1 01:29:22 2006 |
| MD5 Checksum: | b13a5e3daf400216e2ff920ffd30ba9c |
|
| /// File Name: |
musicBoxXSS.txt |
Description:
|
Music Box version 2.3 is susceptible to SQL injection and cross site scripting flaws.
| | Author: | Linux_Drox | | Homepage: | http://www.lezr.com | | File Size: | 751 | | Last Modified: | Mar 31 23:34:22 2006 |
| MD5 Checksum: | 98c9c0b0496ccfef234e0f1fd7f070cf |
|
| /// File Name: |
MyBB-104SQL.txt |
Description:
|
MyBB version 1.0.4 is susceptible to SQL injection attacks via the username variable in search.php.
| | Author: | D3vil-0x1 | | File Size: | 1028 | | Last Modified: | Mar 6 01:52:55 2006 |
| MD5 Checksum: | 09076e708191db959376b5a74414c9a7 |
|
| /// File Name: |
myBB-SQL.txt |
Description:
|
MyBB version 1.3 is susceptible to SQL injection attacks via a malformed user supplied cookie.
| | Author: | D3vil-0x1 | | File Size: | 1217 | | Last Modified: | Mar 2 05:20:19 2006 |
| MD5 Checksum: | f269a3fe79b009d85a081d597b2dc880 |
|
| /// File Name: |
MyBB104SQL.txt |
Description:
|
MyBB versions 1.04 and below remote SQL injection exploit using misc.php.
| | Author: | D3vil-0x1 | | File Size: | 1764 | | Last Modified: | Mar 6 02:05:23 2006 |
| MD5 Checksum: | d7f8361d963c9df610c082b6962c6366 |
|
| /// File Name: |
n8cms.txt |
Description:
|
n8cms versions 1.1 and 1.2 suffer from XSS and SQL injection.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 763 | | Last Modified: | Mar 9 19:59:07 2006 |
| MD5 Checksum: | e4c986e7fb84efedba5aee12bd43481c |
|
| /// File Name: |
n8cmsFlaws.txt |
Description:
|
n8cms versions 1.1 and 1.2 are susceptible to SQL injection and cross site scripting attacks.
| | Author: | Liz0ziM | | Homepage: | http://biyosecurity.be/ | | File Size: | 1442 | | Last Modified: | Mar 2 05:17:26 2006 |
| MD5 Checksum: | 92171ee3a1eb9257b01cac39f2ba087f |
|
| /// File Name: |
netgearWG602.txt |
Description:
|
The Netgear WG602 wireless router contains a default administrative account.
| | File Size: | 199 | | Last Modified: | Mar 2 04:15:51 2006 |
| MD5 Checksum: | dc915f31e8ac6f93e68424606d4969b4 |
|
| /// File Name: |
noahClassified.txt |
Description:
|
Noah's Classifieds version 1.x is susceptible to multiple cross site scripting flaws.
| | Author: | 0o_zeus_o0 | | Homepage: | http://www.elitemexico.org | | File Size: | 1781 | | Last Modified: | Mar 8 23:56:07 2006 |
| MD5 Checksum: | ff57bf01a52e345c8ee08ddc96c1df2e |
|
| /// File Name: |
nodez_4611_xpl.html |
Description:
|
Nodez version 4.6.1.1 Mercury remote exploit that makes use of arbitrary inclusion and authentication bypass flaws.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 14597 | | Last Modified: | Apr 1 04:49:20 2006 |
| MD5 Checksum: | 9f37c5ac993fd242788d489b76a9b7e0 |
|
| /// File Name: |
NotSoGenius.txt |
Description:
|
Genius VideoCAM BN is susceptible to a local privilege escalation flaw.
| | Author: | beford | | File Size: | 1809 | | Last Modified: | Apr 1 01:06:06 2006 |
| MD5 Checksum: | a8136496bdbab6d6e89fff20e444b447 |
|
| /// File Name: |
nuked-SQL.txt |
Description:
|
nuked-klan is susceptible to SQL injection attacks in index.php.
| | Author: | Moroccan Security Team | | File Size: | 240 | | Last Modified: | Mar 31 23:56:35 2006 |
| MD5 Checksum: | c43728087f6ea2139822cade14c3e419 |
|
|
|
|
|