Section: .. / 0603-exploits /
| /// File Name: |
php-atm.txt |
Description:
|
It is possible to download the users password hashed in PHP Advanced Transfer Manager 1.x via a special URL.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 1197 | | Last Modified: | Mar 9 19:58:05 2006 |
| MD5 Checksum: | 2971dd86b7a3b7d9a653c2737ec2f0ad |
|
| /// File Name: |
patm.txt |
Description:
|
Direct download access of user password hashes in PHP Advanced Manager version 1.00 through 1.20 exists.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 1151 | | Last Modified: | Mar 3 04:44:55 2006 |
| MD5 Checksum: | 4e10256ec85031f0412913960348b9d2 |
|
| /// File Name: |
explorerXP.txt |
Description:
|
All versions of ExplorerXP suffer cross site scripting and directory traversal flaws. Written in French.
| | Author: | Amine ABOUD aka Silitix | | Homepage: | http://www.Silitix.com | | File Size: | 1106 | | Last Modified: | Apr 1 00:51:14 2006 |
| MD5 Checksum: | 0cbc53bed241e291a6f10b453e161db3 |
|
| /// File Name: |
SpeedTouchXSS.txt |
Description:
|
The Thomson SpeedTouch 500 series modem is susceptible to cross site scripting attacks.
| | Author: | Preben Nylkken | | File Size: | 1094 | | Last Modified: | Mar 2 04:16:54 2006 |
| MD5 Checksum: | 470b85922dfe3f64e1ef489111394074 |
|
| /// File Name: |
EV0090.txt |
Description:
|
Vegas Forum version 1.0 suffers from SQL injection.
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 1083 | | Last Modified: | Mar 13 16:43:14 2006 |
| MD5 Checksum: | 147b09fcd6fa474179c689d5f5c7678c |
|
| /// File Name: |
EasyFile.txt |
Description:
|
Easy File Sharing Web Server version 3.2 suffers from multiple vulnerabilities that could lead to system compromise.
| | Author: | Revnic Vasile | | File Size: | 1039 | | Last Modified: | Mar 9 19:36:14 2006 |
| MD5 Checksum: | fc47882714a50a9c8129bbfeb487f639 |
|
| /// File Name: |
MyBB-104SQL.txt |
Description:
|
MyBB version 1.0.4 is susceptible to SQL injection attacks via the username variable in search.php.
| | Author: | D3vil-0x1 | | File Size: | 1028 | | Last Modified: | Mar 6 01:52:55 2006 |
| MD5 Checksum: | 09076e708191db959376b5a74414c9a7 |
|
| /// File Name: |
simplogsploit.txt |
Description:
|
Simplog versions 1.0.2 and below suffer from cross site scripting and directory traversal attacks.
| | Author: | retard, jim | | File Size: | 966 | | Last Modified: | Mar 7 23:51:47 2006 |
| MD5 Checksum: | d65a2306a4a984abad550e47972dbd7f |
|
| /// File Name: |
xmodulepath.tgz |
Description:
|
Local privilege escalation in X.Org server 1.0.0 and later and X11R6.9.0 and X11R7.0 exploit.
| | Author: | H D Moore | | Homepage: | http://metasploit.com/ | | File Size: | 949 | | Last Modified: | Mar 21 18:05:33 2006 |
| MD5 Checksum: | 7990e02a717283b5d7beead981a0b9e2 |
|
| /// File Name: |
warcraftIII-18c.txt |
Description:
|
Warcraft III Replay Parser version 1.8c is susceptible to remote command execution and cross site scripting flaws.
| | Author: | botan | | Homepage: | http://www.PatrioticHackers.com | | File Size: | 943 | | Last Modified: | Apr 1 04:32:32 2006 |
| MD5 Checksum: | 03c6ab62bc77543de49700758cb67c7e |
|
| /// File Name: |
loudCMS.txt |
Description:
|
Loudblog CMS is susceptible to SQL injection and a couple inclusion flaws.
| | Author: | kuze | | File Size: | 898 | | Last Modified: | Mar 8 23:17:59 2006 |
| MD5 Checksum: | 2c5b5c11197eb503e2a0b96aa6c5e60f |
|
| /// File Name: |
gregariusXSSSQL.txt |
Description:
|
Gregarius version 0.5.2 is susceptible to cross site scripting and SQL injection vulnerabilities.
| | Author: | tzitaroth | | File Size: | 890 | | Last Modified: | Mar 6 02:19:27 2006 |
| MD5 Checksum: | 26086809d327c018deac398dbc10302c |
|
| /// File Name: |
pwsphpSQL.txt |
Description:
|
Pwsphp CMS is susceptible to SQL injection attacks via index.php.
| | Author: | papipsycho | | Homepage: | http://papipsycho.com | | File Size: | 888 | | Last Modified: | Mar 2 03:56:33 2006 |
| MD5 Checksum: | da8ee091ef2b1d548ac564b469913325 |
|
| /// File Name: |
textfilebbmessanger.txt |
Description:
|
textfileBB versions 1.0 and below suffer from multiple cross site scripting flaws.
| | Author: | retard | | File Size: | 873 | | Last Modified: | Mar 8 23:33:37 2006 |
| MD5 Checksum: | 6ccdd5ec0459c292a6a24dc84c354081 |
|
| /// File Name: |
mediaslashInclude.txt |
Description:
|
MediaSlash is susceptible to a remote file inclusion flaw that allows for code execution.
| | Author: | Simo64 Moroccan Security Team | | File Size: | 846 | | Last Modified: | Apr 1 02:01:24 2006 |
| MD5 Checksum: | ccb56bcfefbf6e55cc05253ce7e638c3 |
|
| /// File Name: |
n8cms.txt |
Description:
|
n8cms versions 1.1 and 1.2 suffer from XSS and SQL injection.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 763 | | Last Modified: | Mar 9 19:59:07 2006 |
| MD5 Checksum: | e4c986e7fb84efedba5aee12bd43481c |
|
| /// File Name: |
musicBoxXSS.txt |
Description:
|
Music Box version 2.3 is susceptible to SQL injection and cross site scripting flaws.
| | Author: | Linux_Drox | | Homepage: | http://www.lezr.com | | File Size: | 751 | | Last Modified: | Mar 31 23:34:22 2006 |
| MD5 Checksum: | 98c9c0b0496ccfef234e0f1fd7f070cf |
|
| /// File Name: |
UploadCenter.txt |
Description:
|
PHP Upload Center allows anyone to download users password hashes and upload malicious php scripts.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 699 | | Last Modified: | Mar 9 20:01:00 2006 |
| MD5 Checksum: | b04b6cc49723bdd76f5801da626a0cbe |
|
| /// File Name: |
HeffnerCMS.txt |
Description:
|
HeffnerCMS version 1.07 is susceptible to cross site scripting attacks.
| | Author: | botan | | File Size: | 698 | | Last Modified: | Mar 31 23:31:52 2006 |
| MD5 Checksum: | c8bdff46a288a3a82f77b721a6ea04dd |
|
| /// File Name: |
EJ3-XSS.txt |
Description:
|
EJ3 Topo version 2.2.178 is susceptible to cross site scripting attacks.
| | Author: | Yunus Emre Yilmaz | | File Size: | 689 | | Last Modified: | Mar 2 05:21:13 2006 |
| MD5 Checksum: | 53dcd2f633032e3c614cb637916c8690 |
|
|
|
|
|