Section: .. / 0807-exploits /
| /// File Name: |
siol-overflow.txt |
Description:
|
SiOL Komunikator version 1.3 suffers from an ActiveX related stack overflow vulnerability. Denial of service code included.
| | Author: | Edi Strosar | | File Size: | 4214 | | Last Modified: | Jul 29 17:14:31 2008 |
| MD5 Checksum: | 2e7fc3092c65abb9e41d3c315d59fc4d |
|
| /// File Name: |
sispletcms-sql.txt |
Description:
|
Sisplet CMS version 2008-01-24 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1667 | | Last Modified: | Jul 9 19:53:32 2008 |
| MD5 Checksum: | 4b7272a306e029ea29843adbdf0fa54d |
|
| /// File Name: |
siteadmincms-sql.txt |
Description:
|
SiteAdmin CMS suffers from a remote SQL injection vulnerability.
| | Author: | Cr@zy_King | | File Size: | 451 | | Last Modified: | Jul 28 11:18:41 2008 |
| MD5 Checksum: | f824636c29cd02b21c88e5edf74c2396 |
|
| /// File Name: |
siteatschool-uplaod.txt |
Description:
|
Site@School versions 2.4.10 and below session hijacking and file upload exploit.
| | Author: | EgiX | | File Size: | 6244 | | Last Modified: | Jul 9 22:26:41 2008 |
| MD5 Checksum: | 554cc54acf1fba304948a83636ae42e0 |
|
| /// File Name: |
siteframe-sql.txt |
Description:
|
Siteframe suffers from a SQL injection vulnerability in folder.php.
| | Author: | n0ne | | File Size: | 1895 | | Last Modified: | Jul 21 15:40:03 2008 |
| MD5 Checksum: | cad3994a96a5a26967ee2d7b12390073 |
|
| /// File Name: |
smartppc-blindsql.txt |
Description:
|
SmartPPC Pay Per Click script blind SQL injection exploit.
| | Author: | ka0x | | File Size: | 5074 | | Last Modified: | Jul 10 02:33:40 2008 |
| MD5 Checksum: | 1509520a70a02ba4177799da89134e33 |
|
| /// File Name: |
smartppc-sql.txt |
Description:
|
SmartPPC Pay Per Click script suffers from a blind SQL injection vulnerability.
| | Author: | Hamtaro | | File Size: | 572 | | Last Modified: | Jul 10 01:27:30 2008 |
| MD5 Checksum: | aed94518fb06d423273acd680812d73a |
|
| /// File Name: |
smbclientparser-exec.txt |
Description:
|
The SmbClientParser perl module suffers from a vulnerability that allows for remote command execution.
| | Author: | Jesus Olmos Gonzalez | | File Size: | 4479 | | Last Modified: | Jul 18 17:16:50 2008 |
| MD5 Checksum: | 435e611466edb69599f8c7790d08fce3 |
|
| /// File Name: |
symphony-exec.txt |
Description:
|
Symphony versions 1.7.01 and below remote code execution exploit.
| | Author: | Raz0r | | Homepage: | http://raz0r.name/ | | File Size: | 4899 | | Last Modified: | Jul 31 18:34:21 2008 |
| MD5 Checksum: | ab4d37da277c788f9a43fde4fe745d6b |
|
| /// File Name: |
talkback-lfi.txt |
Description:
|
TalkBack version 2.3.5 suffers from a local file inclusion vulnerability.
| | Author: | NoGe | | File Size: | 1128 | | Last Modified: | Jul 28 11:44:57 2008 |
| MD5 Checksum: | 51798038386f1476180c353e309386b4 |
|
| /// File Name: |
talldude-bypass.txt |
Description:
|
Jamroom versions 3.3.8 and below from Talldude Networks, LLC suffers from an authentication bypass vulnerability.
| | Author: | James Bercegay | | Homepage: | http://www.gulftech.org | | File Size: | 3007 | | Last Modified: | Jul 28 11:52:58 2008 |
| MD5 Checksum: | 6d1490c0a9efa99da6ceba626d8ad32d |
|
| /// File Name: |
thelia-multi.txt |
Description:
|
Thelia version 1.3.5 remote code execution, remote file upload, and validation vulnerabilities exploit.
| | Author: | Black_H | | Homepage: | http://blackh.free.fr/ | | File Size: | 20107 | | Last Modified: | Jul 10 00:14:20 2008 |
| MD5 Checksum: | 0f089ad3b7971fad6db06bdb128b9254 |
|
| /// File Name: |
tplsoccersite-sql.txt |
Description:
|
tplSoccerSite version 1.0 suffers from multiple remote SQL injection vulnerabilities.
| | Author: | Mr.SQL | | Homepage: | http://www.pal-hacker.com/ | | File Size: | 2296 | | Last Modified: | Jul 16 15:38:15 2008 |
| MD5 Checksum: | 0f73071b45c84fd3fb1f878a415b03f7 |
|
| /// File Name: |
trio-sql.txt |
Description:
|
TriO versions 2.1 and below suffer from a remote SQL injection vulnerability in browse.php.
| | Author: | dun | | File Size: | 1218 | | Last Modified: | Jul 28 11:07:26 2008 |
| MD5 Checksum: | ae7fef7e5ea63098c3320c92f6f091f1 |
|
| /// File Name: |
tritoncms-sql.txt |
Description:
|
Triton CMS Pro remote blind SQL injection exploit that discloses the username and password hash.
| | Author: | __GiReX__ | | Homepage: | http://girex.altervista.org/ | | File Size: | 2574 | | Last Modified: | Jul 10 01:48:32 2008 |
| MD5 Checksum: | 4e95b801146c2e8699beaf539523f67d |
|
| /// File Name: |
trixbox-lfi.txt |
Description:
|
Trixbox CE versions 2.6.1 and below suffer from a local file inclusion vulnerability. This issue is due to a failure of the application to properly sanitize POST data assigned to a parameter of the /user/index.php page.
| | Author: | Jean-Michel BESNARD | | File Size: | 6926 | | Last Modified: | Jul 10 04:11:57 2008 |
| MD5 Checksum: | b710ed6903b76b21a119114c1fbbf127 |
|
| /// File Name: |
tubeguru-sql.txt |
Description:
|
TubeGuru Video Sharing Script suffers from a remote SQL injection vulnerability in ugroups.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1265 | | Last Modified: | Jul 31 11:17:05 2008 |
| MD5 Checksum: | d8a20f6abf6a9d93d1cac1a1b5f7c64a |
|
| /// File Name: |
ultrastats-blindsql.txt |
Description:
|
Ultrastats versions 0.2.142 and below remote blind SQL injection exploit that makes use of players-detail.php.
| | Author: | DNX | | File Size: | 5954 | | Last Modified: | Jul 14 20:42:03 2008 |
| MD5 Checksum: | aee92b78cc0a84df00b311fcec99010d |
|
| /// File Name: |
usurdat.zip |
Description:
|
Proof of concept denial of service exploit for SOLDNER - Secret Wars versions 33724 and below which suffer from an endless loop vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | usurdat.txt | | File Size: | 6587 | | Last Modified: | Jul 1 12:14:08 2008 |
| MD5 Checksum: | 3b8adc5e317fff936cc5da1ecdf951c0 |
|
| /// File Name: |
ut3mendo.zip |
Description:
|
Denial of service exploit for Unreal Tournament III versions 1.2 and below and 1.3beta4 which suffer from NULL pointer and memory corruption vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | ut3mendo.txt | | File Size: | 10927 | | Last Modified: | Jul 29 22:26:52 2008 |
| MD5 Checksum: | 10d662457b534d0d58b0bf64ca73c851 |
|
| /// File Name: |
vangogh-sql.txt |
Description:
|
Vangogh Web CMS version 0.9 suffers from a remote SQL injection vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1927 | | Last Modified: | Jul 9 19:54:57 2008 |
| MD5 Checksum: | fc9b5cafed1149357303a43ec1100693 |
|
| /// File Name: |
vbulletin-adminxss.txt |
Description:
|
vBulletin versions 3.7.2 and below and 3.6.10 PL2 and below suffer from a persistent cross site scripting flaw in the administrator logs.
| | Author: | Jessica Hope | | File Size: | 3051 | | Last Modified: | Jul 10 02:28:37 2008 |
| MD5 Checksum: | 5f8ab239ec82f84f54b050d90240b5bd |
|
| /// File Name: |
viart-sql.txt |
Description:
|
ViArt Shop versions 3.5 and below suffer from a SQL injection vulnerability.
| | Author: | James Bercegay | | Homepage: | http://www.gulftech.org | | File Size: | 2606 | | Last Modified: | Jul 28 20:57:34 2008 |
| MD5 Checksum: | 007c4ce209ac4733b089a90f93161554 |
|
|
|
|
|