Section: .. / 0807-exploits /
| /// File Name: |
pivot-disclosure.txt |
Description:
|
Pivot version 1.40.5 Dreamwind load_template() credential disclosure exploit.
| | Author: | Nine:Situations:Group | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 3721 | | Last Modified: | Jul 1 11:35:32 2008 |
| MD5 Checksum: | 3aa95a0656fbb05e1de96366a7bc772d |
|
| /// File Name: |
pligg99-sqlxss.txt |
Description:
|
Pligg versions 9.9 and below suffer from cross site scripting, arbitrary file access, and SQL injection vulnerabilities.
| | Author: | James Bercegay | | Homepage: | http://www.gulftech.org | | File Size: | 7397 | | Last Modified: | Jul 30 23:55:33 2008 |
| MD5 Checksum: | 32bbd3741f287522ca607c70fb37baee |
|
| /// File Name: |
pliggcms-sql.txt |
Description:
|
Pligg CMS version 9.9.0 suffers from a remote SQL injection vulnerability in story.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1849 | | Last Modified: | Jul 28 11:43:32 2008 |
| MD5 Checksum: | 239ad9d75a04b147c2734136ce490c2d |
|
| /// File Name: |
plxadtrader-sql.txt |
Description:
|
plx Ad Trader version 3.2 suffers from a remote SQL injection vulnerability.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1744 | | Last Modified: | Jul 9 21:29:19 2008 |
| MD5 Checksum: | 1f7b445e14d90cb65a996ff702e887c1 |
|
| /// File Name: |
poppler-poc.txt |
Description:
|
The libpoppler pdf rendering library can free uninitialized pointers leading to arbitrary code execution. This vulnerability results from memory management bugs in the Page class constructor/destructor. Proof of concept code included.
| | Author: | Felipe Andres Manzano | | Homepage: | http://felipe.andres.manzano.googlepages.com/home | | File Size: | 22492 | | Last Modified: | Jul 10 04:04:27 2008 |
| MD5 Checksum: | df9979c20af553c93c78b4a8d6ed39bc |
|
| /// File Name: |
powerdvd_bof.pl.txt |
Description:
|
CyberLink PowerDVD versions 8.0 and below crafted PLS/M3U playlist denial of service exploit.
| | Author: | LiquidWorm | | Homepage: | http://www.zeroscience.org/ | | File Size: | 351 | | Last Modified: | Jul 25 21:04:39 2008 |
| MD5 Checksum: | 7ad84dae8a4f1aec0fca8ea159b1fac3 |
|
| /// File Name: |
pozscripts-sql.txt |
Description:
|
The PozScripts Classified Ads Script suffers from a remote SQL injection vulnerability in browsecats.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1370 | | Last Modified: | Jul 31 11:18:13 2008 |
| MD5 Checksum: | 6c859a1f6d06c0d0e8c25326fb61bf41 |
|
| /// File Name: |
ppmate-dospoc.txt |
Description:
|
PPMate PPMedia Class ActiveX control buffer overflow proof of concept exploit.
| | Author: | Guido Landi | | File Size: | 200 | | Last Modified: | Jul 17 15:13:36 2008 |
| MD5 Checksum: | 4d9ad3253238356563e1b7be4ea643d7 |
|
| /// File Name: |
PR08-13.txt |
Description:
|
A cross site scripting vulnerability exists in Moodle versions 1.7.4 and below.
| | Homepage: | http://www.procheckup.com/ | | File Size: | 2955 | | Last Modified: | Jul 23 19:18:13 2008 |
| MD5 Checksum: | 2c780311bb56dbfd1b088e81afe2297d |
|
| /// File Name: |
PR08-16.txt |
Description:
|
Moodle versions 1.7.4 and below suffer from a cross site request forgery vulnerability.
| | Homepage: | http://www.procheckup.com/ | | File Size: | 4631 | | Last Modified: | Jul 23 19:20:03 2008 |
| MD5 Checksum: | 3a664b6adfa3d72f4d9f2a8baec3e8ec |
|
| /// File Name: |
pragyan-rfi.txt |
Description:
|
Pragyan CMS version 2.6.2 suffers from a remote file inclusion vulnerability.
| | Author: | N3TR00T3R | | File Size: | 1727 | | Last Modified: | Jul 15 12:40:38 2008 |
| MD5 Checksum: | 84dc8537b0436519bc9046c02e379bba |
|
| /// File Name: |
precms-sql.txt |
Description:
|
preCMS version 1 suffers from a remote SQL injection vulnerability in index.php.
| | Author: | Mr.SQL | | Homepage: | http://www.pal-hacker.com/ | | File Size: | 1481 | | Last Modified: | Jul 18 04:26:23 2008 |
| MD5 Checksum: | 894dcd4216ceaff99c1e3e1c96dbc5af |
|
| /// File Name: |
presurveypoll-sql.txt |
Description:
|
Pre Survey Poll suffers from a SQL injection vulnerability in default.asp.
| | Author: | DreamTurk | | File Size: | 723 | | Last Modified: | Jul 23 18:49:39 2008 |
| MD5 Checksum: | 4c8cc48caee75fdfa46bf471483ffa69 |
|
| /// File Name: |
psys-rfi.txt |
Description:
|
pSys version 0.7.0 Alpha suffers from multiple remote file inclusion vulnerabilities.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 2328 | | Last Modified: | Jul 15 12:43:42 2008 |
| MD5 Checksum: | b54a3d0817d0338d6fb9380645011495 |
|
| /// File Name: |
psys070-sql.txt |
Description:
|
pSys version 0.7.0 suffers from a remote SQL injection vulnerability in chatbox.php.
| | Author: | DNX | | File Size: | 1118 | | Last Modified: | Jul 1 11:36:49 2008 |
| MD5 Checksum: | 7753d7d24d70b5cdbe4ff97bd90822cf |
|
| /// File Name: |
quickbite.pl.txt |
Description:
|
Safari using Quicktime versions 7.3 and below RTSP Content-Type remote buffer overflow exploit. Binds a shell to port 4444.
| | Author: | krafty | | File Size: | 3673 | | Last Modified: | Jul 10 00:12:36 2008 |
| MD5 Checksum: | 27f46f371aef38640ed13d8e403a281d |
|
| /// File Name: |
rcm-sql.txt |
Description:
|
RCM Revision Web Development suffers from a remote SQL injection vulnerability in products.php.
| | Author: | Niiub | | Homepage: | http://www.bl4ck-b0x-info/ | | File Size: | 993 | | Last Modified: | Jul 1 11:20:02 2008 |
| MD5 Checksum: | 4d8731d224689d8375fccf12d82edd5a |
|
| /// File Name: |
rssagg-sql.txt |
Description:
|
RSS-aggregator version 1.0 suffers from direct administrative access and SQL injection vulnerabilities.
| | Author: | Sylvain THUAL | | Homepage: | http://www.click-internet.fr/ | | File Size: | 1026 | | Last Modified: | Jul 1 11:11:03 2008 |
| MD5 Checksum: | 85402114964722c1beb4c841d641efa8 |
|
| /// File Name: |
scripteen-grabber.txt |
Description:
|
Scripteen Free Image Hosting Script version 1.2 administrative password grabbing exploit.
| | Author: | Dj ReMix | | Homepage: | http://www.coderx.org/ | | File Size: | 1774 | | Last Modified: | Jul 14 22:54:48 2008 |
| MD5 Checksum: | 0a039166792ec92a6cd0054193523e70 |
|
| /// File Name: |
shopcartdx-sql.txt |
Description:
|
ShopCartDx version 4.30 suffers from a remote SQL injection vulnerability.
| | Author: | Cr@zy_King | | File Size: | 450 | | Last Modified: | Jul 22 13:38:51 2008 |
| MD5 Checksum: | f0f09d010d615e954dc6bfdb548ae189 |
|
|
|
|
|