Section: .. / 0806-exploits /
| /// File Name: |
syndeocms-lfixss.txt |
Description:
|
Syndeo CMS version 2.6.0 suffers from local file inclusion and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2375 | | Last Modified: | Jun 10 22:42:13 2008 |
| MD5 Checksum: | bba12d7c444ce1ce09219de5e2339c8c |
|
| /// File Name: |
ijoomla-blindsql.txt |
Description:
|
Joomla News Portal component versions 1.0 and below blind SQL injection exploit.
| | Author: | Ilker Kandemir | | File Size: | 2344 | | Last Modified: | Jun 9 10:32:02 2008 |
| MD5 Checksum: | f793c1816a3ddf7eb6d8eb0f83bbca26 |
|
| /// File Name: |
syzygy-lfi.txt |
Description:
|
Syzygy CMS version 0.2.2 suffers from a local file inclusion vulnerability.
| | Author: | StAkeR | | File Size: | 2326 | | Last Modified: | Jun 11 18:06:33 2008 |
| MD5 Checksum: | 637b04f5de93c4be5e5428fc936a425e |
|
| /// File Name: |
yblog-multi.txt |
Description:
|
yBlog version 0.2.2.2 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | unohope | | Homepage: | http://www.chroot.org/ | | File Size: | 2290 | | Last Modified: | Jun 10 20:35:05 2008 |
| MD5 Checksum: | ed2e53b9fcbc81530060ab65ca992f88 |
|
| /// File Name: |
nitrowebgal-sql.txt |
Description:
|
NiTrO Web Gallery versions 1.4.3 and below suffer from a remote SQL injection vulnerability.
| | Author: | Mr.SQL | | Homepage: | http://www.pal-hacker.com/ | | File Size: | 2286 | | Last Modified: | Jun 16 19:39:22 2008 |
| MD5 Checksum: | 034122abe62e49c496efa7f90271ea25 |
|
| /// File Name: |
booby-rfi.txt |
Description:
|
Booby version 1.0.1 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | HaiHui | | File Size: | 2281 | | Last Modified: | Jun 2 17:22:23 2008 |
| MD5 Checksum: | f1a19b4fd9cffb32d71f901842664430 |
|
| /// File Name: |
hpstorage-meta.txt |
Description:
|
This Metasploit module exploits a stack overflow in the authentication mechanism of NSI Doubletake which is also rebranded as the HP Storage Works vulnerability found by Titon of Bastard Labs.
| | Author: | ri0t | | File Size: | 2278 | | Related CVE(s): | CVE-2008-1661 | | Last Modified: | Jun 4 21:44:48 2008 |
| MD5 Checksum: | 399542c84371a78cab7d3e3b4a88263c |
|
| /// File Name: |
mambogalleries-sql.txt |
Description:
|
Mambo Galleries component version 1.0 remote SQL injection exploit.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 2276 | | Last Modified: | Jun 13 12:32:56 2008 |
| MD5 Checksum: | a75fcdccc6986c143c977d6c269e46a6 |
|
| /// File Name: |
aspportal-sql.txt |
Description:
|
ASPPortal Free Version suffers from a remote SQL injection vulnerability in reply.asp.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 2261 | | Last Modified: | Jun 10 20:54:14 2008 |
| MD5 Checksum: | e35794e52cc2637697c6a415079ec19c |
|
| /// File Name: |
teldir-sqlxss.txt |
Description:
|
Telephone Directory 2008 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2242 | | Last Modified: | Jun 9 15:45:56 2008 |
| MD5 Checksum: | 7188819e68d52eff45ed162ab1c21c1a |
|
| /// File Name: |
butterfly-sqlxss.txt |
Description:
|
Butterfly Organizer version 2.0.0 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2241 | | Last Modified: | Jun 13 12:24:41 2008 |
| MD5 Checksum: | 5da1d18e86c74d46299d2667f7226b83 |
|
| /// File Name: |
teldir-delete.txt |
Description:
|
Telephony Directory 2008 arbitrary delete contact exploit.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 2232 | | Last Modified: | Jun 10 03:34:41 2008 |
| MD5 Checksum: | 1a9b53797965b5b638c77b25b7f9210f |
|
| /// File Name: |
gwm-xsslfi.txt |
Description:
|
Galatolo WebManager versions 1.0 and below suffer from local file inclusion and cross site scripting vulnerabilities.
| | Author: | StAkeR | | File Size: | 2221 | | Last Modified: | Jun 9 15:53:09 2008 |
| MD5 Checksum: | b4040940c38b5de3516829ab103e8b7b |
|
| /// File Name: |
blogphp-escalate.txt |
Description:
|
BlogPHP version 2.0 remote privilege escalation exploit.
| | Author: | Cod3rZ | | Homepage: | http://cod3rz.helloweb.eu/ | | File Size: | 2188 | | Last Modified: | Jun 23 18:20:00 2008 |
| MD5 Checksum: | c0bd798e3faa1c5f869883d14bafa85c |
|
| /// File Name: |
kellerwebadmin-lfi.txt |
Description:
|
Keller Web Admin CMS version 0.94 Pro suffers form a local file inclusion vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2180 | | Last Modified: | Jun 26 15:04:19 2008 |
| MD5 Checksum: | 8f6ec5dacfd27b81ae6a570f415d29f5 |
|
| /// File Name: |
clevercopy3-sql.txt |
Description:
|
Clever Copy version 3.0 suffers from a SQL injection vulnerability in results.php.
| | Author: | h0yt3r | | File Size: | 2166 | | Last Modified: | Jun 12 21:55:51 2008 |
| MD5 Checksum: | 555bb185cada066f75eb54e53a9a394f |
|
| /// File Name: |
myblogmysql-rfi.txt |
Description:
|
MyBlog PHP and MySQL Blog/CMS suffer from a remote file inclusion vulnerability in games.php.
| | Author: | StAkeR | | File Size: | 2162 | | Last Modified: | Jun 13 12:38:19 2008 |
| MD5 Checksum: | 6256b8c3dc37dbd800b80174256d0b36 |
|
| /// File Name: |
myblog-sql.txt |
Description:
|
MyBlog: PHP and MySQL Blog/CMS software suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2159 | | Last Modified: | Jun 23 18:11:44 2008 |
| MD5 Checksum: | 6b44f139bb3512c6c6215a43ff82d855 |
|
| /// File Name: |
phpaddress-sqlxss.txt |
Description:
|
PHP-Address Book versions 3.1.5 and below suffer from SQL injection and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2135 | | Last Modified: | Jun 4 21:47:24 2008 |
| MD5 Checksum: | d5f7e76871c7001244d286aeae1f5833 |
|
| /// File Name: |
thaiquickcart-lfi.txt |
Description:
|
ThaiQuickCart suffers from local file inclusion vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2111 | | Last Modified: | Jun 17 14:18:25 2008 |
| MD5 Checksum: | 321a7c783f3db62bfbe2cdd016620ead |
|
| /// File Name: |
theratcms-sqlxss.txt |
Description:
|
The Rat CMS version Pre-Alpha 2 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2098 | | Last Modified: | Jun 26 12:11:50 2008 |
| MD5 Checksum: | 9ca131ed0e3dd1d61d8dd5b538022335 |
|
| /// File Name: |
mycrocms-sql.txt |
Description:
|
MycroCMS version 0.5 suffers from a remote blind SQL injection vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2080 | | Last Modified: | Jun 12 00:35:47 2008 |
| MD5 Checksum: | d5a08225af5426862df10e8ca60538e1 |
|
| /// File Name: |
screen_4_0_3_password_bypass_openbs..> |
Description:
|
screen versions 4.0.3 and below are vulnerable to an authentication bypass vulnerability that allows local attackers to gain system access in the case where screen was locked with a password. Tested on OpenBSD.
| | Author: | Rembrandt | | File Size: | 2076 | | Last Modified: | Jan 5 20:38:24 2009 |
| MD5 Checksum: | f4d828ce4198300dfd8d9789ad3cb13a |
|
| /// File Name: |
cauposhop-sql.txt |
Description:
|
CaupoShop Classic versions 1.3 suffers from a remote SQL injection vulnerability.
| | Author: | h0yt3r | | File Size: | 2056 | | Last Modified: | Jun 19 18:12:47 2008 |
| MD5 Checksum: | 7fd22ac28dd660f99c3de4b28b8770ed |
|
|
|
|
|