Section: .. / 0808-exploits /
| /// File Name: |
classifieds-sql.txt |
Description:
|
Classifieds suffers from a remote SQL injection vulnerability in view.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1233 | | Last Modified: | Aug 20 02:40:47 2008 |
| MD5 Checksum: | 1aee893c0ea4371cb9266c592408cc14 |
|
| /// File Name: |
cmme-lfixsscsrf.txt |
Description:
|
CMME version 1.12 suffers from local file inclusion, cross site scripting, cross site request forgery, and other vulnerabilities.
| | Author: | SirGod | | Homepage: | http://www.mortal-team.com/ | | File Size: | 2813 | | Last Modified: | Aug 26 22:13:13 2008 |
| MD5 Checksum: | a46f6ae035b9cb1477736efe43b4ed9a |
|
| /// File Name: |
CORE-2008-0624.txt |
Description:
|
Core Security Technologies Advisory - Anzio Web Print Object (WePO) is a Windows ActiveX web page component that suffers from a buffer overflow vulnerability.
| | Author: | Francisco Falcon | | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 13206 | | Related CVE(s): | CVE-2008-3480 | | Last Modified: | Aug 21 00:33:42 2008 |
| MD5 Checksum: | 2f9bb16efa2c023574ae39cd5fde147b |
|
| /// File Name: |
CORE-2008-0716.txt |
Description:
|
Core Security Technologies Advisory - The Sun xVM VirtualBox suffers from a privilege escalation vulnerability due to insufficient input validation in VboxDrv.sys. Proof of concept code included.
| | Author: | Anibal Sacco | | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 12280 | | Related CVE(s): | CVE-2008-3431 | | Last Modified: | Aug 4 19:18:35 2008 |
| MD5 Checksum: | f3f07889b0717e36d5c22836fe132842 |
|
| /// File Name: |
crafty-sql.txt |
Description:
|
Crafty Syntax Live Help versions 2.14.6 and below suffer from a remote SQL injection vulnerability.
| | Author: | James Bercegay | | Homepage: | http://www.gulftech.org | | File Size: | 2502 | | Last Modified: | Aug 25 20:53:53 2008 |
| MD5 Checksum: | e6945d67ffc3bf702f8bca9d13e35ddf |
|
| /// File Name: |
cyberbb-sql.txt |
Description:
|
cyberBB version 0.6 suffers from multiple remote SQL injection vulnerabilities.
| | Author: | cOndemned | | Homepage: | http://condemned.r00t.la/ | | File Size: | 1112 | | Last Modified: | Aug 18 18:58:24 2008 |
| MD5 Checksum: | 7d982491948f590e89897598501cfeae |
|
| /// File Name: |
cyboards-rfilfixss.txt |
Description:
|
CyBoards PHP Lite version 1.21 suffers from cross site scripting, local file inclusion, and remote file inclusion vulnerabilities.
| | Author: | CraCkEr | | File Size: | 8047 | | Last Modified: | Aug 14 01:53:54 2008 |
| MD5 Checksum: | 1522780f977357ce1b9dea3a99b31fa0 |
|
| /// File Name: |
danairc-overflow.txt |
Description:
|
Dana IRC version 1.4a remote buffer overflow exploit.
| | Author: | k'sOSe | | Homepage: | http://www.pornosecurity.org/ | | File Size: | 5442 | | Last Modified: | Aug 25 20:24:23 2008 |
| MD5 Checksum: | ce78e866e21035b1d75c8e6ed56a451f |
|
| /// File Name: |
dap86-overflow.txt |
Description:
|
Download Accelerator Plus (DAP) version 8.6 buffer overflow exploit that makes use of AniGIF.ocx.
| | Author: | Guido Landi | | File Size: | 909 | | Last Modified: | Aug 12 22:27:15 2008 |
| MD5 Checksum: | 5d0b2443db23568139f7e080d9e8e52f |
|
| /// File Name: |
dayfox-lfi.txt |
Description:
|
Dayfox Blog version 4 suffers from multiple local file inclusion vulnerabilities.
| | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 2217 | | Last Modified: | Aug 5 18:22:14 2008 |
| MD5 Checksum: | ccf7bafbf8c4e3ac4eb9655aa016e769 |
|
| /// File Name: |
deeemmcms-multi.txt |
Description:
|
DeeEmm CMS version 0.7.4 suffers from remote file inclusion and SQL injection vulnerabilities.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 2671 | | Last Modified: | Aug 15 20:28:39 2008 |
| MD5 Checksum: | a960afe5f691a74a216d34293f055eb2 |
|
| /// File Name: |
deremate-xssrfi.txt |
Description:
|
Deremate's Shopping Online application is vulnerable to cross site scripting vulnerabilities.
| | Author: | Ivan Sanchez | | Homepage: | http://www.nullcode.com.ar/ | | File Size: | 1656 | | Last Modified: | Aug 24 15:48:08 2008 |
| MD5 Checksum: | 3c4c2d54915206f7b7e3358f161dc074 |
|
| /// File Name: |
discuzi-sql.txt |
Description:
|
Discuzi version 6.0.1 remote SQL injection exploit.
| | Author: | james | | File Size: | 1314 | | Last Modified: | Aug 7 09:28:15 2008 |
| MD5 Checksum: | 87a99a4fd997c3e8a91f7e32e562204a |
|
| /// File Name: |
dns_mre-v1.0.tar.gz |
Description:
|
The DNS Multiple Race Exploiting Tool exploits an inherent bug in the implementation of DNS Cache. The result of this exploitation is cache poisoning/overwriting with new entries.
| | Author: | AR | | Homepage: | http://www.securebits.org/ | | File Size: | 21958 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Aug 1 17:51:13 2008 |
| MD5 Checksum: | a080cf0d3d5faa5bc1351c55d9f43415 |
|
| /// File Name: |
dnsbind-10hrs.tgz |
Description:
|
BIND version 9.5.0-P2 randomized ports remote DNS cache poisoning exploit. Takes about 10 hours to perform the attack.
| | Author: | Zbr | | Homepage: | http://tservice.net.ru/~s0mbre/ | | File Size: | 13052 | | Last Modified: | Aug 13 19:15:39 2008 |
| MD5 Checksum: | 1a06b6b8d31398af1eda2c970af433a1 |
|
| /// File Name: |
dotcms-lfi.txt |
Description:
|
dotCMS version 1.6 suffers from local file inclusion vulnerabilities.
| | Author: | Don | | Homepage: | http://balcan-crew.org/ | | File Size: | 741 | | Last Modified: | Aug 15 20:29:50 2008 |
| MD5 Checksum: | 3538f937032b299d320be6e2e08d9f7f |
|
| /// File Name: |
dotproject-sqlxss.txt |
Description:
|
dotProject version 2.1.2 suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | C1c4Tr1Z | | Homepage: | http://www.lowsec.org/ | | File Size: | 2152 | | Last Modified: | Aug 29 01:40:44 2008 |
| MD5 Checksum: | 1b9c35808b2257054fb9d7ccb5a78d0c |
|
| /// File Name: |
downlinebuilder-sql.txt |
Description:
|
Downline Builder suffers from a remote SQL injection vulnerability in tr.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1331 | | Last Modified: | Aug 20 02:30:56 2008 |
| MD5 Checksum: | ec6a26dd506aafe10b48c7cded52bfd4 |
|
| /// File Name: |
DSECRG-08-035.txt |
Description:
|
Gallery version 1.5.7 and 1.6-alpha3 suffer from a local file inclusion vulnerability.
| | Author: | Digital Security Research Group | | Homepage: | http://www.dsec.ru/ | | File Size: | 2262 | | Last Modified: | Aug 8 14:45:57 2008 |
| MD5 Checksum: | af13413f6fb55a08b8808cff8e72df17 |
|
| /// File Name: |
DSECRG-08-036.txt |
Description:
|
Freeway eCommerce version 1.4.1.171 suffers from remote file inclusion, multiple local file inclusion, and cross site scripting vulnerabilities.
| | Author: | Digital Security Research Group | | Homepage: | http://www.dsec.ru/ | | File Size: | 7237 | | Last Modified: | Aug 18 20:04:41 2008 |
| MD5 Checksum: | 5b7d4cd901bfd8340ac4a81e7fbf189d |
|
| /// File Name: |
DSECRG-08-037.txt |
Description:
|
Pluck CMS version 4.5.2 suffers from multiple local file inclusion vulnerabilities.
| | Author: | Digital Security Research Group | | Homepage: | http://www.dsec.ru/ | | File Size: | 5373 | | Last Modified: | Aug 25 20:51:50 2008 |
| MD5 Checksum: | 569ec165bf63e88aa064daa5c376d909 |
|
| /// File Name: |
DSECRG-08-038.txt |
Description:
|
ezContents CMS version 2.0.3 suffers from multiple local file inclusion vulnerabilities.
| | Author: | Digital Security Research Group | | Homepage: | http://www.dsec.ru/ | | File Size: | 12050 | | Last Modified: | Aug 25 20:53:05 2008 |
| MD5 Checksum: | 8fe839a4a7d6a995587c81d9a5a0dffe |
|
| /// File Name: |
dxshopcart-sql.txt |
Description:
|
DXShopCart version 4.30mc suffers from a remote SQL injection vulnerability.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 849 | | Last Modified: | Aug 21 00:42:47 2008 |
| MD5 Checksum: | 0ebaa74b52af5459325ad4f89945b8a9 |
|
| /// File Name: |
easysite-lfi.txt |
Description:
|
EasySite version 2.3 suffers from local file inclusion and arbitrary folder viewing vulnerabilities.
| | Author: | SirGod | | Homepage: | http://www.mortal-team.com/ | | File Size: | 1527 | | Last Modified: | Aug 21 20:31:23 2008 |
| MD5 Checksum: | d78a8ea434b161e2d33d4b43fbfd4b97 |
|
| /// File Name: |
EMORY-2008-01.txt |
Description:
|
Telartis's AWStats Totals versions 1.0 through 1.14 suffer from a remote code execution vulnerability.
| | Author: | Elliot Kendall | | Homepage: | http://www.emory.edu/ | | File Size: | 3423 | | Last Modified: | Aug 26 22:35:14 2008 |
| MD5 Checksum: | 46742f7d6234df7fa0b6c185fb2e534a |
|
|
|
|
|