Section: .. / 0808-exploits /
| /// File Name: |
phpauctiongpl-sql.txt |
Description:
|
PHPAuction GPL Enhanced version 2.51 suffers from a remote SQL injection vulnerability in profile.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1382 | | Last Modified: | Aug 1 15:44:25 2008 |
| MD5 Checksum: | b3d8254d3a2d202420a568d9d43328da |
|
| /// File Name: |
phpbazar-sql.txt |
Description:
|
phpBazar version 2.0.2 suffers from a remote SQL injection vulnerability.
| | Author: | e.wiZz! | | File Size: | 1208 | | Last Modified: | Aug 21 00:04:39 2008 |
| MD5 Checksum: | 76341cf8ce6e1bd0391402c200cd1242 |
|
| /// File Name: |
phpcart-xss.txt |
Description:
|
PHPCart versions 3.4 through 4.6.4 suffer from cross site scripting and price manipulation vulnerabilities.
| | Author: | h4x0r | | Homepage: | http://www.darkc0de.com/ | | File Size: | 5045 | | Last Modified: | Aug 24 15:45:24 2008 |
| MD5 Checksum: | a667f382b4fac26273cd9ab4565b3a83 |
|
| /// File Name: |
phpemlak-sql.txt |
Description:
|
Full PHP Emlak Script suffers from a remote SQL injection vulnerability in landsee.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1728 | | Last Modified: | Aug 29 12:08:02 2008 |
| MD5 Checksum: | 0d78a18e819716d1f441a5ad3024be3e |
|
| /// File Name: |
phpizabi-traverse.txt |
Description:
|
PHPizabi version 0.848b suffers from directory traversal and cross site scripting vulnerabilities.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 2974 | | Last Modified: | Aug 15 20:37:20 2008 |
| MD5 Checksum: | 58a256c358625b1b59e1d05cd186254d |
|
| /// File Name: |
phpmyrealty-loc-sql.txt |
Description:
|
phpMyRealty suffers from a remote SQL injection vulnerability in index.php.
| | Author: | CraCkEr | | File Size: | 4658 | | Last Modified: | Aug 1 15:47:57 2008 |
| MD5 Checksum: | 0d83dbb1a520e801d020c0b414461429 |
|
| /// File Name: |
phpmyrealty109-sql.txt |
Description:
|
phpMyRealty versions 1.0.9 and below suffer from a remote SQL injection vulnerability in pages.php.
| | Author: | ~!Dok_tOR!~ | | Homepage: | http://www.antichat.ru/ | | File Size: | 810 | | Last Modified: | Aug 27 11:25:26 2008 |
| MD5 Checksum: | c5c0581e59881b0c55bafb406bc61e32 |
|
| /// File Name: |
phpnukeklein-sql.txt |
Description:
|
The Kleinanzeigen module in PHP-Nuke is vulnerable to SQL injection.
| | Author: | Lovebug | | Homepage: | http://www.rbt-4.net/ | | File Size: | 742 | | Last Modified: | Aug 6 17:27:41 2008 |
| MD5 Checksum: | e9c50a07627c85f7c3234f663fa24798 |
|
| /// File Name: |
phprealty-sql.txt |
Description:
|
PHP Realty suffers from a remote SQL injection vulnerability.
| | Author: | CraCkEr | | File Size: | 4984 | | Last Modified: | Aug 12 22:58:16 2008 |
| MD5 Checksum: | 5017b4d0a9e0a4e5c4bfb20ac57ae66d |
|
| /// File Name: |
phpring-insecure.txt |
Description:
|
PHP-Ring Webring System version 0.9.1 suffers from an insecure cookie handling vulnerability.
| | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 1634 | | Last Modified: | Aug 12 22:54:49 2008 |
| MD5 Checksum: | 07e171b902a359b45e5406749b09e575 |
|
| /// File Name: |
phsblog-sql.txt |
Description:
|
phsBlog version 0.1.1 suffers from multiple remote SQL injection vulnerabilities.
| | Author: | cOndemned | | Homepage: | http://condemned.r00t.la/ | | File Size: | 886 | | Last Modified: | Aug 1 19:51:35 2008 |
| MD5 Checksum: | 16f15cfe5d216d242233225083a78d8c |
|
| /// File Name: |
plogger-sql.txt |
Description:
|
Plogger versions 3.0 and below suffer from a SQL injection vulnerability.
| | Author: | James Bercegay | | Homepage: | http://www.gulftech.org | | File Size: | 5109 | | Last Modified: | Aug 5 18:40:14 2008 |
| MD5 Checksum: | b573e3ec36f86cb877365c2cb852bb8d |
|
| /// File Name: |
pluck-xss.txt |
Description:
|
Pluck version 4.5.2 suffers from multiple cross site scripting vulnerabilities.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 2845 | | Last Modified: | Aug 5 18:26:14 2008 |
| MD5 Checksum: | 8c7c7a590c9f1b8293016fc9159c5f68 |
|
| /// File Name: |
popnupblog-xss.txt |
Description:
|
PopnupBlog version 3.30 suffers from multiple cross site scripting vulnerabilities in index.php.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 3283 | | Last Modified: | Aug 25 20:55:00 2008 |
| MD5 Checksum: | b82aae9cdaf7f648a0399aae7d72008e |
|
| /// File Name: |
powergap-sql.txt |
Description:
|
PowerGap Shopsystem suffers from a SQL injection vulnerability.
| | Author: | Rohit Bansal | | File Size: | 626 | | Last Modified: | Aug 5 18:27:44 2008 |
| MD5 Checksum: | e75102e8e14cbe12ba1e96e6dc3bea61 |
|
| /// File Name: |
ppim-deletexss.txt |
Description:
|
Ppim version 1.0 suffers from cross site scripting and arbitrary deletion vulnerabilities.
| | Author: | BeyazKurt | | File Size: | 1297 | | Last Modified: | Aug 12 22:24:31 2008 |
| MD5 Checksum: | b4ec0dfbc2f12d87dfe2b0ec8fc8aefb |
|
| /// File Name: |
ppimp-upload.txt |
Description:
|
Ppim versions 1.0 and below suffer from upload and password change vulnerabilities.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 429 | | Last Modified: | Aug 13 00:36:49 2008 |
| MD5 Checksum: | 181058a447c70d25d96fc2512460bb49 |
|
| /// File Name: |
prograte-sql.txt |
Description:
|
Programs Rating suffers from a remote SQL injection vulnerability in details.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1217 | | Last Modified: | Aug 20 02:41:51 2008 |
| MD5 Checksum: | cda25d3f905fff731903c2922794afab |
|
| /// File Name: |
psipuss-sql.txt |
Description:
|
psipuss version 1.0 suffers from multiple remote SQL injection vulnerabilities.
| | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 1583 | | Last Modified: | Aug 12 22:55:38 2008 |
| MD5 Checksum: | d542f99452198f945632e2441e88947c |
|
| /// File Name: |
ptcinvest-sql.txt |
Description:
|
PTCinvestment version 1.2 suffers from a remote SQL injection vulnerability.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1341 | | Last Modified: | Aug 15 20:25:55 2008 |
| MD5 Checksum: | fb3532c789b0429f01f301918432f174 |
|
| /// File Name: |
PuttyHijackV1.0.rar |
Description:
|
PuttyHijack is a proof of concept tool that injects a dll into the Putty process to hijack an existing, or soon to be created, connection. This can be useful during penetration tests when a windows box that has been compromised is used to SSH/Telnet into other servers. The injected DLL installs some hooks and creates a socket for a callback connection that is then used for input/output redirection. It does not kill the current connection, and will cleanly uninject if the socket or process is stopped.
| | Author: | Brett Moore | | Homepage: | http://www.insomniasec.com/ | | File Size: | 29632 | | Last Modified: | Aug 1 18:04:03 2008 |
| MD5 Checksum: | 03b47e35a515d93ba711dea00d84ba5d |
|
| /// File Name: |
quatecms-lfixss.txt |
Description:
|
Quate CMS version 0.3.4 suffers from local file inclusion and cross site scripting vulnerabilities.
| | Author: | CraCkEr | | File Size: | 4760 | | Last Modified: | Aug 6 17:30:31 2008 |
| MD5 Checksum: | 98be7c453897ff72622a641c9d576742 |
|
|
|
|
|