Section: .. / 0809-exploits /
| /// File Name: |
kyocera-ftp-bounce.txt |
Description:
|
Using Nmap, it is quite simple to perform a FTP bounce attack to port scan using the ftpd in Kyocera's printer model FS-118MFP.
| | Author: | Francesco Tornieri | | File Size: | 2759 | | Last Modified: | Sep 2 23:39:46 2008 |
| MD5 Checksum: | 3cdbdaf307c575f785df0a0d0d16ae26 |
|
| /// File Name: |
lansuite-lfi.txt |
Description:
|
LanSuite versions 3.4 Beta r1363 and below suffer from a local file inclusion vulnerability.
| | Author: | dun | | File Size: | 1872 | | Last Modified: | Sep 25 17:50:34 2008 |
| MD5 Checksum: | fada55ba148296323c5441a73b5c3a20 |
|
| /// File Name: |
libera-sql.txt |
Description:
|
Libera CMS versions 1.12 and below suffer from a remote SQL injection vulnerability using the cookie.
| | Author: | StAkeR | | File Size: | 594 | | Last Modified: | Sep 10 04:44:02 2008 |
| MD5 Checksum: | 8682fb9bb723b4e0d1aceed7453320d8 |
|
| /// File Name: |
libra-cookie.txt |
Description:
|
Libra PHP File Manager versions 1.18 and below suffer from an insecure cookie handling vulnerability.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 434 | | Last Modified: | Sep 26 20:04:41 2008 |
| MD5 Checksum: | b753ffe38874158638e3449144778362 |
|
| /// File Name: |
libra-lfi.txt |
Description:
|
Libra PHP File Manager versions 1.18 and below local file inclusion exploit.
| | Author: | Pepelux | | Homepage: | http://www.enye-sec.org/ | | File Size: | 2381 | | Last Modified: | Sep 25 19:05:16 2008 |
| MD5 Checksum: | 44f84b3c722ee065cd4b9c091f505e62 |
|
| /// File Name: |
linkarity-sql.txt |
Description:
|
Linkarity suffers from a remote SQL injection vulnerability in link.php.
| | Author: | Egypt Coder | | Homepage: | http://www.sec-area.com/ | | File Size: | 550 | | Last Modified: | Sep 14 16:22:09 2008 |
| MD5 Checksum: | d0450a7b7d6212d99875a2bc2a3ed0dd |
|
| /// File Name: |
linkbid-sql.txt |
Description:
|
Link Bid Script version 1.5 suffers from multiple remote SQL injection vulnerabilities.
| | Author: | SirGod | | Homepage: | http://www.mortal-team.com/ | | File Size: | 1506 | | Last Modified: | Sep 15 20:09:21 2008 |
| MD5 Checksum: | 8402749dd3f824f684d71b68610d0b24 |
|
| /// File Name: |
livetv-sql.txt |
Description:
|
Live TV Script suffers from a remote SQL injection vulnerability in index.php.
| | Author: | Cyb3r-1sT | | File Size: | 2311 | | Last Modified: | Sep 9 17:38:04 2008 |
| MD5 Checksum: | e28594abdc3f487aa0c6a63aeda36431 |
|
| /// File Name: |
livinglocal-sql.txt |
Description:
|
Living Local Website suffers from a SQL injection vulnerability in listtest.php.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1254 | | Last Modified: | Sep 3 17:18:08 2008 |
| MD5 Checksum: | aed2227fccc75ee8c058fc811ae683b7 |
|
| /// File Name: |
lnblog-lfi.txt |
Description:
|
LnBlog versions 0.9.0 and below suffer from a local file inclusion vulnerability.
| | Author: | dun | | File Size: | 1239 | | Last Modified: | Sep 28 13:22:26 2008 |
| MD5 Checksum: | a9ca957fe2030c9f9e5b5f43bc695fd1 |
|
| /// File Name: |
looyu-xss.txt |
Description:
|
LooYu Web IM only provides client-side input validation, allowing for anyone to commit cross site scripting attacks against anyone else using the service.
| | Author: | xisigr | | File Size: | 1841 | | Last Modified: | Sep 19 15:19:27 2008 |
| MD5 Checksum: | 7024ee66c2da37699fcb4d9a4caad62e |
|
| /// File Name: |
lps-disclose.txt |
Description:
|
Login Password Sample suffers from a remote password disclosure vulnerable due to an accessible .mdb file.
| | Author: | Ghost Hacker | | Homepage: | http://www.real-hack.net/ | | File Size: | 2728 | | Last Modified: | Sep 27 13:43:51 2008 |
| MD5 Checksum: | fc1b04877b2f9a81980935751bf808c0 |
|
| /// File Name: |
mailwatch-lfi.txt |
Description:
|
mailwatch versions 1.0.4 and below suffer from a local file inclusion vulnerability in docs.php.
| | Author: | dun | | File Size: | 1444 | | Last Modified: | Sep 24 15:34:00 2008 |
| MD5 Checksum: | a554530e79cd56db7d32a01979d91859 |
|
| /// File Name: |
major_rls53.txt |
Description:
|
Bluepage CMS versions 2.5 and below suffer from cross site scripting and session fixation vulnerabilities.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 2609 | | Last Modified: | Sep 22 17:01:34 2008 |
| MD5 Checksum: | e7d3f0dc4383aa1b1053b8621a5eafb9 |
|
| /// File Name: |
major_rls54.txt |
Description:
|
xt:Commerce versions 3.04 and below suffer from cross site scripting and session fixation vulnerabilities.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 3079 | | Last Modified: | Sep 22 17:03:43 2008 |
| MD5 Checksum: | da100de6dad7bbb0a61a17d8078f14ad |
|
| /// File Name: |
major_rls56.txt |
Description:
|
moziloWiki versions 1.0.1 and below suffer from directory traversal, cross site scripting, and session fixation vulnerabilities.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 2452 | | Last Modified: | Sep 30 19:56:48 2008 |
| MD5 Checksum: | aa39ad4835751870219451376f118696 |
|
| /// File Name: |
mapcal-sql.txt |
Description:
|
MapCal (the Mapping Calendar) version 0.1 suffers from a remote SQL injection vulnerability.
| | Author: | Guns | | Homepage: | http://www.0x90.com.ar/ | | File Size: | 733 | | Last Modified: | Sep 22 17:00:16 2008 |
| MD5 Checksum: | 7b846fc60d26d32a4765ae6338ce3112 |
|
| /// File Name: |
maxthon-dos.txt |
Description:
|
Maxthon Browser version 2.1.4.443 UNICODE remote denial of service proof of concept exploit.
| | Author: | LiquidWorm | | Homepage: | http://www.zeroscience.org/ | | File Size: | 1244 | | Last Modified: | Sep 9 17:07:11 2008 |
| MD5 Checksum: | 6bb91f4980a33301ef1ede6f46ece8c6 |
|
| /// File Name: |
memht-shell.txt |
Description:
|
MemHT Portal versions 3.9.0 and below perl exploit that creates a shell.
| | Author: | Ams | | File Size: | 7600 | | Last Modified: | Sep 8 11:08:38 2008 |
| MD5 Checksum: | 758427740978234759d28dd4c01cff10 |
|
| /// File Name: |
microtik-poc.txt |
Description:
|
MicroTik RouterOS versions 3.13 and below SNMP write proof of concept exploit.
| | Author: | ShadOS | | Homepage: | http://hellknights.void.ru/ | | File Size: | 6792 | | Last Modified: | Sep 5 11:49:08 2008 |
| MD5 Checksum: | 3b065276af46ff576d9a6373c1d277f2 |
|
| /// File Name: |
minb-exec.txt |
Description:
|
minb version 0.1.0 remote code execution exploit.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 3122 | | Last Modified: | Sep 11 18:33:47 2008 |
| MD5 Checksum: | 8c11b795ec1c803672ee65ba544b8730 |
|
| /// File Name: |
minbank-rfi.txt |
Description:
|
Micronation Banking System version 1.5.0 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | DaRkLiFe | | File Size: | 1125 | | Last Modified: | Sep 30 19:39:11 2008 |
| MD5 Checksum: | d6c560b8799e7774005fd9802f680788 |
|
| /// File Name: |
moodle-exec.txt |
Description:
|
Moodle versions 1.8.4 and below remote code execution exploit.
| | Author: | zurlich.ipt | | File Size: | 1593 | | Last Modified: | Sep 3 17:17:08 2008 |
| MD5 Checksum: | 7f3beb6819cc88f01ffaf5f6e7718031 |
|
|
|
|
|