Section: .. / 0809-exploits /
| /// File Name: |
sgrealestate-cookie.txt |
Description:
|
SG Real Estate Portal version 2.0 suffers from an insecure cookie handling vulnerability.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 395 | | Last Modified: | Sep 30 20:24:28 2008 |
| MD5 Checksum: | 3dc68d2f801fb24b4ffcc207aeb73eee |
|
| /// File Name: |
sgrealestate-sql.txt |
Description:
|
SG Real Estate Portal version 2.0 remote blind SQL injection exploit.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 2862 | | Last Modified: | Sep 30 20:23:20 2008 |
| MD5 Checksum: | 6bc583b1e665eeae176eee07cde4cb2d |
|
| /// File Name: |
sgrealestate-sqllfi.txt |
Description:
|
SG Real Estate Portal version 2.0 suffers from blind SQL injection and local file inclusion vulnerabilities.
| | Author: | SirGod | | Homepage: | http://www.mortal-team.com/ | | File Size: | 3012 | | Last Modified: | Sep 30 20:22:14 2008 |
| MD5 Checksum: | 087e027c32732db3cd30868b944fc33a |
|
| /// File Name: |
autodesk-exec.txt |
Description:
|
Autodesk DWF Viewer Control / LiveUpdate Module remote code execution exploit.
| | Author: | Nine:Situations:Group | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2791 | | Last Modified: | Sep 30 20:20:45 2008 |
| MD5 Checksum: | 99bab3b6a9842988632235ad6239a43a |
|
| /// File Name: |
faq-sql.txt |
Description:
|
FAQ Management script suffers from a remote SQL injection vulnerability.
| | Author: | Hussin X | | Homepage: | http://www.tryag.cc/ | | File Size: | 1398 | | Last Modified: | Sep 30 20:01:08 2008 |
| MD5 Checksum: | 63c77f29d458a44544f75e03d28f359a |
|
| /// File Name: |
a4deskphp-rfi.txt |
Description:
|
A4Desk PHP Event Calendar suffers from a remote file inclusion vulnerability.
| | Author: | Lo$er | | File Size: | 553 | | Last Modified: | Sep 30 19:58:06 2008 |
| MD5 Checksum: | b96b41639284183cd9f224aba5ba0ea5 |
|
| /// File Name: |
major_rls56.txt |
Description:
|
moziloWiki versions 1.0.1 and below suffer from directory traversal, cross site scripting, and session fixation vulnerabilities.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 2452 | | Last Modified: | Sep 30 19:56:48 2008 |
| MD5 Checksum: | aa39ad4835751870219451376f118696 |
|
| /// File Name: |
wordpressmu-xss.txt |
Description:
|
WordPress MU versions below 2.6 suffer from a cross site scripting vulnerability in wpmu-blogs.php.
| | Author: | Juan Galiana | | File Size: | 1954 | | Last Modified: | Sep 30 19:54:27 2008 |
| MD5 Checksum: | bcd9422dde4e5978e3ed325d56a1166f |
|
| /// File Name: |
msie7-dos.txt |
Description:
|
Microsoft Internet Explorer 7 denial of service exploit that is rumored to work on Konqueror as well.
| | Author: | UniquE-Key | | Homepage: | http://www.UniquE-Key.Org/ | | File Size: | 1329 | | Last Modified: | Sep 30 19:49:05 2008 |
| MD5 Checksum: | d0bfa30abedb808f52cbb7040c4040de |
|
| /// File Name: |
googsaf-dos.txt |
Description:
|
Google Chrome version 0.2.149.30 and Safari version 3.1.2 suffer from a denial of service vulnerability.
| | Author: | Lostmon | | Homepage: | http://lostmon.blogspot.com/ | | File Size: | 1367 | | Last Modified: | Sep 30 19:46:39 2008 |
| MD5 Checksum: | 16a7fe6dc7df5b95a547848b99b88d4b |
|
| /// File Name: |
efront-upload.txt |
Description:
|
eFront versions 3.5.1 build 2710 and below suffer from a remote arbitrary upload vulnerability.
| | Author: | Pepelux | | Homepage: | http://www.enye-sec.org/ | | File Size: | 1564 | | Last Modified: | Sep 30 19:40:44 2008 |
| MD5 Checksum: | 1b8215f31e5b53a8bba20672ebcc1f5f |
|
| /// File Name: |
minbank-rfi.txt |
Description:
|
Micronation Banking System version 1.5.0 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | DaRkLiFe | | File Size: | 1125 | | Last Modified: | Sep 30 19:39:11 2008 |
| MD5 Checksum: | d6c560b8799e7774005fd9802f680788 |
|
| /// File Name: |
arabcms-lfi.txt |
Description:
|
Arab CMS suffers from a local file inclusion vulnerability in rss.php.
| | Author: | jiko | | File Size: | 1488 | | Last Modified: | Sep 30 19:35:09 2008 |
| MD5 Checksum: | 8d61f4209b1cf8d90aaeea11df3e2d7d |
|
| /// File Name: |
wireshark-dos.tgz |
Description:
|
Wireshark version 1.0.x .ncf file local denial of service exploit.
| | Author: | Shinnok | | File Size: | 3710 | | Last Modified: | Sep 29 16:22:13 2008 |
| MD5 Checksum: | 7b8b383ea34be162171d59302f71ab13 |
|
| /// File Name: |
easy4u-sqlxss.txt |
Description:
|
Easy4U CMS suffers from remote SQL injection and cross site scripting vulnerabilities in main.php.
| | Author: | d3v1l | | File Size: | 1762 | | Last Modified: | Sep 29 16:18:53 2008 |
| MD5 Checksum: | 00c8d8dd104cb9eb66d84bbee3a37df3 |
|
| /// File Name: |
msiegdi-poc.txt |
Description:
|
Microsoft Internet Explorer GDI+ proof of concept exploit that leverages the vulnerability discussed in MS08-0520.
| | Author: | Evil Fingers | | Homepage: | http://www.evilfingers.com/ | | File Size: | 925 | | Last Modified: | Sep 29 16:14:12 2008 |
| MD5 Checksum: | ca5b6a2292e99222dd96d741389215b1 |
|
| /// File Name: |
eventscal-rfi.txt |
Description:
|
Events Calendar version 1.1 suffers from a remote file inclusion vulnerability.
| | Author: | Tunisian Black Hat Team | | Homepage: | http://tunisianblackhat.com/ | | File Size: | 1009 | | Last Modified: | Sep 29 16:05:25 2008 |
| MD5 Checksum: | 0d5cb4c63d6644dc6435d3219dbf3962 |
|
| /// File Name: |
phpfusionfresh-sql.txt |
Description:
|
The PHP-Fusion Freshlinks module suffers from a remote SQL injection vulnerability.
| | Author: | boom3rang | | Homepage: | http://www.khq-crew.ws/ | | File Size: | 1081 | | Last Modified: | Sep 29 16:03:00 2008 |
| MD5 Checksum: | cd6b3da5efd866e5d2af63b3eb5e3f2e |
|
| /// File Name: |
postcomments-cookie.txt |
Description:
|
Post Comments version 3.0 suffers from an insecure cookie handling vulnerability.
| | Author: | Crackers_Child | | File Size: | 411 | | Last Modified: | Sep 29 16:02:09 2008 |
| MD5 Checksum: | 8bdcf703d9e501b9739b5cd9fcb80993 |
|
| /// File Name: |
xbtit-sql.txt |
Description:
|
xbtit version 2.0.0 suffers from a remote SQL injection vulnerability in scrape.php.
| | Author: | r45c4l | | Homepage: | http://www.darkc0de.com | | File Size: | 2052 | | Last Modified: | Sep 29 16:01:16 2008 |
| MD5 Checksum: | bdfb0f53bc3d2bf2aea30f48ce219bd4 |
|
| /// File Name: |
webbiscuitsec-rfi.txt |
Description:
|
Webbiscuits Events Calendar version 1.1 suffers from a remote file inclusion vulnerability.
| | Author: | r45c4l | | Homepage: | http://www.darkc0de.com | | File Size: | 1955 | | Last Modified: | Sep 29 16:00:28 2008 |
| MD5 Checksum: | 66a82bfba0eb008871dcb8345e2ebb11 |
|
| /// File Name: |
joomlaimage-traverse.txt |
Description:
|
The Joomla imagebrowser component versions 0.1.5 RC2 and below suffer from a directory traversal vulnerability.
| | Author: | Cr@zy_King | | File Size: | 291 | | Last Modified: | Sep 29 14:54:37 2008 |
| MD5 Checksum: | de6f45358a5095e139afda1be7d89f78 |
|
|
|
|
|