Twenty Year Anniversary
Showing 1 - 25 of 42 RSS Feed


Posted Dec 10, 2003
Authored by Todd J.

Packet Storm new exploits for October, 2003.

tags | exploit
MD5 | 63cd13d549e08c661624ae5de22a9818
Posted Oct 30, 2003
Authored by Eyas | Site

WS_FTP server <= v4.0.1 for Windows 2000 remote stack overflow exploit which binds a shell to a port. Requires a ftp account.

tags | exploit, remote, overflow, shell
systems | windows, 2k
MD5 | d1c0de9f904bf4d9a6e68e991267a850
Posted Oct 30, 2003
Authored by Blade | Site

PHP-Nuke v6.5 and Spaiz-nuke v1.2 SQL injection exploit written in PHP. Adds an admin account.

tags | exploit, php, sql injection
MD5 | 075b3b2c3a8864197675515e90a3342d
Posted Oct 30, 2003
Authored by Blade | Site

Denial of service buffer overflow exploit for the TelCondex web server v2.12.30210 Build 3285 and below which overflows the HTTP referrer. Fix available Oliver Karow.

tags | exploit, web, denial of service, overflow
MD5 | 20c79a1ea93315692bf563efa676c67d
Posted Oct 30, 2003
Authored by Druid

Denial of service exploit in ls, which is exploited remotely via wu-ftpd v2.6.2. In perl.

tags | exploit, denial of service, perl
MD5 | d172d1ad48e70d1f43bf8781bae6f7f1
Posted Oct 30, 2003
Authored by Polygrithm | Site

The taper program in Redhat 7.3 contains a stack overflow. Note that taper is not setuid.

tags | exploit, overflow
systems | linux, redhat
MD5 | 22f491634bf9f13060313a42fd059611
Posted Oct 30, 2003
Authored by Xpl017Elz | Site

Sh-httpd v0.3 and 0.4 contain a remote directory traversal vulnerability involving a wildcard character which allows attackers to read any file on the system and execute CGI's. Patch included.

tags | exploit, remote, cgi
MD5 | 0a6560a983f4d7c86c1eb4c1f8375ba8
Posted Oct 30, 2003
Authored by Flux

Php-nuke v6.6 and spaiz-nuke below v1.2beta remote exploit which allows you to take over the administrator account. In Spanish.

tags | exploit, remote, php
MD5 | d0db271a1958e0baff9284c3401640c7
Posted Oct 30, 2003
Authored by Slaizer

The FlexWATCH surveillance camera server is used by many banks and "secure" places and contains remotely exploitable vulnerabilities which allow remote attackers to view camera footage, add users, remove users, change the configuration, disable camera surveillance, and more.

tags | exploit, remote, vulnerability
MD5 | 656d2fad064108c3fe3c98b3b6f97e4f
Posted Oct 30, 2003
Authored by Frog Man | Site

PHP Advanced Poll v2.0.2 contains remotely exploitable PHP code injection, file include, and phpinfo vulnerabilities. Exploit URLs and vulnerable code snippets included. Patch and vulnerability details available here.

tags | exploit, php, vulnerability
MD5 | 56e9fbaca901131a100472faa9d3f17b
Posted Oct 30, 2003
Authored by Osker178

Solaris runtime linker ( local root buffer overflow exploit. Bug discovered by Jouko Pynnonen.

tags | exploit, overflow, local, root
systems | solaris
MD5 | 159fa40468397e901231ffb0c7a34c8f
Posted Oct 30, 2003
Authored by Chris | Site

Directory traversal attacks against the iWeb mini http server. Exploit URLs included. Vendor URL here.

tags | exploit, web
MD5 | dcaefe6f98304668838e20ca5cbcf763
Posted Oct 30, 2003
Authored by Josh Medley | Site

Xchat script which uses the DCC SEND overflow to kill mIRC clients v6.11 and below.

tags | exploit, overflow
MD5 | 1040b28d55d687b066bab53964c3f2e5
Posted Oct 30, 2003
Authored by H D Moore | Site

Exploit for ms03-046 - Microsoft Exchange Server 5.5 and Exchange 2000 buffer overflow, in perl. Denial of service only.

tags | exploit, denial of service, overflow, perl
MD5 | 17479c516711b178d64dbfcb23ff116f
Posted Oct 30, 2003
Authored by Astharot | Site

cpCommerce v0.5f and below contains an input validation error in _functions.php which allows remote arbitrary code execution. Exploit URL included. Fix available here.

tags | exploit, remote, arbitrary, php, code execution
MD5 | fc3d68bc4d70e84ecab8477883ba365d
Posted Oct 27, 2003
Authored by Omi Da

Information and packet capture of Mirc v6.11 and below DCC SEND buffer overflow exploit which crashes the client.

tags | exploit, overflow
MD5 | a84a0c6eae3a016419e6195491cd79b4
Posted Oct 21, 2003
Authored by NrAziz

Iwconfig local proof of concept exploit - Causes a seg fault. Note that iwconfig is not suid.

tags | exploit, local, proof of concept
MD5 | eccf7607942949f8ecfed824257cd7ac
Posted Oct 21, 2003
Authored by Aviram Jenik | Site

DeskPRO v1.1.0 and below do not adequately filter user provided data, allowing a remote attacker to insert malicious SQL statements into existing ones. Allows attackers to login to the system as an administrator without knowing the password.

tags | exploit, remote
MD5 | 6c7179a6ec73486ce67c6556b01c6725
Posted Oct 21, 2003
Authored by Blasty | Site

mIRC v6.1 and below remote exploit which takes advantage of the bug described in mirc61.txt. Creates a HTML file which overflows the irc:// URI handling, spawning a local cmd.exe window. The exploit works even if mIRC is not started - The HTML can be in a HTML email or on a web page. Tested against Windows XP build 2600.xpclient.010817-1148.

tags | exploit, remote, web, overflow, local
systems | windows, xp
MD5 | bdc38dfedffb7977637c36ede12ea4e8
Posted Oct 21, 2003
Authored by LSD

Remote denial of service exploit for the Microsoft Messenger service buffer overflow described in ms03-043 which causes the target machine to reboot. Includes the ability to send the packet from a spoofed source address and requires the remote netbios name. Tested against Windows 2000 SP4.

tags | exploit, remote, denial of service, overflow, spoof
systems | windows, 2k
MD5 | 75bde2a7d5758f67ec04524fa6b11be9
Posted Oct 17, 2003
Authored by c0ntex

Local exploit for Oracle Release 2 Patch Set 3 Version for Linux x86 that makes use of a buffer overflow to escalate user privileges via the oracle binary.

tags | exploit, overflow, x86, local
systems | linux
MD5 | e67aa2d4ffbc82a005daedd92002cbf9
Posted Oct 16, 2003

The Linksys EtherFast Cable/DSL Firewall Router BEFSX41 (Firmware 1.44.3) is susceptible to a denial of service attack when a long string is sent to the Log_Page_Num parameter of the Group.cgi script.

tags | exploit, denial of service, cgi
MD5 | 1e142d2d4429f36d6bdbd08409720df8
Posted Oct 16, 2003
Authored by error

Simple notes on how to exploit GAIM via the festival plugin that was written quite poorly.

tags | exploit
MD5 | bf092631c2e47257ae9f6aa6be652dda
Posted Oct 15, 2003
Authored by Patrik Hornik

slocate package version 2.6 has a heap overflow that can be used to escalate privileges.

tags | exploit, overflow
MD5 | 00b366b2c5e22e03fdbb21c45a07520c
Posted Oct 14, 2003
Authored by netris

Remote root exploit for ProFTPd 1.2.7-1.2.8.

tags | exploit, remote, root
MD5 | da4e6897a3b2f1a99efc2ef3fd5b0837
Page 1 of 2

Want To Donate?

Bitcoin: 18PFeCVLwpmaBuQqd5xAYZ8bZdvbyEWMmU

Top Authors In Last 30 Days

Recent News

News RSS Feed
Appliance Botnet Could Bring Power Grid To Its Knees
Posted Aug 17, 2018

tags | headline, flaw, scada
Chinese Hackers Target Alaska
Posted Aug 17, 2018

tags | headline, hacker, government, usa, china, cyberwar
Necurs Botnet Launches Fresh Assault Against Banks
Posted Aug 17, 2018

tags | headline, malware, bank, cybercrime, botnet, fraud
Apple Hack Teen Pleads Guilty
Posted Aug 17, 2018

tags | headline, hacker, data loss, apple
Google Expands Bug Bounty To Include Fraud Protection Bypass
Posted Aug 16, 2018

tags | headline, fraud, flaw, google
Credit Card Skimmers Now Need To Fear The Reaper
Posted Aug 16, 2018

tags | headline, hacker, bank, cybercrime, fraud, conference
The Hackers Hunting Down Missing People
Posted Aug 16, 2018

tags | headline, hacker, privacy, conference
President Trump Relaxes US Cyber-Attack Rules
Posted Aug 16, 2018

tags | headline, government, usa, cyberwar, fbi, nsa, cia
Mystery Russian Satellite's Behavior Raises Alarm In US
Posted Aug 15, 2018

tags | headline, usa, russia, space, cyberwar, spyware
Adobe Fixes Critical Code Execution Flaws In Latest Patch Update
Posted Aug 15, 2018

tags | headline, flaw, adobe, patch
View More News →
packet storm

© 2018 Packet Storm. All rights reserved.

Security Services
Hosting By