exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 92 RSS Feed

Files

0507-exploits.tgz
Posted Aug 5, 2005
Authored by Todd J. | Site packetstormsecurity.com

Packet Storm new exploits for July, 2005.

tags | exploit
SHA-256 | ab545a8283c253b65bc2b58960d3e3e79415097ff6ceb8e59e6732fda91c568a
BusMail_SMTPDOS.pl.txt
Posted Aug 5, 2005
Authored by Reed Arvin | Site reedarvin.thearvins.com

A buffer overflow in BusinessMail email server system 4.60.00 allows for a denial of service attack. Proof of concept exploit included.

tags | exploit, denial of service, overflow, proof of concept
SHA-256 | e61c8d30334ddbd9c69cb79a6029b70f85e075638ce1f5ff51725124201c4044
phpList.txt
Posted Aug 5, 2005
Authored by ziot

A SQL injection flaw exists in phpList. Proper exploitation requires that a user be authenticated.

tags | exploit, sql injection
SHA-256 | 458fc9000f820a935ba9ad27ff4eb00f11f2f4489a319a93892a0c24a662dcf8
eventum.pl.txt
Posted Aug 5, 2005
Authored by James Bercegay | Site gulftech.org

MySQL AB Eventum versions 1.5.5 and below proof of concept SQL injection exploit.

tags | exploit, sql injection, proof of concept
SHA-256 | 98ae37828a224b42ec7704aa466387c415edefa346151814689409183ced0496
mysqlEventum.txt
Posted Aug 5, 2005
Authored by James Bercegay | Site gulftech.org

MySQL AB Eventum versions 1.5.5 and below suffer from cross site scripting and SQL injection attacks.

tags | exploit, xss, sql injection
SHA-256 | 486b62670eba7e416965890cfa7d6c70e4ce802a5432ee1a9a47b3799b7d5e9d
phpeasynews.html
Posted Aug 5, 2005
Authored by rgod | Site retrogod.altervista.org

Phpeasynews version 1.13 RC2 is susceptible to cross site scripting, path disclosure, and user check bypass vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 1bcd3c76f6565004ab00f136803cee930fa5730fb78ad311913b6ad2b14f5279
kayakoBad.txt
Posted Aug 5, 2005
Authored by James Bercegay | Site gulftech.org

Kayako liveResponse versions 2.x suffer from cross site scripting, SQL injection, script insertion, and other vulnerabilities.

tags | exploit, vulnerability, xss, sql injection
SHA-256 | 467ff6e05fcb9f7bcfe64a7911a6f281382e754685facee0e1c93532010dc5fa
Easyxp41.txt
Posted Aug 5, 2005
Authored by FalconDeOro

Easyxp41 suffers from multiple cross site scripting and data disclosure flaws. An excessive amount of detailed exploitation is provided.

tags | exploit, xss
SHA-256 | b11be99fc0ea0ceadd4afffe67998e76b1846a48d50741151bb21bbbc661d62d
pluggedBlog.txt
Posted Aug 5, 2005
Authored by FalconDeOro

Plugged-Blog 0.4.8 suffers from multiple cross site scripting, SQL injection, and other flaws. Detailed exploitation provided.

tags | exploit, xss, sql injection
SHA-256 | ebbca1ecec9d8e1ddadf735c12f8d774717fd83bf4c04b5d8fc5c63731f562aa
kshoutaxs.txt
Posted Aug 5, 2005
Authored by SoulBlack | Site soulblack.com.ar

Kshout versions 2.x and 3.x allow for direct file access to their configuration files.

tags | exploit
SHA-256 | 8c0896bc4a509cbcf7c2ba24fcda2dd282d65861445774e2bdc42115d9afe375
qlite.html
Posted Aug 5, 2005
Authored by rgod | Site retrogod.altervista.org

qliteNews arbitrary database manipulation and cross site scripting proof of concept exploit.

tags | exploit, arbitrary, xss, proof of concept
SHA-256 | 0911f2087e68909788f45768c21f628ad4f585c71f70c83b55698558c1e09049
kentbb.txt
Posted Aug 5, 2005
Authored by l--s | Site 3asfh.net

Kent's Guestbook allows for direct database file access.

tags | exploit
SHA-256 | 7a0072e44f664675328ec01972f50ab5b7af9865f32e2374959b9585e577c2f2
webc.html
Posted Aug 5, 2005
Authored by rgod | Site retrogod.altervista.org

Web Content Management News System administrative account creation and cross site scripting proof of concept exploit.

tags | exploit, web, xss, proof of concept
SHA-256 | 990585c9faa9ac51c6b4dd39f13e1d67f108d8e566f736c1f8c9b202660e7f88
phpfreenews.html
Posted Aug 5, 2005
Authored by rgod | Site retrogod.altervista.org

PHPFreeNews versions 1.32 and below are susceptible to SQL injection, login bypass, and cross site scripting attacks.

tags | exploit, xss, sql injection
SHA-256 | 6e4950591016029b7b9fdf3825bfbb4a41f8b7f1496b92f39e7a67fd1fef0b1e
phpnews.html
Posted Aug 5, 2005
Authored by rgod | Site retrogod.altervista.org

PHP News Manager versions 1.45 through 1.47 are susceptible to login bypass, SQL injection, cross site scripting and path disclosure flaws.

tags | exploit, php, xss, sql injection
SHA-256 | edb052d5269e388cf5c485860a0cc421bbd1ed352263228f6557414c8eb3e5c5
phplistSQL.txt
Posted Aug 5, 2005
Authored by tgo

PHPList is susceptible to SQL injection and path disclosure flaws.

tags | exploit, sql injection
SHA-256 | c3a7ccc54549b284b9d57082be0f2413a70a7f00bb0916f970ce3da8decd3753
gforgeXSS.txt
Posted Aug 5, 2005
Authored by Joxean Koret

GForge version 4.5 is susceptible to multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 6987e8c48a8ad981bda89e0d53df9752dac35da750af19821ff0c0234304f477
pc26sql.txt
Posted Jul 28, 2005
Authored by Zinho | Site hackerscenter.com

Product Cart 2.6 is susceptible to a SQL injection attack.

tags | exploit, sql injection
SHA-256 | 1a7a0193f797f2414538f0d22427694af75bdc11429f381d7e35ea32387f411c
atmailXSS.txt
Posted Jul 28, 2005
Authored by Lostmon

@Mail 4.03 WebMail for Windows and 4.11 for Unix variants suffers from multiple cross site scripting flaws. Detailed exploitation provided.

tags | exploit, xss
systems | windows, unix
SHA-256 | e7d45ee0b78d0b31102938dd2bfec6cb78c5dc938ca19586df1e1abc829b6175
HPRadiaManagement.txt
Posted Jul 28, 2005
Authored by David Morgan, Dominic Beecher | Site ngssoftware.com

NGSSoftware Insight Security Research Advisory - HP OpenView Radia Management Portal versions 2.x and 1.x running the Radia Management Agent suffer from a remote command execution flaw via a directory traversal. By connecting to the TCP port and sending a crafted packet, it is possible to traverse out of C:\Program Files\Novadigm and run any executable that is located on the same logical disk partition.

tags | exploit, remote, tcp
SHA-256 | 7cb720055d0a9def2c53bdea7b3ee97ae5cad852628a3a71f3790a7d689c41d5
mu-imap4d_fsexp.c
Posted Jul 28, 2005
Authored by CoKi | Site nosystem.com.ar

GNU Mailutils imap4d version 0.6 remote format string exploit. Tested on Slackware Linux versions 9.0, 10.0, and 10.1.

tags | exploit, remote
systems | linux, slackware
SHA-256 | 401bc6296bf7e0cad8ec471e000d36ed641cd07f6b35a73673bd4b9fb17f3e30
cleverNotSo.txt
Posted Jul 28, 2005
Authored by Lostmon

Clever Copy suffers from multiple cross site scripting and path disclosure flaws. Versions 2.0 and 2.0a are affected.

tags | exploit, xss
SHA-256 | f8361167214508e7b7908f034dc5d4028f06638ffdf5ed43ac11e033d97286fb
bmforumXSS.txt
Posted Jul 28, 2005
Authored by Lostmon

BMForum Datium! 3.0 RC1-4, Plus! 3.0 RC1-4, Plus! 2.6.1, and PlusMX 3.0.0.5 all suffer from multiple cross site scripting flaws.

tags | exploit, xss
SHA-256 | d3b2143c60bb09f3023734011cae42cd0b588014515e61c578f8f0df1bd2bcdc
cartWIZxss.txt
Posted Jul 28, 2005
Authored by Zinho | Site hackerscenter.com

CartWIZ suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 55b39a11e65c04e115b346660460d185b1c7b5902fce31c6167047ef8a26773e
simplicityRemote.txt
Posted Jul 28, 2005
Authored by rgod | Site retrogod.altervista.org

Simplicity OF Upload 1.3 allows for remote code execution and cross site scripting attacks.

tags | exploit, remote, code execution, xss
SHA-256 | 5aed3185aef2e54a81a96802e0d2aa259d7c0541c1281310f0132032e012c832
Page 1 of 4
Back1234Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close