what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 131 RSS Feed

Files

bitchxLocal.c
Posted Nov 30, 2005
Authored by sha0

Local root exploit for BitchX. Note that BitchX is not normally setuid by default.

tags | exploit, local, root
SHA-256 | 15287501f0909a92ceef2b952590a8030acdd609f74bc714559cd9bb0c867974
OTRSXSS.txt
Posted Nov 30, 2005
Authored by Moritz Naumann | Site moritz-naumann.com

OTRS versions 1.x and 2.x are susceptible to cross site scripting and blind SQL injection attacks.

tags | exploit, xss, sql injection
SHA-256 | 29a93f181ca50c41c945c33f389fbc58031fd5070257f52be573f16df9624226
VHCSXSS.txt
Posted Nov 30, 2005
Authored by Moritz Naumann | Site moritz-naumann.com

VHCS version 2.x is susceptible to cross site scripting attacks.

tags | exploit, xss
SHA-256 | a64c886730a27fa7f9e5d60cb54bd223035aa6ac5fd5675faa7317d401c18841
pmwikiXSS.txt
Posted Nov 30, 2005
Authored by Moritz Naumann | Site moritz-naumann.com

PmWiki version 2.0.12 is susceptible to cross site scripting attacks.

tags | exploit, xss
SHA-256 | bb96806a02efeecb8751569e66d53ea1c75ed55feba3ba0f94f4ddad337c08d4
kapda-phpp.txt
Posted Nov 30, 2005
Authored by trueend5 | Site KAPDA.ir

PHPP version 1.0 is susceptible to cross site scripting vulnerabilities. Exploitation details provided.

tags | exploit, vulnerability, xss
SHA-256 | 9f0b93533446c6334581e450749eed571af105c4644900f436f6f35f2981af5c
PIXdos.pl.txt
Posted Nov 30, 2005
Authored by Konstantin V. Gavrilenko | Site arhont.com

Remote denial of service exploit that makes use of a blocking feature in Cisco PIX 515E OS version 6.3(3).

tags | exploit, remote, denial of service
systems | cisco
SHA-256 | 7c07d9ecb298f2f95f46e5e969afcb9cb1a27c7b2e68bc042e1e63fd45406c5c
torrentialTraverse.txt
Posted Nov 30, 2005
Authored by Shell

Torrential version 1.2 is susceptible to directory traversal attacks.

tags | exploit
SHA-256 | c7bf8e3081823b5976ffb184e97f79a21ce20602f215062939de5c7fbd892b2e
poc.tgz
Posted Nov 30, 2005
Authored by Stuart Pearson | Site computerterrorism.com

Proof of concept html that demonstrates the code execution flaw in the Microsoft Internet Explorer JavaScript Window() vulnerability previously considered to be simply a denial of service flaw.

tags | exploit, denial of service, javascript, code execution, proof of concept
advisories | CVE-2005-1790
SHA-256 | 617a8516e87cb9951f301659df5d7232892ba0344c9836a98fce3a000bf703ef
NukeETSQL32.txt
Posted Nov 30, 2005
Authored by Lostmon

Nuke ET version 3.2 is susceptible to a remote SQL injection vulnerability. Exploit details provided.

tags | exploit, remote, sql injection
SHA-256 | 6e87a2b4b8c3d665df6e02aeb92a7b4544566df507f4204295d374396fedcca9
googleProxy.txt
Posted Nov 30, 2005
Authored by H D Moore | Site metasploit.com

The Google Search Appliance allows customization of the search interface through XSLT style sheets. Certain versions of the appliance allow a remote URL to be supplied as the path to the XSLT style sheet. This feature can be abused to perform cross-site scripting (XSS), file discovery, service enumeration, and arbitrary command execution.

tags | exploit, remote, arbitrary, xss
SHA-256 | 37203d5c09bcf28fbbeab1859e32e21af017fb6069bd81867fadf9f42db4c6f1
apboardSQL.txt
Posted Nov 30, 2005
Site s4a.cc

APBoard is susceptible to SQL injection attacks.

tags | exploit, sql injection
SHA-256 | c4a8b432f7e2718cab35efefc1c337b2c82a91e0a896aec9b7cd4861e85ca252
gmailbug.txt
Posted Nov 30, 2005
Site elhacker.net

A flaw in Google's G-Mail system allowed anyone access to any mailbox.

tags | exploit
SHA-256 | 13920fad28ecea1955b62c9880eee1f35a5562d14beb8983db8ccbe96c6896e5
TKADV2005-11-004.txt
Posted Nov 20, 2005
Authored by Tobias Klein

Versions 1.5.3 and below of phpMyFAQ contain multiple persistent cross site scripting vulnerabilities. Exploitation details provided.

tags | exploit, vulnerability, xss
SHA-256 | 1604f67bacec514f508f5c7fc8b04b4dd59120438f0d160be0c7d0947450916d
exponentCMS.txt
Posted Nov 20, 2005
Authored by Hans Wolters

ExponentCMS versions 0.96.3 and higher suffer from multiple vulnerabilities including cross site scripting and SQL injection flaws.

tags | exploit, vulnerability, xss, sql injection
SHA-256 | 0e37e6100c4a811fd37043b68ef1990fb601a7fe98d28e1341cfc5d8a760dff6
almondClassifieds.txt
Posted Nov 20, 2005
Authored by Alexiev

Almond Classifieds has a validation flaw that allows remote attacks to edit classifieds of other users.

tags | exploit, remote
SHA-256 | c2ea57c499f9b5d4f1dfc11fed136b3d188aacf69abec3c897afadb9253456ba
exophpdesk_advisory.txt
Posted Nov 20, 2005
Site soulblack.com.ar

ExoPHPDesk version 1.2 is susceptible to remote code execution attacks. Exploitation details provided.

tags | exploit, remote, code execution
SHA-256 | 0fe620751940edd520eb7465d4674eb9fc92ce0c1f7953ab546c197a9ae44898
eQuickSQLXSS.txt
Posted Nov 20, 2005
Authored by BiPi_HaCk | Site NightmareSecurity.net

e-Quick Cart is susceptible to multiple cross site scripting and SQL injection flaws. Exploitation details provided.

tags | exploit, xss, sql injection
SHA-256 | c0917d9be89c6bc5d4582e3cd2501515dc90fef1c4bbd7dc0cd3d650bec70897
phpFusion600206.txt
Posted Nov 20, 2005
Authored by Robin Verton

PHP-Fusion versions 6.00.206 and below suffer from SQL injection attacks.

tags | exploit, php, sql injection
SHA-256 | 5c759a854ef640ac086d20a4e6915f62b1f78fc833f667effd143990303e0ff0
iDEFENSE Security Advisory 2005-11-17.t
Posted Nov 20, 2005
Authored by iDefense Labs | Site idefense.com

iDEFENSE Security Advisory 11.17.05 - Remote exploitation of a directory transversal vulnerability in Qualcomm WorldMail IMAP Server allows attackers to read any email stored on the system. Exploitation details provided. Tested against Qualcomm Worldmail server version 3.0. Other versions may be vulnerable.

tags | exploit, remote, imap
advisories | CVE-2005-3189
SHA-256 | 01a2547672aa0a6bf533fe4063a9e2b47e5039c817eda96685045473de319554
mailenable154.pm.txt
Posted Nov 20, 2005
Authored by y0

This Metasploit module exploits a buffer overflow in the W3C logging functionality of the MailEnable IMAPD service. Logging is not enabled by default and this exploit requires a valid username and password to exploit the flaw. MailEnable Professional version 1.6 and prior and MailEnable Enterprise version 1.1 and prior are affected.

tags | exploit, overflow
SHA-256 | 7094ed083e302ef685862bc36e8a4e257722a626bc842428e2cb88d10634019d
google.pm.txt
Posted Nov 20, 2005
Authored by H D Moore

This Metasploit module exploits a feature in the Saxon XSLT parser used by the Google Search Appliance. This feature allows for arbitrary java methods to be called. Google released a patch and advisory to their client base in August of 2005 (GA-2005-08-m). The target appliance must be able to connect back to your machine for this exploit to work.

tags | exploit, java, arbitrary
SHA-256 | 82f85d75854b75afe8ab87082e0ea3e4d896a30bc0feaa556d1fd14f8dfcfc5e
Flashosx.c
Posted Nov 20, 2005
Authored by BassReFLeX

Proof of concept exploit that generates a flash file able to produce a denial of service condition. Relates to Flash.ocx.

tags | exploit, denial of service, proof of concept
SHA-256 | 01789d31ef803e09d39f628f47de0dae1c6fc6b70fc2a37c64a85527961cbe23
XH-FreeFTPD_remote_bof.c
Posted Nov 20, 2005
Authored by barabas, Expanders | Site x0n3-h4ck.org

FreeFTPd remote USER buffer overflow exploit for versions 1.0.8 and below.

tags | exploit, remote, overflow
SHA-256 | 8da2a5f3da96fa0cafbeead497312b5e06fcdbd17ce4badd50add24f1c732a7c
ekin103_xpl.html
Posted Nov 20, 2005
Authored by rgod | Site retrogod.altervista.org

EKINboard version 1.0.3 suffers from SQL injection and remote command execution flaws. Exploit provided.

tags | exploit, remote, sql injection
SHA-256 | 37aa21917625c66e3b965ff58b2a35944062c2cd2172cb40043662cf6e8ec5ae
kapda-13.txt
Posted Nov 20, 2005
Authored by trueend5 | Site KAPDA.ir

KAPDA Advisory - XMB version 1.9.3 Nexus (Final) and 1.9.2 Nexus are susceptible to cross site scripting and html injection flaws.

tags | exploit, xss
SHA-256 | 297f8291e00f8750c205028ac1f0e9e23651d985c7c5fbfc6d74a6faf8f0d6f4
Page 2 of 6
Back12345Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close