what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 84 RSS Feed

Files

lyris_attachment_mssql.pm.txt
Posted Dec 14, 2005
Authored by H D Moore | Site metasploit.com

This Metasploit module exploits a SQL injection flaw in the Lyris ListManager software for Microsoft SQL Server. This flaw allows for arbitrary commands to be executed with administrative privileges by calling the xp_cmdshell stored procedure. Versions 5.0 through 8.8a are affected.

tags | exploit, arbitrary, sql injection
SHA-256 | 7d6ccc51f336ce0a2d0a9c33c17d7a6238325d81dd91de8436bfc6be6ef6c9da
lyris-listmanager.txt
Posted Dec 14, 2005
Authored by H D Moore | Site metasploit.com

The Lyris ListManager software versions 5.0 through 8.8a are vulnerable to numerous SQL injection, source code disclosure, and authentication bypass flaws. Full details provided.

tags | exploit, sql injection
SHA-256 | 10f2e8c21eea54d36f999ca9d94097e8dd67de908cd6f954ec2432ce49137136
ie_december_crash_xhtmltrans.txt
Posted Dec 14, 2005
Authored by Markus Heer | Site pentagroup.ch

A pre tag with the style element white-space:normal; crashes Internet Explorer 6.0 if the pre tag contains two or more 'single' tags (for example, <span />). The bug was tested with Windows XP SP2 and Internet Explorer 6.

tags | exploit
systems | windows
SHA-256 | 0ede0010d3fdddf412ac3a8c64361ab48c73521266c5bc1be96bf5c5fe82786d
browserDoS.txt
Posted Dec 14, 2005
Authored by Ziplock

Simple javascript related denial of service that primarily affects Internet Explorer. Version 6.0 was tested and stayed unresponsive for over 3 minutes. Firefox does not appear truly affected as it seems to recover although it may freeze for a short period of time.

tags | exploit, denial of service, javascript
SHA-256 | 6b2abb16d6a23a69e69135004e0b1df0943fac4a1100cdc11d1bae55bd8f50dc
perl-cal-29920.txt
Posted Dec 14, 2005
Authored by Sumit Siddharth

Perl-Cal version 2.99.20, the CGI script written by Acme Software, is susceptible to cross site scripting.

tags | exploit, cgi, perl, xss
SHA-256 | 409897c86dca6af8b40a1da0d915383377f662d53d49fbe1013b03ea0ee1c830
wbaker_260_xpl.txt
Posted Dec 14, 2005
Authored by rgod | Site retrogod.altervista.org

Website Baker versions 2.6.0 and below suffer from SQL injection, login bypass, and remote code execution flaws. Exploit included.

tags | exploit, remote, code execution, sql injection
SHA-256 | b49d9398dea8569ec129afc9974e4c07277a1adf4ab648aa0b2b10e4c0cf1866
envo.txt
Posted Dec 14, 2005
Authored by X1ngBox

eNvolution, the fork of PostNuke, is susceptible to cross site scripting and SQL injection attacks.

tags | exploit, xss, sql injection
SHA-256 | 865c68bd2e1d4c7b91f6db4fb634ae6b79e22185ec0f60cfad95bdde189f228f
toendaCMS.txt
Posted Dec 14, 2005
Authored by X1ngBox

ToendaCMS version 0.6.2.1 is susceptible to cross site scripting attacks.

tags | exploit, xss
SHA-256 | 8f07ad79529cd8415eb4969dee95f03753f42d5c0e8c648f163a57ae4668e4c8
nodez.txt
Posted Dec 14, 2005
Authored by X1ngBox

Nodez version 4.6.1.1 is susceptible to multiple cross site scripting flaws.

tags | exploit, xss
SHA-256 | 291282274ca509c8c0f638d02f1712db7f423e1ce1af2c974796bff6dc2c3ea4
flat.txt
Posted Dec 14, 2005
Authored by X1ngBox

FlatCMS version 1.01 is susceptible to multiple cross site scripting flaws.

tags | exploit, xss
SHA-256 | 7b8f8bdcc7e2731c49b3096d3f99ac914f0836d360b46fccd53014f27c4c9975
ztml.txt
Posted Dec 14, 2005
Authored by X1ngBox

TML CMS version 0.5 is susceptible to cross site scripting and SQL injection attacks.

tags | exploit, xss, sql injection
SHA-256 | 0bd8e18d3c0aa50a112ed3e2c08e9c7476f19e8955c80add7a02ff13937ff99e
bbs.c
Posted Dec 14, 2005
Authored by unitedasia

SimpleBBS versions 1.1 and below remote command execution exploit.

tags | exploit, remote
SHA-256 | 7803041c087492f87adf6167d27ddee161f5b1f9f28bff149d9e7396b9721a17
ThWboard.txt
Posted Dec 14, 2005
Authored by trueend5 | Site kapda.ir

ThWboard version 3 beta 2.8 is susceptible to HTML injection, cross site scripting, and SQL injection attacks. Details provided.

tags | exploit, xss, sql injection
SHA-256 | b6748f11eab63ffe76a6f2b734fd18a8b4a579dc4eeca78ae82b52b960a64150
appfluent.txt
Posted Dec 14, 2005
Authored by c0ntex | Site open-security.org

Appfluent Database IDS version 2.0 suffers from an environment variable overflow that can be manipulated using sudo as an attack vector. Exploit provided.

tags | exploit, overflow
SHA-256 | 27bbf57c930750edaa25ffa94bf598ee98a2503f8cb18f967e8422de7d3533a2
sugar_suite_40beta.txt
Posted Dec 14, 2005
Authored by rgod | Site retrogod.altervista.org

SugarSuite Open Source versions 4.0beta and below suffer from remote code execution and file inclusion flaws. Exploit provided.

tags | exploit, remote, code execution, file inclusion
SHA-256 | ebc5a4123b1fbce281924c7e04a5037ab9070017bd8aceeb7663198ae7f16620
VPNcheckpoint.txt
Posted Dec 14, 2005
Authored by Viktor Steinmann

Checkpoint SecureClient NGX Security Policy can be easily disabled.

tags | exploit
SHA-256 | 35f23d488b30efd1dce89d0af4b51371e1f2752103ed34866c152ab9ec77b113
DRZESHMS.txt
Posted Dec 14, 2005
Authored by Vipsta

DRZES HMS is susceptible to cross site scripting and SQL injection vulnerabilities.

tags | exploit, vulnerability, xss, sql injection
SHA-256 | bcdb5ac100a453d27c725347e333b7fd8eaf2d7bd0d903786aba6e7c6d30306b
simplebbs_11_xpl.html
Posted Dec 9, 2005
Authored by rgod | Site retrogod.altervista.org

SimpleBBS versions 1.1 and below remote command execution exploit.

tags | exploit, remote
SHA-256 | 345ef17e4d499d035a6e2ac4b77bd243fcc1f60f9dcef8df7dc5ff909293ee98
hordeGraphic.txt
Posted Dec 9, 2005
Authored by Igor Franchuk

All versions of the Horde IMP Webmail client are susceptible to cross site scripting attacks.

tags | exploit, xss
SHA-256 | 2f7f5467ab0ea3513404404714c47e38d96ce191db569f9075bc9f24d75ac16d
blog12SQL.txt
Posted Dec 9, 2005
Authored by Vipsta

The Blog System version 1.2 is susceptible to SQL injection attacks.

tags | exploit, sql injection
SHA-256 | dc5d2a154355bbd334a0e219253935de6e5ee169d5d4371411787698f9a026c7
mambo452_xpl.html
Posted Dec 9, 2005
Authored by rgod | Site retrogod.altervista.org

Mambo versions 4.5.2 and below Globals overwrite and remote command execution exploit.

tags | exploit, remote
SHA-256 | f689837db099f7691c035bb6973b4ed195d0366d2640148e1b8646ed4c270995
firefox-1.5.txt
Posted Dec 7, 2005
Authored by Ziplock

Firefox 1.5 suffers from a denial of service condition when a large topic gets saved automatically to the history.dat file. This only works on a small amount of the Firefox 1.5 users, and it is not apparent that the problem is a buffer overflow. More information available here.

tags | exploit, denial of service, overflow
SHA-256 | 3d991f748dc673714c5369f8086f4bf5f038dbbf3f4bc4b0bd6ef6e9f4bc3074
BluePIMped.diff
Posted Dec 7, 2005
Authored by Kevin Finisterre | Site digitalmunition.com

Patch for ussp-push that allows you to exploit the overflows discovered in the Widcomm BTStackServer.

tags | exploit, overflow
SHA-256 | 0e42bdfaf64c52451da826f13806b1f19737198ef4ee6c79b7376721678cb3cd
eXtremeTraversal.txt
Posted Dec 7, 2005
Authored by tommie1

eXtreme Styles mod versions 2.2.1 and below are susceptible to directory traversal attacks.

tags | exploit
SHA-256 | 38e8c7c5270528f8b8bbf8b9695a566043f2ed8a59082f7375fae510219da931
sobexsrv.pl.txt
Posted Dec 7, 2005
Authored by Kevin Finisterre | Site digitalmunition.com

Remote exploit that makes use of a format string vulnerability in sobexsrv.

tags | exploit, remote
SHA-256 | 70af8edf82d16d5c0a15f619b7c245147a561588641160e58d5d55fedecb6bb3
Page 3 of 4
Back1234Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Google Patches Critical Chrome Vulnerability
Posted Apr 24, 2024

tags | headline, flaw, google, patch, chrome
Hackers Are Using Developing Countries For Ransomware Practice
Posted Apr 24, 2024

tags | headline, hacker, malware, cybercrime, fraud, cryptography
North Korean Hackers Hijack Antivirus Updates For Malware Delivery
Posted Apr 24, 2024

tags | headline, hacker, government, malware, flaw, cyberwar, military, north korea
CISA Warns Of Windows Print Spooler Flaw After Microsoft Sees Russian Exploitation
Posted Apr 24, 2024

tags | headline, government, microsoft, usa, russia, flaw, cyberwar
US Charges Iranians With Cyber Snooping On Government, Companies
Posted Apr 24, 2024

tags | headline, hacker, government, privacy, usa, cyberwar, spyware, iran
TensorFlow AI Models At Risk Due To Keras API Flaw
Posted Apr 24, 2024

tags | headline, flaw
Authorities Investigate LabHost Users After Phishing Service Shutdown
Posted Apr 23, 2024

tags | headline, cybercrime, fraud, phish
Windows Vulnerability Reported By The NSA Exploited To Install Russian Malware
Posted Apr 23, 2024

tags | headline, government, microsoft, usa, russia, flaw, cyberwar, spyware, nsa
UnitedHealth Admits Breach Could Cover Substantial Proportion Of People In America
Posted Apr 23, 2024

tags | headline, hacker, privacy, data loss
Microsoft DRM Hack Could Allow Movie Downloads From Streaming
Posted Apr 23, 2024

tags | headline, microsoft, flaw, pirate
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close