what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 195 RSS Feed

Files

makit-sql.txt
Posted Jan 27, 2007
Authored by ajann

makit news/blog poster versions 3 and below suffer from a remote SQL injection vulnerability in news_page.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 9d971d37dd0a2964f7b78dd6b427200905345294e381a3aca416fadf91ad83d3
aspedge12b-sql.txt
Posted Jan 27, 2007
Authored by ajann

ASP EDGE versions 1.2b and below suffer from a remote SQL injection vulnerability in user.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 1e33aa05c09debb585604e20f242e058dee9e37283a03b9b377537c31d839418
aspnews3-sql.txt
Posted Jan 27, 2007
Authored by ajann

ASP NEWS version 3 suffers from a remote SQL injection vulnerability in news_detail.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 5380209fc780ce1991271b20465815ce050a987bc39d0d1b6f274e6a381e5fb0
gps12-sql.txt
Posted Jan 27, 2007
Authored by ajann

GPS version 1.2 suffers from a remote SQL injection vulnerability in print.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | cc591995364d5b916d837484b9841b6e9f180e6df2b57d4cbae3773daeeb406f
xero-rfi.txt
Posted Jan 27, 2007
Authored by XORON

Xero Portal version 1.2 local file inclusion exploit.

tags | exploit, local, code execution, file inclusion
SHA-256 | 09941014a410f6135b305eac88986452312c2ec5889f5ff03454e1e137392e9b
ProCheckUp Security Advisory 2006.14
Posted Jan 27, 2007
Authored by Adrian Pastor, ProCheckUp

IP Phones based on the Centrality Communications/Aredfox PA168 chipset suffer from a weak session management vulnerability. Exploit included.

tags | exploit
SHA-256 | 1821bfb5f8cd756cd89b28517356ba2347b103a4fe336db4aabb7a4ab85a7751
Echo Security Advisory 2007.62
Posted Jan 24, 2007
Authored by y3dips, Echo Security | Site echo.or.id

Upload Service version 1.0 suffers from a remote file inclusion flaw.

tags | exploit, remote, file inclusion
SHA-256 | ba0bfa958df599ce727eaf211393014b2e9944204f9b13abb3650607af4ea8ee
bitweaver-xss.txt
Posted Jan 24, 2007
Authored by CorryL | Site x0n3-h4ck.org

Bitweaver version 1.3.1 is susceptible to cross site scripting attacks.

tags | exploit, xss
SHA-256 | 3c529894f4f1dae48debfb510b1132234ee5cd8c473db9dfd614319f61e4c675
mssploit.txt
Posted Jan 24, 2007
Authored by porkythepig

Microsoft Visual C++ 6.0 is prone to a stack based memory corruption vulnerability during the processing of .RC resource files. Exploit included.

tags | exploit
SHA-256 | 8696e5a5416cd2f40b051e194616ca6a631f2a6140fa34b75255ec156816cf72
checkpoint-bypass.txt
Posted Jan 24, 2007
Authored by Nir Goldshlager, Roni Bachar

Check Point Connectra End Point is susceptible to a bypass flaw.

tags | exploit, bypass
SHA-256 | 9c4bd92a1c99cc73f4cff85e7926a401ced28074124ee8b438d2858e5df2c682
fishcart-sql.txt
Posted Jan 24, 2007
Authored by laurent gaffie | Site s-a-p.ca

Fish Cart is susceptible to SQL injection attacks.

tags | exploit, sql injection
SHA-256 | 2a6bbf15f38a3aa2d131fc77d3ed42070f0ce7357d7ee50f55e87b2ad61f7727
MOAB-23-01-2007.pct
Posted Jan 24, 2007
Authored by LMH | Site projects.info-pull.com

Month of Apple Bugs - A vulnerability exists in the handling of ARGB records (Alpha RGB) within PICT images, that leads to an exploitable memory corruption condition. This is the proof of concept exploit in .pct format that demonstrates this vulnerability.

tags | exploit, proof of concept
systems | apple
advisories | CVE-2007-0462
SHA-256 | cae45c1818004c6d0fa86b4df9d9713a53b3af47e14c3b7813983523855384ba
MOAB-22-01-2007.rb.txt
Posted Jan 24, 2007
Authored by Kevin Finisterre, LMH | Site projects.info-pull.com

Month of Apple Bugs - InputManager provided by the user. Code within the input manager will run under wheel privileges. In combination with diskutil and a wheel-writable setuid binary, this allows unprivileged users to gain root privileges. This is the proof of concept exploit that demonstrates this vulnerability.

tags | exploit, root, proof of concept
systems | apple
advisories | CVE-2007-0023
SHA-256 | 649846dcedfd17c9b293d5b586249ab6641f7f2f4b7077ce8728d64523c3794e
MOAB-21-01-2007.rb.txt
Posted Jan 24, 2007
Authored by Kevin Finisterre, LMH | Site projects.info-pull.com

Month of Apple Bugs - The preference panes setuid helper, writeconfig, makes use of a shell script which lacks of PATH sanitization, allowing users to execute arbitrary binaries under root privileges. This is the proof of concept exploit that demonstrates this vulnerability.

tags | exploit, arbitrary, shell, root, proof of concept
systems | apple
advisories | CVE-2007-0022
SHA-256 | bc6a6482959f9f36bea4aefc8de705de29960037c93a88c4c71f6382b1e18c26
MOAB-20-01-2007.tgz
Posted Jan 24, 2007
Authored by Kevin Finisterre, LMH | Site projects.info-pull.com

Month of Apple Bugs - Apple iChat AIM URI scheme (referred as the 'url handler') handling is affected by a classic format string vulnerability, allowing remote users to cause a denial of service condition or arbitrary code execution. This is the proof of concept exploit that demonstrates this vulnerability.

tags | exploit, remote, denial of service, arbitrary, code execution, proof of concept
systems | apple
advisories | CVE-2007-0021
SHA-256 | c72c10a4e48008dc4508828d784627e557382e0c510236900986c74a82eab3f4
MOAB-19-01-2007.tgz
Posted Jan 24, 2007
Authored by Kevin Finisterre, LMH | Site projects.info-pull.com

Month of Apple Bugs - Transmit does not allocate enough space when dealing with the string passed on via the ftps:// URL handler, leading to an exploitable heap-based buffer overflow condition. This is the proof of concept exploit.

tags | exploit, overflow, proof of concept
systems | apple
advisories | CVE-2007-0020
SHA-256 | 9080e0d951067307f9ad1fe2f1c855dcceaac4dd146e38b6c610d666ed9c242f
oracle10g-3.txt
Posted Jan 24, 2007
Authored by Joxean Koret

Oracle 10g SYS.DBMS_CDC_IMPDP.BUMP_SEQUENCE PL SQL injection exploit.

tags | exploit, sql injection
SHA-256 | ff6fb0134cfc47331035b5f15c58c56826677223f77908b27cd35cbb99a246e5
oracle10g-2.txt
Posted Jan 24, 2007
Authored by Joxean Koret

Oracle 10g SYS.KUPW$WORKER.MAIN PL SQL injection exploit.

tags | exploit, sql injection
SHA-256 | 8beaa06d01b567da971ba185e7339af52a5064fb0a7948237f40db6c321bfd9a
oracle10g-1.txt
Posted Jan 24, 2007
Authored by Joxean Koret

Oracle 10g SYS.KUPV$FT.ATTACH_JOB PL SQL injection exploit.

tags | exploit, sql injection
SHA-256 | ed9f5b91026cb15dc943ab62c9204654d1437846a3973ebd51b5c69cb614ffde
votepro40-exec.txt
Posted Jan 24, 2007
Authored by r0ut3r

Vote-Pro version 4.0 remote code execution exploit that makes use of poll_frame.php.

tags | exploit, remote, php, code execution
SHA-256 | 00009b7e4146bd3200b4090538fa6e83c6a88916b5ac2a8a616d4ecc63a8ee0c
bbclone-rfi.txt
Posted Jan 24, 2007
Authored by Dr Max Virus

BBClone version 0.31 suffers from a remote file inclusion vulnerability in selectlang.php.

tags | exploit, remote, php, code execution, file inclusion
SHA-256 | e7adc8dfccb70309e1f6bfc9f2a2afead0b714d3314269447ae6dba45d0442b6
phpxd03-rfi.txt
Posted Jan 24, 2007
Authored by Dr Max Virus

phpXD versions 0.3 and below remote file inclusion exploit.

tags | exploit, remote, code execution, file inclusion
SHA-256 | a458745ac671c26d9c651cb1bd37fcbf6d430224b0bdad3671c24d4cac1d8cff
sami-dos.txt
Posted Jan 24, 2007
Authored by shinnai | Site shinnai.altervista.org

Sami HTTP Server version 2.0.1 remote denial of service exploit.

tags | exploit, remote, web, denial of service
SHA-256 | 2326d69f70737e6f9c98f0454fa72eeb1651ffc0778b1363535a83c316ced6b0
JvmGifVulPoc.java.txt
Posted Jan 24, 2007
Authored by luoluo

Sun Microsystems Java GIF file parsing memory corruption vulnerability proof of concept exploit.

tags | exploit, java, proof of concept
SHA-256 | bef001eada19b002d8d220d83f479254605f9fc79694a55346531c4c2aa13a42
freeforum090-rfi.txt
Posted Jan 24, 2007
Authored by BorN To K!LL

FreeForum version 0.9.0 suffers from a remote file inclusion vulnerability in index.php.

tags | exploit, remote, php, code execution, file inclusion
SHA-256 | e4902e71f33f297d1b5dc3c869fcc1b26c9122c8001e6591f0ddbbbbd713ee7c
Page 2 of 8
Back12345Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Google Patches Critical Chrome Vulnerability
Posted Apr 24, 2024

tags | headline, flaw, google, patch, chrome
Hackers Are Using Developing Countries For Ransomware Practice
Posted Apr 24, 2024

tags | headline, hacker, malware, cybercrime, fraud, cryptography
Authorities Investigate LabHost Users After Phishing Service Shutdown
Posted Apr 23, 2024

tags | headline, cybercrime, fraud, phish
Windows Vulnerability Reported By The NSA Exploited To Install Russian Malware
Posted Apr 23, 2024

tags | headline, government, microsoft, usa, russia, flaw, cyberwar, spyware, nsa
UnitedHealth Admits Breach Could Cover Substantial Proportion Of People In America
Posted Apr 23, 2024

tags | headline, hacker, privacy, data loss
Microsoft DRM Hack Could Allow Movie Downloads From Streaming
Posted Apr 23, 2024

tags | headline, microsoft, flaw, pirate
Over A Million Neighbourhood Watch Members Exposed
Posted Apr 23, 2024

tags | headline, privacy, britain, data loss
MITRE Hacked By State Sponsored Group Via Ivanti Zero Days
Posted Apr 23, 2024

tags | headline, hacker, government
Russia's Sandworm APT Linked To Attack On Texas Water Plant
Posted Apr 18, 2024

tags | headline, malware, usa, russia, cyberwar, scada
EU Tells Meta It Can't Paywall Privacy
Posted Apr 18, 2024

tags | headline, government, privacy, facebook, social
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close