exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 395 RSS Feed

Files

TWiki History TWikiUsers rev Parameter Command Execution
Posted Feb 23, 2010
Authored by B4dP4nd4 | Site metasploit.com

This Metasploit module exploits a vulnerability in the history component of TWiki. By passing a 'rev' parameter containing shell metacharacters to the TWikiUsers script, an attacker can execute arbitrary OS commands.

tags | exploit, arbitrary, shell
advisories | CVE-2005-2877
SHA-256 | 6015a5f92d65c08ab6a53af23d26272da84f1c51e6957e6ce58905ecb62617c4
Easy FTP Server 1.7.0.2 Buffer Overflow
Posted Feb 23, 2010
Authored by athleet

Easy FTP Server version 1.7.0.2 remote buffer overflow exploit.

tags | exploit, remote, overflow
SHA-256 | 606a0e53d73e41e3179f9b19a3df894919b9fa12dec32e997546c5dfe0b8102c
Coppermine Photo Gallery 1.4.14 picEditor.php Command Execution
Posted Feb 20, 2010
Authored by Janek Vind aka waraxe | Site metasploit.com

This Metasploit module exploits a vulnerability in the picEditor.php script of Coppermine Photo Gallery. When configured to use the ImageMagick library, the 'quality', 'angle', and 'clipval' parameters are not properly escaped before being passed. NOTE: Use of the ImageMagick library is a non-default option. However, a user can specify its use at installation time.

tags | exploit, php
advisories | CVE-2008-0506
SHA-256 | c125091ac8421181cd0302afb6f49897b22d6f924ad3dc28cf4a23ab0afcfdee
vBseo 3.1.0 Local File Inclusion
Posted Feb 20, 2010
Authored by ViRuSMaN

vBseo version 3.1.0 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 03b163a08af5ba4845ba51e805f3345ae191975a5a507a0487799be3ea22a883
VideoSearchScript Pro 3.5 Cross Site Scripting
Posted Feb 20, 2010
Authored by listi kurdistani

VideoSearchScript Pro version 3.5 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 2762ff239c36924a13d281ad9aa8ede8773e40645cd1289428906e9908010c25
vBulletin 4.0.2 Cross Site Scripting
Posted Feb 20, 2010
Authored by indoushka

vBulletin version 4.0.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 25e2efeff135c8b89fed46a69e35543acb5d3af91e80a983b640cc8b46239903
Coupons Direct Access Bypass
Posted Feb 20, 2010
Authored by indoushka

Coupons suffers from a direct access administrative bypass vulnerability.

tags | exploit, bypass
SHA-256 | 417f88d2280d1c0147e0130dd92582aa2f2521bc358f34fa36a9a3bef780b899
Symev CMS SQL Injection
Posted Feb 20, 2010
Authored by Metropolis

Symev CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | f4a51b02ab1a40e140d6e0ed98df1865a9862f416a448534c19e28e9a82b0d7f
phpBugTracker 1.0.1 File Disclosure
Posted Feb 20, 2010
Authored by ViRuSMaN

phpBugTracker version 1.0.1 suffers from a file disclosure vulnerability.

tags | exploit, info disclosure
SHA-256 | eae26f12ff303094302534796ec86d43b4393a7f9883f6096d2e308d60f6fe7e
FlatFile Password Disclosure
Posted Feb 20, 2010
Authored by ViRuSMaN

FlatFile System suffers from a remote password disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | bc87352c872b397c0cea7e0fa6e8d42b04a71560c3d84ed2164976568d551dfd
TimeClock Cross Site Request Forgery
Posted Feb 20, 2010
Authored by ViRuSMaN

TimeClock cross site request forgery add administrator exploit.

tags | exploit, csrf
SHA-256 | 932c15b3c8ccd8c98777f4ec4b00c83849bcb01e88189a228e34ba90ff55b39f
phpAutoVideo Cross Site Request Forgery
Posted Feb 20, 2010
Authored by GoLdeN-z3r0

phpAutoVideo suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 693d03421eb960be87cb1d96dfbc8fc57143ab006242ea13aa30a08cf3942aad
Joomla Recipe SQL Injection
Posted Feb 20, 2010
Authored by Fl0riX

The Joomla Recipe component suffers from remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | c79e24d6537850a4053d04e4085939131483dfa2b615ebb22381d96c8b975d34
Litespeed Web Server 4.0.12 Cross Site Request Forgery / Cross Site Scripting
Posted Feb 20, 2010
Authored by d1dn0t

Litespeed Web Server version 4.0.12 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, web, vulnerability, xss, csrf
SHA-256 | 42695247a12bced074b1083518bea75e3a254928c1308f86d09f29d44fee0514
WSC CMS SQL Injection
Posted Feb 20, 2010
Authored by Phenom

WSC CMS suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | bcc1de040fbcae7a0ff58e503fe48378a0a6504e451bd7a60e8fe94f9fab1657
Amelia CMS SQL Injection
Posted Feb 20, 2010
Authored by Ariko-Security

Amelia CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | b271ac60d9c12ce1f944d05869040ac13cb7bb955f49e28eaaa57b0fa9e41673
Easy FTP Server 1.7.0.2 Buffer Overflow
Posted Feb 20, 2010
Authored by ThE g0bL!N

Easy FTP Server version 1.7.0.2 HTTP remote buffer overflow exploit.

tags | exploit, remote, web, overflow
SHA-256 | 5c98e2b155f2d8592a555a6bbc6cd89ee7da62b37271325ca52740165008a832
Kusaba X 0.9 Cross Site Scripting / Cross Site Request Forgery
Posted Feb 20, 2010
Authored by systemx00

Kusaba X versions 0.9 and below suffer from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | 0efffad24e809213a0331fc3b194aaf3bf0e78a066842acb193fa4966352556b
Trixbox 2.2.4 SQL Injection
Posted Feb 20, 2010
Authored by NorSlacker

Trixbox version 2.2.4 suffers from a remote SQL injection vulnerability in PhonecDirectory.php.

tags | exploit, remote, php, sql injection
SHA-256 | 46847e1e6a7c27210dca9ffa2b65a0793d47e09909319c0142363c2dc6a06cb1
PHP-Kit 1.6.1 SQL Injection
Posted Feb 19, 2010
Authored by Easy Laster

PHP-Kit version 1.6.1 suffers from a remote SQL injection vulnerability in member.php.

tags | exploit, remote, php, sql injection
SHA-256 | 04144ce3bc149adf23bb00f62d88e1218d88bba64637ce4205fe7912fa16b7f0
Joomla Community Polls Local File Inclusion
Posted Feb 19, 2010
Authored by kaMtiEz | Site indonesiancoder.com

The Joomla Community Polls component suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 3f0ff7fc4920e3d8f290a994dda63aaf12e15a63d80caf788ebc09983f7337f8
SphereCMS 1.1 Alpha Blind SQL Injection
Posted Feb 19, 2010
Authored by AmnPardaz Security Research Team | Site bugreport.ir

SphereCMS version 1.1 Alpha suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 9431cbe88f2428736d7c267ae83535ba81f25462355a52476e9c29052d518294
Open Source Classifieds 1.1.0 Alpha Cross Site Scripting / SQL Injection
Posted Feb 19, 2010
Authored by Sioma Labs

Open Source Classifieds version 1.1.0 Alpha suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | edb76ff2234a4a2dab661efc1a6f76fe7dee35d13cd0e0c436bc4ca9420b547c
FileApp 1.7 For iPhone / iPod Remote Denial Of Service
Posted Feb 19, 2010
Authored by Ale46

FileApp version 1.7 for iPhone / iPod remote denial of service exploit.

tags | exploit, remote, denial of service
systems | apple, iphone
SHA-256 | 4109c0d6bb570b74ebd596122ca5ea499cee774772a9d79c4476e2f770a5d8e7
CubeCart SQL Injection
Posted Feb 19, 2010
Authored by AtT4CKxT3rR0r1ST

CubeCart suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | db7a78ff121d3a197e0fb63d11d567199b738d089c65aa279fcc15b69e1abaa8
Page 5 of 16
Back34567Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close