what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 109 RSS Feed

Files from Janek Vind aka waraxe

Email addresscome2waraxe at yahoo.com
First Active2004-02-03
Last Active2019-08-08
waraxe-2005-SA039.txt
Posted Jan 15, 2005
Authored by Janek Vind aka waraxe | Site waraxe.us

SGallery version 1.01 suffers from path disclosure, file inclusion, and SQL injection bugs.

tags | exploit, sql injection, file inclusion
SHA-256 | 63e83634fdc1f28b76fb5d6c48aae1837f5ddd74bbe1b90923816331b5dbc867
waraxe-2004-SA038.txt
Posted Nov 20, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

The Event Calendar module for PHP-Nuke suffers from cross site scripting, path disclosure, SQL injection, and script insertion attacks.

tags | exploit, php, xss, sql injection
SHA-256 | a36efcbb8d52ca32bb59f65773b5a67d142f0908a7cc7268b38847facdb0b68d
waraxe-2004-SA037.txt
Posted Nov 12, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

A SQL injection bug exists in Phorum versions 5.0.12 and below. Exploitation example given.

tags | exploit, sql injection
SHA-256 | 273145d61ee5d47316156922e22a25efedd2e1f51e7919932c33fb24ac3b2ffe
waraxe-2004-SA036.txt
Posted Jul 18, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

The third advisory in a three part series discussing more flaws in PHP Nuke ranging from full patch disclosure and cross site scripting to SQL injection attacks.

tags | exploit, php, xss, sql injection
SHA-256 | 09c091f1f233ed1902d0aa74ac5da411fb080ada57495aec27ef66ae17793c0f
waraxe-2004-SA035.txt
Posted Jul 16, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

PHP Nuke versions 6.x through 7.3 suffer from cross site scripting and SQL injection flaws.

tags | exploit, php, xss, sql injection
SHA-256 | 70f19d1381815ef51a0a74bdb7a4451ff7d7ed90c0e356680bec2079856ee621
waraxe-2004-SA034.txt
Posted Jul 16, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

PHPBB 2.0.8 is susceptible to full patch disclosure and cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss
SHA-256 | 371b61e8aff45c61219490cd0843e2dbc477151643dbfbae0bf932f620e3e71b
waraxe-2004-SA032.txt
Posted Jun 14, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

PHP-Nuke versions 6.x - 7.3 suffer from multiple cross site scripting flaws and one SQL injection attack.

tags | exploit, php, xss, sql injection
SHA-256 | 91617b0086be744417da762ae75a78ca3a9666abf5c6dfe2b7512cbada4af510
waraxe-2004-SA031.txt
Posted May 30, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

e107 version 0.615 is vulnerable to full path disclosure, cross site scripting, remote file inclusion, and multiple SQL injection attacks.

tags | exploit, remote, xss, sql injection, file inclusion
SHA-256 | 4648aabab47f7963e174173f3f04af7209fa7f43cb1be7217a8b81b3f861061f
waraxe-2004-SA029.txt
Posted May 18, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

PHP-Nuke versions 6.x to 7.3 allow for possible file inclusion.

tags | advisory, php, file inclusion
SHA-256 | 4d43d506de22ba54c5b3d72da244b7c2d217bc83ffb12200388c179db7006a74
waraxe-2004-SA028.txt
Posted May 9, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

The Nuke jokes module for PHPNuke is susceptible to path disclosure, cross site scripting, and SQL injection attacks.

tags | exploit, xss, sql injection
SHA-256 | 2c563bf041f397f2368286aa9f5f303cec749c7907a27ee19b36a9362644cb89
waraxe-2004-SA027.txt
Posted May 7, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

PHP-Nuke version 6.x through 7.2 suffer from various SQL injection and cross site scripting vulnerabilities.

tags | exploit, php, vulnerability, xss, sql injection
SHA-256 | ad379be5f5c68b56e0ab441f91d7a6268421e39c8a16990e45fab5dbff03f558
waraxe-2004-SA026.txt
Posted May 4, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

Multiple vulnerabilities in Coppermine Photo Gallery version 1.2.2b for PhpNuke. These range from small flaws like path disclosure, cross site scripting, and arbitrary directory browsing, to remote command execution on the underlying server.

tags | advisory, remote, arbitrary, vulnerability, xss
SHA-256 | 7415e5415321c84c93f3ecfdfa2f75966b919e898dbdd4cc97a03587a1583d66
waraxe-2004-SA024.txt
Posted Apr 28, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

Network Query Tool version 1.6 suffers from a cross site scripting and full path disclosure vulnerability.

tags | advisory, xss
SHA-256 | fa1523d9e83ebd95e254ed0fdedcdbbee7fbc285f5cf83a0945a61cc86b6c446
waraxe-2004-SA022.txt
Posted Apr 22, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

PostNuke 0.726 Phoenix is susceptible to multiple path disclosure and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 2421cfda93e82828c31ba0e759ac8a875641a6177c67906a0428a997b7c95c75
waraxe-2004-SA021.txt
Posted Apr 22, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

The phprofession 2.5 module for PostNuke is susceptible to path disclose, cross site scripting, and possible SQL injection attacks.

tags | exploit, xss, sql injection
SHA-256 | f1afb06444f45b473086acaefc01e5542aee6857caf546dc7aeb916bde1b06e2
Phorum347SQL.pl
Posted Apr 18, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

Remote exploit that makes use of a SQL injection vulnerability in Phorum version 3.4.7.

tags | exploit, remote, sql injection
SHA-256 | 9f4cf79038884aae5dcd94f78963562f26d6d2bddc3d43b27874e515c90298cb
waraxe-2004-SA019.txt
Posted Apr 18, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

A critical SQL injection bug exists in Phorum version 3.4.7 that allows a remote attacker to view sensitive data. The problem code lies in userlogin.php.

tags | advisory, remote, php, sql injection
SHA-256 | 9a6afe98513c69946e7f30f31b5b192c8e6123e0b8371ba1df208f890ff5610d
waraxe-2004-SA016.txt
Posted Apr 15, 2004
Authored by Janek Vind aka waraxe

Cross site scripting bugs exist in PHP-Nuke versions 6.x through 7.2.

tags | advisory, php, xss
SHA-256 | 0da992c6bc892cac7f6b99a84635a87953f1c508e250c836c2ccfb9e521244ce
waraxe-2004-SA018.txt
Posted Apr 12, 2004
Authored by Janek Vind aka waraxe

PHP-Nuke versions 6.x through 7.2 have a flaw that allows for administrator level authentication bypass.

tags | advisory, php
SHA-256 | e506b19ed8619a63fd70561c25235584398ff9dd2637205db300cc42e775de9e
waraxe-2004-SA017.txt
Posted Apr 12, 2004
Authored by Janek Vind aka waraxe

PHP-Nuke versions 6.x through 7.2 have a flaw that allows for user level authentication bypass.

tags | advisory, php
SHA-256 | 24b939d8a82382eed2da1caaffa8502f8d77754e47102fee8be0407d1a625590
waraxe-2004-SA015.txt
Posted Apr 8, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

NukeCalendar version 1.1.a, the PHP-Nuke Calendar Module, suffers from SQL injection, cross site scripting, and full path disclosure flaws.

tags | exploit, php, xss, sql injection
SHA-256 | 9ed68b9089dd4b93ef762cb223c7d26e800b51eb979692145d29e2422ab62f3f
waraxe-2004-SA014.txt
Posted Apr 8, 2004
Authored by Janek Vind aka waraxe | Site waraxe.us

AzDGDatingLite version 2.1.1 is susceptible to cross site scripting attacks.

tags | advisory, xss
SHA-256 | e325332f1004ce749d1d099b4a55c1d8ed2f024bc85f8b126169bb5fcd844b80
waraxe-2004-SA013.txt
Posted Mar 27, 2004
Authored by Janek Vind aka waraxe

A SQL injection vulnerability in PHPBB versions 2.0.8 and below allows an attacker the ability to extract the administrator password hash.

tags | exploit, sql injection
SHA-256 | 79435b6428a517c7a224d8c38bddd4759ed0c9fd6cec34a473af09fcbbf5d078
waraxe-2004-SA012.txt
Posted Mar 27, 2004
Authored by Janek Vind aka waraxe

Multiple SQL injection and cross site scripting vulnerabilities lie in XMB 1.8 Partagium SP3 and 1.9 Nexus Beta. Full exploitation syntax given.

tags | exploit, vulnerability, xss, sql injection
SHA-256 | bd4cabcfa43f68af65bfece48818f4435386a8180e4f61c0fdeb6b20508d212d
waraxe-2004-SA008.txt
Posted Mar 23, 2004
Authored by Janek Vind aka waraxe

PHP-Nuke versions 6.x through 7.1.0 allow for link inclusions that can force an administrator to unknowingly add a superuser.

tags | advisory, php
SHA-256 | 31cc6559f4c7a91a97c76521c220fd991009d04a5c2dbeddbe787fadbdf0b497
Page 4 of 5
Back12345Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close