exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 159 RSS Feed

Files from Aliaksandr Hartsuyeu

Real NameAliaksandr Hartsuyeu
Email addressprivate
Websiteevuln.com
First Active2006-01-04
Last Active2011-02-28
View User Profile
EV0092.txt
Posted Mar 15, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

eVuln Advisory: discussion - xhawk.net BBCode 'img' XSS & SQL Injection Vulnerabilities

tags | advisory, vulnerability, sql injection
SHA-256 | ba1161cfe035a24bc8161b418af746e2350b041ecd0228af2d6fe63cb550535d
EV0091.txt
Posted Mar 14, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

CyBoards PHP Lite v1.25 suffers from SQL injection in post.php if magic_quotes_gpc is turned off.

tags | advisory, php, sql injection
SHA-256 | 25b52c8d14bf14e8abc261c3a2e971ada7de713336f7557a65f7c4c4b85b198a
EV0090.txt
Posted Mar 13, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Vegas Forum version 1.0 suffers from SQL injection.

tags | exploit, sql injection
SHA-256 | 45ac70a8bdd5e72938e369b5dafe84ada75903492a47c4c323d049dce6ac57b5
EV0089.txt
Posted Mar 11, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

FreeForum version 1.2 is susceptible to PHP code execution and cross site scripting flaws.

tags | exploit, php, code execution, xss
advisories | CVE-2006-0957, CVE-2006-0958
SHA-256 | b4a88688c8368c2f89f2856c431b289c2361744d9ab961d2b1ba8efd04417424
EV0088.txt
Posted Mar 9, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

EKINboard v1.0.3 suffers from XSS and SQL injection vulnerabilities.

tags | exploit, vulnerability, sql injection
SHA-256 | 5c695afffd1db10633bdd50a5e027ff01f49e6cd189a3c4e0941798cbf0c5f1c
EV0087.txt
Posted Mar 9, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

ShoutLIVE v1.1.0 is vulnerable to PHP code execution.

tags | exploit, php, code execution
SHA-256 | 8effbf35e363d8623acf78d3cbca368b3e3ce6b04c14377a8eb9c7907224befe
EV0086.txt
Posted Mar 8, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Simple Machines Forum, or SMF, version 1.0.6 is susceptible to a cross site scripting vulnerable in the X-Forwarded-For directive that can be used to commit attacks against an administrator.

tags | exploit, xss
advisories | CVE-2006-0896
SHA-256 | bbb04a2ae436a9b5a1fae7328d29d939bcf34d704c12a5f228d83dc6d734db82
EV0085.txt
Posted Mar 8, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Easy Forum version 2.5 is susceptible to cross site scripting attacks.

tags | exploit, xss
advisories | CVE-2006-0877
SHA-256 | 2528a10db4d0e57daa651ace1b7150286851c7ea5c9eb12323f0f66b33533f2e
EV0084.txt
Posted Mar 6, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Skate Board version 0.9 is susceptible to SQL injection, cross site scripting, authentication bypass, and PHP code injection flaws.

tags | exploit, php, xss, sql injection
advisories | CVE-2006-0809, CVE-2006-0810, CVE-2006-0811
SHA-256 | 3a2dd7ec80e31dddd7d038168493fc1516d96e702e32204bf29c7f98ba83733b
EV0083.txt
Posted Mar 3, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

E-Blah Platinum is susceptible to cross site scripting via the use of HTTP_REFERER.

tags | exploit, xss
advisories | CVE-2006-0829
SHA-256 | 55babc2e2971ea8c2ef0b403d2867a558f33e305e565e64a60470a45507252f1
EV0082.txt
Posted Mar 3, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Leif M. Wright's Blog version 3.5 is susceptible to information disclosure, authentication bypass, code execution, and cross site scripting flaws. Exploit details provided.

tags | exploit, code execution, xss, info disclosure
advisories | CVE-2006-0843, CVE-2006-0844, CVE-2006-0845
SHA-256 | f39ddb0473140f0584760e53110a3ed5d4f6b2109e11e0b117609ca692e20054
EV0081.txt
Posted Mar 2, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

PerlBlog versions 1.09b, 1.09, and 1.08 have been discovered as being susceptible to arbitrary file creation, directory traversal, and cross site scripting flaws. Exploit details provided.

tags | exploit, arbitrary, xss
advisories | CVE-2006-0780, CVE-2006-0781, CVE-2006-0782
SHA-256 | 72ed92e21a0f91bb5af613c13b654c8efae4c552a39aac79386469c49866df5b
EV0078.txt
Posted Mar 2, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Quirex versions 2.0 and below suffer from an arbitrary file disclosure vulnerability.

tags | exploit, arbitrary
advisories | CVE-2006-0795
SHA-256 | 745945ff8b2e17ebefc0ad107dc6634c129580f50bcc5661a7db44bd9ed11fca
EV0077.txt
Posted Feb 26, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Guestext version 1.0 is susceptible to cross site scripting attacks.

tags | exploit, xss
advisories | CVE-2006-0776
SHA-256 | 325f9ac22671d90b92992e8b0593fdad85244048bb98ab1a9c7d6ae3d153ecd8
EV0076.txt
Posted Feb 26, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Guestext version 1.0 suffers from a remote command execution flaw. Exploitation details provided.

tags | exploit, remote
advisories | CVE-2006-0777
SHA-256 | ad8e22d4bd67bd67d25b0053845cdf9707c8101d9110eb03b8f3bb75193c470b
EV0075.txt
Posted Feb 26, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Teca Diary PE version 1.0 is susceptible to SQL injection attacks. Exploitation details provided.

tags | exploit, sql injection
SHA-256 | 8eb6e205d3a2aacdf35639c2acb12f3308e47da9037f9c177e4824bd4fe395f7
EV0073.txt
Posted Feb 22, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Magic Downloads 1.1.3 allows untrusted users to make changes to config.php.

tags | exploit, php
SHA-256 | 96bf8fe88d2fd2c64aac14658763937cbe1ed2ea302ca3a8bf2b53a5b96a1a44
EV0072.txt
Posted Feb 22, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Reamday Enterprises Magic News Lite version 1.2.3 is vulnerable to remote code execution.

tags | exploit, remote, code execution
SHA-256 | e3744687c220f765c14c79cfa2a6b44fa9259a239ef033802305a5f454950be6
EV0074.txt
Posted Feb 22, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

BirthSys 3.1 suffers from SQL injection.

tags | exploit, sql injection
SHA-256 | 4bbc6fc29c3fea2a0b6c2f4039628116c26844502ccc25f349ee9e4d6fda7afb
EV0063.txt
Posted Feb 17, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

PHP Event Calendar 1.5 - Username and Password isn't sanitized before being written to users.php file. This can be used to make XSS attack or corrupt users data.

tags | exploit, php
SHA-256 | 6fe33870803ff48653d9b8d93817cbdbd02ddde951340c9cfcce95f0457e37b2
EV0062.txt
Posted Feb 17, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

2200net Calendar system suffers from multiple SQL injection vulnerabilities.

tags | exploit, vulnerability, sql injection
SHA-256 | 701e0768e2d09f72728a2e4fde58e2e3143706d767a2cae20c4cbfbc90181844
EV0080.txt
Posted Feb 17, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

M. Blom HTML::BBCode perl module XSS Vulnerabilities

tags | exploit, perl, vulnerability
SHA-256 | aeb79dbda9134063a6990d67c4e4d244cf5913da9dcf79e35f4207352f53b74a
EV0079.txt
Posted Feb 17, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

My Blog 1.63 suffers from XSS in the BBcode url and img tags.

tags | exploit
SHA-256 | c914c74f20c73972ef5c5ef53d75750677f953ca15cb6366a32d1d3bbc5fbbed
EV0064.txt
Posted Feb 14, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

Clever Copy version 3 is susceptible to cross site scripting attacks.

tags | exploit, xss
advisories | CVE-2006-0627
SHA-256 | bb659a8d787b7e02bd56556f78253d2a98ac3acb4f3c0e4e65cde661fbfbf38a
EV0061.txt
Posted Feb 14, 2006
Authored by Aliaksandr Hartsuyeu | Site evuln.com

phpstatus version 1.0 is susceptible to authentication bypass via SQL injection and an issue with cookie verification.

tags | exploit, sql injection
advisories | CVE-2006-0570, CVE-2006-0571, CVE-2006-0572
SHA-256 | ac582903f48ff5fb734560491dcfc953a46e989140dabf9069e4768ba27887af
Page 4 of 7
Back23456Next

File Archive:

October 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Oct 1st
    39 Files
  • 2
    Oct 2nd
    23 Files
  • 3
    Oct 3rd
    18 Files
  • 4
    Oct 4th
    20 Files
  • 5
    Oct 5th
    0 Files
  • 6
    Oct 6th
    0 Files
  • 7
    Oct 7th
    0 Files
  • 8
    Oct 8th
    0 Files
  • 9
    Oct 9th
    0 Files
  • 10
    Oct 10th
    0 Files
  • 11
    Oct 11th
    0 Files
  • 12
    Oct 12th
    0 Files
  • 13
    Oct 13th
    0 Files
  • 14
    Oct 14th
    0 Files
  • 15
    Oct 15th
    0 Files
  • 16
    Oct 16th
    0 Files
  • 17
    Oct 17th
    0 Files
  • 18
    Oct 18th
    0 Files
  • 19
    Oct 19th
    0 Files
  • 20
    Oct 20th
    0 Files
  • 21
    Oct 21st
    0 Files
  • 22
    Oct 22nd
    0 Files
  • 23
    Oct 23rd
    0 Files
  • 24
    Oct 24th
    0 Files
  • 25
    Oct 25th
    0 Files
  • 26
    Oct 26th
    0 Files
  • 27
    Oct 27th
    0 Files
  • 28
    Oct 28th
    0 Files
  • 29
    Oct 29th
    0 Files
  • 30
    Oct 30th
    0 Files
  • 31
    Oct 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close