IPFire, a free linux based open source firewall distribution, versions 2.15 Update Core 82 and below contain an authenticated remote command execution vulnerability via shellshock in the request headers.
72f8b0873dc11b2d3d2949fc7e34c4a2aa14b2eba24cd506e1e1251f6aec3dd2
This Metasploit module will exploit the Werkzeug debug console to put down a Python shell. This debugger "must never be used on production machines" but sometimes slips passed testing. Tested against 0.9.6 on Debian, 0.9.6 on Centos, 0.10 on Debian.
c66135298bdbc3ecf2b75f9d3d628a64cee1d120ca05cf2ddac7c252fa2aba07
B-Hind CMS suffers from an arbitrary file upload vulnerability.
97ed6c0cf971ffd8874955c3bae801f0b8abdec48bef8aefbbae98eba7c9bd3c
CiviCRM version 3.1 Beta 1 suffers from a cross site scripting vulnerabilities.
9c385dd7f21fa4b7ac3daee61f0efffca14768b60a3f579137854a0c44a87584
LinkLogger version 2.4.10.15 remote denial of service exploit.
b5ade360e2c755ceed5c64b61b0c0fe4d58b6b8de7528d7ca1d1dcf726061e83
Addonics NAS Adapter remote FTP server denial of service exploit.
873f1ca01bb0427aae2c7f7b63e103edc4b0e3982b7c4fce18737c13327ee837
Addonics NAS Adapter remote denial of service exploit that leverages bts.cgi.
dc0ed7bb8a5d050cf2fc842eb643b436ee5841782f12eaa5d52ac64761bc2222
Addonics NAS adapter post authentication denial of service exploit.
b0c6cced89aa484a6d2f1ac21c2bdc2c20fbb2785596aa7bf5acaa7f417b274b