what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 471 RSS Feed

ASP Files

Zero Day Initiative Advisory 10-220
Posted Oct 28, 2010
Authored by Tipping Point | Site zerodayinitiative.com

Zero Day Initiative Advisory 10-220 - This vulnerability allows remote attackers to inject arbitrary SQL into the packaged database on vulnerable installations of Symantec IM Manager. Authentication is not required to exploit this vulnerability. The specific flaw exists within the Administrative interface installed with IM Manager. While there is authentication on the main page of the installed IIS extension, many of the pages can be accessed directly. One of these pages, IMAdminScheduleReport.asp, is vulnerable to a SQL injection vulnerability. The ASP code lacks sanity checks on the 'email' parameter. Thus, an attacker can abuse this to inject arbitrary SQL into the backend database.

tags | advisory, remote, arbitrary, sql injection, asp
advisories | CVE-2010-0112
SHA-256 | 510fb503338ecbfca13adb7cacbe14f877aeedd8c76b5d0dae0ef34e9387165d
Secunia Security Advisory 41919
Posted Oct 21, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Mono ASP.NET, which can be exploited by malicious people to disclose sensitive information.

tags | advisory, asp
SHA-256 | 3315e4753eccd8c0b90277870d248f45f7aa42451cfb5bb60ce67bd522673179
MS10-070 ASP.NET Auto-Decryptor File Download
Posted Oct 20, 2010
Authored by Agustin Azubel | Site ampliasecurity.com

MS10-070 ASP.NET auto-decryptor file download proof of concept exploit.

tags | exploit, asp, proof of concept
SHA-256 | 583ab327079e0f73d7b6ed0c839ab545a54adb9b2e531b103d46a58fa7667610
xWeblog 2.2 SQL Injection
Posted Oct 11, 2010
Authored by ZoRLu

xWeblog version 2.2 remote SQL injection exploit that leverages arsiv.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 2beb8637b0aa0f7f69b2ae512185d2c8383071f4524d3e6accbb57361fc1a1d1
Microsoft IIS 6 Denial Of Service
Posted Oct 1, 2010
Authored by Kingcope

Microsoft IIS 6 suffers from an ASP denial of service stack overflow vulnerability.

tags | exploit, denial of service, overflow, asp
SHA-256 | 968ad700fa412b03b08cda7cfb16f28e1648859ba12d1924d7d64d6a0139aeb6
Gokhun ASP Stok 1.0 Cross Site Scripting / Database Disclosure / SQL Injection
Posted Sep 28, 2010
Authored by KnocKout

Gokhun ASP Stok version 1.0 suffers from cross site scripting, database disclosure and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection, asp, info disclosure
SHA-256 | 0b014afa3ef07cc31255993d7a1d5155b464647b8e0481250366eda1b4edb3eb
Secunia Security Advisory 41577
Posted Sep 27, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Some vulnerabilities have been reported in Gokhun Asp Stok Sistemi, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.

tags | advisory, vulnerability, xss, sql injection, asp
SHA-256 | e74c685cea79877d4e233a1ef08f56361d86403872d44b23f4535444eb5b29f7
Month Of Abysssec Undisclosed Bugs - ASP Nuke 0.80
Posted Sep 11, 2010
Authored by Abysssec | Site abysssec.com

Month Of Abysssec Undisclosed Bugs - ASP Nuke version 0.80 suffers from a remote SQL injection vulnerability.

tags | advisory, remote, sql injection, asp
SHA-256 | 3019201267ca9f3334f0cf34818c849f5aae0278a3fcd5cc23bca3b04cf99060
Month Of Abysssec Undisclosed Bugs - ASP Nuke 0.80
Posted Sep 11, 2010
Authored by Abysssec | Site abysssec.com

Month Of Abysssec Undisclosed Bugs - ASP Nuke version 0.80 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection, asp
SHA-256 | 9f158f41d7b0304ed2f70c4f53a52c54e7cde9eedaca0ae635a94e0ee1e05cda
Rapid7 Security Advisory 36
Posted Aug 30, 2010
Authored by H D Moore, Rapid7, Will Vandevanter | Site rapid7.com

Rapid7 Security Advisory - FCKEditor contains a file renaming bug that allows remote code execution. Specifically, it is possible to upload ASP code via the ASP.NET connector in FCKEditor. The vulnerability requires that the remote server be running IIS. This vulnerability has been confirmed on FCKEditor 2.5.1 and 2.6.6.

tags | exploit, remote, code execution, asp
advisories | CVE-2009-4444
SHA-256 | d7ff7819bc5c1b9397d022f19065769fe00e58d1169b50c1ef3b83d03e7b2950
Video Script ASP Database Disclosure
Posted Aug 23, 2010
Authored by indoushka

Video Script ASP suffers from a database disclosure vulnerability.

tags | exploit, asp, info disclosure
SHA-256 | ba820fe2c4c454957f07e2bcdbd7544f831a5c670d411bfebcc5d36b003f846f
Baby ASP Web Server 2.7.2 Denial Of Service
Posted Aug 3, 2010
Authored by ipax | Site dclabs.com.br

Baby ASP Web Server version 2.7.2 suffers from a denial of service vulnerability.

tags | exploit, web, denial of service, asp
SHA-256 | 24d3e9eeaa6d231eb86ec5138e6bb2fe2ea64371cecb0ed98d3b12d42ca9e02a
ASP Resources Forum Database Disclosure
Posted Jul 21, 2010
Authored by indoushka

ASP Resources Forum suffers from a database disclosure vulnerability.

tags | exploit, asp, info disclosure
SHA-256 | cfa1555f06212d3054dbc2262cf32775aa9cd2d7c0bf152083f2f3b44e613aaf
Smart ASP Survey SQL Injection / Cross Site Scripting
Posted Jun 16, 2010
Authored by L0rd CrusAd3r

Smart ASP Survey suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection, asp
SHA-256 | 70074dd4065055e6ece8c8749ace5d9443c1d29d8e907d57cd5c1ac17941d544
Real-Time ASP Calendar SQL Injection
Posted Jun 14, 2010
Authored by L0rd CrusAd3r

Real-Time ASP Calendar suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection, asp
SHA-256 | 2307938d90b521d63a73579f591141bea78df0a4cf5805defa6a361cd4d69b34
Secunia Security Advisory 39902
Posted May 24, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - MustLive has reported a vulnerability in Flash Tag Cloud control for ASP.NET, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss, asp
SHA-256 | 6f84d5c0381521c450807c4d0bf7f1d3e1347305f9ab8caa487ff0c16544e18d
Flash Tag Cloud Control Cross Site Scripting
Posted May 21, 2010
Authored by MustLive

Flash Tag Cloud for Blogsa and other ASP.NET engines suffers from cross site scripting and html injection vulnerabilities.

tags | exploit, vulnerability, xss, asp
SHA-256 | b2d0ff0da1d8dcb4d4af860905723bdfc28504ace1f75938c0141fe1e3da26bb
e-Webtech SQL Injection
Posted May 14, 2010
Authored by Fl0riX

e-Webtech suffers from a remote SQL injection vulnerability in fixed_page.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 6737161257fb3f8bba6ff30d17a314b9fa0479294faabe4f0447c25bca29f891
ASP Comersus7F Shopping Cart Database Disclosure
Posted Mar 30, 2010
Authored by indoushka

ASP Comersus7F Shopping Cart suffers from a database disclosure vulnerability.

tags | exploit, asp, info disclosure
SHA-256 | f329299b7a543108afdc126da75e2e2c935be8430bbc13c85c1d95f1b3a1fc94
Secunia Security Advisory 38768
Posted Mar 1, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in Pre Classified Listings ASP, which can be exploited by malicious people to conduct script insertion and SQL injection attacks.

tags | advisory, vulnerability, sql injection, asp
SHA-256 | 189511825db34116df56d4a6263a846fbf047efb5ae178e06ea4428176359c61
Microsoft IIS WebDAV Write Access Code Execution
Posted Feb 10, 2010
Site metasploit.com

This Metasploit module can be used to execute a payload on IIS servers that have world-writeable directories. The payload is uploaded as an ASP script using a WebDAV PUT request.

tags | exploit, asp
SHA-256 | 4ec5b093ab1cb3f7824fc0789935b123c05d0f352410b2d130c1546774dfb524
Multiplatform View State Tampering
Posted Feb 10, 2010
Authored by Trustwave | Site trustwave.com

SpiderLabs has documented view state tampering vulnerabilities in three products from separate vendors. Microsoft ASP.Net version 3.5, Apache MyFaces versions 1.2.8 and 1.2.7, and Sun Microsystems Mojarra versions 1.2_14 and 2.0.2 are all vulnerable.

tags | exploit, vulnerability, asp
SHA-256 | 274d820d5053b91c5b4019151e6accd446cb31435dfa6ae866e1d89dceee5e44
Secunia Security Advisory 38283
Posted Jan 22, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Some vulnerabilities have been reported in VP-ASP Shopping Cart which can be exploited by malicious users to conduct SQL injection attacks and disclose sensitive information.

tags | advisory, vulnerability, sql injection, asp
SHA-256 | 373c0b9c4d7cae884127f2a8e04eaad6f27bea22bac2cd60a62c5ce4cec5b0ec
VP-ASP SQL Injection / Cross Site Scripting
Posted Jan 22, 2010
Authored by CodeScan Labs

VP-ASP suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | advisory, remote, vulnerability, xss, sql injection, asp
SHA-256 | 03144e9c7692da406834dc7e125ff0f52a6114f18f5370f2ff5026b33c71728d
ASP A.ShopKart 2.0 Database Disclosure
Posted Jan 19, 2010
Authored by indoushka

ASP A.ShopKart version 2.0 suffers from a database disclosure vulnerability.

tags | exploit, asp, info disclosure
SHA-256 | b0eba3fcfb062f1718d6ecbd1301545732dae1281dbfe979242377eee1dbf62e
Page 4 of 19
Back23456Next

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    1 Files
  • 9
    Sep 9th
    16 Files
  • 10
    Sep 10th
    38 Files
  • 11
    Sep 11th
    21 Files
  • 12
    Sep 12th
    40 Files
  • 13
    Sep 13th
    18 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    21 Files
  • 17
    Sep 17th
    51 Files
  • 18
    Sep 18th
    23 Files
  • 19
    Sep 19th
    47 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close