Section: .. / 0712-exploits /
| /// File Name: |
dvr3204_exp.txt |
Description:
|
March networks DVR 3204 logfile information disclosure exploit.
| | Author: | Alex Hernandez | | File Size: | 3203 | | Last Modified: | Dec 28 20:06:59 2007 |
| MD5 Checksum: | 0085b0937b8aed9756601f2b449c0e65 |
|
| /// File Name: |
libnemesibof.zip |
Description:
|
Proof of concept code that demonstrates buffer overflow vulnerabilities in libnemesi versions 0.6.4-rc1 and below.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | libnemesibof.txt | | File Size: | 639 | | Last Modified: | Dec 28 20:05:10 2007 |
| MD5 Checksum: | 9d9b499da983abe53d81f001c3957e89 |
|
| /// File Name: |
hotornot-backup.txt |
Description:
|
Hot or Not clone by jnshosts.com suffers from a database backup dump vulnerability.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 1541 | | Last Modified: | Dec 28 20:02:15 2007 |
| MD5 Checksum: | 1860000f2411dd557cd6aa19d56feab9 |
|
| /// File Name: |
fengulo.zip |
Description:
|
Proof of concept exploit for Feng versions 0.1.15 and below which suffer from buffer overflow and denial of service vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | fengulo.txt | | File Size: | 1142 | | Last Modified: | Dec 28 19:59:19 2007 |
| MD5 Checksum: | 9e9c7a33aa5cb1871609105e5e6914c9 |
|
| /// File Name: |
xcms-rfilfi.txt |
Description:
|
XCMS versions 1.82 and below suffer from local file inclusion and code execution via upload vulnerabilities.
| | Author: | nexen | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 731 | | Last Modified: | Dec 28 19:56:10 2007 |
| MD5 Checksum: | fe587e76b3053611fd458a64c5decc30 |
|
| /// File Name: |
xmpbof.zip |
Description:
|
Proof of concept exploit for Extended Module Player (XMP) versions 2.5.1 and below which suffer from multiple buffer overflow vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | xmpbof.txt | | File Size: | 3860 | | Last Modified: | Dec 28 19:53:07 2007 |
| MD5 Checksum: | 8d7bfaa9c293f0bd225507608417a07e |
|
| /// File Name: |
xml2owl-exec.txt |
Description:
|
xml2owl version 0.1.1 suffers from a remote command execution vulnerability in showCode.php.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1911 | | Last Modified: | Dec 28 19:47:04 2007 |
| MD5 Checksum: | 3fd2f83a0fa2f0c52cee6a4e21b273d0 |
|
| /// File Name: |
joovili-disclose.txt |
Description:
|
joovili versions 3.0.6 and below suffer from a remote file disclosure vulnerability in joovili.images.php.
| | Author: | EcHoLL | | Homepage: | http://www.warezturk.org/ | | File Size: | 578 | | Last Modified: | Dec 28 19:43:04 2007 |
| MD5 Checksum: | 5b3e1d26995b8b4ca0b9a08170b142f1 |
|
| /// File Name: |
zeuscms-blindsql.txt |
Description:
|
ZeusCMS versions 0.3 and below remote blind SQL injection exploit.
| | Author: | EgiX | | File Size: | 4164 | | Last Modified: | Dec 28 19:41:52 2007 |
| MD5 Checksum: | a157260b8ca969efcfb0a9158879a48b |
|
| /// File Name: |
persists-addfolder.txt |
Description:
|
Exploit that will spawn winexec or a bindshell when making use of a buffer overflow vulnerability in the AddFolder() method of the Persists Software XUpload control version 2.1.0.1.
| | Author: | Elazar Broad | | File Size: | 6784 | | Last Modified: | Dec 28 19:39:53 2007 |
| MD5 Checksum: | df4a253830283d22460d93d3c1b40c92 |
|
| /// File Name: |
google-utf7xss.txt |
Description:
|
Google suffered from a cross site scripting vulnerability via UTF-7.
| | Author: | HASEGAWA Yosuke | | File Size: | 1614 | | Last Modified: | Dec 28 19:33:52 2007 |
| MD5 Checksum: | c671d5be8bb06cc6bd9e40229085f0b2 |
|
| /// File Name: |
usb-blam.txt |
Description:
|
Simple schematic to make an extremely malicious USB denial of service tool.
| | Author: | Todd Troxell | | File Size: | 709 | | Last Modified: | Dec 28 19:32:41 2007 |
| MD5 Checksum: | 72e98a8f06d4ea54537e12ca29f1df29 |
|
| /// File Name: |
iportalx-xss.txt |
Description:
|
The IPortalX Forums software is susceptible to multiple cross site scripting vulnerabilities.
| | Author: | Doz | | Homepage: | http://www.hackerscenter.com/ | | File Size: | 1675 | | Last Modified: | Dec 28 18:08:49 2007 |
| MD5 Checksum: | b08b5deecd1e0886189a0a1a5d53946d |
|
| /// File Name: |
pnphpbb2-lfi.txt |
Description:
|
PNphpBB2 versions 1.2i and below suffer from a local file inclusion vulnerability in printview.php.
| | Author: | irk4z | | File Size: | 1359 | | Last Modified: | Dec 28 18:07:37 2007 |
| MD5 Checksum: | 5220f81d43e3d77de5ef990354283bcb |
|
| /// File Name: |
xzero-rfi.txt |
Description:
|
XZero Community Classifieds versions 4.95.11 and below suffer from a remote file inclusion vulnerability.
| | Author: | Kw3rLN | | Homepage: | http://rstzone.net/ | | File Size: | 486 | | Last Modified: | Dec 28 18:05:36 2007 |
| MD5 Checksum: | 64876f73490c2145873d00423eeed0d4 |
|
| /// File Name: |
xzero-lfisql.txt |
Description:
|
XZero Community Classifieds versions 4.95.11 and below suffer from local file inclusion and SQL injection vulnerabilities.
| | Author: | Kw3rLN | | Homepage: | http://rstzone.net/ | | File Size: | 4357 | | Last Modified: | Dec 28 18:04:02 2007 |
| MD5 Checksum: | 772f2fe989b9c4b0e01aea6fcbdb1d3c |
|
| /// File Name: |
blakord-sql.txt |
Description:
|
Blakord Portal Beta versions 1.3.A and below suffer from a SQL injection vulnerability.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 2317 | | Last Modified: | Dec 28 17:56:35 2007 |
| MD5 Checksum: | 6a32fb7943bed5c2c812de1fe1c3831c |
|
| /// File Name: |
runcms-sqlids.txt |
Description:
|
RunCMS version 1.6 remote blind SQL injection exploit with IDS evasion capabilities.
| | Author: | Sh2kerr | | Homepage: | http://www.dsec.ru/ | | File Size: | 5245 | | Last Modified: | Dec 28 17:54:59 2007 |
| MD5 Checksum: | 91053be594c500d5c8d4bf8e2c602710 |
|
| /// File Name: |
esyndicatles-sql.txt |
Description:
|
The eSyndiCat Link Exchange Script 2005 - 2006 suffers from a SQL injection vulnerability.
| | Author: | EgiX | | File Size: | 1071 | | Last Modified: | Dec 28 17:53:39 2007 |
| MD5 Checksum: | d4274d1c07f7eccc31b2b2561586693d |
|
| /// File Name: |
pmos-exec.txt |
Description:
|
PMOS Help Desk versions 2.4 and below remote command execution exploit.
| | Author: | EgiX | | File Size: | 4253 | | Last Modified: | Dec 28 17:51:45 2007 |
| MD5 Checksum: | 38a0ab698014f8f7c7c898f6bc84147a |
|
| /// File Name: |
aolygp-overflows.txt |
Description:
|
The AOL YGP Picture Editor Control (AIM PicEditor Control) version 9.5.1.8 suffers from multiple exploitable buffer overflows in various properties.
| | Author: | Elazar Broad | | File Size: | 1062 | | Last Modified: | Dec 28 17:32:36 2007 |
| MD5 Checksum: | 79ac1658e1bbe8b00c9349dec175ed7d |
|
| /// File Name: |
persists-overflow.txt |
Description:
|
There is a buffer overflow vulnerability in the AddFolder() method of the Persists Software XUpload control version 2.1.0.1.
| | Author: | Elazar Broad | | File Size: | 999 | | Last Modified: | Dec 28 17:31:47 2007 |
| MD5 Checksum: | e5beae5b8fc1022ccf97dd19f8f30c76 |
|
| /// File Name: |
zyxel-xssxsrf.txt |
Description:
|
The ZyXEL P-330W is susceptible to cross site scripting and cross site request forgery vulnerabilities.
| | Author: | Santa Clause | | File Size: | 1892 | | Last Modified: | Dec 28 17:30:16 2007 |
| MD5 Checksum: | f8e72743d02a531a60f85ec28419f578 |
|
| /// File Name: |
runcms-multi.txt |
Description:
|
RunCMS version 1.6 suffers from SQL injection, cross site scripting, predictable session id, and other vulnerabilities.
| | Author: | Alexandr Polyakov,Stas Svistunovich | | File Size: | 5746 | | Last Modified: | Dec 28 17:29:08 2007 |
| MD5 Checksum: | 81623bea6360468867a46926a84073b5 |
|
| /// File Name: |
mailmachine-sql.txt |
Description:
|
MailMachine Pro version 2.2.4 suffers from a remote SQL injection vulnerability.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1782 | | Last Modified: | Dec 28 17:26:13 2007 |
| MD5 Checksum: | c1becd3bd85ab7d8884cca3114f2754c |
|
|
|
|
|