Section: .. / 0801-exploits /
| /// File Name: |
webportalcms-sql.txt |
Description:
|
WebPortal CMS versions 0.6.0 and below remote SQL injection exploit that makes use of index.php.
| | Author: | x0kster | | File Size: | 1642 | | Last Modified: | Jan 1 17:24:43 2008 |
| MD5 Checksum: | 6573085f890b5a3cd4e15792953f1f74 |
|
| /// File Name: |
webquest-db.txt |
Description:
|
PHP Webquest version 2.6 suffers from a vulnerability that allows for database credential extraction.
| | Author: | MhZ91 | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 1466 | | Last Modified: | Jan 10 03:25:37 2008 |
| MD5 Checksum: | e00c6a28288f6dd4fa267acdcd7e7486 |
|
| /// File Name: |
webquest-sql.txt |
Description:
|
PHP Webquest version 2.6 remote SQL injection exploit.
| | Author: | ka0x | | File Size: | 1503 | | Last Modified: | Jan 9 01:38:14 2008 |
| MD5 Checksum: | 3d3b136eccaaf3a5c2ca08b4898dfe21 |
|
| /// File Name: |
webspell-multi.txt |
Description:
|
WebSpell version 4.01.02 suffers from cross site scripting and cross site request forgery vulnerabilities.
| | Author: | NBBN | | File Size: | 961 | | Last Modified: | Jan 30 19:16:01 2008 |
| MD5 Checksum: | 9ee8ce567496e55ffd71a3d78ae40f68 |
|
| /// File Name: |
webstar-xssrfi.txt |
Description:
|
WebSTAR Mail versions 4.4.1 and below suffer from cross site scripting and remote file inclusion vulnerabilities.
| | Author: | Maximiliano Soler | | Homepage: | http://www.nullcode.com.ar/ | | File Size: | 1237 | | Last Modified: | Jan 21 21:48:42 2008 |
| MD5 Checksum: | 0888d7357abe5cdf0e1fd016b8f61c62 |
|
| /// File Name: |
whitedunboffs.zip |
Description:
|
Proof of concept code that demonstrates buffer overflow and format string vulnerabilities in White Dune versions 0.29beta791 and below.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | whitedunboffs.txt | | File Size: | 476 | | Last Modified: | Jan 2 17:51:15 2008 |
| MD5 Checksum: | 79442978ff2035ad8161c9f0a5313b17 |
|
| /// File Name: |
woltlab-xsrf.txt |
Description:
|
Woltlab Burning Board versions 2.3.6 PL2 suffers from a remote delete thread cross site request forgery vulnerability.
| | Author: | NBBN | | File Size: | 957 | | Last Modified: | Jan 24 00:04:04 2008 |
| MD5 Checksum: | d71ddbb00523a079bf6c0b8f29fd25bc |
|
| /// File Name: |
woltlab3-xsrf.txt |
Description:
|
Woltlab Burning Board versions 3.x.x suffers from a private message delete cross site request forgery vulnerability.
| | Author: | NBBN | | File Size: | 660 | | Last Modified: | Jan 29 21:44:03 2008 |
| MD5 Checksum: | 5174cc33f55c001171fdf31def116de1 |
|
| /// File Name: |
wpcal-sql.txt |
Description:
|
The Wordpress WP-Cal plugin version 0.3 suffers from a SQL injection vulnerability in editevent.php.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1372 | | Last Modified: | Jan 28 13:00:50 2008 |
| MD5 Checksum: | f1cedb9d76c87985ee8dbd6460939fd7 |
|
| /// File Name: |
wpfgallery-sql.txt |
Description:
|
The Wordpress fGallery plugin version 2.4.1 suffers from a SQL injection vulnerability in firmrss.php.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1732 | | Last Modified: | Jan 28 13:01:40 2008 |
| MD5 Checksum: | 789b2a7b0aeeaafe3ab7e52daee8c74f |
|
| /// File Name: |
wpfile-upload.txt |
Description:
|
Wordpress plugin WP-FileManager version 1.2 suffers from a remote upload vulnerability.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 1445 | | Last Modified: | Jan 6 19:49:15 2008 |
| MD5 Checksum: | 6bef1d24c4ae01399bfed859abcfb1b2 |
|
| /// File Name: |
wpforum-sql.txt |
Description:
|
Wordpress plugin WP-Forum version 1.7.4 suffers from a remote SQL injection vulnerability.
| | Author: | websec Team | | Homepage: | http://hacking.ge/ | | File Size: | 779 | | Last Modified: | Jan 21 20:08:21 2008 |
| MD5 Checksum: | 01fcd789ac2403fce31727e4f8014216 |
|
| /// File Name: |
xchat-sql.txt |
Description:
|
X7 Chat versions 2.0.5 and below remote SQL injection exploit.
| | Author: | Fernando Quintero aka nonroot | | File Size: | 2121 | | Last Modified: | Jan 14 14:12:05 2008 |
| MD5 Checksum: | 502a6ed151011c559c40fe3cf1d61073 |
|
| /// File Name: |
xforum-sql.txt |
Description:
|
Xforum version 1.4 remote SQL injection exploit that makes use of liretopic.php.
| | Author: | j0j0 | | File Size: | 1989 | | Last Modified: | Jan 15 15:20:45 2008 |
| MD5 Checksum: | f1e13e2430184edcb6235a5c6ae4c448 |
|
| /// File Name: |
xoopsgal-rfi.txt |
Description:
|
XOOPS mod_gallery suffers from a Zend_Hack_key and Extract remote file inclusion vulnerability.
| | Author: | Eugene Minaev | | Homepage: | http://itdefence.ru/ | | File Size: | 2100 | | Last Modified: | Jan 6 19:53:00 2008 |
| MD5 Checksum: | 964d3c80f455de41e8458fd9004378a9 |
|
| /// File Name: |
yabb155-exec.txt |
Description:
|
YaBB SE versions 1.5.5 and below remote command execution exploit.
| | Author: | 1dt.w0lf | | Homepage: | http://rst.void.ru | | File Size: | 13975 | | Last Modified: | Jan 23 23:38:51 2008 |
| MD5 Checksum: | 0bea1890ef10aeb966c41f458f9a8145 |
|
| /// File Name: |
yasslick.zip |
Description:
|
Proof of concept code that demonstrates invalid memory access and buffer overflow vulnerabilities in yaSSL versions 1.75 and below.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | yasslick.txt | | File Size: | 7813 | | Last Modified: | Jan 4 20:23:20 2008 |
| MD5 Checksum: | a33ae8f79e61ca61b15b6ccb143cf840 |
|
| /// File Name: |
yesil-sql.txt |
Description:
|
Yesil Koridor Ziyareti Defteri suffers from a SQL injection vulnerability in index.php.
| | Author: | ShaFuck31 | | File Size: | 401 | | Last Modified: | Jan 30 19:14:51 2008 |
| MD5 Checksum: | ce592837c39ad3886eabcf761dca78a9 |
|
| /// File Name: |
zerocms-sql.txt |
Description:
|
Zero CMS versions 1.0 Alpha and below suffer from arbitrary upload and remote SQL injection vulnerabilities.
| | Author: | KiNgOfThEwOrLd | | Homepage: | http://www.inj3ct-it.org/ | | File Size: | 3841 | | Last Modified: | Jan 8 12:11:00 2008 |
| MD5 Checksum: | f800577c4ce58c64da79f108ee81bff0 |
|
|
|
|
|