Section: .. / 0704-exploits /
| /// File Name: |
vcdgear-local.txt |
Description:
|
VCDGear version 3.56 build 050213 local code execution exploit.
| | Author: | C-W-M | | Homepage: | http://www.meftunnet.com | | File Size: | 3110 | | Last Modified: | Apr 17 00:01:08 2007 |
| MD5 Checksum: | aa3a039bd043c499bca5c9b03040b365 |
|
| /// File Name: |
VP-ASP-SQL.txt |
Description:
|
VP-ASP suffers from a SQL injection vulnerability. Details provided.
| | Author: | tracewar | | File Size: | 4078 | | Last Modified: | May 2 21:47:41 2007 |
| MD5 Checksum: | 62abaf2555cb5ce6eb0e01fb2253fe5f |
|
| /// File Name: |
wabbit-xss.txt |
Description:
|
Wabbit PHP Gallery version 0.9 suffers from a cross site scripting vulnerability.
| | Author: | the_Edit0r | | Homepage: | http://www.xmors-security.com/ | | File Size: | 1218 | | Last Modified: | Apr 17 13:06:25 2007 |
| MD5 Checksum: | cebd42b369f67c7ac72a1e5d6cc6c66c |
|
| /// File Name: |
waraxe-2007-SA-048.txt |
Description:
|
The Virtual War module version 1.5 for PHP-Nuke suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | waraxe | | Homepage: | http://www.waraxe.us/ | | File Size: | 5297 | | Last Modified: | Apr 16 23:50:03 2007 |
| MD5 Checksum: | f6f0aa8ea5e44fe4c0b7345d40a605f2 |
|
| /// File Name: |
waraxe-2007-SA-049.txt |
Description:
|
Phorum version 5.1.20 is susceptible to cross site scripting and SQL injection attacks.
| | Author: | waraxe | | Homepage: | http://www.waraxe.us/ | | File Size: | 9739 | | Last Modified: | Apr 20 22:53:21 2007 |
| MD5 Checksum: | 7f2218eda5107798322deb11f5e76b22 |
|
| /// File Name: |
weatimages-rfi.txt |
Description:
|
Weatimages versions 1.7.1 and below suffer from a remote file inclusion vulnerability.
| | Author: | Co-Sarper-Der | | File Size: | 838 | | Last Modified: | Apr 11 00:24:16 2007 |
| MD5 Checksum: | 5552dd75956224fc368e5f1c09d2de3c |
|
| /// File Name: |
webinsta-rfi.txt |
Description:
|
WebInsta FM versions 0.1.4 and below suffer from a remote file inclusion vulnerability.
| | Author: | MurderSkillz, FiSh | | Homepage: | http://www.g00ns.net/ | | File Size: | 1845 | | Last Modified: | Apr 17 00:14:41 2007 |
| MD5 Checksum: | 925fe7f11b359310489b6dcdca58d04d |
|
| /// File Name: |
webslider-rfi.txt |
Description:
|
Web Slider verison 0.6 suffers from a remote file inclusion vulnerability.
| | Author: | GolD_M | | Homepage: | http://www.tryag.cc/ | | File Size: | 427 | | Last Modified: | Apr 17 00:29:17 2007 |
| MD5 Checksum: | fcb94341715d1a67f7483e0a23aa1faf |
|
| /// File Name: |
webspeed-exec.txt |
Description:
|
A flaw in _cpyfile.p in Progress Webspeed Messenger allows remote attackers to gain full control of a system.
| | Author: | suresync | | File Size: | 1359 | | Last Modified: | Apr 25 01:24:57 2007 |
| MD5 Checksum: | 74e7f1d81be56db5ccb1c55fef11359a |
|
| /// File Name: |
webspell-disclose.txt |
Description:
|
WebSPELL versions 4.01.02 and below suffer from a remote file disclosure vulnerability in picture.php.
| | Author: | Trex | | File Size: | 993 | | Last Modified: | Apr 7 20:33:10 2007 |
| MD5 Checksum: | a28c2833bd9a319d1fd8c9a2f128a721 |
|
| /// File Name: |
winamp-exec.txt |
Description:
|
Winamp versions 5.34 and below .MP4 file code execution exploit that spawns calc.exe or binds a shell to tcp port 4444.
| | Author: | Marsu | | File Size: | 110648 | | Last Modified: | May 2 22:55:33 2007 |
| MD5 Checksum: | cd4e895cbb55416b3007794ed7cc36d7 |
|
| /// File Name: |
wls-xss.txt |
Description:
|
Windows Live Spaces suffers from a cross site scripting vulnerability in NetworkSetup.aspx.
| | Author: | Paolo Di Febbo | | File Size: | 489 | | Last Modified: | Apr 2 17:06:04 2007 |
| MD5 Checksum: | 3d2606b7735818570272e6d534aba011 |
|
| /// File Name: |
xampp-rgod.txt |
Description:
|
XAMPP for Windows version 1.60a and below remote buffer overflow exploit that makes use of adodb.php/mssql_connect().
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 7081 | | Last Modified: | Apr 17 00:40:20 2007 |
| MD5 Checksum: | 85c6773f5353801d539543719907cdaa |
|
| /// File Name: |
xodagal-exec.txt |
Description:
|
It appears that xodagallery may be susceptible to a remote command execution vulnerability.
| | Author: | the_Edit0r | | Homepage: | http://www.xmors-security.com/ | | File Size: | 1278 | | Last Modified: | Apr 9 22:44:30 2007 |
| MD5 Checksum: | 6ff46f778b5b4309f47cbf31ac8171fb |
|
| /// File Name: |
xoops-rha-sql.txt |
Description:
|
Xoops module Rha7 Downloads versions 1.0 remote SQL injection exploit that makes use of visit.php.
| | Author: | ajann | | File Size: | 2525 | | Last Modified: | Apr 5 01:54:23 2007 |
| MD5 Checksum: | 4da51d0e739db4b41ef39349fca35fa1 |
|
| /// File Name: |
xoops-snippets-sql.txt |
Description:
|
Xoops module WF-Snippets versions 1.02 and below blind SQL injection exploit.
| | Author: | ajann | | File Size: | 10152 | | Last Modified: | Apr 5 01:52:11 2007 |
| MD5 Checksum: | 35f6c46e881300b297c23cbff3ebccc9 |
|
| /// File Name: |
xoopsjobs-sql.txt |
Description:
|
XOOPS module Jobs versions 2.4 and below remote SQL injection exploit.
| | Author: | ajann | | File Size: | 2473 | | Last Modified: | Apr 7 20:30:21 2007 |
| MD5 Checksum: | abf1a07ff1a25dd5d58dcffda60a4fe6 |
|
| /// File Name: |
xoopsvirii-rfi.txt |
Description:
|
Xoops module Virii Info versions 1.10 and below remote file inclusion exploit that makes use of index.php.
| | Author: | ajann | | File Size: | 2547 | | Last Modified: | Apr 2 20:03:19 2007 |
| MD5 Checksum: | 558ef94f655c805d65ffcbdbdbe7deb0 |
|
| /// File Name: |
xoopswflinks-sql.txt |
Description:
|
XOOPS module WF-Links versions 1.03 and below remote SQL injection exploit.
| | Author: | ajann | | File Size: | 2538 | | Last Modified: | Apr 7 20:26:28 2007 |
| MD5 Checksum: | a03334cc9de9699184b5babe9be2ff6b |
|
| /// File Name: |
xoopswfsec-sql.txt |
Description:
|
Xoops module WF-Section versions 1.01 and below remote blind SQL injection exploit.
| | Author: | ajann | | File Size: | 2679 | | Last Modified: | Apr 2 20:04:32 2007 |
| MD5 Checksum: | 18ecb71834428390a71b2626bdb1f85e |
|
| /// File Name: |
xoopsxfsec-sql.txt |
Description:
|
Xoops module XFsection versions 1.07 and below blind SQL injection exploit.
| | Author: | ajann | | File Size: | 10249 | | Last Modified: | Apr 2 20:05:43 2007 |
| MD5 Checksum: | 99d6ef1ce0d3848efc3234fe6a0ebc59 |
|
| /// File Name: |
xoopszmag-sql.txt |
Description:
|
Xoops module Zmagazine version 1.0 remote SQL injection exploit that makes use of print.php.
| | Author: | ajann | | File Size: | 2653 | | Last Modified: | Apr 2 20:07:04 2007 |
| MD5 Checksum: | 7ef70ea218c2d1d04467b05712c18483 |
|
| /// File Name: |
yabook-xss.txt |
Description:
|
YA Book version 0.98-alpha suffers from a persistent cross site scripting vulnerability.
| | Author: | omnipresent | | File Size: | 1790 | | Last Modified: | Apr 25 01:20:37 2007 |
| MD5 Checksum: | 879c39b8f7ec47089e95ec70aca6b326 |
|
|
|
|
|