Section: .. / 0906-exploits /
| /// File Name: |
bigacecms-lfi.txt |
Description:
|
BIGACE CMS version 2.6 suffers from a local file inclusion vulnerability.
| | Author: | CWD@rBe | | Homepage: | http://www.cyber-warrior.org/ | | File Size: | 966 | | Last Modified: | Jun 30 17:35:45 2009 |
| MD5 Checksum: | 929ff785f5ea01c682a3d811506401a9 |
|
| /// File Name: |
bitdefenderir-sql.txt |
Description:
|
Bitdefender Antivirus Iran suffers from a remote SQL injection vulnerability.
| | Author: | Rohit Bansal | | File Size: | 1850 | | Last Modified: | Jun 2 23:48:19 2009 |
| MD5 Checksum: | 9c93c0aa87b5d5b0fe48e65d832a0f0a |
|
| /// File Name: |
bopup-down.c |
Description:
|
Bopup Communications Server remote SYSTEM exploit.
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 6871 | | Last Modified: | Jun 22 22:25:02 2009 |
| MD5 Checksum: | 47b84b6cfb3f8f802d5fb68248e649f4 |
|
| /// File Name: |
bopup-overflow.txt |
Description:
|
Remote buffer overflow exploit for the Bopup Communications Server version 3.2.26.54.60. Tested on Microsoft Windows XP SP3.
| | Author: | His0k4 | | File Size: | 2352 | | Last Modified: | Jun 29 13:49:36 2009 |
| MD5 Checksum: | cc085236892f5d4e7b47ea55ba59aaa7 |
|
| /// File Name: |
cakecms-xsrf.txt |
Description:
|
CakeCMS suffers from a cross site request forgery vulnerability.
| | Author: | MnmL | | File Size: | 857 | | Last Modified: | Jun 15 14:49:44 2009 |
| MD5 Checksum: | 217a21dacc725c835a8318887e48d363 |
|
| /// File Name: |
campsite-rfi.txt |
Description:
|
Campsite version 3.3.0 RC1 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | CraCkEr | | File Size: | 6318 | | Last Modified: | Jun 22 22:35:09 2009 |
| MD5 Checksum: | cd6d5e0440cf60041f911dbc94779f55 |
|
| /// File Name: |
campusvirtuallms-sqlxss.txt |
Description:
|
Campus Virtual-LMS suffers from remote SQL injection, cross site request forgery, and cross site scripting vulnerabilities.
| | Author: | Yasion | | File Size: | 2071 | | Last Modified: | Jun 12 12:24:13 2009 |
| MD5 Checksum: | 37e96c0d7070dd1ff2f843a7bf457429 |
|
| /// File Name: |
carom3d-dos.txt |
Description:
|
Carom3D version 5.06 unicode buffer overrun and denial of service exploit.
| | Author: | LiquidWorm | | Homepage: | http://www.zeroscience.org/ | | File Size: | 2230 | | Last Modified: | Jun 16 11:18:17 2009 |
| MD5 Checksum: | 18f8e3a30bcb80cd9f8c33d58d6733f1 |
|
| /// File Name: |
clicknetcms-disclose.txt |
Description:
|
Clicknet CMS version 2.1 suffers from a remote file disclosure vulnerability.
| | Author: | ThE g0bL!N | | Homepage: | http://h4ckf0ru.com/ | | File Size: | 816 | | Last Modified: | Jun 29 17:52:14 2009 |
| MD5 Checksum: | df12aa2c6d6faa1171945314ee51ee53 |
|
| /// File Name: |
cmsbuzz-xsspasswd.txt |
Description:
|
CMS Buzz suffers from cross site scripting and password changing vulnerabilities.
| | Author: | ThE g0bL!N | | Homepage: | http://h4ckf0ru.com/ | | File Size: | 2652 | | Last Modified: | Jun 18 23:41:31 2009 |
| MD5 Checksum: | e67a0526b1e9e4bbf2d6f80a5bfafab8 |
|
| /// File Name: |
compface-dos.txt |
Description:
|
compface versions 1.5.2 and below buffer overflow proof of concept exploit that creates a malicious .xbm file.
| | Author: | metalhoney | | File Size: | 979 | | Last Modified: | Jun 17 18:56:06 2009 |
| MD5 Checksum: | 75a1f11e27ebf2c61b01a67cd0c73ec9 |
|
| /// File Name: |
CORE-2009-0420.txt |
Description:
|
Core Security Technologies Advisory - CUPS versions 1.3.9 and below suffer from a handling flaw of the IPP_TAG_UNSUPPORTED tag that allows attackers to cause a remote pre-authentication denial of service.
| | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 13047 | | Related CVE(s): | CVE-2009-0949 | | Last Modified: | Jun 3 00:39:08 2009 |
| MD5 Checksum: | cc18be3e13ce7caeb18e3b8ee2636ce8 |
|
| /// File Name: |
CVE-2008-5515.txt |
Description:
|
When using a RequestDispatcher obtained from the Request in Apache Tomcat, the target path was normalized before the query string was removed. A request that included a specially crafted request parameter could be used to access content that would otherwise be protected by a security constraint or by locating it in under the WEB-INF directory. Versions affected include Tomcat 6.0.0 to 6.0.18, Tomcat 5.5.0 to 5.5.27, and Tomcat 4.1.0 to 4.1.39.
| | Author: | Mark Thomas | | Homepage: | http://tomcat.apache.org/ | | File Size: | 1676 | | Related CVE(s): | CVE-2008-5515 | | Last Modified: | Jun 9 14:47:36 2009 |
| MD5 Checksum: | 96486123553ffe30efdc3b71817233f9 |
|
| /// File Name: |
cve-2009-1386.c |
Description:
|
OpenSSL versions below 0.9.8i DTLS ChangeCipherSpec remote denial of service exploit.
| | Author: | Jon Oberheide | | File Size: | 2048 | | Related CVE(s): | CVE-2009-1386 | | Last Modified: | Jun 4 18:00:25 2009 |
| MD5 Checksum: | 0f9054c289a0fab81f30c48e4f2e32df |
|
| /// File Name: |
dbtopsites10-lfi.txt |
Description:
|
DB Top Sites version 1.0 suffers from a local file inclusion vulnerability in index.php.
| | Author: | SirGod | | Homepage: | http://www.insecurity.ro/ | | File Size: | 987 | | Last Modified: | Jun 15 15:52:00 2009 |
| MD5 Checksum: | 7276359065dc4404ab5b73e46eb1e570 |
|
| /// File Name: |
desishorturl-insecure.txt |
Description:
|
Desi Short URL Script suffers from an insecure cookie handling vulnerability that allows for authentication bypass.
| | Author: | N@bilX | | File Size: | 446 | | Last Modified: | Jun 10 19:11:51 2009 |
| MD5 Checksum: | de4e87a53e88109a662601667db44f81 |
|
| /// File Name: |
deslock-dlpcrypt.c |
Description:
|
DESlock++ version 4.0.2 local kernel SYSTEM exploit. Affects dlpcrypt.sys version 0.1.1.27.
| | Author: | mu-b | | Homepage: | http://www.digit-labs.org/ | | File Size: | 7338 | | Last Modified: | Jun 18 23:39:32 2009 |
| MD5 Checksum: | 3c01113f4c9d1cfedb39f52f749c1f99 |
|
| /// File Name: |
dmalbums-rfi.txt |
Description:
|
DM Albums version 1.9.2 and WordPress plugin suffer from a remote file inclusion vulnerability.
| | Author: | Septemb0x | | Homepage: | http://www.cyber-warrior.org/ | | File Size: | 1551 | | Last Modified: | Jun 29 19:26:23 2009 |
| MD5 Checksum: | c25114e8beec5fbf9044138d5ba2c4bc |
|
| /// File Name: |
dmfilemanager-disclose.txt |
Description:
|
DM FileManager version 3.9.4 suffers from a remote file disclosure vulnerability.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 625 | | Last Modified: | Jun 30 15:58:21 2009 |
| MD5 Checksum: | 3ffb3d2426c815854f1701ce761bc11f |
|
|
|
|
|