Section: .. / 0807-exploits /
| /// File Name: |
beaweblogic-exec.txt |
Description:
|
Bea Weblogic Apache Connector code execution and denial of service exploit.
| | Author: | Kingcope | | File Size: | 3922 | | Last Modified: | Jul 17 15:25:37 2008 |
| MD5 Checksum: | b89a6b3557f431c1bc3869e6de7751ab |
|
| /// File Name: |
bilboblog-multi.txt |
Description:
|
Bilboblog version 2.1 suffers from SQL injection, cross site scripting, and login bypass vulnerabilities.
| | Author: | Black_H | | Homepage: | http://blackh.free.fr/ | | File Size: | 7437 | | Last Modified: | Jul 14 22:56:59 2008 |
| MD5 Checksum: | d7be264d6ab646eb28d0b8f7dc00a95a |
|
| /// File Name: |
bind9x-poison.txt |
Description:
|
BIND 9.x remote DNS cache poisoning flaw exploit using the vulnerability discovered by Dan Kaminsky.
| | Author: | Marc Bevand | | File Size: | 11891 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Jul 25 14:13:41 2008 |
| MD5 Checksum: | 738b0078ac8624dd2e7118cdec35a81b |
|
| /// File Name: |
blogparticle-traverse.txt |
Description:
|
Blog Particle version 8.0 suffers from directory traversal and database credential disclosure vulnerabilities.
| | Author: | e.wiZz! | | File Size: | 1106 | | Last Modified: | Jul 1 11:51:36 2008 |
| MD5 Checksum: | b2b27405d6772b357b942e854231542e |
|
| /// File Name: |
bluedot-upload.txt |
Description:
|
Bluedot CMS suffers from an unauthenticated remote file upload vulnerability.
| | Author: | Codebomb Team | | Homepage: | http://codebomb.org/ | | File Size: | 467 | | Last Modified: | Jul 10 00:16:53 2008 |
| MD5 Checksum: | ec17b136213e1f7089c150669c7a9b9a |
|
| /// File Name: |
boonex-rfi.txt |
Description:
|
BoonEx Ray version 3.5 suffers from a remote file inclusion vulnerability.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 516 | | Last Modified: | Jul 10 02:15:56 2008 |
| MD5 Checksum: | 1472f770c0c9b898490cfee7cf34d4c6 |
|
| /// File Name: |
boonexdolphin-rfi.txt |
Description:
|
Boonex Dolphin version 6.1.2 suffers from multiple remote file inclusion vulnerabilities.
| | Author: | RoMaNcYxHaCkEr | | File Size: | 1027 | | Last Modified: | Jul 10 02:42:20 2008 |
| MD5 Checksum: | 7d84e9aa62e693c89a787df28086da89 |
|
| /// File Name: |
brewblogger-addadmin.txt |
Description:
|
BrewBlogger version 2.1.0.1 arbitrary add administrator exploit.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 4081 | | Last Modified: | Jul 10 02:15:02 2008 |
| MD5 Checksum: | 894a012e7a19eb398cdb42471cb0d64a |
|
| /// File Name: |
cameralife-sql.txt |
Description:
|
Camera Life version 2.6.2 suffers from a remote SQL injection vulnerability.
| | Author: | nuclear | | File Size: | 359 | | Last Modified: | Jul 25 14:18:52 2008 |
| MD5 Checksum: | 7a9325e67afe5ab8829bf79fdd0f4871 |
|
| /// File Name: |
cas-sql.txt |
Description:
|
The PozScripts Classified Ads Script suffers from a remote SQL injection vulnerability in product_desc.php.
| | Author: | CraCkEr | | File Size: | 4861 | | Last Modified: | Jul 31 18:30:13 2008 |
| MD5 Checksum: | bd9b9bf2fec0d032acec4e682b9e5a85 |
|
| /// File Name: |
cat2-lfi.txt |
Description:
|
CAT2 versions 1 and below suffer from a local file inclusion vulnerability in spawn_control.class.php.
| | Author: | StAkeR | | File Size: | 803 | | Last Modified: | Jul 9 19:48:42 2008 |
| MD5 Checksum: | 804977b27cc1d06ffca42f80109190ca |
|
| /// File Name: |
catviz-sql.txt |
Description:
|
Catviz version 0.4.0 beta1 suffers from a SQL injection vulnerability.
| | Author: | h0yt3r | | File Size: | 1251 | | Last Modified: | Jul 1 11:01:05 2008 |
| MD5 Checksum: | cf439a30e0259c6d86deff2bc919a096 |
|
| /// File Name: |
cisco-sa-20070509-iosftp.c |
Description:
|
Cisco IOS FTP server remote exploit that escalates privileges to level 15. Specific hard-coded addresses are for IOS 12.3(18) on a 2621XM router. Slightly crippled forcing this to only work when the router is connected to a debugger.
| | Author: | Andy Davis | | Related File: | cisco-sa-20070509-iosftp.txt | | File Size: | 3884 | | Last Modified: | Jul 29 17:42:32 2008 |
| MD5 Checksum: | 7aab39aff433bfa1e79a258092b9ca34 |
|
| /// File Name: |
cmailserver-seh.txt |
Description:
|
CMailServer version 5.4.6 remote SEH overwrite exploit that makes use of CMailCOM.dll.
| | Author: | Nine:Situations:Group | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 6570 | | Last Modified: | Jul 10 00:10:29 2008 |
| MD5 Checksum: | 002a68ebd6367d0053fd1d9eae6ad9ad |
|
| /// File Name: |
cmscount-lfi.txt |
Description:
|
CMScout version 2.05 suffers from a local file inclusion vulnerability.
| | Author: | IRCRASH | | Homepage: | http://ircrash.com/ | | File Size: | 2128 | | Last Modified: | Jul 28 11:09:47 2008 |
| MD5 Checksum: | bef401a09387608bf6daba667bed4507 |
|
| /// File Name: |
cmslittle-lfi.txt |
Description:
|
CMS little version 0.0.1 suffers from a local file inclusion vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2042 | | Last Modified: | Jul 9 19:55:43 2008 |
| MD5 Checksum: | 8d98f70d552db6f3217da50260b0cbfd |
|
| /// File Name: |
cmswebblizzard-sql.txt |
Description:
|
CMS WebBlizzard blind SQL injection exploit that takes advantage of index.php.
| | Author: | Bl@ckbe@rd | | File Size: | 1947 | | Last Modified: | Jul 9 21:47:19 2008 |
| MD5 Checksum: | 8b7c6f6d87685e2512492a6b39cfea37 |
|
| /// File Name: |
codedb-lfi.txt |
Description:
|
CodeDB suffers from a local file inclusion vulnerability in list.php.
| | Author: | cOndemned | | Homepage: | http://condemned.r00t.la/ | | File Size: | 904 | | Last Modified: | Jul 14 22:55:45 2008 |
| MD5 Checksum: | c04949091346c9a4ffa04eb1577065a9 |
|
| /// File Name: |
communitycms-rfi.txt |
Description:
|
Community CMS version 0.1 remote file inclusion exploit.
| | Author: | N3TR00T3R | | File Size: | 1086 | | Last Modified: | Jul 18 04:30:27 2008 |
| MD5 Checksum: | 5df55fa6abc5ce6204ab218070e100d8 |
|
| /// File Name: |
contentnow-uploadxss.txt |
Description:
|
ContentNow version 1.4.1 suffers from upload and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 1839 | | Last Modified: | Jul 10 01:26:17 2008 |
| MD5 Checksum: | e4172f69063dbfd65fcfcec30c123b7a |
|
| /// File Name: |
cpg-lfiexec.txt |
Description:
|
Coppermine Photo Gallery versions 1.4.18 and below local file inclusion and remote code execution exploit.
| | Author: | EgiX | | File Size: | 7844 | | Last Modified: | Jul 31 18:33:13 2008 |
| MD5 Checksum: | bbdf830ba1ed2c11699b73d0c8cb3121 |
|
| /// File Name: |
D3VS-0.2.tar.gz |
Description:
|
Die Eier Von Satan is a quick and dirty rewrite of the old ADMnog00d code. This version exploits the DNS cache poisoning vulnerability and discovered by Dan Kaminsky. This proof of concept makes use of a MX RR to spread its poisonous payload, a A RR, but can easily be adapted for other flavors.
| | Author: | Gregory Duchemin,Heike | | File Size: | 6217 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Jul 28 11:24:31 2008 |
| MD5 Checksum: | ae03b792adbe77bfad46d54fc181d7fc |
|
| /// File Name: |
dap-overflow.txt |
Description:
|
Download Accelerator Plus (DAP) version 8.x local buffer overflow exploit that creates a malicious .m3u file. Spawns calc.exe.
| | Author: | Krystian Kloskowski | | File Size: | 1322 | | Last Modified: | Jul 10 03:04:33 2008 |
| MD5 Checksum: | 492fcc3326b0a7dee33b3f596c3ab249 |
|
|
|
|
|