Section: .. / 0806-exploits /
| /// File Name: |
esmartcart-sql.txt |
Description:
|
E-SMART CART suffers from a remote SQL injection vulnerability in productsofcat.asp.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 1196 | | Last Modified: | Jun 13 19:04:06 2008 |
| MD5 Checksum: | 5291343fcbf39d4f32a93c9d5ba1925a |
|
| /// File Name: |
webchamado-sql.txt |
Description:
|
WebChamado version 1.1 suffers from a SQL injection vulnerability.
| | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 1044 | | Last Modified: | Jun 13 19:00:29 2008 |
| MD5 Checksum: | c662c016ecfd922bf9d8c9d8daf9b817 |
|
| /// File Name: |
easyclan-lfi.txt |
Description:
|
Easy-Clanpage version 3.0b1 suffers from a local file inclusion vulnerability.
| | Author: | Loader007 | | File Size: | 716 | | Last Modified: | Jun 13 18:59:40 2008 |
| MD5 Checksum: | a58e12437a607e01789c08efc5153018 |
|
| /// File Name: |
phpjobwebsite-sql.txt |
Description:
|
PHP JOBWEBSITE PRO suffers from a remote SQL injection vulnerability in JobSearch3.php.
| | Author: | JosS | | Homepage: | http://www.spanish-hackers.com/ | | File Size: | 1130 | | Last Modified: | Jun 13 18:57:18 2008 |
| MD5 Checksum: | 02e4712407d3420e0abf693568ade74d |
|
| /// File Name: |
myblogmysql-rfi.txt |
Description:
|
MyBlog PHP and MySQL Blog/CMS suffer from a remote file inclusion vulnerability in games.php.
| | Author: | StAkeR | | File Size: | 2162 | | Last Modified: | Jun 13 12:38:19 2008 |
| MD5 Checksum: | 6256b8c3dc37dbd800b80174256d0b36 |
|
| /// File Name: |
vbulletin-xss.txt |
Description:
|
vBulletin versions 3.7.1 and below and 3.6.10 and below suffer from an obscure cross site scripting vulnerability.
| | Author: | Jessica Hope | | File Size: | 4576 | | Last Modified: | Jun 13 12:34:37 2008 |
| MD5 Checksum: | e94f99bc7326a589a3f209566081b941 |
|
| /// File Name: |
mambogalleries-sql.txt |
Description:
|
Mambo Galleries component version 1.0 remote SQL injection exploit.
| | Author: | H-T Team | | Homepage: | http://no-hack.fr/ | | File Size: | 2276 | | Last Modified: | Jun 13 12:32:56 2008 |
| MD5 Checksum: | a75fcdccc6986c143c977d6c269e46a6 |
|
| /// File Name: |
xchat-exec.txt |
Description:
|
XChat versions 2.8.7b and below remote code execution exploit that leverages Internet Explorer versions 6 and 7.
| | Author: | securfrog | | File Size: | 1323 | | Last Modified: | Jun 13 12:29:38 2008 |
| MD5 Checksum: | 84cee33d092ab1735f90ec4e6869aae9 |
|
| /// File Name: |
butterfly-delete.txt |
Description:
|
Butterfly Organizer versions 2.0.0 and below arbitrary delete category/account exploit.
| | Author: | Stack | | Homepage: | http://v4-team.com/ | | File Size: | 1796 | | Last Modified: | Jun 13 12:28:25 2008 |
| MD5 Checksum: | 19420fe58cdc953e9b3147172ceb0f5c |
|
| /// File Name: |
gllcts2-sql.txt |
Description:
|
GLLCTS2 versions 4.2.4 and below SQL injection exploit that leverages login.php.
| | Author: | TheDefaced | | Homepage: | http://TheDefaced.org/ | | File Size: | 11373 | | Last Modified: | Jun 13 12:27:11 2008 |
| MD5 Checksum: | 10a1773a60b525b58ef9071d6dbcda95 |
|
| /// File Name: |
webchamado-admin.txt |
Description:
|
WebChamado version 1.1 arbitrary add administrator exploit.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2932 | | Last Modified: | Jun 13 12:25:41 2008 |
| MD5 Checksum: | 6587651ea67811c45d042fdd17ad333d |
|
| /// File Name: |
butterfly-sqlxss.txt |
Description:
|
Butterfly Organizer version 2.0.0 suffers from SQL injection and cross site scripting vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2241 | | Last Modified: | Jun 13 12:24:41 2008 |
| MD5 Checksum: | 5da1d18e86c74d46299d2667f7226b83 |
|
| /// File Name: |
xpoll-upload.txt |
Description:
|
X-Poll version 2.0 allows for arbitrary file uploads without being authenticated.
| | Author: | e.wiZz! | | File Size: | 1048 | | Last Modified: | Jun 12 22:00:32 2008 |
| MD5 Checksum: | acfac3409453dacf0ef8201d8cc1d7ad |
|
| /// File Name: |
clevercopy3-sql.txt |
Description:
|
Clever Copy version 3.0 suffers from a SQL injection vulnerability in results.php.
| | Author: | h0yt3r | | File Size: | 2166 | | Last Modified: | Jun 12 21:55:51 2008 |
| MD5 Checksum: | 555bb185cada066f75eb54e53a9a394f |
|
| /// File Name: |
facilcms-lfi.txt |
Description:
|
Facil-CMS version 0.1RC suffers from multiple local file inclusion vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2406 | | Last Modified: | Jun 12 21:50:28 2008 |
| MD5 Checksum: | 7fee46d8e77aa766a13353002e7905b4 |
|
| /// File Name: |
gravity-sqlxss.txt |
Description:
|
Gravity Board X version 2.0 Beta suffers from cross site scripting and SQL injection vulnerabilities.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2421 | | Last Modified: | Jun 12 21:49:29 2008 |
| MD5 Checksum: | 3e75e73bc1eba3221f8ba44542b74434 |
|
| /// File Name: |
muvee-overflow.txt |
Description:
|
muvee autoProducer versions 6.1 and below Active-X remote buffer overflow exploit that makes use of TextOut.dll.
| | Author: | Nine:Situations:Group | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 3598 | | Last Modified: | Jun 12 21:47:38 2008 |
| MD5 Checksum: | 6123f285f973b3039f8840f7a21b1500 |
|
| /// File Name: |
jammcms-sql.txt |
Description:
|
JAMM CMS remote blind SQL injection exploit. Written in Perl.
| | Author: | h0yt3r | | File Size: | 4091 | | Last Modified: | Jun 12 00:38:02 2008 |
| MD5 Checksum: | 37834f02bf5059c37381d532e1f2745f |
|
| /// File Name: |
mycrocms-sql.txt |
Description:
|
MycroCMS version 0.5 suffers from a remote blind SQL injection vulnerability.
| | Author: | CWH Underground | | Homepage: | http://www.citecclub.org/ | | File Size: | 2080 | | Last Modified: | Jun 12 00:35:47 2008 |
| MD5 Checksum: | d5a08225af5426862df10e8ca60538e1 |
|
| /// File Name: |
syzygy-lfi.txt |
Description:
|
Syzygy CMS version 0.2.2 suffers from a local file inclusion vulnerability.
| | Author: | StAkeR | | File Size: | 2326 | | Last Modified: | Jun 11 18:06:33 2008 |
| MD5 Checksum: | 637b04f5de93c4be5e5428fc936a425e |
|
| /// File Name: |
absolute-screwups.txt |
Description:
|
Products from Xigla, such as Absolute Live Support XE, Absolute News Manager XE, Absolute Banner Manager XE, Absolute Form Processor XE, Absolute Image Gallery XE, Absolute Poll Manager XE, and Absolute Control Panel XE all suffer from cross site scripting and/or SQL injection vulnerabilities.
| | Author: | AmnPardaz Security Research Team | | Homepage: | http://www.bugreport.ir/ | | File Size: | 4856 | | Last Modified: | Jun 11 18:04:39 2008 |
| MD5 Checksum: | fb473d5041512ed0fa54ebc65a409e01 |
|
|
|
|
|