Section: .. / 1002-exploits /
| /// File Name: |
auktionshausgelb-sql.txt |
Description:
|
Auktionshaus Gelb version 3 suffers from a remote SQL injection vulnerability in news.php.
| | Author: | Easy Laster | | File Size: | 1852 | | Last Modified: | Feb 17 18:42:44 2010 |
| MD5 Checksum: | fbd8145f709cc417f43f72a5808d418d |
|
| /// File Name: |
baalsystems-sql.txt |
Description:
|
Baal Systems version 3.8 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
| | Author: | cr4wl3r | | File Size: | 1392 | | Last Modified: | Feb 8 19:31:46 2010 |
| MD5 Checksum: | f947c05455d86a4f86719b7aae918251 |
|
| /// File Name: |
bannerexchange-insecure.txt |
Description:
|
BannerExchange suffers from an insecure cookie handling vulnerability.
| | Author: | jiko | | File Size: | 787 | | Last Modified: | Feb 9 20:54:27 2010 |
| MD5 Checksum: | 75fb6312e6f6f89e87879fa02cd903de |
|
| /// File Name: |
barcode_ax49.rb.txt |
Description:
|
This Metasploit module exploits a stack overflow in RKD Software Barcode Application ActiveX Control 'BarCodeAx.dll'. By sending an overly long string to the BeginPrint method of BarCodeAx.dll v4.9, an attacker may be able to execute arbitrary code.
| | Author: | Trancek,patrick | | Homepage: | http://www.metasploit.com | | File Size: | 2483 | | Related OSVDB(s): | 37482 | | Related CVE(s): | CVE-2007-3435 | | Last Modified: | Feb 15 17:10:58 2010 |
| MD5 Checksum: | 77ac8266976d2a452190c2e194b08434 |
|
| /// File Name: |
basiccms-sqlxss.txt |
Description:
|
BaSiC-CMS suffers from cross site scripting and blind remote SQL injection vulnerabilities.
| | Author: | Red-D3v1L | | File Size: | 2127 | | Last Modified: | Feb 12 17:52:42 2010 |
| MD5 Checksum: | a8fa00e393323aa92202d08713d52770 |
|
| /// File Name: |
baykus-sql.txt |
Description:
|
Baykus Yemek Tarifleri versions 2.1 and below suffer from a remote SQL injection vulnerability.
| | Author: | cr4wl3r | | File Size: | 861 | | Last Modified: | Feb 28 14:50:59 2010 |
| MD5 Checksum: | 4c1d72683f2c982e0ef04409ca809c2b |
|
| /// File Name: |
bbnew-sql.txt |
Description:
|
bbNew suffers from a remote SQL injection vulnerability.
| | Author: | Easy Laster | | File Size: | 2003 | | Last Modified: | Feb 17 18:52:02 2010 |
| MD5 Checksum: | 3babc5a2115de137c0859900e0c17bdf |
|
| /// File Name: |
belkatalog-sql.txt |
Description:
|
Belkatalog CMS suffers from a remote SQL injection vulnerability.
| | Author: | Teo Manojlovic | | File Size: | 465 | | Last Modified: | Feb 8 19:51:58 2010 |
| MD5 Checksum: | 5887874473c95e0719f82071a28cf6ef |
|
| /// File Name: |
bgscms-xss.txt |
Description:
|
BGS CMS suffers from a cross site scripting vulnerability.
| | Author: | hacker at sr.gov.yu | | File Size: | 814 | | Last Modified: | Feb 15 18:18:02 2010 |
| MD5 Checksum: | 665ec18ce679605c507590a8a23c9fc4 |
|
| /// File Name: |
bispage-sql.txt |
Description:
|
Bispage suffers from a remote SQL injection vulnerability that allows for authentication bypass.
| | Author: | SaMir-BonD | | File Size: | 1325 | | Last Modified: | Feb 23 19:42:25 2010 |
| MD5 Checksum: | 41dc9e3cb3a817a3cbd0f622faedcbd5 |
|
| /// File Name: |
blaxblog-sql.txt |
Description:
|
Blax Blog versions 0.1 and below suffer from a remote SQL injection vulnerability that allows for authentication bypass.
| | Author: | cr4wl3r | | File Size: | 201 | | Last Modified: | Feb 28 14:59:08 2010 |
| MD5 Checksum: | 224ac54fd4a4daf8bcf7d974783b286b |
|
| /// File Name: |
blogink-bypass.txt |
Description:
|
Blog Ink suffers from a direct access setting bypass vulnerability.
| | Author: | indoushka | | File Size: | 1788 | | Last Modified: | Feb 15 17:08:33 2010 |
| MD5 Checksum: | c4edd49d2faa73ee0ed8e1cd5cb9f1a8 |
|
| /// File Name: |
bluedove-sql.txt |
Description:
|
Blue Dove suffers from a remote SQL injection vulnerability.
| | Author: | HackXBack | | File Size: | 1232 | | Last Modified: | Feb 8 20:41:51 2010 |
| MD5 Checksum: | 56b8210fea175b0548221b4e893a6f15 |
|
| /// File Name: |
cabletel-sql.txt |
Description:
|
CableTEL's Triple Play version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
| | Author: | LiquidWorm | | File Size: | 544 | | Last Modified: | Feb 23 02:47:04 2010 |
| MD5 Checksum: | 66a0568bac2f590dd4f8c25a6f63c8c5 |
|
| /// File Name: |
calicclnt_getconfig.rb.txt |
Description:
|
This Metasploit module exploits an vulnerability in the CA License Client service. This exploit will only work if your IP address can be resolved from the target system point of view. This can be accomplished on a local network by running the 'nmbd' service that comes with Samba. If you are running this exploit from Windows and do not filter udp port 137, this should not be a problem (if the target is on the same network segment). Due to the bugginess of the software, you are only allowed one connection to the agent port before it starts ignoring you. If it wasn't for this issue, it would be possible to repeatedly exploit this bug.
| | Author: | Thor Doomen,patrick | | Homepage: | http://www.metasploit.com | | File Size: | 5744 | | Related OSVDB(s): | 14389 | | Related CVE(s): | CVE-2005-0581 | | Last Modified: | Feb 15 17:12:09 2010 |
| MD5 Checksum: | 8e470559c88b3e76f25cab2ae19a7470 |
|
| /// File Name: |
calicserv_getconfig.rb.txt |
Description:
|
This Metasploit module exploits an vulnerability in the CA License Server network service. By sending an excessively long GETCONFIG packet the stack may be overwritten.
| | Author: | Thor Doomen,patrick | | Homepage: | http://www.metasploit.com | | File Size: | 4454 | | Related OSVDB(s): | 14389 | | Related CVE(s): | CVE-2005-0581 | | Last Modified: | Feb 15 17:11:46 2010 |
| MD5 Checksum: | e526f917891667036dc6583399fa7bdc |
|
| /// File Name: |
castripper25070-overflow.txt |
Description:
|
CastRipper version 2.50.70 stack overflow exploit that creates a malicious .asx file.
| | Author: | Jordi Chancel | | File Size: | 2326 | | Last Modified: | Feb 12 14:19:27 2010 |
| MD5 Checksum: | 13215c395027d55e64c0b3be3f207551 |
|
| /// File Name: |
castripperwvx-overflow.txt |
Description:
|
CastRipper version 2.9.6.0 local buffer overflow exploit that creates a malicious .wvx file.
| | Author: | FB1H2S | | File Size: | 1523 | | Last Modified: | Feb 16 17:47:51 2010 |
| MD5 Checksum: | c8a37aa3e846159a6ed3e11ca1d4d8a9 |
|
| /// File Name: |
chasysmp11-overflow.txt |
Description:
|
Chasys Media Player version 1.1 local buffer overflow exploit that creates a malicious .mid file.
| | Author: | cr4wl3r | | File Size: | 1330 | | Last Modified: | Feb 23 02:36:46 2010 |
| MD5 Checksum: | f08934c0ccf639bc18cd983d6d9a1dc6 |
|
| /// File Name: |
ciscocollaboration-xssdisclose.txt |
Description:
|
Cisco Collaboration Server 5 suffers from cross site scripting and source code disclosure vulnerabilities.
| | Author: | sasquatch | | File Size: | 2301 | | Last Modified: | Feb 12 01:51:39 2010 |
| MD5 Checksum: | 41dd18408e4fe684ef776fc8b576c352 |
|
| /// File Name: |
cityadmin-sql.txt |
Description:
|
CityAdmin suffers from a remote blind SQL injection vulnerability.
| | Author: | AtT4CKxT3rR0r1ST | | File Size: | 1233 | | Last Modified: | Feb 2 22:57:37 2010 |
| MD5 Checksum: | d4c0720fce9838447d739b9aadcead38 |
|
| /// File Name: |
classifiedultra-insecuresql.txt |
Description:
|
ClassifiedUltra suffers from remote SQL injection and insecure cookie handling vulnerabilities.
| | Author: | jiko | | File Size: | 802 | | Last Modified: | Feb 9 20:53:19 2010 |
| MD5 Checksum: | b052427a25e724f7f988a38a3d5fb115 |
|
| /// File Name: |
cmdweb.rb.txt |
Description:
|
This Metasploit module tests the command stager mixin against a shell.jsp application installed on an Apache Tomcat server.
| | Author: | bannedit | | Homepage: | http://www.metasploit.com | | File Size: | 1449 | | Last Modified: | Feb 17 18:41:45 2010 |
| MD5 Checksum: | ada76d6bfbb9d95a55fb2653d4f77994 |
|
| /// File Name: |
cmsboys-sql.txt |
Description:
|
CMS Boys suffers from multiple remote SQL injection vulnerabilities.
| | Author: | MizoZ | | File Size: | 968 | | Last Modified: | Feb 2 22:59:21 2010 |
| MD5 Checksum: | 2f2a3dee514d7a783177a450314e1df9 |
|
|
|
|
|