various
advisories & exploits ______________ Microsoft
SQL Server Distributed Management Objects OLE DLL for
|
various
advisories & exploits ______________ Telecom
Italy Alice Messenger Hp .Revolution . RegistryManager.dll (v.1) remote
arbitrary registry key manipulation
|
various
advisories & exploits ______________ Postcast Server Pro 3.0.61 / Quiksoft EasyMail (emsmtp.dll 6.0.1) BoF eCentrex VOIP Client module (uacomx.ocx 2.0.1) Remote BOF Exploit |
various
advisories & exploits ______________ AMX Corp. VNC ActiveX Control (AmxVnc.dll 1.0.13.0) BoF Exploit |
various
advisories & exploits ______________
|
various
advisories & exploits ______________ PHP <= 4.4.6 ibase_connect() Local Buffer Overflow Exploit
Php-Stats <= 0.1.9.1b (php-stats-options.php) admin 2 exec() Exploit Php-Stats <= 0.1.9.1b (PC-REMOTE-ADDR) SQL Injection Exploit Php-Stats <= 0.1.9.1b (ip) Remote SQL Injection Exploit
|
various
advisories & exploits ______________ oh, this is my independent contribution to the Month Of PHP Bugs ... PHP <= 4.4.6 mssql_connect() & mssql_pconnect() Local Buffer Overflow Exploit PHP 4.4.6 crack_opendict() Local Buffer Overflow Exploit PoC PHP 4.4.6 snmpget() object id Local Buffer Overflow Exploit PoC PHP 4.4.6 cpdf_open() Local Source Code Discslosure PoC GuppY <= 4.5.16 Remote Commands Execution Exploit Woltlab Burning Board Lite <= 1.0.2pl3e (pms.php) SQL Injection Exploit ThWboard <= 3.0b2.84-php5 SQL Injection / Code Execution Exploit
|
various
advisories & exploits ______________ oh, this is my independent contribution to the Month Of PHP Bugs ... PHP <= 4.4.6 mssql_connect() & mssql_pconnect() Local Buffer Overflow Exploit PHP 4.4.6 crack_opendict() Local Buffer Overflow Exploit PoC PHP 4.4.6 snmpget() object id Local Buffer Overflow Exploit PoC PHP 4.4.6 cpdf_open() Local Source Code Discslosure PoC GuppY <= 4.5.16 Remote Commands Execution Exploit Woltlab Burning Board Lite <= 1.0.2pl3e (pms.php) SQL Injection Exploit ThWboard <= 3.0b2.84-php5 SQL Injection / Code Execution Exploit
|
various
advisories & exploits ______________
|
various
advisories & exploits ______________ Cacti 0.8.6i "copy_cacti_user.php" sql injection create new admin exploit sNews <= 1.5.30 unauthorized access / reset admin pass / cmd exec exploit
|
various
advisories & exploits ______________ Filezilla FTP Server 0.9.20 beta / 0.9.21 "STOR" Denial Of Service PHPGraphy 0.9.12 ZHDKOI/privilege escalation/remote commands execution exploit Golden FTP server 1.92 (freeware edition) USER/PASS heap overflow poc |
various
advisories & exploits ______________ Flatnuke <= 2.5.8 file() Priv Escalation / Code Execution Exploit Flatnuke 2.5.8 (userlang) Local Inclusion / Delete All Users Exploit
|
various
advisories & exploits ______________ Simple Machines Forum <= 1.1 rc2 (lngfile) Remote Exploit (windows) Simple Machines Forum <= 1.1 rc2 (lock) exploit CubeCart <= 3.0.11 (oid) Remote Blind SQL Injection Exploit XMB <= 1.9.6 Final basename() Remote Command Execution Exploit |
various
advisories & exploits ______________ MyBloggie
<= 2.1.4 trackback.php SQL injection / SendCard <= 3.4.0 Unauthorized Administrative Access Exploit ATutor <= 1.5.3.1 (links) Remote Blind SQL Injection Exploit |
| various
advisories & exploits ______________ BLOG:CMS <= 4.0.0k Remote SQL Injection Exploit GeekLog <= 1.4.0sr3 f(u)ckeditor Remote Code Execution Exploit Mambo <= 4.6rc1 (Weblinks) Remote Blind SQL Injection Exploit (INTO OUTFILE version)
|
| various
advisories & exploits ______________ Coppermine
Photo Gallery <= 1.4.3 remote commands execution advisory
/ exploit
|
| various
vulnerabilities ______________ DocMGR
<= 0.54.2 process.php remote comands execution exploit
|
| various
vulnerabilities ______________ FCKEditor
2.0 <= 2.2 (connector.php) Remote Shell Upload Exploit
|
|
various
vulnerabilities ______________ MS
Internet Explorer 6.0 sp2 mshtml.dll (div) Denial Of Service exploit
|
|
______________ Dev web management system <= 1.5 SQL injection / cross site scripting
|
|
various
vulnerabilities ______________ PhpGedView
<= 3.3.7 remote commands execution
|
|
various
vulnerabilities ______________ PHP-Nuke
7.8 SQL Injection / Remote Command Execution Exploit
|
|
various
vulnerabilities ______________ CuteNews
1.4.0 remote code execution
|
|
various
vulnerabilities: ______________ Flatnuke
2.5.6 Underlying system information disclosure / Administrative & users
|
|
various
vulnerabilities ______________ DevC++
V.4.9.9.2 null byte insertion / obfuscation flaw (update to
synedit component obfuscation flaw explaination)
|
|
FlatNuke 2.5.5 (possibly prior versions) remote commands execution / cross site scripting / path disclosure
______________ some critical vulnerabilities in FlatNuke 2.5.5, proof of concept exploit code here
|
|
Various
vulnerabilities ______________ qliteNews arbitrary database manipulation & cross site scripting poc exploit Utopia News Pro 1.1.3 cross site scripting poc SAXON version 4.1 sql injection / login bypass Web Content Management News System Administrative Account creation & cross site scripting poc |
|
Various
advisories ______________ Simplicity
OF Upload 1.3 (possibly prior versons) remote code execution
|
|
PhpBB2Root = 2.0.15
______________ exploit che permette di prendere il controllo di una
|
| 602
Lan Suite 2004 _ resources consumption & remote programs execution exploit
[php] ______________ Un utente remoto può saturare la memoria del sistema e lanciare programmi, inserendo nell'url chiamate a device names (come lpt1, com1...) (leggi tutto)
|
|
Pragma TelnetServer 6.0 Log Obfuscation
______________ Un utente remoto può causare che la visione dei file di log
|
|
602 Lan Suite bug: tag maliziosi in una richiesta di GET
______________ tramite l'inserimento di tag
|
|
Mirc 6.16 & "generic Edit component" win32 trick
______________ Naturalmente si sa che una edit box di Windows permette
|
|
Serverscheck 5.9.00 exploit
______________ Trasversal url bug nel software di monioraggio Serverscheck 5.9.00. Una breve descrizione qui.
|
|
NmapGUI v0.9 per Win32
______________ una front-end grafica per lo scanner di network Nmap. Aggiunge alcune funzionalità come: la possibilità di sfruttare al massimo il programma, sviscerandone tutti gli switch, disposti in più tabsheets; la possibilità di esportare l'output di Nmap in Html, Latex e Rtf; di salvare diverse onfigurazioni di host e porte, oltre a quelle generali del programma;
|
|
Google dorks scanner [PHP] revision
______________ Versione che implementa una lista di proxy. Aggiunta la grafica e una piacevole ascii-art, fixati alcuni bug.
|
|
Google dorks scanner [PHP]
______________ Si tratta di uno scanner che effettua una serie di ricerche su google allo scopo di evidenziare le vulnerabilità di un sito. Si serve di questo database:
|
|
proxy grabber [php]
______________ un semplice proxy grabber script
|
|
phpBB2root <= 2.0.10 [php]
______________ uno script per prendere il controllo totale di una macchina con phpBB2 <=2.0.10
|
|
socksifying a connection _ [ php]
______________ breve articolo su come "socksificare" una
|
|
Irene1.2b_ release
______________ segnalibri; convertitore binario, decimale, esadecimale;
|
|
Irene 1.1b _ programming tool
______________ questa versione del programma
|
|
net send spoofing _ php
______________ uno studio sulle possibili
|
|
Irene _ syntax highligthing tool
______________ Un utile tool di syntax highligthing ed exporting scritto in Delphi, supporta le sintassi di 46 linguaggi/applicativi
|
|
phpscan _ nbss session request
______________ Aggiunte alcune funzionalità :
|
|
pscan _ SNMP queries
______________ Aggiunte funzionalità di SNMP discovery, una tabella di visualizzazione dei pacchetti in esadecimale e plain text, fixato un bug.
|
|
pscan
______________ Fixato un bug nel codice relativo all'UDP scan; inserita una funzionalità di netbios discovery
|
|
php scanner
______________ TCP/UDP Port scanner tool, scritto totalmente in PHP è in fase di sviluppo: aggiunti versione fornisce scan customizzabili, collegamenti ipertestuali...
|