View Full Version : World Exploits update
- [remote] - SigPlus Pro v3.74 ActiveX LCDWriteString() Remote BoF JIT Spray - aslr/dep bypass
- [remote] - UPlusFTP Server v1.7.1.01 [ HTTP ] Remote Buffer Overflow [ Post Auth ]
- [webapps] - Joomla Component PhotoMap Gallery 1.6.0 Multiple Blind SQL Injection
- [webapps] - AV Arcade v3 Cookie Authentication Bypass
- [remote] - Symantec AMS Intel Alert Handler Service Design Flaw
- [local] - Zemana AntiLogger AntiLog32.sys
- [webapps] - nuBuilder Remote File inclusion Vulnerability
- [remote] - Apache Tomcat < 6.0.18 UTF8 Directory Traversal Vulnerability
- [webapps] - Joomla Component Appointinator 1.0.1 Multiple Remote Vulnerabilities
- [local] - WM Downloader 3.1.2.2 2010.04.15 Buffer Overflow (SEH)
- [webapps] - Joomla Component PBBooking 1.0.4_3 Multiple Blind SQL Injection
- [webapps] - Whizzy CMS 10.02 Local File Inclusion
- [webapps] - Joomla SimpleShop Component (com_simpleshop) SQL Injection Vulnerability
- [webapps] - Joomla Component (com_beamospetition) SQL Injection Vulnerability
- [local] - HTML Email Creator 2.42 build 718 Buffer Overflow Exploit (SEH)
- [dos] - BarCodeWiz BarCode ActiveX 3.29 PoC
- [remote] - BarCodeWiz Barcode ActiveX Control 3.29 BoF Exploit (SEH)
- [webapps] - Joomla RSForm!Pro Component (com_rsform) SQL Injection Vulnerability
- [dos] - ChordPulse 1.4 Denial of Service Vulnerability
- [webapps] - Concept E-commerce SQL Injection Vulnerability
- [dos] - Xmyplay 3.5.1 Denial of Service Vulnerability
- [dos] - Xion Audio Player 1.0.125 Denial of Service Vulnerability
- [webapps] - Joomla Component Spielothek 1.6.9 Multiple Blind SQL Injection
- [papers] - [Hebrew] Digital Whisper Security Magazine #11
- [remote] - Barcodewiz v3.29 Barcode ActiveX Control Remote Heap Spray Exploit (IE6/IE7)
- [webapps] - Intellinet IP Camera MNC-L10 Authentication Bypass Vulnerability
- [remote] - Xerver 4.32 Source Disclosure and HTTP Authentication Bypass
- [webapps] - SnoGrafx (cat.php?cat) SQL Injection Vulnerability
- [local] - WM Downloader 3.1.2.2 Buffer Overflow Exploit
- [dos] - Jaangle 0.98e.971 Denial of Service Vulnerability
- [webapps] - Joomla CamelcityDB 2.2 SQL Injection Vulnerability
- [webapps] - Cybsec Advisory Multiple Cross-Site Scripting (XSS) in MyIT CRM
- [local] - Mini-stream RM-MP3 Converter/WMDownloader/ASX to MP3 Converter Stack Buffer Overflow Exploit
- [dos] - Avast! Internet Security 5.0 aswFW.sys kernel driver IOCTL Memory Pool Corruption
- [webapps] - 68KB v1.0.0rc4 Remote File Include Vulnerability
- [webapps] - PHP5.2.6 (content.phpid) SQL Injection Vulnerability
- [remote] - Unauthorized Access to Root NFS Export on EMC Celerra NAS Appliance - [CVE: 2010-2860]
- [webapps] - APT-WEBSHOP-SYSTEM modules.php SQL injection
- [dos] - Oracle MySQL 'ALTER DATABASE' Remote Denial Of Service Vulnerability - [CVE: 2010-2008]
- [local] - Apple iOS pdf Jailbreak Exploit
- [webapps] - eSmart-Vision Trading Multiple SQL Injection Exploit
- [remote] - FathFTP 1.8 (SEH) ActiveX Buffer Overflow
- [webapps] - WordPress NextGEN Smooth Gallery Blind SQL Injection Vulnerability
- [local] - Progitek Visionner Photos v2.0 - File Format DOS
- [remote] - HP Openview NNM OvJavaLocale Buffer Overflow Vulnerability - [CVE: 2010-2709]
- [webapps] - Team Johnlong RaidenTunes 2.1.1 Remote Cross-Site Scripting Vulnerability
- [papers] - Exploitation on ARM - Presentation
- [papers] - Exploitation on ARM - Whitepaper
- [local] - Exploit Easy RM to MP3 2.7.3.700 ( .m3u , .pls , .smi , .wpl , .wax , .wvx , .ram)
- [remote] - FathFTP 1.8 (EnumFiles Method) ActiveX Buffer Overflow (SEH)
- [remote] - FathFTP v1.8 (DeleteFile Method) ActiveX Buffer Overflow (SEH)
- [remote] - FathFTP 1.8 (FileExists Method) ActiveX Buffer Overflow (SEH)
- [papers] - [Persian] CRLF Injection Attacks
- [dos] - Mediamonkey v. 3.2.1.1297 DOS POC
- [webapps] - Nuked-Klan Module Partenaires NK 1.5 Blind Sql Injection
- [webapps] - sX-Shop SQL Injection Vulnerability
- [webapps] - sX-Shop Multiple SQL Injection Vulnerabilities
- [webapps] - ccTiddly v1.7.6 Multiple Remote File Inclusion Vulnerabilities
- [webapps] - APBoard v2.1.0 ( board.php?id=) SQL Injection Vulnerability
- [webapps] - Open Blog v1.2.1 CSRF Vulnerability
- [webapps] - BXR v0.6.8 CSRF Vulnerability
- [webapps] - Amethyst v0.1.5 XSS Vulnerability
- [webapps] - DiamondList v0.1.6 CSRF Vulnerability
- [local] - Microsoft Windows win32k.sys Driver "CreateDIBPalette()" Buffer Overflow
- [local] - AtomixMP3 2.3 .m3u File Buffer Overflow Exploit
- [local] - AtomixMP3 2.3 .m3u File Buffer Overflow Exploit (SEH)
- [webapps] - Joomla Component cgTestimonial 2.2 Multiple Remote Vulnerabilities
- [webapps] - Joomla Component com_neorecruit 1.4 SQL Injection Vulnerability
- [webapps] - Tycoon CMS Record Script SQL Injection Vulnerability
- [dos] - LibTIFF 'td_stripbytecount' NULL Pointer Dereference Remote Denial of Service Vulnerability - [CVE: 2010-2482]
- [webapps] - CruxCMS SQL Injection Vulnerability
- [webapps] - Maxtrade AIO Blind SQL Injection Vulnerability
- [local] - Mini-stream Ripper v3.1.2.1 Buffer Overflow (DEP Bypass)
- [papers] - [Indonesian] Protecting Website from Common Attacks
- [webapps] - PHPKick v0.8 statistics.php SQL Injection Exploit
- [remote] - Advanced File Vault(eSellerateControl350.dll) Activex Heap Spray 0-day
- [local] - myMP3-Player v3.0 Buffer Overflow Exploit
- [dos] - ffdshow Video Codec Denial of Service Vulnerability
- [dos] - Quintessential Player 5.0.121 Denial of Service Vulnerability
- [dos] - QQ Computer Manager TSKsp.sys Local Denial of Service Exploit
- [webapps] - kleeja 1.0.0RC6 Database Disclosure
- [remote] - dBpowerAMP Audio Player 2 (FileExists) ActiveX Buffer Overflow Exploit
- [dos] - Visual MP3 Splitter & Joiner 6.1 Denial of Service Vulnerability
- [webapps] - Php Nuke Blind Sql Injection 8.x.x
- [local] - Fat Player 0.6b WAV File Processing Buffer Overflow (SEH)
- [webapps] - Joomla Yellowpages SQL Injection Vulnerability
- [dos] - Linux Kernel
- [local] - AoAAudioExtractor 2.0.0.0 ActiveX PoC (SEH)
- [webapps] - wizmall 6.4 CSRF Vulnerabilities
- [dos] - Mthree Development MP3 to WAV Decoder Denial of Service Vulnerability
- [webapps] - Joomla Component Amblog 1.0 Multiple SQL Injection Vulnerabilities
- [webapps] - Joomla Component Teams Multiple Blind SQL Injection Vulnerabilities
- [remote] - AoA Audio Extractor Remote ActiveX SEH JIT Spray Exploit (ASLR+DEP Bypass)
- [local] - Exploit-rosoft media player 4.4.4 SEH buffer overflow POC
- [remote] - SopCast New 0Day Remote Exploit
- [remote] - EASYFTP BOF Vulnerabilities in NLST , NLST -al, APPE, RETR , SIZE and XCWD Commands
- [remote] - Play! Framework
- [remote] - RSP MP3 Player OCX ActiveX Buffer Overflow (heap spray)
- [webapps] - Zendesk Multiple Vulnerabilities
- [dos] - Microsoft SMB Server Trans2 Zero Size Pool Alloc (MS10-054) - [CVE: 2010-2550]
- [dos] - Microsoft Windows CreateWindow Function Callback Vulnerability - [CVE: 2010-1897]
- [dos] - Msxml2.XMLHTTP.3.0 Response Handling Memory Corruption (MS10-051) - [CVE: 2010-2561]
- [local] - Microsoft Windows Tracing Registry Key ACL Privilege Escalation Vulnerability - [CVE: 2010-2554]
- [dos] - Microsoft Windows 'SfnLOGONNOTIFY' Local Privilege Escalation Vulnerability (MS10-048) - [CVE: 2010-1894]
- [local] - Mediacoder 0.7.5.4710 Buffer Overflow Exploit
- [webapps] - phpMUR Remote File Disclosure Vulnerability
- [webapps] - clearBudget v0.9.8 Remote File Include Vulnerability
- [dos] - Windows Live Messenger
- [dos] - My MP3 Player buffer overflow POC (.m3u)
- [webapps] - Apache JackRabbit 2.0.0 webapp XPath Injection
- [webapps] - SaurusCMSupdate4.7.0 Remote File Include
- [dos] - Abac Karaoke 2.15 Denial of Service Vulnerability
- [dos] - RightMark Audio Analyzer 6.2.3 Denial of Service Vulnerability
- [webapps] - KnowledgeTree 3.5.2 Community Edition Permanent XSS Vulnerability
- [remote] - FTP Server v1.7.0.11 RNFR, DELE, RMD, STOR Commands Remote Buffer Overflow Exploit (Post Auth)
- [dos] - CombiWave Lite v4.0.1.4 Denial of Service Vulnerability
- [dos] - JaMP Player v4.2.2.0 Denial of Service Vulnerability
- [papers] - [German] XSS - Anwendungsbeispiele
- [papers] - [German] Blind SQL Injection
- [webapps] - Kleeja Upload - CSRF Change Admin Password
- [webapps] - PHP-Nuke-8.1-seo-Arabic Remote File Include
- [local] - Mediacoder 0.7.5.4710 "Universal" SEH Buffer Overflow Exploit
- [local] - Xion Player 1.0.125 Stack Buffer Overflow Exploit
- [papers] - MySQL Injection - Simple Load File and Into OutFile
- [dos] - SmartCode ServerX VNC Server ActiveX 1.1.5.0 (scvncsrvx.dll) DoS Exploit
- [webapps] - Plogger Remote File Disclosure Vulnerability
- [webapps] - Get Tube All Versions SQL Injection Vulnerability
- [papers] - [Vietnamese]How to attack and fix Local File Disclosure
- [webapps] - MailForm 1.2 Remote File Include
- [webapps] - ACollab Multiple Vulnerabilities
- [remote] - Adobe ColdFusion Directory Traversal Vulnerability - [CVE: 2010-2861]
- [webapps] - sFileManager
- [dos] - Acrobat Acrobat Font Parsing Integer Overflow Vulnerability
- [webapps] - Multiple CSRF Vulnerabilities in Saurus CMS Admin Panel
- [webapps] - Sports Accelerator Suite v2.0 (news_id) Remote SQL Injection Vulnerability
- [dos] - Computer Associates Advantage Ingress 2.6 Denial of Service Vulnerabilities
- [webapps] - PHP-Fusion Local File Includes Vulnerability
- [webapps] - MemHT Portal 3.9.0 Remote File Inclusion
- [webapps] - GuestBook Script PHP (XSS/HTML Injection) Multiple Vulnerabilities
- [webapps] - Zomplog CMS 3.9 Multiple XSS/CSRF Vulnerabilities
- [webapps] - Joomla Component (com_fireboard) SQL Injection Vulnerability
- [local] - Rosoft media player 4.4.4 SEH Buffer Overflow
- [webapps] - Joomla Component (com_weblinks) SQL Injection Vulnerability
- [webapps] - CMSQLite
- [webapps] - Joomla Component (com_equipment) SQL Injection Vulnerability
- [webapps] - Joomla Component Jgrid 1.0 Local File Inclusion Vulnerability
- [remote] - 123 Flashchat version 7.8 Multiple Remote Vulnerabilities
- [webapps] - Joomla Component OnGallery SQL Injection Vulnerability
- [papers] - Injector Mask or A Tool
- [local] - MUSE v4.9.0.006 (.m3u) Local Buffer Overflow Exploit
- [local] - MUSE v4.9.0.006 (.pls) Local Universal Buffer Overflow [SEH]
- [papers] - [Georgian] Metasploit, Full Review
- [dos] - Microsoft Windows win32k!xxxRealDrawMenuItem() Missing HBITMAP Bounds Checks
- [dos] - Microsoft Windows KTM Invalid Free with Reused Transaction GUID (MS10-047) - [CVE: 2010-1889]
- [dos] - Microsoft Windows nt!NtCreateThread Race Condition with Invalid Code Segment (MS10-047) - [CVE: 2010-1888]
- [dos] - Microsoft Windows nt!SeObjectCreateSaclAccessBits() Missed ACE Bounds Checks (MS10-047) - [CVE: 2010-1890]
- [dos] - Microsoft Windows win32k!GreStretchBltInternal() Does Not Handle src == dest
- [local] - Brazip 9.0 (.zip File) Buffer Overflow (SEH)
- [local] - Triologic Media Player 8 (.m3u) Local Universal Unicode Buffer Overflow (SEH)
- [webapps] - Free Simple Software v1.0 Remote File Inclusion Vulnerability
- [remote] - Microsoft SRV2.SYS SMB Negotiate ProcessID Function Table Dereference (MS09-050)
- [local] - A-PDF WAV to MP3 Converter 1.0.0 (.m3u) Stack Buffer Overflow
- [webapps] - Joomla Component "com_dirfrm" Sql Injection Vulnerability
- [dos] - PHP 5.3.3 ibase_gen_id() off-by-one Overflow Vulnerability
- [dos] - VbsEdit v4.6.1.0 Denial of Service
- [local] - SOMPL Music Player v1.0 (.m3u) Local Buffer Overflow (SEH)
- [local] - A-PDF WAV to MP3 v1.0.0 Universal Local SEH Exploit
- [dos] - Httpdx 1.5.4 multiple DoS (http-ftp) PoC
- [webapps] - Open-Realty 2.5.7 Local File Disclosure Vulnerability
- [dos] - RockN Wav Editor 1.8 Denial of Service Vulnerability
- [webapps] - VBbuletin 4.0.4 Multiple Vulnerabilities
- [dos] - SonicWALL E-Class SSL-VPN ActiveX Control Format String Overflow
- [local] - FreeBSD mbufs() sendfile Cache Poisoning Privilege Escalation
- [dos] - Tuniac 100723 Denial of Service Vulnerability
- [dos] - Fennec 1.2 Beta 3 Denial of Service Vulnerability
- [shellcode] - Linux x86 /bin/sh Null-Free Polymorphic Shellcode - 46 bytes
- [local] - MS Word Record Parsing Buffer Overflow (MS-09-027)
- [webapps] - Joomla Component com_extcalendar Blind SQL Injection Vulnerability
- [dos] - Karaoke Video Creator Denial of Service Vulnerability
- [papers] - Exploiting Large Memory Management Vulnerabilities in Xorg Server Running on Linux
- [shellcode] - Windows XP SP3 English MessageBoxA Shellcode - 87 bytes
- [dos] - AV Music Morpher Gold 5.0.38 (.m3u) Denial of Service Vulnerability
- [dos] - PlayPad Music Player v1.12 .mp3 Denial of Service Vulnerability
- [remote] - AoA Audio Extractor 2.0.0.0 ActiveX Buffer Overflow (SEH)
- [webapps] - Joomla Component com_zina SQL Injection Vulnerability
- [webapps] - Biblioteca 1.0 Beta Joomla Component Multiple SQL Injection Vulnerabilities
- [webapps] - T-dreams Announcement Script SQL Injection Vulnerability
- [dos] - Microsoft Windows DoS (IcmpSendEcho2Ex interrupting)
- [dos] - MS Excel Malformed FEATHEADER Record Exploit (MS09-067)!
- [webapps] - Joomla Component (com_Fabrik) SQL Injection Vulnerability
- [papers] - [Turkish] Binary Code Modification (Patching Vulnerabilities)
- [webapps] - netStartEnterprise v4.0 SQL Injection Vulnerability
- [papers] - Cracking Salted Hashes
- [dos] - Tplayer V1R10 Denial of Service Vulnerability
- [webapps] - 4images 1.7.8 Remote File Inclusion Vulnerability
- [dos] - Abyssal Metal Player 2.0.9 Denial of Service Vulnerability
- [webapps] - Ananta Gazelle CMS Multiple Vulnerabilities
- [papers] - [Arabic] Paper Sniffer Password WireShark
- [webapps] - LINK CMS SQL Injection Vulnerability
- [webapps] - AneCMS SQL Injection Vulnerability in /registre/next
- [webapps] - Joomla Component (com_zoomportfolio) SQL Injection Vulnerability
- [local] - MicroP malicious mppl Buffer Overflow
- [remote] - Wireshark
- [webapps] - Joomla 1.5 URL Redirecting Vulnerability
- [remote] - Microsoft Power Point 2010 DLL Hijacking Exploit (pptimpconv.dll)
- [local] - Linux Execute Command on ARM Architecture
- [papers] - [Arabic] Paper Introduction to Penetration Testing
- [papers] - [Arabic] Paper Introduction to Penetration Testing
- [local] - uTorrent
- [local] - Windows Live Email DLL Hijacking Exploit (dwmapi.dll)
- [local] - Foxit Reader
- [webapps] - Joomla Component (com_remository) SQL Injection Vulnerability
- [local] - Firefox
- [local] - Microsoft Windows Movie Maker
- [local] - Opera v10.61 DLL Hijacking Exploit (dwmapi.dll)
- [webapps] - Simple Forum PHP Multiple Vulnerabilities
- [papers] - DDoS Attacks explaination, classification and suggested solutions
- [webapps] - ClanSphere 2010 Multiple Vulnerabilities
- [local] - Microsoft Windows 7 wab.exe DLL Hijacking Exploit (wab32res.dll)
- [local] - TeamViewer
- [local] - Adobe Dreamweaver CS4 DLL Hijacking Exploit (ibfs32.dll)
- [local] - BS.Player
- [local] - Adobe Dreamweaver CS5
- [local] - Adobe Photoshop CS2 DLL Hijacking Exploit (Wintab32.dll)
- [local] - avast!
- [local] - Microsoft Visio 2003 DLL Hijacking
- [local] - Microsoft Address Book 6.00.2900.5512 DLL Hijacking
- [local] - Microsoft Office Groove 2007 DLL Hijacking
- [local] - TeamMate Audit Management Software Suite DLL Hijacking
- [local] - uTorrent DLL Hijacking Vulnerabilities
- [local] - Acunetix Web Vulnerability Scanner DLL Hijacking
- [local] - VLC Media Player DLL Hijacking
- [local] - Roxio Photosuite 9 DLL Hijacking Exploit
- [local] - Microsoft Vista BitLocker Drive Encryption API Hijacking Exploit
- [local] - InterVideo WinDVD 5 DLL Hijacking Exploit
- [local] - Microsoft Internet Connection Signup Wizard DLL Hijacking
- [local] - Adobe Device Central CS5 DLL Hijacking Exploit (qtcf.dll)
- [local] - Safari v5.0.1 DLL Hijacking Exploit
- [local] - Microsoft Group Convertor DLL Hijacking Exploit (imm.dll)
- [local] - Mircosoft Windows Program Group DLL Hijacking Exploit
- [papers] - Binary Code Modification
- [dos] - Adobe Acrobat Reader All Version Memory Corruption
- [local] - Ettercap NG-0.7.3 DLL hijacking (wpcap.dll)
- [local] - Bloodshed Dev-C++ Binary Hijacking Exploit (make.exe, mingw32.exe)
- [local] - Skype
- [local] - Mediaplayer Classic 1.3.2189.0 DLL Hijacking Exploit (iacenc.dll)
- [local] - TechSmith Snagit 10 (Build 788) DLL Hijacking Exploit (dwmapi.dll)
- [local] - Windows Program Group DLL Hijacking Exploit (imm.dll)
- [local] - Roxio Creator DE DLL Hijacking Exploit (HomeUtils9.dll)
- [dos] - Flash Movie Player v1.5 File Magic Denial of Service Vulnerability
Powered by vBulletin® Version 4.2.5 Copyright © 2025 vBulletin Solutions Inc. All rights reserved.