exploit

Invision Power Board Currency Mod(edit) SQL injection

Posted in 0day, Vulnerable InforMation, exploit on March 13th, 2010 by admin – Be the first to comment

# Title: Invision Power Board Currency Mod(edit) SQL injection
# EDB-ID: 11702
# CVE-ID: ()
# OSVDB-ID: ()
# Author: Pr0T3cT10n
# Published: 2010-03-12
# Verified: no
# Download Exploit Code
# Download N/A

view sourceprint?# Exploit Title: Invision Power Board Currency Mod(edit) SQL injection

# Date: 17/04/2007

# Author: Pr0T3cT10n

# Software Link: www.invisionpower.com

#

[Read All About This Article]

Apache Spamassassin Milter Plugin Remote Root Command Execution

Posted in 0day, Vulnerable InforMation, exploit on March 13th, 2010 by admin – Be the first to comment

# Title: Apache Spamassassin Milter Plugin Remote Root Command Execution
# EDB-ID: 11662
# CVE-ID: ()
# OSVDB-ID: ()
# Author: Kingcope
# Published: 2010-03-09
# Verified: yes
# Download Exploit Code
# Download N/A

view sourceprint?
Description: The Spamassassin Milter plugin suffers from a remote root command execution vulnerability. Full exploit details provided.

Author: Kingcope

Spamassassin Milter Plugin Remote

[Read All About This Article]

Apache 2.2.14 mod_isapi Dangling Pointer Remote SYSTEM Exploit

Posted in 0day, Vulnerable InforMation, exploit on March 13th, 2010 by admin – Be the first to comment

# Title: Apache 2.2.14 mod_isapi Dangling Pointer Remote SYSTEM Exploit
# EDB-ID: 11650
# CVE-ID: (CVE-2010-0425)
# OSVDB-ID: ()
# Author: Brett Gervasoni
# Published: 2010-03-07
# Verified: yes
# Download Exploit Code
# Download N/A

view sourceprint?/*

* Apache 2.2.14 mod_isapi Dangling Pointer Remote SYSTEM Exploit (CVE-2010-0425)

*

[Read All About This Article]

Microsoft Internet Explorer iepeers.dll Use-After-Free Exploit (meta)

Posted in 0day, Vulnerable InforMation, exploit on March 13th, 2010 by admin – Be the first to comment

# Title: Microsoft Internet Explorer iepeers.dll Use-After-Free Exploit (meta)

# EDB-ID: 11683

# CVE-ID: ()

# OSVDB-ID: ()

# Author: Trancer

# Published: 2010-03-10

# Verified: yes

# Download Exploit Code

# Download N/A

view sourceprint?##

# ie_iepeers_pointer.rb

#

# Microsoft Internet Explorer iepeers.dll use-after-free exploit for the Metasploit Framework

#

# Tested successfully on the

[Read All About This Article]

Internet Explorer ‘winhlp32.exe’ ‘MsgBox()’ Remote Code Execution Vulnerability

Posted in Vulnerable InforMation, exploit on March 6th, 2010 by admin – Be the first to comment

# Title: Internet Explorer ‘winhlp32.exe’ ‘MsgBox()’ Remote Code Execution Vulnerability

# EDB-ID: 11615

# CVE-ID: ()

# OSVDB-ID: ()

# Author: Maurycy Prodeus

# Published: 2010-03-02

# Verified: yes

# Download Exploit Code

# Download N/A

view sourceprint?Microsoft Internet Explorer is prone to a remote code execution vulnerability.

 

Source (iSEC Security

[Read All About This Article]

Internet Explorer (6/7) Remote Code Execution -Remote User Add Exploit

Posted in Vulnerable InforMation, exploit on March 6th, 2010 by admin – Be the first to comment

# Title: Internet Explorer (6/7) Remote Code Execution -Remote User Add Exploit
# EDB-ID: 11457
# CVE-ID: ()
# OSVDB-ID: ()
# Author: Sioma Labs
# Published: 2010-02-15
# Verified: yes
# Download Exploit Code
# Download N/A

view sourceprint?# Exploit Title: Internet Explorer ( 6/7) Remote Code Execution -Remote User Add Exploit

# Date: 15/02/2010

# Author: Sioma Labs

# Software Link: N/A

# Version: IE 7

[Read All About This Article]

IE wshom.ocx (Run) ActiveX Remote Code Execution ( add admin user)

Posted in Vulnerable InforMation, exploit on January 27th, 2010 by admin – Be the first to comment

7cf51ba8bcb02ead15487015af4c73fa003

[Read All About This Article]

Windows Media Player 11 ActiveX launchURL() files download

Posted in 0day, Vulnerable InforMation, exploit on January 18th, 2010 by admin – Be the first to comment

This is a vulnerability into Windows Media Player ActiveX launchURL() function

which someone can download what ever file into the vulnerable machine !!!
Discovered and written by Jacky!
Tested version: 11.0.5358.4827
Tested machine: Windows XP SP3 & Windows XP SP2

7cf51ba8bcb02ead15487015af4c73fa004

[Read All About This Article]

Internet Explorer Aurora Exploit

Posted in 0day, Vulnerable InforMation, exploit on January 18th, 2010 by admin – Be the first to comment

#

# Author : Ahmed Obied (ahmed.obied@gmail.com)

#

# This program acts as a web server that generates an exploit to

# target a vulnerability (CVE-2010-0249) in Internet Explorer.

# The exploit was tested using Internet Explorer 6 on Windows XP SP2.

# The exploit’s payload spawns the calculator.

#

# Usage : python ie_aurora.py [port number]

#

7cf51ba8bcb02ead15487015af4c73fa005

[Read All About This Article]

Linux Kernel FASYNC Use-After-Free Privilege Escalation Vulnerability

Posted in 0day, Vulnerable InforMation, exploit on January 17th, 2010 by admin – Be the first to comment

Affect:

Linux kernel 2.6.32
Linux kernel 2.6.31 5
+ Trustix Secure Enterprise Linux 2.0
+ Trustix Secure Linux 2.2
+ Trustix Secure Linux 2.1
+ Trustix Secure Linux 2.0
Linux kernel 2.6.31 .2
Linux kernel 2.6.31 .11
Linux kernel 2.6.31 -rc7
+ Trustix Secure Enterprise Linux 2.0
+ Trustix Secure Linux 2.2
+ Trustix Secure Linux 2.1
+ Trustix Secure Linux 2.0
Linux kernel 2.6.31 -rc6
+ Trustix Secure

[Read All About This Article]