Local root exploit for Mageia release 2 (32bit) using the sock_diag_handlers[] vulnerability.
583f10c762d370ddd5cd3c44ff64334cc20eb9b077d18cc3b9667645a0e13222
Edimax version IC-3030iWn web administrative authentication bypass exploit. Written to use on a Mac. This also affects Edimax IC-3015 and Airlive WN 500.
752e66671fbfcb2b8ecd43374b58b4b79148ce19656b38f3936ce93089219033
Open-CMS Site Protection Plugin suffers from a remote file inclusion flaw.
b00b936a466c7e928f730c2e1bdcc7e3110d59930de2a9be235f38693ece67b5
Cadre suffers from a remote file inclusion flaw.
a30e4cb73af41aa801f1a08472b89c5c7b284bd9db0651dccdf58147fa85c880
Upload Service version 1.0 suffers from a remote file inclusion flaw.
ba0bfa958df599ce727eaf211393014b2e9944204f9b13abb3650607af4ea8ee
PunBB 1.2.6 suffers from a script injection flaw in its use of IMG tags.
76a92ae5e6fde10cb9ced424297930667ae0f73758379c6a6d9c3cb5473d861c
Simple exploit to test for the file inclusion bug in SocialMPN.
7dbc4a0a4028de5f32efed7acd3e9c6d4d6f0b2e87f5348facc4e4f49077bc18
Aura CMS version 1.5 is susceptible to full path disclosure and cross site scripting flaws.
22e6513e068d86c89136d785bf64b15bc83811190025db52b304037ba642137a
Exponent CMS version 0.95 is susceptible to full path disclosure and cross site scripting vulnerabilities.
cba48bf52bb176ac8e8bda738703049a1c0e2915e1885ece04e0b5b76e7fb5a5
paFileDB 3.1 has a couple vulnerabilities that allow for admin password hash retrieval and full path disclosure.
7941c69e2c5585e3dd631051168d891a80082570eee9864842499d58fad048a2
JAF CMS is susceptible to path disclosure and directory traversal attacks.
7072af4eb62c08137389015e4f2b4cd7805e59cbb744ba7cd4239a01a4338488
AJ-Fork version 1.67 is susceptible to path disclosure, directory listing, backup directory access, and other flaws that allow access to database files. Exploitation provided.
8ec6b8d2a7db3b1b263f522b3d69c5e2539d1001dc807514dad9cd3127bed9d8
1n BBS E-Market Professional is susceptible to remote command execution vulnerabilities via remote file inclusion and also has a full path disclosure flaw.
3d4f0cad3bf5909482a41b6cd90458a4c7d884937342ee058bb2ffbf732e9cd2
YABBSE 1.5.1 is susceptible to a full path disclosure flaw.
808d9da033aa558f922dc12bcc718aa04988bf14d7ac1d1f17867f1243794e6d
PHP-Fusion version 4.00 has a full path disclosure vulnerability and a flaw that allows an attacker to download the database backup file that can be used to gain administrative access.
fd86bda119a57bd26be037bf969a91bac23833996dd042ce8a6c44eff41ef812
JetboxOne CMS version 2.0.8 keeps system passwords in an unencrypted state and also has a remote code execution flaw.
b1e5dc4defffff99c27ff9d8f7a58a28058aa20c7886e2691265f0547b90ded7
eNdonesia CMS version 8.3 is susceptible to full path disclosure and cross site scripting flaws.
60638bbb95e9a7ce651c3e384bfaaa636ff1aff85d2311db1f9d4c5907dfc386