header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Itech Dating Script v3.26 – ‘send_gift.php’ SQL Injection

A SQL injection vulnerability exists in Itech Dating Script v3.26, which allows an attacker to execute arbitrary SQL commands via the 'send_gift.php' script. An attacker can send a specially crafted request to the vulnerable script to execute arbitrary SQL commands.

HelpDeskZ <= v1.0.2 - Authenticated SQL Injection / Unauthorized file download

HelpDeskZ <= v1.0.2 suffers from an sql injection vulnerability that allow to retrieve administrator access data, and download unauthorized attachments. Software after ticket submit allow to download attachment by entering following link: http://127.0.0.1/helpdeskz/?/?v=view_tickets&action=ticket&param[]=2(VALID_TICKET_ID_HERE)&param[]=attachment&param[]=1&param[]=1(ATTACHMENT_ID_HERE). By entering a valid id of param[] which is our submited ticket id and adding our query on the end of request we are able to download any uploaded attachment.

VirtualBox Extension-Pack Update Vulnerability

In Oracle's VirtualBox, it is possible to compromise a system behind a firewall by infiltrating the updates of Extension-Packs due to the lack of HTTPS and the presence of a privilege escalation bug in the downloader of VirtualBox. A Man-In-The-Middle could send his own Extension-Pack(with malicious code included) instead of the regular update to the target, which would be executed with user-permissions. The malicious code could be an executable with setuid-permissions to the Extension-Pack, which would be stored as owner root and without checking the permissions of the binaries.

Recent Exploits: