header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

gcc infR3.s -o infR3

This exploit is a local privilege escalation vulnerability in the Linux operating system. It is coded by jolmos@7a69ezine.org and sha0@BadCheckSum.com. It uses a buffer overflow to inject malicious code into a writable binary, such as /bin/ls, which is then executed with root privileges. This allows the attacker to gain access to the system with root privileges.

PHPMyNews 1.4 <= (cfg_include_dir) Remote File Include Vulnerability

A remote file include vulnerability exists in PHPMyNews 1.4 and earlier versions. The vulnerability is due to the application failing to properly sanitize user-supplied input to the 'cfg_include_dir' parameter of the 'disp_form.php3', 'disp_smileys.php3', 'little_news.php3' and 'index.php3' scripts. An attacker can exploit this vulnerability to execute arbitrary PHP code on the vulnerable system by supplying a malicious URL in the 'cfg_include_dir' parameter.

FreeForum 0.9.7 (fpath) Remote File Include Vulnerability

FreeForum 0.9.7 is vulnerable to a remote file include vulnerability. The vulnerability exists due to insufficient sanitization of user-supplied input in the 'fpath' parameter of the 'forum.php' script. An attacker can exploit this vulnerability to include arbitrary remote files, allowing for the execution of arbitrary PHP code on the vulnerable system.

Dimension of phpBB Remote File Inclusion Vulnerability

A remote file inclusion vulnerability exists in Dimension of phpBB 0.2.5 (phpBB 2.0.21). An attacker can exploit this vulnerability to execute arbitrary code on the vulnerable system. The vulnerability is due to insufficient sanitization of user-supplied input to the 'phpbb_root_path' parameter in the 'themen_portal_mitte.php' and 'logger_engine.php' scripts. An attacker can exploit this vulnerability by sending a maliciously crafted HTTP request to the vulnerable system. Successful exploitation will result in arbitrary code execution on the vulnerable system.

Security Suite IP Logger Remote File Inclusion Vulnerability

This vulnerability allows remote attackers to execute arbitrary PHP code on vulnerable installations of phpBB. Authentication is not required to exploit this vulnerability. The vulnerability is caused due to the "logger_engine.php" script not properly sanitizing user-supplied input to the "phpbb_root_path" parameter. This can be exploited to include arbitrary local or remote PHP files.

phpMyTeam v2.0 <= (smileys_dir) Remote File Include Vulnerability

A remote file include vulnerability exists in phpMyTeam v2.0, due to the application not properly sanitizing user-supplied input. An attacker can exploit this vulnerability to execute arbitrary code on the vulnerable system. The vulnerability is due to the application not properly sanitizing user-supplied input to the 'smileys_dir' parameter in the 'smileys_packs.php' script. An attacker can exploit this vulnerability to execute arbitrary code on the vulnerable system by supplying a malicious URL in the 'smileys_dir' parameter.

Recent Exploits: