header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Thyme Calendar 1.3 SQL Vulnerability Exploit

A vulnerability exists in Thyme Calendar 1.3 (and possibly lower versions) which allows execution of a custom SQL query. The vulnerability exists in event_view.php, because the 'eid' field is not properly validated. An attacker could exploit the vulnerability with a specific request. By changing the 'eid' field, the attacker can retrieve all the usernames from the database instead of the intended 'id' from thyme_Attachments. The attacker can grab the usernames from the HTML source by searching for 'aid='.

McAfee Security Center IsOldAppInstalled ActiveX Buffer Overflow Vulnerability

This exploit takes advantage of a buffer overflow vulnerability in the IsOldAppInstalled ActiveX control in McAfee Security Center. It allows an attacker to execute arbitrary code on a vulnerable system. The exploit is tested on Windows 2000 with the dll version Mcsubmgr.dll 6.0.0.15.

MS07-027 mdsauth.dll NMSA Session Description Object SaveAs control, arbitrary file modification

The vulnerability allows an attacker to modify arbitrary files on the system. The exploit uses the NMSA Session Description Object SaveAs control to modify the boot.ini file. This vulnerability is documented in Microsoft Security Advisory MS07-027.

DLL Planting Attack in Microsoft Office

It is possible for an attacker to execute a DLL planting attack in Microsoft Office with a specially crafted OLE object. The attached POC document contains an embedded Packager object with a modified CLSID that triggers the vulnerable LoadLibraryW() call, resulting in the loading of a malicious DLL from the current working directory of Word.

Recent Exploits: