Exploits

May 14, 2008 3 e107 ZoGo-Shop Plugin "cat" SQL Injection Vulnerability
Cr@zy_King has discovered a vulnerability in the ZoGo-Shop plugin for e107, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/1765
May 14, 2008 3 Meto Forum Multiple SQL Injection Vulnerabilities
U238 has reported some vulnerabilities in Meto Forum, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/1764
May 14, 2008 3 Automated Link Exchange Portal "cat_id" SQL Injection
HaCkeR_EgY has reported a vulnerability in Automated Link Exchange Portal, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/1763
May 14, 2008 2 Fedora update for licq
Fedora has issued an update for licq. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
http://www.exploits.net/link/1762
May 14, 2008 3 AJ Auction "item_id" SQL Injection Vulnerability
t0pP8uZz has reported a vulnerability in AJ Auction, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/1761
May 14, 2008 3 CaLogic "langsel" SQL Injection Vulnerability
His0k4 has reported a vulnerability in CaLogic, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/1760
May 14, 2008 2 Red Hat update for xen
Red Hat has issued an update for xen. This fixes some vulnerabilities and a security issue, which can be exploited by malicious, local users to bypass certain security restrictions, cause a DoS (Denial of Service), or truncate arbitrary files.
http://www.exploits.net/link/1759
May 14, 2008 3 Ubuntu update for openssh
Ubuntu has issued an update for openssh. This fixes a security issue, which can lead to weak cryptographic key material.
http://www.exploits.net/link/1758
May 14, 2008 3 Gentoo update for cdf
Gentoo has issued an update for cdf. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library.
http://www.exploits.net/link/1757
May 14, 2008 3 Ubuntu update for openvpn
Ubuntu has issued an update for openvpn. This fixes a security issue, which can lead to weak cryptographic key material.
http://www.exploits.net/link/1756
May 14, 2008 1 Avaya CMS Solaris SSH X11 Forwarding Vulnerability
Avaya has acknowledged a vulnerability in CMS, which can be exploited by malicious, local users to disclose sensitive information or potentially perform actions with escalated privileges.
http://www.exploits.net/link/1755
May 14, 2008 3 EMO Realty Manager "ida" SQL Injection Vulnerability
HaCkeR_EgY has reported a vulnerability in EMO Realty Manager, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/1754
May 14, 2008 3 WebGroupCommunicationCenter (WGCC) SQL Injection and Cross-Site Scripting
Some vulnerabilities have been reported in WebGroupCommunicationCenter (WGCC), which can be exploited by malicious users to conduct SQL injection attacks and malicious people to conduct cross-site scripting attacks.
http://www.exploits.net/link/1753
May 14, 2008 3 CMS Made Simple Multiple File Extensions Vulnerability
EgiX has discovered a vulnerability in CMS Made Simple, which can be exploited by malicious people to compromise a vulnerable system.
http://www.exploits.net/link/1752
May 14, 2008 2 Fedora update for libid3tag
Fedora has issued an update for libid3tag. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
http://www.exploits.net/link/1751
May 14, 2008 2 IDAutomation Barcode ActiveX Controls Insecure Methods
shinnai has discovered some vulnerabilities in various IDAutomation Barcode ActiveX controls, which can be exploited by malicious people to overwrite arbitrary files.
http://www.exploits.net/link/1750
May 13, 2008 3 Microsoft Malware Protection Engine File Parsing Denial of Service
Two vulnerabilities have been reported in various Microsoft products, which can be exploited by malicious people to cause a DoS (Denial of Service).
http://www.exploits.net/link/1749
May 13, 2008 4 Microsoft Publisher Object Handler Validation Vulnerability
A vulnerability has been reported in Microsoft Publisher, which can be exploited by malicious people to compromise a user's system.
http://www.exploits.net/link/1748
May 13, 2008 4 Microsoft Word Two Code Execution Vulnerabilities
Two vulnerabilities have been reported in Microsoft Word, which can be exploited by malicious people to compromise a user's system.
http://www.exploits.net/link/1747
May 13, 2008 4 Debian OpenSSL Predictable Random Number Generator and Update
Debian has issued an update for OpenSSL. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system, and a security issue, which can lead to weak cryptographic key material.
http://www.exploits.net/link/1746
May 13, 2008 3 Ubuntu update for openssl
Ubuntu has issued an update for openssl. This fixes a security issue, which can lead to weak cryptographic key material.
http://www.exploits.net/link/1745
May 13, 2008 2 Build A Niche Store "q" Cross-Site Scripting
Russ McRee has reported a vulnerability in Build A Niche Store (BANS), which can be exploited by malicious people to conduct cross-site scripting attacks.
http://www.exploits.net/link/1744
May 13, 2008 2 cPanel Cross-Site Scripting and Request Forgery Vulnerabilities
Matteo Carli has reported some vulnerabilities in cPanel, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.
http://www.exploits.net/link/1743
May 13, 2008 2 ZyXEL ZyWALL 100 "Referer" Cross-Site Scripting Vulnerability
Deniz Cevik has reported a vulnerability in ZyXEL ZyWALL 100, which can be exploited by malicious people to conduct cross-site scripting attacks.
http://www.exploits.net/link/1742
May 13, 2008 2 mrxvt X11 Display Security Issue
A security issue has been reported in mrxvt, which can be exploited by malicious, local users to gain escalated privileges.
http://www.exploits.net/link/1741
May 13, 2008 2 Gentoo update for aterm, eterm, rxvt, mrxvt, multi-aterm, wterm, and rxvt-unicode
Gentoo has issued an update for aterm, eterm, rxvt, mrxvt, multi-aterm, wterm, and rxvt-unicode. This fixes a security issue, which can be exploited by malicious, local users to gain escalated privileges.
http://www.exploits.net/link/1740
May 13, 2008 2 aterm X11 Display Security Issue
A security issue has been reported in aterm, which can be exploited by malicious, local users to gain escalated privileges.
http://www.exploits.net/link/1739
May 13, 2008 2 rxvt-unicode X11 Display Security Issue
A security issue has been reported in rxvt-unicode, which can be exploited by malicious, local users to gain escalated privileges.
http://www.exploits.net/link/1738
May 13, 2008 2 wterm X11 Display Security Issue
A security issue has been reported in wterm, which can be exploited by malicious, local users to gain escalated privileges.
http://www.exploits.net/link/1737
May 13, 2008 2 Novell Client Login Long Username/Context Buffer Overflow
laurent gaffié has discovered a vulnerability in Novell Client, which can be exploited by malicious people with physical access to cause a DoS (Denial of Service) or compromise a vulnerable system.
http://www.exploits.net/link/1736