Packet Storm new exploits for September, 2008.
62326085eed4e9c4cba70ae445d31d1decef9dea368e6e3715ffde11762ece0d
SG Real Estate Portal version 2.0 suffers from an insecure cookie handling vulnerability.
db828035371eb1bb927c63944304a02fcd383a0867848936505d1b33fdde0a75
SG Real Estate Portal version 2.0 remote blind SQL injection exploit.
7e886982677e5a957e23cc836e8653eb53687e0bea9582ed17daf86462694e4a
SG Real Estate Portal version 2.0 suffers from blind SQL injection and local file inclusion vulnerabilities.
de836e77ea0f7a7769714eca3a4446d5f470c2a455658c77b1291b96959ba3f2
Autodesk DWF Viewer Control / LiveUpdate Module remote code execution exploit.
f1029b67056a7d3e358536ea18aa53b67251312416070495e9e07a1cc44ac85b
FAQ Management script suffers from a remote SQL injection vulnerability.
7c777e32b0fbe689f05119ba30cf1986320e5dab63dbbc740fa963692e29cdd8
A4Desk PHP Event Calendar suffers from a remote file inclusion vulnerability.
7d9ec4f7d7eb87cdc98fedf188d969ca914a63b8d3d1bddaa96686b4471a1587
moziloWiki versions 1.0.1 and below suffer from directory traversal, cross site scripting, and session fixation vulnerabilities.
dd70b38bb138d0c30f9c05b0e529b68107bda25a14630d9ff1f9bf7c2881f719
WordPress MU versions below 2.6 suffer from a cross site scripting vulnerability in wpmu-blogs.php.
d01df92f8463db0d7b80d62d8d9f582c1da47c5dec6ed4787fcc220dd29a1b05
Microsoft Internet Explorer 7 denial of service exploit that is rumored to work on Konqueror as well.
8dc016e3cc408775b62e24a690b409bf357a88e7eaaeeba745fa05f4de57e864
Google Chrome version 0.2.149.30 and Safari version 3.1.2 suffer from a denial of service vulnerability.
531e1a8480c236fc4e23ac372b18f3494acdb457c7aad25a7c490e7f83db8d65
eFront versions 3.5.1 build 2710 and below suffer from a remote arbitrary upload vulnerability.
f4788935b9457ec26e198374eff3b3fef8b80d2e17f7019c82569c3da83a88e2
Micronation Banking System version 1.5.0 suffers from multiple remote file inclusion vulnerabilities.
f9d3360dd468bb9b3531a4ef31fca23c0fb130714fad0339aa04c75d8393ca8b
Arab CMS suffers from a local file inclusion vulnerability in rss.php.
afc86b155ed4f8dbaac2c98cfdb2416a8b998005d9d0e75834d2af166200ac95
Wireshark version 1.0.x .ncf file local denial of service exploit.
2cfdee65cc7b547a0fce79e6e5a78becb24fb2f2755eb34d6eec8a2a663850a0
Easy4U CMS suffers from remote SQL injection and cross site scripting vulnerabilities in main.php.
f26cc47413f122254c3b3e5b9cd770f85036cfc3b09f047e9a4fb2fe8c53d412
PG Matchmaking script suffers from multiple remote SQL injection vulnerabilities.
96a5d237a60bb3877dc359724d4eba3de78f9b15f35e496434138d041ebe1e0d
Microsoft Internet Explorer GDI+ proof of concept exploit that leverages the vulnerability discussed in MS08-0520.
376cdc7915b16249b5d749a03c36b04c1c135bc858978a193f4fadb95a49d9d2
Microsoft Windows Explorer unspecified .zip file denial of service exploit.
f531da1c186536d9933cd94757784b725cc87f4068f41e960b5a3c55ffcbe704
Events Calendar version 1.1 suffers from a remote file inclusion vulnerability.
c7accb640191adde04e110cfbdb7d451fe643bfb3648775dbdec9aaa70aea8db
The PHP-Fusion Freshlinks module suffers from a remote SQL injection vulnerability.
0475c3878933ffe910da8e4da74f233516eeaac0fd62460f27dd85081ed66faf
Post Comments version 3.0 suffers from an insecure cookie handling vulnerability.
2a7b580d281ecbf99eb8abb909f426df51556f9d65b68b58a00b5d17ebfaf740
xbtit version 2.0.0 suffers from a remote SQL injection vulnerability in scrape.php.
fe1f807954115e111e293060b4617a8313825d401b051ec60502c0fbfb78e3a7
Webbiscuits Events Calendar version 1.1 suffers from a remote file inclusion vulnerability.
ad6b59c56f6811663cc68deedc31be8fe2fc55e12181e20c4e2284dc0a12acf8
The Joomla imagebrowser component versions 0.1.5 RC2 and below suffer from a directory traversal vulnerability.
1c58371d1cdd17bdbd5ab29e13bf1bb001dd942eb9b088ec150bd1b4ee4f20c4