This Metasploit module exploits a stack based buffer overflow on Cogent DataHub 7.3.0. The vulnerability exists in the HTTP server - while handling HTTP headers, a strncpy() function is used in a dangerous way. This Metasploit module has been tested successfully on Cogent DataHub 7.3.0 (Demo) on Windows XP SP3.
159df1a050ad08d1ce4d2748e5bada31fccd4a02cc740c4ae686bf707ba3327f
VoltEdit CMS suffers from administrative login bypass due to remote SQL injection and allows for PHP shells to be uploaded. Note that this finding houses site-specific data.
e7647ac0f638ac3badc02964265910c1dd8524abebceee54710f8a72dc9f1926
Cha Cha... Chopping Down The China Chopper Webshell is a malware analysis report for BackDoor.Chopper.1 aka caidao.exe.
b380ce2d3fa94c2085109e2014cd57746fde7494e6cc12b6346a484b549b63c5
This whitepaper goes into detail on exploitation techniques to bypass modern security mechanisms cerated to mitigate the common buffer overflow in Linux.
a28077f3efc10afd982560236f8d1705726408966a2cf3ce78caa1d0357240c4
Moxiecode Image Manager version 3.1.5 suffers from cross site scripting, content spoofing, and path disclosure vulnerabilities.
a9e54499e68755d73ba75172dca267dc5981d84e3d9c9cd53376f9acc8ad28fb
The Joomla JDownloads component suffers from a cross site scripting vulnerability.
89af25f74927cb0c3018f7d24786d22cf7cd4015c601327f4cdec2d170d2abb9
PHP Melody version 1.0 suffers from a cross site request forgery vulnerability.
d7d1ed29ca609c86e928ba84a072f2f3dc3487e248c146e6b33e7c09de6f5b0d