漏洞情报263

飞飞影视SQL injection exploit(转自fans web安全吧)

< ? php /** * 飞飞影视管理系统 SQL injection * 飞飞影视系统PHP版 v1.9 injection exploit * by:www.08sec.com fans * ...

Doors web 注入漏洞

# Google dork: [inurl:"indice.php?page_id="] #exploit http://target.com.ar/indice.php?page_id= # ...

Flash xss预警。

在乌云看到的。目前发现各大网站都存在,百度、猫扑、英特尔、腾讯…… A Xss vulnerability in JWPlayer Test Browser: IE , Firefox. Test P ...

phpmoneybooks CSRF Vulnerability (Add Admin)

Exploit: <html> <head> <title>phpmoneybooks [Add Admin]</title> </head&gt ...

Decoda跨站脚本漏洞

Decoda 3.3.3之前版本中存在跨站脚本漏洞,该漏洞源于对用户提供的输入未经正确过滤。 攻击者可利用该漏洞在受影响站点上下文的不知情用户浏览器上执行任意脚本代码,盗取基于cookie的认证证书进 ...

SOCO CMS本地文件包含漏洞

# Exploit Title: Soco CMS Local File Include # Google Dork: "Powered by Soco" # Date: 28/04/2012 # V ...

MS12-027 MSCOMCTL ActiveX Buffer Overflow

require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = AverageRanking inclu ...