TrinTiTTY

7 exploits Active since Dec 2006
CVE-2007-3292 EXPLOITDB perl WORKING POC
LiveCMS <= 3.4 - Unauthenticated Arbitrary File Upload via Article Image Parameter
Unrestricted file upload vulnerability in LiveCMS 3.4 and earlier allows remote attackers to upload and execute arbitrary PHP code by specifying a PHP file type in a parameter intended for "a small image" associated with an article.
CVE-2007-3291 EXPLOITDB perl WORKING POC
LiveCMS <= 3.4 - Cross-Site Scripting via Article Name Parameter
Cross-site scripting (XSS) vulnerability in LiveCMS 3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via an article name, possibly involving the titulo parameter in article.php.
CVE-2007-3290 EXPLOITDB perl WORKING POC
LiveCMS <= 3.4 - SQL Injection via Categoria.php cid Parameter
categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a ' (quote) character in the cid parameter, which reveals the path in a forced SQL error message.
CVE-2007-2181 EXPLOITDB python WORKING POC
Webinsta FM Manager < 0.1.4 - Remote Code Execution via Absolute Path Parameter
PHP remote file inclusion vulnerability in admin/login.php in Webinsta FM Manager 0.1.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter, a different product and vector than CVE-2005-0748.
CVE-2006-6765 EXPLOITDB perl WORKING POC
pagetool < 1.07 - Remote Code Execution via File Inclusion in pt_upload.php
Multiple PHP file inclusion vulnerabilities in src/admin/pt_upload.php in Pagetool 1.07 allow remote attackers to execute arbitrary PHP code via (1) a local filename or FTP/share URI in the config_file parameter or (2) a URL in the ptconf[src] parameter.
CVE-2007-3293 EXPLOITDB perl WORKING POC
LiveCMS <= 3.4 - SQL Injection via Categoria.php cid Parameter
SQL injection vulnerability in categoria.php in LiveCMS 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter.
CVE-2007-4055 EXPLOITDB python WORKING POC
SimpleBlog 3.0 - SQL Injection via comments_get.asp id Parameter
SQL injection vulnerability in comments_get.asp in SimpleBlog 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: this may be related to CVE-2006-4300.