otmorozok428

3 exploits Active since Aug 2008
CVE-2008-3555 EXPLOITDB text WORKING POC
WSN Forum <4.1.43 - Path Traversal
Directory traversal vulnerability in index.php in (1) WSN Forum 4.1.43 and earlier, (2) Gallery 4.1.30 and earlier, (3) Knowledge Base (WSNKB) 4.1.36 and earlier, (4) Links 4.1.44 and earlier, and possibly (5) Classifieds before 4.1.30 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the TID parameter, as demonstrated by uploading a .jpg file containing PHP sequences.
EIP-2026-113329 EXPLOITDB text WORKING POC
WebmasterSite (Multiple Products) - Remote Command Execution
CVE-2008-6282 EXPLOITDB text WRITEUP
Ortus.nirn Cms Ortus < 1.13 - SQL Injection
SQL injection vulnerability in engine/users/users_edit_pub.inc in CMS Ortus 1.13 and earlier allows remote authenticated users to execute arbitrary SQL commands via the city parameter in a users_edit_pub action to index.php.