XM Easy Personal FTP Server HELP and TYPE command Remote Denial of Service exploit

2009-06-10 Thread vinodsharma . mimit
#!usr/bin/perl -w ### # XM Easy Personal FTP Server 5.x allows remote attackers to cause a denial of service # via a HELP or TYPE command with an overly long argument. # Refer: #

Doubt in MySQL Quick Admin = 1.5.5 (COOKIE) Local File Inclusion Vulnerability POC posted on milworm

2008-10-17 Thread vinodsharma . mimit
Greetings All, I am trying to reproduce the issue, but php is reporting some error: like fail to open lang/../../../../../../../../../../etc/passwd%00; path=//lang.php. vulnerable code is: include(lang/.$_SESSION['language']./lang.php); exploit is:

Re: Re: file upload vulnerability in joomla media component

2007-10-05 Thread vinodsharma . mimit
Hi Gavin even with the manager previleges it is possible to exploit this issue.