exploits , vulnerabilities , articles , Sambar Server Search Script Mixed Query Vulnerability
| Title |
Sambar Server Search Script Mixed Query Vulnerability |
| Published |
2003-06-19-12:00AM |
| Updated |
2004-04-07-09:56PM |
| Class |
Input Validation Error |
| CVE |
CVE-MAP-NOMATCH |
| Remote |
Yes |
| Local |
No |
| Credit |
Discovery credited to Lorenzo Manuel Hernandez Garcia-Hierro. |
| Vulnerable |
Sambar Server 5.1
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Advanced Server SP1
Microsoft Windows 2000 Advanced Server SP2
Microsoft Windows 2000 Datacenter Server
Microsoft Windows 2000 Datacenter Server SP1
Microsoft Windows 2000 Datacenter Server SP2
Microsoft Windows 2000 Professional
Microsoft Windows 2000 Professional SP1
Microsoft Windows 2000 Professional SP2
Microsoft Windows 2000 Server
Microsoft Windows 2000 Server SP1
Microsoft Windows 2000 Server SP2
Microsoft Windows 95
Microsoft Windows 98
Microsoft Windows 98SE
Microsoft Windows ME
Microsoft Windows NT Enterprise Server 4.0
Microsoft Windows NT Enterprise Server 4.0 SP1
Microsoft Windows NT Enterprise Server 4.0 SP2
Microsoft Windows NT Enterprise Server 4.0 SP3
Microsoft Windows NT Enterprise Server 4.0 SP4
Microsoft Windows NT Enterprise Server 4.0 SP5
Microsoft Windows NT Enterprise Server 4.0 SP6
Microsoft Windows NT Enterprise Server 4.0 SP6a
Microsoft Windows NT Server 4.0
Microsoft Windows NT Server 4.0 SP1
Microsoft Windows NT Server 4.0 SP2
Microsoft Windows NT Server 4.0 SP3
Microsoft Windows NT Server 4.0 SP4
Microsoft Windows NT Server 4.0 SP5
Microsoft Windows NT Server 4.0 SP6
Microsoft Windows NT Server 4.0 SP6a
Microsoft Windows NT Workstation 4.0
Microsoft Windows NT Workstation 4.0 SP1
Microsoft Windows NT Workstation 4.0 SP2
Microsoft Windows NT Workstation 4.0 SP3
Microsoft Windows NT Workstation 4.0 SP4
Microsoft Windows NT Workstation 4.0 SP5
Microsoft Windows NT Workstation 4.0 SP6
Microsoft Windows NT Workstation 4.0 SP6a
Sambar Server 5.0 beta6
Sambar Server 5.0 beta5
Sambar Server 5.0 beta4
Sambar Server 5.0 beta3
Sambar Server 5.0 beta2
Sambar Server 5.0 beta1
Sambar Server 4.4 Beta 3
Microsoft Windows 95
Microsoft Windows 98
Microsoft Windows NT 4.0
Microsoft Windows NT 4.0 SP1
Microsoft Windows NT 4.0 SP2
Microsoft Windows NT 4.0 SP3
Microsoft Windows NT 4.0 SP4
Microsoft Windows NT 4.0 SP5
Microsoft Windows NT 4.0 SP6
Sambar Server 4.4 production
Sambar Server 4.3 production
Sambar Server 4.3
Microsoft Windows 95
Microsoft Windows 98
Microsoft Windows NT 4.0
Microsoft Windows NT 4.0 SP1
Microsoft Windows NT 4.0 SP2
Microsoft Windows NT 4.0 SP3
Microsoft Windows NT 4.0 SP4
Microsoft Windows NT 4.0 SP5
Microsoft Windows NT 4.0 SP6
Sambar Server 4.2.1 production
Sambar Server 4.1 production |
| Not Vulnerable |
|
| Code |
The following proof of concept has been made available:
.+.+a+.+b+.+c+.+d+.+E+.+D+.+gh+sd+.+sF+.+.+G0
An exploit (sambar6_search_results.pm) has been released as part of the MetaSploit Framework 2.0:
/data/vulnerabilities/exploits/sambar6_search_results.pm
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Fri, 18 Dec 2009 06:57:28 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
within tem components Opansax@xx 2...2Fz/te bbs.gswin. desipapa s Www.17 ABG phpBB port www.pink w ezupload ipb arcade ventrilo 3 wftpd_exp Crack Data www.kaixin Phon Eroti sexfilim Www.sextv porn free saree sex wwwfake hugecocks reddzy.cn news for C www.shitan www sex.co /search/ex www.pink w xinantec.c Www.xxx. 200 /compo www.southi all cartoo Www.Sahila wap.sexy.v 022066.cn Animasi pa 2.6.9-55.E Blackpussy freesixved www.taogow news for C www.mbatem foto bugil ppman.cn tcp wrappe www.07912. Free xxxmo SCS sshd Seexgerl
|