Author : Osirys
Page 1 of 95 exploits
![]() |
Title | Author | Platform | Source | Description | Date |
|---|---|---|---|---|---|---|
|
EZ-Shop 1.02 Lateral SQL Injection Vulnerability | Osirys | php | exploit-db.com | [Security Advisory Details: 14/04/2011] [Script] EZ-Shop 1.02 [Location] http://www.fcsoftware.co.uk/index.php?page=opensource [Vulnerability] SQL Injection [Original Adv] http://y-osirys.com/security/exploits/id28 [Author] Giovanni Buzzin, "Osirys" [Site] | April 14, 2011 |
|
EZ-Shop 1.02 SQL Injection | Osirys | na | y-osirys.com | EZ-Shop version 1.02 suffers from a remote SQL injection vulnerability. | April 14, 2011 |
|
S40 CMS 0.4.2b LFI Vulnerability | Osirys | php | exploit-db.com | [Security Advisory Details: 07/04/2001] [Script] S40 CMS 0.4.2 Beta [Location] http://s40.biz/?p=download [Vulnerability] Local File Inclusion [Original Adv] http://y-osirys.com/security/exploits/id27 [Author] Giovanni Buzzin, "Osirys" [Site] y-osirys.com [Conta | April 7, 2011 |
|
S40 CMS 0.4.2b Local File Inclusion | Osirys | na | y-osirys.com | S40 CMS version 0.4.2b suffers from a local file inclusion vulnerability. | April 7, 2011 |
|
WebFileExplorer 3.1 (Auth Bypass) SQL Injection Vulnerability | Osirys | php | exploit-db.com | Product Name: WebFileExplorer Version : 3.1 URL : http://www.webfileexplorer.com/ Price : 99 $ USD Credits to : Giovanni Buzzin, "Osirys" osirys[at]autistici[dot]org WebFileExplorer v3.1, is prone to multiple vulnerabilities. At first, an attacker can inject his ev | April 9, 2009 |
|
WebFileExplorer 3.1 SQL Injection | Osirys | na | y-osirys.com | WebFileExplorer version 3.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass. | April 9, 2009 |
|
X-Forum 0.6.2 Remote Command Execution Exploit | Osirys | php | exploit-db.com | !/usr/bin/perl Web App: X-Forum 0.6.2 Link : http://freefr.dl.sourceforge.net/sourceforge/x-forum/xforum-0.6.2.tar.gz Bug : Auth Bypass via Cookie Handling : There are also other SQL Injections Remote Command Execution Exploit Credits to Giovanni Buzzin, "Osirys" Mail os | March 30, 2009 |
|
X-Forum 0.6.2 Authentication Bypass | Osirys | na | y-osirys.com | X-Forum version 0.6.2 remote command execution exploit that performs authentication bypass via a cookie handling vulnerability. SQL injection vulnerabilities also exist. | March 30, 2009 |
|
L-Forum 2.4.0 SQL Injection / Command Execution | Osirys | na | y-osirys.com | L-Forum version 2.4.0 local file inclusion and command injection via SQL injection exploit. | March 30, 2009 |
|
My Simple Forum 7.1 (LFI) Remote Command Execution Exploit | Osirys | php | exploit-db.com | !/usr/bin/perl My Simple Forum v7.1 Remote Command Execution Exploit (Apache Log Poisoning/Injection) Local File Inclusion at /theme/default/index.template.php?action=[lf]%00 XSS at /theme/default/index.template.php?Name=[XSS] - This needs Register Globals ON Credits to Giovanni Buzzin, | March 27, 2009 |
|
My Simple Forum 7.1 Command Execution | Osirys | na | y-osirys.com | My Simple Forum version 7.1 remote command execution exploit that leverages a local file inclusion vulnerability. | March 27, 2009 |
|
PhotoStand 1.2.0 Remote Command Execution Exploit | Osirys | php | exploit-db.com | !/usr/bin/perl App : PhotoStand 1.2.0 Site : http://www.photostand.org Remote Command Execution Exploit Credits to : Giovanni Buzzin, "Osirys" osirys[at]autistici[dot]org Greets: drosophila, emgent, Fireshot PhotoStand is a used Image Gallery CMS. PhotoStand is vulnerable to SQL | March 26, 2009 |
|
PhotoStand 1.2.0 Command Execution | Osirys | na | y-osirys.com | PhotoStand version 1.2.0 remote command execution exploit. | March 26, 2009 |
|
Syzygy CMS 0.3 LFI / SQL Injection | Osirys | na | y-osirys.com | Syzygy CMS version 0.3 local file inclusion and command injection via SQL injection exploit. | March 24, 2009 |
|
Syzygy CMS 0.3 LFI/SQL Command Injection Exploit | Osirys | php | exploit-db.com | !/usr/bin/perl Web App : Syzygy CMS 0.3 Link : http://sourceforge.net/project/downloading.php?group_id=103298&use_mirror=heanet&filename=syzygycms-0.3.tar.gz&a=89932245 Remote Command Execution Exploit : Case 1: If LFI works, exploitation via Shell Injection + LFI Case 2: Unless, expl | March 23, 2009 |

