Author : Osirys
Page 1 of 95 exploits
Title Author Platform Source Description Date
EZ-Shop 1.02 Lateral SQL Injection Vulnerability Osirys php exploit-db.com [Security Advisory Details: 14/04/2011] [Script] EZ-Shop 1.02 [Location] http://www.fcsoftware.co.uk/index.php?page=opensource [Vulnerability] SQL Injection [Original Adv] http://y-osirys.com/security/exploits/id28 [Author] Giovanni Buzzin, "Osirys" [Site] April 14, 2011
EZ-Shop 1.02 SQL Injection Osirys na y-osirys.com EZ-Shop version 1.02 suffers from a remote SQL injection vulnerability. April 14, 2011
S40 CMS 0.4.2b LFI Vulnerability Osirys php exploit-db.com [Security Advisory Details: 07/04/2001] [Script] S40 CMS 0.4.2 Beta [Location] http://s40.biz/?p=download [Vulnerability] Local File Inclusion [Original Adv] http://y-osirys.com/security/exploits/id27 [Author] Giovanni Buzzin, "Osirys" [Site] y-osirys.com [Conta April 7, 2011
S40 CMS 0.4.2b Local File Inclusion Osirys na y-osirys.com S40 CMS version 0.4.2b suffers from a local file inclusion vulnerability. April 7, 2011
WebFileExplorer 3.1 (Auth Bypass) SQL Injection Vulnerability Osirys php exploit-db.com Product Name: WebFileExplorer Version : 3.1 URL : http://www.webfileexplorer.com/ Price : 99 $ USD Credits to : Giovanni Buzzin, "Osirys" osirys[at]autistici[dot]org WebFileExplorer v3.1, is prone to multiple vulnerabilities. At first, an attacker can inject his ev April 9, 2009
WebFileExplorer 3.1 SQL Injection Osirys na y-osirys.com WebFileExplorer version 3.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass. April 9, 2009
X-Forum 0.6.2 Remote Command Execution Exploit Osirys php exploit-db.com !/usr/bin/perl Web App: X-Forum 0.6.2 Link : http://freefr.dl.sourceforge.net/sourceforge/x-forum/xforum-0.6.2.tar.gz Bug : Auth Bypass via Cookie Handling : There are also other SQL Injections Remote Command Execution Exploit Credits to Giovanni Buzzin, "Osirys" Mail os March 30, 2009
X-Forum 0.6.2 Authentication Bypass Osirys na y-osirys.com X-Forum version 0.6.2 remote command execution exploit that performs authentication bypass via a cookie handling vulnerability. SQL injection vulnerabilities also exist. March 30, 2009
L-Forum 2.4.0 SQL Injection / Command Execution Osirys na y-osirys.com L-Forum version 2.4.0 local file inclusion and command injection via SQL injection exploit. March 30, 2009
My Simple Forum 7.1 (LFI) Remote Command Execution Exploit Osirys php exploit-db.com !/usr/bin/perl My Simple Forum v7.1 Remote Command Execution Exploit (Apache Log Poisoning/Injection) Local File Inclusion at /theme/default/index.template.php?action=[lf]%00 XSS at /theme/default/index.template.php?Name=[XSS] - This needs Register Globals ON Credits to Giovanni Buzzin, March 27, 2009
My Simple Forum 7.1 Command Execution Osirys na y-osirys.com My Simple Forum version 7.1 remote command execution exploit that leverages a local file inclusion vulnerability. March 27, 2009
PhotoStand 1.2.0 Remote Command Execution Exploit Osirys php exploit-db.com !/usr/bin/perl App : PhotoStand 1.2.0 Site : http://www.photostand.org Remote Command Execution Exploit Credits to : Giovanni Buzzin, "Osirys" osirys[at]autistici[dot]org Greets: drosophila, emgent, Fireshot PhotoStand is a used Image Gallery CMS. PhotoStand is vulnerable to SQL March 26, 2009
PhotoStand 1.2.0 Command Execution Osirys na y-osirys.com PhotoStand version 1.2.0 remote command execution exploit. March 26, 2009
Syzygy CMS 0.3 LFI / SQL Injection Osirys na y-osirys.com Syzygy CMS version 0.3 local file inclusion and command injection via SQL injection exploit. March 24, 2009
Syzygy CMS 0.3 LFI/SQL Command Injection Exploit Osirys php exploit-db.com !/usr/bin/perl Web App : Syzygy CMS 0.3 Link : http://sourceforge.net/project/downloading.php?group_id=103298&use_mirror=heanet&filename=syzygycms-0.3.tar.gz&a=89932245 Remote Command Execution Exploit : Case 1: If LFI works, exploitation via Shell Injection + LFI Case 2: Unless, expl March 23, 2009