Author : chap0
Page 1 of 39 exploits
Title Author Platform Source Description Date
phpmoneybooks 1.03 Stored XSS chap0 php exploit-db.com Exploit Title: phpmoneybooks 1.03 Stored XSS Date: Jun 28, 2012 Exploit Author: chap0 - chap0.blogspot.com - @_chap0 Vendor Homepage: http://phpmoneybooks.com/ Software Link: http://sourceforge.net/projects/phpmoneybooks/files/phpMoneyBooks103.zip/download Version: 1.03 Patch: Up June 29
PHP Money Books 1.03 Stored Cross Site Scripting chap0 na packetstormsecurity.org PHP Money Books version 1.03 suffers from stored cross site scripting vulnerabilities. June 29
NetOp Remote Control Client 9.5 Buffer Overflow chap0 na metasploit.com This Metasploit module exploits a stack-based buffer overflow in NetOp Remote Control 9.5. When opening a .dws file containing a specially crafted string longer then 520 characters will allow an attacker to execute arbitrary code. April 4, 2012
XRayCMS 1.1.1 SQL Injection chap0 na packetstormsecurity.org XRayCMS version 1.1.1 suffers from a remote SQL injection vulnerability. February 7, 2012
XRayCMS 1.1.1 SQL Injection Vulnerability chap0 php exploit-db.com Exploit Title: XRayCMS 1.1.1 SQL Injection Vulnerability Date: 2/5/2012 Author: chap0 Software Link: http://sourceforge.net/projects/xraycms/files/latest/download Version: 1.1.1 Tested on: Ubuntu XRay CMS is vulnerable to a SQL Injection attack which allows authentication bypass into the February 6, 2012
razorCMS 1.2 Path Traversal chap0 na packetstormsecurity.org razorCMS version 1.2 suffers from a path traversal vulnerability. January 11, 2012
razorCMS 1.2 Path Traversal Vulnerability chap0 php exploit-db.com Exploit Title: razorCMS 1.2 Path Traversal Google Dork: "Powered by razorCMS" Date: January 10, 2012 Author: chap0 Software Link: http://www.razorcms.co.uk/archive/core/ Version: 1.2 Tested on: Ubuntu Patch: Upgrade to latest release 1.2.1 Greetz To: R January 10, 2012
Audio Converter 8.1 (.pls) Stack Buffer Overflow chap0 na Sud0 This Metasploit module exploits a stack buffer overflow in versions 8.1 creating a specially crafted .m3u8 file, an attacker may be able to execute arbitrary code. June 3, 2011
NetOp Remote Control 8.0, 9.1, 9.2, 9.5 Buffer Overflow chap0 windows exploit-db.com Exploit Title: NetOp Remote Control Buffer Overflow Date: April 28, 2011 Author: chap0 Version: 8.0, 9.1, 9.2, 9.5 (Possibly anything before ver 10) Upgrade to Version 10 for fix Tested on: Windows XP SP3 Greetz to JJ IE by day Ninja by night, br34dcrumb5, myne-us, Exploit- April 28, 2011
ActFax Server FTP Remote BOF (post auth) chap0 windows exploit-db.com !/usr/bin/python Exploit Title: ActFax Server FTP Remote BOF (post auth) Date: Feb 15, 2011 Author: chap0 Software Link: http://www.actfax.com/download/actfax_setup_en.exe Version: Version 4.25, Build 0221 (2010-02-11) Tested on: Windows XP SP3 en Big thanks to Sud0 - and an ex February 16, 2011
ActFax Server (LPD/LPR) Remote Buffer Overflow Exploit chap0 windows exploit-db.com !/usr/bin/perl Exploit Title: ActFax Server (LPD/LPR) Remote Buffer Overflow Exploit Date: Feb 15, 2011 Author: chap0 Software Link: http://www.actfax.com/download/actfax_setup_en.exe Version: Version 4.25, Build 0221 (2010-02-11) Tested on: Windows XP SP3 en Big thanks to Sud0 February 16, 2011
ActFax Server 4.25 FTP Buffer Overflow chap0 na packetstormsecurity.org ActFax Server version 4.25 FTP remote post-authentication buffer overflow exploit. February 16, 2011
ActFax Server 4.25 LPD / LPR Buffer Overflow chap0 na packetstormsecurity.org ActFax Server LPD/LPR remote buffer overflow exploit that binds a shell to port 4444. February 16, 2011
Xerox 4595 Denial of Service Vulnerability chap0 hardware exploit-db.com !/usr/bin/perl Xerox 4595 Remote Dos November 1, 2010 By chap0 - The tongue has the power of life and death [www.seek-truth.net][www.corelan.be:8800] Public Advisories http://www.xerox.com/downloads/usa/en/c/cert_XRX10-004_v1.0.pdf http://www.corelan.be:8800/advisories.p November 1, 2010
Xerox 4595 Denial Of Service chap0 na packetstormsecurity.org Xerox 4595 remote denial of service exploit. November 1, 2010