Hacker Japan 2008年1月号を予約せな ( ゚д゚)ホスィ…
Airport Kiosks Security (GNUCITIZEN)
空港のキオスクのシステムを覗けて、かつそのソースコードには素晴らしく丁寧にいろいろデバッグな情報が書いてあった話。面白いけど、日本でこんなん公開したら捕まりますよ。 ||Φ|(|゚|∀|゚|)|Φ||
Hacker Japan (ハッカー ジャパン) 2008年 01月号 (Amazon.co.jp)
日経コンピュータ 2007年11月26日号に特集が組まれているそうです。 …_〆(゚▽゚*)
Exploit Code
- IAPR COMMENCE 1.3 Multiple Remote File Inclusion Vulnerability
- RunCMS <= 1.6 disclaimer.php Remote File Overwrite Exploit
- Apple QuickTime 7.3 RTSP Response Universal Exploit (Vista / XP)
- RunCMS <= 1.6 Local File Inclusion Vulnerability
- project alumni <= 1.0.9 Remote XSS / SQL Injection Vulnerability
- PBLang <= 4.99.17.q Remote File Rewriting / Command Execution
- WorkingOnWeb 2.0.1400 events.php Remote SQL Injection Vulnerability
- Amber Script 1.0 (show_content.php id) Local File Inclusion Vulnerability
- Apple Quicktime 7.2/7.3 (RSTP Response) Code Exec Exploit (Vista/XP)
- Mp3 ToolBox 1.0 beta 5 (skin_file) Remote File Inclusion Vulnerability
- Irola My-Time 3.5 Remote SQL Injection Vulnerability
- Apple QuickTime 7.3 RTSP Response Remote SEH Overwrite PoC
- KB-Bestellsystem (kb_whois.cgi) Command Execution Vulnerability
- PHPKIT 1.6.4pl1 article.php Remote SQL Injection Exploit
- Content Injector 1.52 (index.php cat) Remote SQL Injection Vulnerability
- NetAuctionHelp 4.1 (nsearch) Remote SQL Injection Vulnerability
- VigileCMS <= 1.8 Stealth Remote Command Execution Exploit
- DevMass Shopping Cart <= 1.0 Remote File Include Vulnerability
- alstrasoft E-Friends <= 4.98 (seid) Multiple SQL Injection Vulnerabilities
- TalkBack 2.2.7 Multiple Remote File Inclusion Vulnerabilities
- Ucms <= 1.8 Backdoor Remote Command Execution Exploit
- SkyPortal vRC6 Multiple Remote Vulnerabilities
- bcoos 1.0.10 (LFI / SQL Injection) Multiple Remote Vulnerabilities
- Joomla Component JUser 1.0.14 Remote File Inclusion Vulnerability
- Sciurus Hosting Panel Remote Code Injection Exploit
- IceBB 1.0-rc6 Remote Database Authentication Details Exploit