This Metasploit module exploits a source code disclosure in Apache ActiveMQ. The vulnerability is due to the Jettys ResourceHandler handling of specially crafted URIs starting with //. It has been tested successfully on Apache ActiveMQ 5.3.1 over Windows 2003 SP2 and Ubuntu 10.04.
ede3496420e2c26c1f98f2ec9c2985c39b539632810d4d9851f54502743fb0ff
This Metasploit module exploits a vulnerability found in Fitnesse Wiki, version 20140201 and earlier.
ea5185af9eacbf5f8ba32b49f0b348feaf5aeb8b06d576421ac1861e3bd61b62
This Metasploit module exploits a buffer overflow vulnerability found in the APPE command in the Freefloat FTP server.
950c862e6b6de9d40cbd1985606f5537b80f3a942e3fe1a254c131ec594dd88d
This Metasploit module exploits a buffer overflow vulnerability found in the BisonFTP Server versions 3.5 and below.
018520acb6e1863986585a84609a42da6c2d2770126553bfe3a6abac64147ef0
Freefloat FTP server version 1.0 suffers from multiple buffer overflow vulnerabilities. Proof of concept exploit is attached to the bottom of this advisory.
4e6acc80e048e44fedd23cff173f1820cdf3d05c9a7ddb5986f6acdceaa74c2f
Avaya IP Office Manager TFTP server version 8.1 suffers from a remote directory traversal vulnerability.
61c8fa884c812aabc7ad31ba5fe8b8c9e7716e766d7d6d4842ee6df0358ea666
Wiccle Web Builder CMS and iWiccle CMS Community Builder both suffer from multiple cross site scripting vulnerabilities.
131b387ddda597eea6f5958b0702c023bd31d235e6b60d19fce3e2b40dd9604d
Micro CMS version 1.0 b1 suffers from a persistent cross site scripting vulnerability.
b0260c84437612099c38be3ddf9f0df6f04364d1941270c9ccb41aaa51af14f4
Apache ActiveMQ suffers from a source code disclosure vulnerability. Versions 5.4 and below and 5.3.1 and below are affected.
e9cede54fdcdfb4f678a3d27e0296f1533488381b3dde9c14b094ef0fd89ac87