This Metasploit module exploits a vulnerability in Tunnelblick 3.2.8 on Mac OS X. The vulnerability exists in the setuid openvpnstart, where an insufficient validation of path names allows execution of arbitrary shell scripts as root. This Metasploit module has been tested successfully on Tunnelblick 3.2.8 build 2891.3099 over Mac OS X 10.7.5.
Setuid Tunnelblick Privilege Escalation
Viscosity setuid-set ViscosityHelper Privilege Escalation
Kaspersky Internet Security 2013 – Denial Of Service Vulnerability
Nconf v 1.3 multiple Sql Injection
D-Link DSL-2740B (ADSL Router) Authentication Bypass
http://ome.mnre.go.th notified by sahrawihacker
http://aviation.mnre.go.th/xh.txt notified by HighTech
http://www.sea12.go.th/ck.htm notified by HighTech
http://www.sratakien.go.th/webnew/ck.htm notified by HighTech