FreePBX version 2.2.x suffers from cross site scripting vulnerabilities in the handling of various fields sent in messages that are parsed by the Asterisk log file tools.
Microsoft DNS Server remote code execution exploit and analysis. This exploit works against TCP port 445. Tested against Windows 2000 server SP4 and Windows 2003 SP2. Binds a shell to TCP port 4444.