what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 28 RSS Feed

Files Date: 2023-08-15

RaspAP 2.8.7 Unauthenticated Command Injection
Posted Aug 15, 2023
Authored by Ege Balci, Ismael0x00 | Site metasploit.com

RaspAP is feature-rich wireless router software that just works on many popular Debian-based devices, including the Raspberry Pi. A Command Injection vulnerability in RaspAP versions 2.8.0 thru 2.8.7 allows unauthenticated attackers to execute arbitrary commands in the context of the user running RaspAP via the cfg_id parameter in /ajax/openvpn/activate_ovpncfg.php and /ajax/openvpn/del_ovpncfg.php. Successfully tested against RaspAP 2.8.0 and 2.8.7.

tags | exploit, arbitrary, php
systems | linux, debian
advisories | CVE-2022-39986
SHA-256 | abc5a8577c76d38277377259204d36eaaa8e98293d1ed4d1030fb74de2c622f0
Ubuntu Security Notice USN-6288-1
Posted Aug 15, 2023
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 6288-1 - Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 8.0.34 in Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 23.04. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes.

tags | advisory
systems | linux, ubuntu
advisories | CVE-2023-22005, CVE-2023-22046, CVE-2023-22056
SHA-256 | b6348efcf64058f48985178eda60185a45a1ad2d30cb47909481c185fe4a0061
Debian Security Advisory 5477-1
Posted Aug 15, 2023
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5477-1 - Several vulnerabilities have been discovered in Samba, which could result in information disclosure, denial of service or insufficient enforcement of security-relevant config directives.

tags | advisory, denial of service, vulnerability, info disclosure
systems | linux, debian
advisories | CVE-2022-2127, CVE-2023-3347, CVE-2023-34966, CVE-2023-34967, CVE-2023-34968
SHA-256 | af91853d8e5f0024764f5543a8b80895c57747aa8c34de789911957203c66602
Blood Donor Management System 1.0 Cross Site Scripting
Posted Aug 15, 2023
Authored by Ehlullah Albayrak

Blood Donor Management System version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 3ab40ec2fcd549d03f7ca4fdbf60fd286a3ba512fde3530e785bbc685e75932f
Red Hat Security Advisory 2023-4655-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4655-01 - Red Hat Directory Server is an LDAPv3-compliant directory server. The suite of packages includes the Lightweight Directory Access Protocol server, as well as command-line utilities and Web UI packages for server administration.

tags | advisory, web, protocol
systems | linux, redhat
advisories | CVE-2023-1055
SHA-256 | 462f47803f2d1f38299ff49a67941ea34cadd5ba5a46e30e3a4b5ab3317852cc
Red Hat Security Advisory 2023-4651-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4651-01 - Rust Toolset provides the Rust programming language compiler rustc, the cargo build tool and dependency manager, and required libraries.

tags | advisory
systems | linux, redhat
advisories | CVE-2023-38497
SHA-256 | 7fdfffee94555d06a4b01161da79f0618d8ac96ff00f9ff7f1c19cf3842f573c
Red Hat Security Advisory 2023-4635-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4635-01 - Rust Toolset provides the Rust programming language compiler rustc, the cargo build tool and dependency manager, and required libraries.

tags | advisory
systems | linux, redhat
advisories | CVE-2023-38497
SHA-256 | db26cb8a873428f876f2e7a4529ec2cf4d6d15c79d795501246c879819b52631
Red Hat Security Advisory 2023-4640-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4640-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | 54ea2e499f3b3e8ded2521679803c22fb283abc99e8755481e6431115ecc56e7
Red Hat Security Advisory 2023-4645-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4645-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 6.0.121 and .NET Runtime 6.0.21. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | a143d0103f112696568f4d8b8bf660b992210bc9fa6d06ceb833036dde02f61c
Red Hat Security Advisory 2023-4643-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4643-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 7.0.110 and .NET Runtime 7.0.10. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | 7ae7e986c3c0a4b93943f048be06c6c5577d7bb238950b3559c8000616982cbd
Red Hat Security Advisory 2023-4650-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4650-01 - Multicluster Engine for Kubernetes 2.2.7 images Multicluster engine for Kubernetes provides the foundational components that are necessary for the centralized management of multiple Kubernetes-based clusters across data centers, public clouds, and private clouds. You can use the engine to create new Red Hat OpenShift Container Platform clusters or to bring existing Kubernetes-based clusters under management by importing them. After the clusters are managed, you can use the APIs that are provided by the engine to distribute configuration based on placement policy.

tags | advisory
systems | linux, redhat
advisories | CVE-2020-24736, CVE-2023-1667, CVE-2023-2283, CVE-2023-2602, CVE-2023-2603, CVE-2023-27536, CVE-2023-2828, CVE-2023-28321, CVE-2023-28484, CVE-2023-29469, CVE-2023-3089, CVE-2023-32681, CVE-2023-34969, CVE-2023-37903
SHA-256 | ac69f472969b30a30d818388809905d1aa907326f3cbbab1d0d441f5f823fd3d
Red Hat Security Advisory 2023-4639-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4639-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | 4e04cb733603ab44a21e455f30d72ef0852507c570d8adbc9abb07732218fc65
Red Hat Security Advisory 2023-4634-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4634-01 - Rust Toolset provides the Rust programming language compiler rustc, the cargo build tool and dependency manager, and required libraries.

tags | advisory
systems | linux, redhat
advisories | CVE-2023-38497
SHA-256 | 066651121c75a921764782f330be26004c357892888390ee680b673b49ca81a4
Red Hat Security Advisory 2023-4642-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4642-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 7.0.110 and .NET Runtime 7.0.10. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | b42006444058579e98d9acb7b27d86690ecd95d473da4205235cdaaba9e5312a
eLitius 1.0 Backup Disclosure
Posted Aug 15, 2023
Authored by indoushka

eLitius version 1.0 appears to leave backups in a world accessible directory under the document root.

tags | exploit, root, info disclosure
SHA-256 | 37a6ad9ab40e37e23d7cbfe01ee9334c417b3339776c4691b7ae872e89ddb896
Elite CMS Pro 2.01 SQL Injection
Posted Aug 15, 2023
Authored by indoushka

Elite CMS Pro version 2.01 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7eb9069a741d4df11a156a416ed6992e071d14d8971b0618d40a2c5ce9403cfa
Elevel CMS 1.0 SQL Injection
Posted Aug 15, 2023
Authored by indoushka

Elevel CMS version 1.0 suffers from multiple remote SQL injection vulnerabilities including one in the login flow that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | 5c2a9d05c62a2c6c9c285f97e030f823c66fe5b7c1b93088a1e5ed551de8d14d
Ekushey Project Manager CRM 3.1 Insecure Settings
Posted Aug 15, 2023
Authored by indoushka

Ekushey Project Manager CRM version 3.1 appears to leave default credentials installed after installation.

tags | exploit
SHA-256 | 8f869d35a8e3b499b55b232c9673de03ce8934a7ea09e8b4bed59998fb252fc0
E-Journal Homoeo CMS 2.0.3 SQL Injection
Posted Aug 15, 2023
Authored by indoushka

E-Journal Homoeo CMS version 2.0.3 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8f3fa55930fccfbd46131787e1ad254d6471bc9de8d2aed6f8ffb311b392d4fc
EI Tube YouTube API 3 SQL Injection
Posted Aug 15, 2023
Authored by indoushka

EI Tube YouTube API version 3 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 997fde59625cd67a73a0abff7333bac7deb7f10b70e1612008cb7e06f99145e4
E-Fun CMS 5.0 XML Injection
Posted Aug 15, 2023
Authored by indoushka

E-Fun CMS version 5.0 suffers from an XML external entity injection vulnerability.

tags | exploit
SHA-256 | 5af873e10e8659ab07affe10868746b3fb4fc8bd88421a839e50cb3466940086
WordPress Core 5.6.2 XPath Injection
Posted Aug 15, 2023
Authored by Behrouz Mansoori

WordPress Core version 5.6.2 appears to suffer from an xpath injection vulnerability via the log parameter.

tags | exploit
SHA-256 | a09643f53bbe40a0895f24e822cdf7d8d6272510d96b3443e6ac504dcecae219
Red Hat Security Advisory 2023-4644-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4644-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 6.0.121 and .NET Runtime 6.0.21. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | 63aa6473f15342d44d9d6deea6ac2a3e516fc84c5fed03e801452c6d31264ddd
Red Hat Security Advisory 2023-4641-01
Posted Aug 15, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4641-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 6.0.121 and .NET Runtime 6.0.21. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2023-35390, CVE-2023-38180
SHA-256 | a3b8213d50fa48090f592eeb4565d04109d5c74386f25eb4f641bb1c78b03d6e
Education Time Indonesian School CRM 1.7 Directory Traversal
Posted Aug 15, 2023
Authored by indoushka

Education Time Indonesian School CRM version 1.7 suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
SHA-256 | 7512cc037af0326b217692e5b8d56807a4bf97b19953ba3bb1065630fd2cf92a
Page 1 of 2
Back12Next

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    0 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    0 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close