exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 251 RSS Feed

Files

OpenOffice OLE Importer DocumentSummaryInformation Stream Handling Overflow
Posted May 24, 2012
Site metasploit.com

This Metasploit module exploits a vulnerability in OpenOffice 2.3.1 and 2.3.0 on Microsoft Windows XP SP3. By supplying a OLE file with a malformed DocumentSummaryInformation stream, an attacker can gain control of the execution flow, which results arbitrary code execution under the context of the user.

tags | exploit, arbitrary, code execution
systems | windows
advisories | CVE-2008-0320, OSVDB-44472
SHA-256 | 7f7fa7d76079ea7a99a629f8223bcb4b881b275d2d9b9c051e830361276e7852
appRain CMF Arbitrary PHP File Upload Vulnerability
Posted May 24, 2012
Authored by EgiX, sinn3r | Site metasploit.com

This Metasploit module exploits a vulnerability found in appRain's Content Management Framework (CMF), version 0.1.5 or less. By abusing the uploadify.php file, a malicious user can upload a file to the uploads/ directory without any authentication, which results in arbitrary code execution.

tags | exploit, arbitrary, php, code execution
advisories | CVE-2012-1153, OSVDB-78473
SHA-256 | ecfbba7aea3ed45a511e747ceee47ff495011c2a8d081ea91351b0810e76fecc
PHPCollab 2.5 Unauthenticated Access
Posted May 23, 2012
Authored by team ' and 1=1--

PHPCollab version 2.5 fails to properly block access to data on the system.

tags | exploit, bypass
SHA-256 | ad1e859a0053e07ee00038c1f82d65922620560b4eba951b6f1db6e5b2ee29a5
YDFramework 2.0-Beta1 File Disclosure
Posted May 23, 2012
Authored by L3b-r1'z

YDFramework version 2.0-Beta1 suffers from a local file disclosure vulnerability.

tags | exploit, local, info disclosure
SHA-256 | 30af9929c9f3964f827f0a5fca1c7df7ea29edae703cfdfcf3fc2c41f7adfd54
Mod_Auth_OpenID Session Stealing
Posted May 23, 2012
Authored by Peter Ellehauge

mod_auth_openid versions prior to 0.7 insecurely store session ids in /tmp/mod_auth_openid.db unencrypted.

tags | exploit
advisories | CVE-2012-2760
SHA-256 | 38e86ab74026a3ed1cc80b4676aa4ecb3b7863107daed098dea57ce009b8de2c
Symantec End Point Protection / Network Access Control 11.x Code Execution
Posted May 23, 2012
Authored by 41.w4r10r

Symantec End Point Protection version 11.x and Symantec Network Access Control version 11.x local code execution proof of concept exploit.

tags | exploit, local, code execution, proof of concept
advisories | CVE-2012-0289
SHA-256 | d2c6c09960003fa18cb090bcea7cbd0573d048ef3bac16353e5db8e15ab33911
PHPCollab 2.5 Unauthenticated File Upload
Posted May 23, 2012
Authored by team ' and 1=1--

PHPCollab version 2.5 suffers from an unauthenticated file upload vulnerability.

tags | exploit, file upload
SHA-256 | b659409d571a68a9b67a3701abfc25188156d0e9e9e283e902fe7b44fa58cec0
Ajaxmint Gallery 1.0 Local File Inclusion
Posted May 23, 2012
Authored by Akastep

Ajaxmint Gallery version 1.0 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | ae24ac569a977d10cd3b7a2b2a8e5ff5f4039f1fb0729324c394d08749a38467
RuubikCMS 1.1.0 Beta XSS / Disclosure / Directory Traversal
Posted May 23, 2012
Authored by Akastep

RuubikCMS version 1.1.0 Beta suffers from cross site scripting, information disclosure, and directory traversal vulnerabilities.

tags | exploit, vulnerability, xss, file inclusion, info disclosure
SHA-256 | deb663d308e32b6666af67c1933589bdef38a45778db4b991eadf3895df60329
Novell Client 4.91 SP3/4 Privilege Escalation
Posted May 23, 2012
Authored by sickness

Novell Client version 4.91 SP3/4 privilege escalation exploit for Win2K3 and WinXP.

tags | exploit
systems | windows
advisories | CVE-2007-5762
SHA-256 | 4ec2f8f29147c1ce17f8421e5cc26463ec7e91ac339c0dc03fbab345bff2b6fd
Windows XP Keyboard Layouts Pool Corruption Proof Of Concept
Posted May 23, 2012
Authored by Oleksiuk Dmytro

This proof of concept code demonstrates a Microsoft Windows XP keyboard layouts pool corruption vulnerability, post MS12-034. The vulnerability exists in the function win32k!ReadLayoutFile() that parses keyboard layout file data.

tags | exploit, proof of concept
systems | windows
SHA-256 | 54effee805a222747d3e4ec5807005657d3668ba3d5cbbdb7f184fa0ed2f64c3
Supernews 2.6.1 SQL Injection
Posted May 23, 2012
Authored by WhiteCollarGroup

Supernews versions 2.6.1 and below remote SQL injection exploit.

tags | exploit, remote, sql injection
SHA-256 | 414be42901dc68b497a5a2788ff5fb2d0b26e9d4463a3cf9651c275fa24f8c16
PHPCollab 2.5 Database Backup Disclosure
Posted May 23, 2012
Authored by team ' and 1=1--

PHPCollab version 2.5 suffers from an unauthenticated database backup download vulnerability.

tags | exploit, info disclosure
SHA-256 | 9a46856d1ef2f65839de2f080ba3af5ea42fd6478ae04438b9ce383fffe5a549
Tftpd32 DHCP Serve 4.00 Denial Of Service
Posted May 23, 2012
Authored by demonalex

Tftpd32 DHCP server version 4.00 suffers from a denial of service vulnerability.

tags | exploit, denial of service
SHA-256 | 1a342e796ff5f970ca9b1981321d23fdbb89c169be041e74c062f6901144040a
PHP CGI Argument Injection
Posted May 22, 2012
Authored by Mostafa Azizi

PHP CGI argument injection remote exploit version 0.3. Works on versions up to 5.3.12 and 5.4.2.

tags | exploit, remote, cgi, php
advisories | CVE-2012-1823
SHA-256 | c1ea06d9cffa10420a9d1187939611b8d7ae8fbca94540c697ed77e8bcca021e
Yandex.Server 2010 9.0 Enterprise Cross Site Scripting
Posted May 22, 2012
Authored by MustLive

Yandex.Server version 2010 9.0 Enterprise suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 7be25af2c11de6d35265a9dbf7c47a1f05b8735eb5b46f23a2623887426bfcfd
FlexNet License Server Manager lmgrd Buffer Overflow
Posted May 22, 2012
Authored by Luigi Auriemma, sinn3r, Alexander Gavrun, juan vazquez | Site metasploit.com

This Metasploit module exploits a vulnerability in the FlexNet License Server Manager. The vulnerability is due to the insecure usage of memcpy in the lmgrd service when handling network packets, which results in a stack buffer overflow. In order to improve reliability, this module will make lots of connections to lmgrd during each attempt to maximize its success.

tags | exploit, overflow
advisories | OSVDB-81899
SHA-256 | 2d6d029945aaecc2ac0003cb91c1250f912d627ce695077b2bfbd1919c57f669
Foxit Reader 3.0 Open Execute Action Stack Based Buffer Overflow
Posted May 22, 2012
Authored by bannedit, Francisco Falcon | Site metasploit.com

This Metasploit module exploits a buffer overflow in Foxit Reader 3.0 builds 1301 and earlier. Due to the way Foxit Reader handles the input from an "Launch" action, it is possible to cause a stack-based buffer overflow, allowing an attacker to gain arbitrary code execution under the context of the user.

tags | exploit, overflow, arbitrary, code execution
advisories | OSVDB-55614
SHA-256 | 009165bbb7f39c130705ca1779b5bf21f2c3fd6f324d13329ecce60c590e0dcc
HP StorageWorks P4000 Virtual SAN Appliance Command Execution
Posted May 22, 2012
Authored by Nicolas Gregoire, sinn3r | Site metasploit.com

This Metasploit module exploits a vulnerability found in HP's StorageWorks P4000 VSA on versions prior to 9.5. By using a default account credential, it is possible to inject arbitrary commands as part of a ping request via port 13838.

tags | exploit, arbitrary
SHA-256 | 1f354fd80321e3a8c75c32db994ccf7fbd51de54814d94d9641e5bfccae9d6f6
Active Collab "chat module" 2.3.8 Remote PHP Code Injection
Posted May 22, 2012
Authored by mr_me | Site metasploit.com

This Metasploit module exploits an arbitrary code injection vulnerability in the chat module that is part of Active Collab by abusing a preg_replace() using the /e modifier and its replacement string using double quotes. The vulnerable function can be found in activecollab/application/modules/chat/functions/html_to_text.php.

tags | exploit, arbitrary, php
advisories | OSVDB-81966
SHA-256 | dc407149c6ca0f8de287ff88144c5d975efe9da8376d1ec83d0a3d2bd4d18f90
Plogger Photo Gallery SQL Injection
Posted May 21, 2012
Authored by Eyup CELIK

Plogger Photo Gallery suffers from a URL encoded SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | 1d809b3e47f9bc73a1cdb2626975f37ede3807ab5c5a5139362dded3b11e4574
PHP 5.4.3 com_event_sink Denial Of Service
Posted May 21, 2012
Authored by condis

PHP versions 5.4.3 and below com_event_sink denial of service exploit.

tags | exploit, denial of service, php
SHA-256 | f9e58d76235326111668e7a07024e4373c09a94c235cdd96324ef0f57eeebd16
phAlbum PHP Gallery Script Cross Site Scripting
Posted May 21, 2012
Authored by Eyup CELIK

phAlbum PHP Gallery Script suffers from a cross site scripting vulnerability.

tags | exploit, php, xss
SHA-256 | 723c6ef6661ac7169ced0e8dd7d0c1a433062a8a9b5a6efd4ad00d031c7e04c4
Acuity CMS 2.6.x Shell Upload
Posted May 20, 2012
Authored by Aung Khant | Site yehg.net

Acuity CMS version 2.6.x suffers from a shell upload vulnerability.

tags | exploit, shell
SHA-256 | eb52dc2e6402bd8221b5dcbb9f2dd676100c2ec5e3e8bb777c4b9c31939659e0
PHP 5.4.3 Null Pointer Dereference
Posted May 20, 2012
Authored by condis

PHP versions 5.4.3 and below wddx_serialize_* / stream_bucket_* variant object null pointer dereference exploit.

tags | exploit, php
SHA-256 | 186f4ea7623d98c66ebb266a599e771143dbdb3ba4aac5d564ff29b77b55d1d6
Page 3 of 10
Back12345Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close