what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 214 RSS Feed

Files

Packet Storm New Exploits For October, 2012
Posted Nov 1, 2012
Authored by Todd J. | Site packetstormsecurity.com

This archive contains all of the 214 exploits added to Packet Storm in October, 2012.

tags | exploit
systems | linux
SHA-256 | 55d391b831d27387b76fef84f98ff7370a0ac8a949ed56ae7e923c105ba708a8
Konqueror 4.7.3 Memory Corruption
Posted Oct 31, 2012
Authored by Tim Brown | Site nth-dimension.org.uk

Konqueror version 4.7.3 suffers from a number of memory corruption vulnerabilities.

tags | exploit, vulnerability
advisories | CVE-2012-4512, CVE-2012-4513, CVE-2012-4514, CVE-2012-4515
SHA-256 | e553338547e8f9516a41ca14cb1fb5ac3c1728638db05b0a8e2505e5ba2cfb72
bloofoxCMS 0.3.5 Cross Site Scripting
Posted Oct 31, 2012
Authored by Canberk BOLAT | Site netsparker.com

bloofoxCMS version 0.3.5 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 7f0652486b0b291eaf4ebee1cf69d8a112da0619edd1c1b47c453d40da74eb4a
UMPlayer 0.98 DLL Hijacking
Posted Oct 31, 2012
Authored by Metropolis

UMPlayer version 0.98 suffers from a dll hijacking vulnerability.

tags | exploit
systems | windows
SHA-256 | 0346a1414dcfdb72c89580ced7c9e21057d21993cac2959f40ba81ffa39dc871
4ColorDesign Cross Site Scripting / SQL Injection
Posted Oct 31, 2012
Authored by Ur0b0r0x

Sites powered by 4ColorDesign suffer from cross site scripting and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 8451d79734a9041baa396067cef45b7d89b3387d7a743f011734c5ab2f20e5f5
VICOM STUDIO Local File Inclusion / SQL Injection
Posted Oct 31, 2012
Authored by Ur0b0r0x

Sites built by VICOM STUDIO suffer from local file inclusion and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, local, vulnerability, sql injection, file inclusion
SHA-256 | be47a7fcb6978ccd66bcb0aa815c774e9705f375b723c1fa20793fb2813c0aaf
Keshav Infotech Cross Site Scripting / SQL Injection
Posted Oct 31, 2012
Authored by Ur0b0r0x

Sites designed by Keshav Infotech suffer from SQL injection and cross site scripting vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, vulnerability, xss, sql injection
SHA-256 | 05e33709bf75e4ca9c8b145bd1ae0133f69517c6eb0d6523941dcc3bde6eea38
DATA Estudio Cross Site Scripting / SQL Injection
Posted Oct 31, 2012
Authored by Ur0b0r0x

Sites powered by DATA Estudio suffer from cross site scripting and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | fb6fe9d8b4db47ed8317afc07acf2199e7f10925c700f42c0852b807ac4038d3
2Point Solutions XSS / SQL Injection / Local File Inclusion
Posted Oct 31, 2012
Authored by Ur0b0r0x

Sites designed by 2Point Solutions suffer from cross site scripting, remote SQL injection, and local file inclusion vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, local, vulnerability, xss, sql injection, file inclusion
SHA-256 | b3e51a3c2727df62feacdf264759aa35468da518c44c7cc4c7ee9e0466b16224
SIGMA COMPUTERS SQL Injection
Posted Oct 31, 2012
Authored by Ur0b0r0x

Sites created and hosted by SIGMA COMPUTERS suffer from a remote SQL injection vulnerability. Note that this finding houses site-specific data.

tags | exploit, remote, sql injection
SHA-256 | 2b579827db4c76e68f3ab7495217d701009afb5c8e916aada451d84dab1ac930
WordPress FoxyPress 0.4.2.5 XSS / CSRF / SQL Injection
Posted Oct 30, 2012
Authored by Janek Vind aka waraxe | Site waraxe.us

WordPress FoxyPress plugin version 0.4.2.5 suffers from cross site request forgery, cross site scripting, path disclosure, remote shell upload, open redirect, and remote SQL injection vulnerabilities.

tags | exploit, remote, shell, vulnerability, xss, sql injection, csrf
SHA-256 | de830eed195cbfc1599a0dbca00d8fe76804c6bb2f451f88dcf2319725caba6a
Endpoint Protector 4.0.4.2 Cross Site Scripting
Posted Oct 30, 2012
Authored by Juan Manuel Garcia | Site cybsec.com

CYBSEC Security Advisory - Endpoint Protector version 4.0.4.2 suffers from multiple persistent cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | ef0092389df049ef7eb3985f4d8f532b6da2398a44b2cb06c67d4c0a037ddab5
PG Dating Pro CMS 1.0 Cross Site Scripting / SQL Injection
Posted Oct 30, 2012
Authored by Ibrahim El-Sayed, Vulnerability Laboratory | Site vulnerability-lab.com

PG Dating Pro CMS version 1.0 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 2d29ab841271349d3f70693eec7abef53734b54ed8c65588674506854c6b0f6e
VaM Shop 1.69 Cross Site Scripting / SQL Injection
Posted Oct 30, 2012
Authored by Security Effect, Vulnerability Laboratory | Site vulnerability-lab.com

VaM Shop version 1.69 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | b0b18e474c417fd1c040915d886eccf373c7e089f4abd9ab7ba5574762eb53ac
Joomla Quiz Cross Site Scripting / SQL Injection
Posted Oct 30, 2012
Authored by Daniel Barragan

The Joomla Quiz component suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | a4cf9598978b4e508c4901011742af5b2e071f4e07687b1393bd4f8be7d61956
NetCat CMS 5.0.1 Cross Site Scripting / HTTP Parameter Pollution
Posted Oct 30, 2012
Authored by Security Effect, Vulnerability Laboratory | Site vulnerability-lab.com

NetCat CMS version 5.0.1 suffers from cross site scripting and HTTP parameter pollution vulnerabilities.

tags | exploit, web, vulnerability, xss
SHA-256 | 21d9c58badf1220d20cd3097eafaba785483ba2bd3262191fdded25eb9733d84
TP-LINK TL-WR841N Local File Inclusion
Posted Oct 29, 2012
Authored by Matan Azugi

TP-LINK TL-WR841N suffers from a local file inclusion vulnerability. Firmware versions 3.13.9 Build 120201 Rel.54965n and below are affected.

tags | exploit, local, file inclusion
SHA-256 | 30b33ca4e19b4006382480798e9d11511f9fab053f7f020f3416d3cf693d302a
HP Operations Agent Opcode coda.exe 0x8c Buffer Overflow
Posted Oct 28, 2012
Authored by Luigi Auriemma, juan vazquez | Site metasploit.com

This Metasploit module exploits a buffer overflow vulnerability in HP Operations Agent for Windows. The vulnerability exists in the HP Software Performance Core Program component (coda.exe) when parsing requests for the 0x8c opcode. This Metasploit module has been tested successfully on HP Operations Agent 11.00 over Windows XP SP3 and Windows 2003 SP2 (DEP bypass). The coda.exe components runs only for localhost by default, network access must be granted through its configuration to be remotely exploitable. On the other hand it runs on a random TCP port, to make easier reconnaissance a check function is provided.

tags | exploit, overflow, tcp
systems | windows
advisories | CVE-2012-2020, OSVDB-83674
SHA-256 | b17f8aa903e5e1fb8c11edc59aa31a5d56b46b6c73d9f2b8f5465c470c2951aa
HP Operations Agent Opcode coda.exe 0x34 Buffer Overflow
Posted Oct 28, 2012
Authored by Luigi Auriemma, juan vazquez | Site metasploit.com

This Metasploit module exploits a buffer overflow vulnerability in HP Operations Agent for Windows. The vulnerability exists in the HP Software Performance Core Program component (coda.exe) when parsing requests for the 0x34 opcode. This Metasploit module has been tested successfully on HP Operations Agent 11.00 over Windows XP SP3 and Windows 2003 SP2 (DEP bypass). The coda.exe components runs only for localhost by default, network access must be granted through its configuration to be remotely exploitable. On the other hand it runs on a random TCP port, to make easier reconnaissance a check function is provided.

tags | exploit, overflow, tcp
systems | windows
advisories | CVE-2012-2019, OSVDB-83673
SHA-256 | 809a9aac4f2a408b3f9058799cf1083d77ec0a7e8360fb3dc6acb06f3554aeee
ManageEngine Security Manager Plus 5.5 build 5505 SQL Injection
Posted Oct 28, 2012
Authored by egypt, sinn3r, xistence | Site metasploit.com

This Metasploit module exploits a SQL injection found in ManageEngine Security Manager Plus advanced search page, which results in remote code execution under the context of SYSTEM in Windows; or as the user in Linux. Authentication is not required in order to exploit this vulnerability.

tags | exploit, remote, code execution, sql injection
systems | linux, windows
SHA-256 | ae2e0907bda1eeb2906f4560caa8085b35712d1a7fe05eeb19dddd8fe8de7ac1
Aladdin Knowledge System Ltd Buffer Overflow
Posted Oct 28, 2012
Authored by b33f

Aladdin Knowledge System Ltd PrivAgent.ocx ChooseFilePath buffer overflow proof of concept exploit.

tags | exploit, overflow, proof of concept
SHA-256 | 6b0e1f5b8ce0b43f6fe89b5aefc2eb998856bca69d78c4825813a7b9d9459d3d
hMailServer 5.3.3 Remote Denial Of Service
Posted Oct 27, 2012
Authored by John Smith

hMailServer version 5.3.3 IMAP remote crash proof of concept exploit.

tags | exploit, remote, denial of service, imap, proof of concept
SHA-256 | 454219d88cfcbbb8095c691c1741bbe47a484f55661fbda3a4c11ecd92d298bb
Microsoft Windows Help Program Memory Corruption
Posted Oct 27, 2012
Authored by coolkaveh

Microsoft Windows Help memory corruption proof of concept exploit.

tags | exploit, proof of concept
systems | windows
SHA-256 | 82d19ca3b60a9332405e2523a1e48b00ebbabb65324fe0407d610384e7436670
Microsoft Office Publisher 2010 Proof Of Concept
Posted Oct 27, 2012
Authored by coolkaveh

Microsoft Office Publisher 2010 crash proof of concept denial of service exploit.

tags | exploit, denial of service, proof of concept
systems | windows
SHA-256 | b2596f036e91036b1d9c5e75fe931fc3789cd3a28a5f811d1c8bdfe17aa40c79
Microsoft Paint 5.1 Memory Corruption
Posted Oct 27, 2012
Authored by coolkaveh

Microsoft Paint version 5.1 memory corruption proof of concept exploit.

tags | exploit, proof of concept
SHA-256 | 15e5373002cdf14b6c92cf97696861304cc35f3a4bceeadf2a2995e5a4c4daa2
Page 1 of 9
Back12345Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close