exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 207 RSS Feed

Files

Yii Framework 1.1.8 Search SQL Injection
Posted Nov 21, 2012
Authored by Juno_okyo

Yii Framework version 1.1.8 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d41438703075497185a196eafaeb2ea7f0fefde46cd9bc2ccba91796a1f6e261
Feng Office 2.0 Beta 3 XSS / Privilege Escalation
Posted Nov 21, 2012
Authored by Ur0b0r0x

Feng Office version 2.0 Beta 3 suffers from cross site scripting and privilege escalation vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | c7f9176fbec9a9bd75131316e5716c7fac417c119bd0f14371400af5c4cdfa99
LAN.FS Messenger 2.4 Command Execution
Posted Nov 21, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

LAN.FS Messenger version 2.4 suffers from a remote command execution vulnerability.

tags | exploit, remote
SHA-256 | 7de0a626d8e85e7fe42ad8322fa0153c0c6b0992ca1a1e994040291c4bab64e7
Adobe Reader 10.1.4 Memory Corruption
Posted Nov 20, 2012
Authored by coolkaveh

Adobe Reader version 10.1.4 suffers from a WriteAV memory corruption vulnerability.

tags | exploit
systems | linux
SHA-256 | ed7d42a1bc5af03c0ce74930cfd8ffba1052cad9470fbe8ea6967e3959181afc
WordPress Facebook Survey SQL Injection
Posted Nov 20, 2012
Authored by Chokri Ben Achor, Vulnerability Laboratory | Site vulnerability-lab.com

WordPress Facebook Survey third party plugin version 1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8ce3162ca5a759c35cd1f80a58eba9b55ff0c6e87d0cf751fcb944e14d7f3795
TP-LINK TL-WR841N 3.13.9 Cross Site Scripting
Posted Nov 20, 2012
Authored by Matan Azugi

TP-LINK TL-WR841N versions 3.13.9 Build 120201 Rel.54965n and below suffer from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2012-6316
SHA-256 | 043a1aa84308acf95decc9f1014aeb083a38288f260b4a4a40591b9a99af5b82
Webthinkers Cross Site Scripting / SQL Injection
Posted Nov 20, 2012
Authored by Ur0b0r0x

Sites designed by Webthinkers suffers from cross site scripting and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 1642ea82db2cb4b918486fb4534c5f4cc8ccdd9d87ad959013a19325c7c9f0d5
Diseno Internet Cross Site Scripting / SQL Injection
Posted Nov 20, 2012
Authored by Ur0b0r0x

Sites design by Diseno Internet Chile suffers from cross site scripting and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 0fc06ad1c6f997e566e6183aae46b78c07df5840d8471a8dc628c1e7765bdaef
Base Solida Cross Site Scripting / SQL Injection
Posted Nov 20, 2012
Authored by Ur0b0r0x

Sites design by Base Solida suffer from cross site scripting and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | d965a0782c1c3cc4f60b24ee78e04c0c8b8c1dd00d1dcb4e4e240854679fa228
SonicWALL CDP 5040 6.x Cross Site Scripting
Posted Nov 20, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

SonicWALL CDP 5040 version 6.x suffers from cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | d327fc4a15cab77c142b8aedf8542490977dbcef6a6f7679bbe7a160c4a94dcc
WordPress FireStorm Real Estate 2.06.08 SQL Injection
Posted Nov 20, 2012
Authored by B00B5

WordPress FireStorm Real Estate third party plugin version 2.06.08 suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | afee220fc37a19dd1e4636328e01cb5548fc2e617d7f0cd1f863b9b1eac2f164
Apple QuickTime 7.7.2 Buffer Overflow
Posted Nov 20, 2012
Authored by Senator of Pirates

Apple QuickTime versions 7.7.2 and below suffer from a buffer overflow vulnerability in the handling of TGA files.

tags | exploit, overflow
systems | linux, apple
advisories | CVE-2012-3755
SHA-256 | 3c48abe71248d510eb46af93dfcf4cd9068d33680911fdd9c64bf61c9d359d01
FormatFactory 3.0.1 Buffer Overflow
Posted Nov 20, 2012
Authored by Julien Ahrens

FormatFactory versions 3.0.1 and below suffer from a profile file handling buffer overflow vulnerability.

tags | exploit, overflow
SHA-256 | 0c29efe3ead46ec1b8b8b18717562e87540d38612b3cbe97b146a01d6a7a66c6
Penske Media Corporation Cross Site Scripting
Posted Nov 20, 2012
Authored by Janne Ahlberg

Various Penske Media Corporation sites such as variety.com, la411.com, newyork411.com, and deadline.com all suffer from reflective cross site scripting vulnerabilities. Note that this finding houses site-specific data. Editor's note 01/04/2013: Per the advisory author, the issues have been resolved in all sites listed and Penske Media have addressed the issue.

tags | exploit, vulnerability, xss
SHA-256 | 0ee5e0affef62932ece9368ee73e2ab61594aecfc2a0ad7e7fc6c30c8d846b00
WordPress Madebymilk SQL Injection
Posted Nov 20, 2012
Authored by Ashiyane Digital Security Team

WordPress Madebymilk theme suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 53efbb3fb22fea393b7b557a40986a887585d9f65fc7b902c2bd190cec17cc9b
WordPress Dailyedition-mouss SQL Injection
Posted Nov 20, 2012
Authored by Ashiyane Digital Security Team

WordPress Dailyedition-mouss theme suffers from a remote SQL injection vulnerability. Note that this finding houses site-specific data.

tags | exploit, remote, sql injection
SHA-256 | e3b6e86eb2c0347606edadc71a935b17a5439f47d2053f6412d3576c51d782ff
Akeni LAN 1.2.118 Filter Bypass
Posted Nov 19, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

A filter bypass vulnerability in Akeni LAN (LE) Messenger version 1.2.118 allows for malicious script insertion / cross site scripting attacks.

tags | exploit, xss, bypass
SHA-256 | a856de3fd6a5d3af851ebd5974741c479af215deb2422d936244be3106873f79
Manage Engine Exchange Reporter 4.1 Cross Site Scripting
Posted Nov 19, 2012
Authored by Ibrahim El-Sayed, Vulnerability Laboratory | Site vulnerability-lab.com

Manage Engine Exchange Reporter version 4.1 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 88a98e8af73fd137f6bbd014be80a042c4c83acb3c1d6f43255c2ccbf4407a8e
Omni-Secure 5 / 6 / 7 Remote File Disclosure
Posted Nov 19, 2012
Authored by HaCkeR_EgY

Omni-Secure versions 5, 6, and 7 suffer from a remote file disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | c7976e9f4319789ecff0baa4aac29390e943b06f256fba7cbb192d9a9f5ae6f1
Skype Account Service Reset Credentials
Posted Nov 19, 2012
Authored by Benjamin Kunz Mejri, Chokri Ben Achor, Vulnerability Laboratory | Site vulnerability-lab.com

The Skype Account Service application suffered from a reset password/username vulnerability.

tags | exploit
SHA-256 | 47ad6f50220ee53830173e0377be0516841a8b60569695b59844b96a36e1e0a7
Skype Account Service Session Token Bypass
Posted Nov 19, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

The Skype Account Service application suffered from a session token bypass vulnerability.

tags | exploit, bypass
SHA-256 | 81e159aed334870a8fa4696621cdbdbfd9454dd6dac853d85e668dc983dc5061
WeBid 1.0.5 Directory Traversal
Posted Nov 19, 2012
Authored by loneferret

WeBid versions 1.0.5 and below suffer from a directory traversal vulnerability.

tags | exploit, file inclusion
SHA-256 | 691fd6a645c981162b89806c3a38adbbac74928e9a8c6bdd1391a139433a93d9
Microsoft Office OneNote 2010 Memory Corruption
Posted Nov 19, 2012
Authored by coolkaveh

Microsoft Office OneNote 2010 suffers from a WriteAV memory corruption vulnerability.

tags | exploit
systems | linux
SHA-256 | e7beebdffa62b0c8bab44b31791cda2bf7875af83b941a521c5aa933e91f031f
WeBid 1.0.5 CSRF / Cross Site Scripting
Posted Nov 18, 2012
Authored by Ingress Security

Ingress Security researchers have found cross site request forgery and cross site scripting vulnerabilities in WeBid versions 1.0.5 and below.

tags | exploit, vulnerability, xss, csrf
SHA-256 | c1f896eea7c21f9264c91d05c357a72a7e8503da4782a9a2857721670657f5c7
LikeItNow Script 1.0 SQL Injection
Posted Nov 18, 2012
Authored by xStarCode

LikeItNow Script version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 9fe8c5d5443a9a16da69480ee0b97ae88f5415b7f64190be840e0c6b31764376
Page 4 of 9
Back23456Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close