exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 191 RSS Feed

Files

WordPress Clockstone Theme File Upload
Posted Dec 18, 2012
Authored by DigiP | Site attack-scanner.com

The Clockstone WordPress theme appears to suffer from a remote shell upload vulnerability.

tags | exploit, remote, shell
SHA-256 | c5c62b70f95fe9932f14fd229bfe88499c762fcf65f2241447059818767b8ab3
Centrify Deployment Manager 2.1.0.283 Local Root
Posted Dec 18, 2012
Authored by Larry W. Cashdollar

Centrify Deployment Manager version 2.1.0.283 local root exploit that leverages a race condition in /tmp.

tags | exploit, local, root
advisories | CVE-2012-6348
SHA-256 | 38f44fe5235206c1815107ebecea1649a3da90ccbf7baa70c756abbb16cd7901
Enterpriser16 LB 7.1 Cross Site Scripting
Posted Dec 18, 2012
Authored by Ibrahim El-Sayed, Vulnerability Laboratory | Site vulnerability-lab.com

Enterpriser16 LB version 7.1 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | aa91eebfe06d0523d5a5bc5c93c855ec94ee4813c161cbd2081469cf89caa728
SonicWall SonicOS 5.8.1.8 WAF Cross Site Scripting
Posted Dec 18, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

SonicWall SonicOS version 5.8.1.8 suffers from a POST-based cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 69736c270ef6a91bbb98fe08a560c38028dab2cab42b016f68ad8173c6b98034
MyBB MyYoutube Cross Site Scripting
Posted Dec 18, 2012
Authored by limb0

MyBB MyYoutube plugin suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 5442668c0b43e318f6415ef1ecbfd2ae45e2284829bd212ed0c8016ef762a3ee
MyBB Xbox Live ID Cross Site Scripting
Posted Dec 18, 2012
Authored by limb0

MyBB Xbox Live ID plugin suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 7e0ca0889c7441be6bab586be3052a685789dc0fb626292b68cecb36254a3a25
MyBB Profile Skype ID 1.0 Cross Site Scripting
Posted Dec 18, 2012
Authored by limb0

MyBB Profile Skype ID plugin version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 5e013aabc0196147facbf7738386c71c57b37bcc6a6f4f5840cf55448e173435
MyBB MyTube 1.0 Cross Site Scripting
Posted Dec 18, 2012
Authored by Kim Kun Bum

MyBB MyTube plugin version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | d325c54a1faea9eed66d459ba6d4bbded28e0f02cd268edf7ebc3bf3a722f7cd
MyBB Facebook Profile 2.4 Cross Site Scripting
Posted Dec 18, 2012
Authored by limb0

MyBB Facebook Profile plugin version 2.4 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 3b097c11871b6cf5ca13bc88715d08e215a08bdee3fffc396cb40fc0ca2f5733
MyBB Bank Transactions 2.0 SQL Injection
Posted Dec 18, 2012
Authored by limb0

MyBB Bank Transactions plugin version 2.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | b5222aa3da9434e51331f92cb0cbda2b2fa97e5fbd76eddfa0fe0fd087c25916
Firefox 17.0.1 Crash Proof Of Concept
Posted Dec 18, 2012
Authored by limb0

Firefox version 17.0.1 crash proof of concept exploit.

tags | exploit, proof of concept
SHA-256 | 8f52c23e864a01cfd2602317604d93d20ad4e5ae9071d033b024a5a3778f49eb
Crystal Reports CrystalPrintControl ActiveX ServerResourceVersion Property Overflow
Posted Dec 18, 2012
Authored by Dr_IDE, Dmitriy Pletnev, juan vazquez | Site metasploit.com

This Metasploit module exploits a heap based buffer overflow in the CrystalPrintControl ActiveX, while handling the ServerResourceVersion property. The affected control can be found in the PrintControl.dll component as included with Crystal Reports 2008. This Metasploit module has been tested successfully on IE 6, 7 and 8 on Windows XP SP3 and IE 8 on Windows 7 SP1. The module uses the msvcr71.dll library, loaded by the affected ActiveX control, to bypass DEP and ASLR.

tags | exploit, overflow, activex
systems | windows
advisories | CVE-2010-2590, OSVDB-69917
SHA-256 | e2e444f4f608cf2a5267e52972251a3f6dc63fb45578a2ac18f6eb5ad4684ec0
phpwcms 1.5.4.6 Remote Code Execution
Posted Dec 18, 2012
Authored by aeon flux

phpwcms versions 1.5.4.6 and below preg_replace remote code execution exploit.

tags | exploit, remote, code execution
SHA-256 | 815d662d1defc929cafd32019bac1baf9c7bd4c542eedf9b6366400a07994cd5
WordPress Rokbox 2.13 XSS / DoS / File Upload / Path Disclosure
Posted Dec 17, 2012
Authored by MustLive

Rokbox version 2.13 for WordPress suffers from content spoofing, cross site scripting, denial of service, path disclosure, and various other vulnerabilities.

tags | exploit, denial of service, spoof, vulnerability, xss
SHA-256 | 51a81a8d051d242f2a2efc2c318db1e018963bd4d73085533099aba88545bf32
National Weather Service Cross Site Scripting
Posted Dec 17, 2012
Authored by Ryuzaki Lawlet

The National Weather Service site at weather.noaa.gov suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e04b959f09b5af9ce7f9b2cbc3bab1960972e0b243ccec283657989ff930cc26
Peruvian Universities SQL Injection
Posted Dec 17, 2012
Authored by Caleb Bucker

It has been reported that many Peruvian universities suffer from remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 3a065f6e2e9034a46e246a31e0787be79b96296967cd1e8a1095ef1e9c639269
Phuse Web / Element C2 / Cox Web Design SQL Injection
Posted Dec 17, 2012
Authored by Am!r | Site irist.ir

Sites designed by Phuse Web Design, Element C2, and Cox Web and Design suffer from a remote SQL injection vulnerability. Note that these findings house site-specific data.

tags | exploit, remote, web, sql injection
SHA-256 | 504123cfc20a40a7941798db5ac7a257396e4266ab0caf5439362350aeb60890
Orphmedia / Pro-Service / Pulse Solutions Cross Site Scripting
Posted Dec 17, 2012
Authored by Am!r | Site irist.ir

Sites designed by Pro-Service, Pulse Solutions, and Orphmedia suffer from a cross site scripting vulnerability. Note that these findings house site-specific data.

tags | exploit, xss
SHA-256 | 5e38611813699dd9ee222b601e6d0400e6726f1ccda60cec5442ffede8f00edb
Tristar / Studio Umbrella / Intelligent Soft Solutions SQL Injection
Posted Dec 17, 2012
Authored by Am!r | Site irist.ir

Sites created by Tristar, Studio Umbrella, and Intelligent Soft Solutions suffer from a remote SQL injection vulnerability. Note that these findings house site-specific data.

tags | exploit, remote, sql injection
SHA-256 | 663bee86429fe5059427fa7cbf13c09c652f8015577883f6a83873176982fc09
WebConnection / Toto / Tides Cross Site Scripting
Posted Dec 17, 2012
Authored by Am!r | Site irist.ir

Websites designed by Toto, WebConnection, and Tides all suffer from a cross site scripting vulnerability. Note that these findings house site-specific data.

tags | exploit, xss
SHA-256 | 919bc329ba62202198f938810d30f99a1d9e33e05ce7f90f66a2ac6b3bc32900
Nissi Infotech / Pej Studio / Plante Graffix Cross Site Scripting
Posted Dec 17, 2012
Authored by Am!r | Site irist.ir

Sites created by Nissi Infotech, Pej Studio, and Plante Graffix suffer from a cross site scripting vulnerability. Note that these findings house site-specific data.

tags | exploit, xss
SHA-256 | 4738782f8078e0ecdc921eb6931e8fcd4e1886f030c64327124d0ed97988d158
Adobe Flash Player 11.5.502.135 Memory Corruption
Posted Dec 17, 2012
Authored by coolkaveh

Adobe Flash Player version 11.5.502.135 suffers from a memory corruption vulnerability.

tags | exploit
systems | linux
SHA-256 | 07d935a47e6f39722a8226e2bd3af1f187d5d638fd758d8583b7629f285c8c63
MyBB Profile Skype ID Cross Site Scripting
Posted Dec 16, 2012
Authored by limb0

MyBB plugin Profile Skype ID version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | cb32773a9298280e88fa37b95b9cdf814b7f82cacf14a4c18d19123305094269
Totem Movie Player 3.4.3 Stack Corruption
Posted Dec 16, 2012
Authored by coolkaveh

Totem Movie Player version 3.4.3 with GStreamer version 0.10.36 suffers from a stack corruption vulnerability.

tags | exploit
systems | linux
SHA-256 | 5b07f9e2d077151423280273534963eaef45c111f2dbf2a27e6e1fb2f488acf9
TWiki 5.1.2 Command Execution
Posted Dec 15, 2012
Authored by George Clark

TWiki versions 4.x and 5.1.0 through 5.1.2 suffers from a remote command execution vulnerability due to an underlying security issue in the Locale::Maketext CPAN module.

tags | exploit, remote
advisories | CVE-2012-6329
SHA-256 | cb72251d574c616e51ff36e8cd83c9ea7e2a8b758b68d28544a8988cc1c489f9
Page 4 of 8
Back23456Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Life Imitates xkcd Comic As Florida Gang Beats Crypto Password From Retiree
Posted Sep 20, 2024

tags | headline, cybercrime, data loss, cryptography
1 In 10 Orgs Dumping Their Security Vendors After CrowdStrike Outage
Posted Sep 20, 2024

tags | headline, denial of service
Cyber Crooks Strut Away With Haute Couture Harvey Nichols Data
Posted Sep 20, 2024

tags | headline, hacker, privacy, britain, cybercrime, data loss, fraud
Noise Storms: Massive Amounts Of Spoofed Web Traffic Linked To China
Posted Sep 20, 2024

tags | headline, china
Tor Network Denies Report That Anonymity Is Completely Canceled
Posted Sep 20, 2024

tags | headline, government, privacy, cryptography
Marko Polo Hackers Found To Be Running Dozens Of Scams
Posted Sep 20, 2024

tags | headline, hacker, cybercrime, fraud, phish, cryptography
Re-Opened Three Mile Island Will Power AI Datacenters Under New Deal
Posted Sep 20, 2024

tags | headline, microsoft, botnet
Social Media Users Lack Control Over Data Used By AI, US FTC Says
Posted Sep 19, 2024

tags | headline, government, privacy, usa, data loss, botnet
Hackers Demand $6 Million From Seattle Airport Operators
Posted Sep 19, 2024

tags | headline, hacker, cybercrime, data loss, fraud, cryptography
Recent WhatsUp Gold Vulnerabilities Possibly Exploited In Ransomware Attacks
Posted Sep 19, 2024

tags | headline, malware, cybercrime, flaw, cryptography
View More News →
packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close