exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 130 RSS Feed

Files

FOSCAM Wireless IP Camera Cross Site Scripting
Posted Nov 7, 2013
Authored by Liad Mizrachi

FOSCAM Wireless IP Camera suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2013-5215
SHA-256 | 5d7aad720c62f2bdea172ddc4ac1152b00fe81b204d24a5ce1682057fc9a8fa9
appRain 3.0.2 SQL Injection
Posted Nov 6, 2013
Authored by High-Tech Bridge SA | Site htbridge.com

appRain version 3.0.2 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2013-6058
SHA-256 | c9b7309b9491bac7d77ccf7c949a6825fbdcd06cedb8d1445051efe18501f410
WordPress Gallery Bank 2.0.19 Cross Site Scripting
Posted Nov 6, 2013
Authored by Sojobo Dev Team

WordPress Gallery Bank version 2.0.19 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 7de5d08259d25035978dbd898d7d844341683cc5a63d38f48f076be8ca15f5f9
OWASP Java Encoder Filter Bypass
Posted Nov 6, 2013
Authored by Rafay Baloch, Alex Infuhr

OWASP Java Encoder suffers from a cross site scripting bypass vulnerability when it comes to the use of backticks.

tags | exploit, java, xss, bypass
SHA-256 | e201eb39628f1a3e446bebe36150d242b93041dab9381b0f61668518f32cf0d3
Microweber 0.905 SQL Injection
Posted Nov 6, 2013
Authored by Zy0d0x | Site nullsecurity.net

Microweber version 0.905 suffers from an error-based remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 52e11895bc07d1fbe5d493f3a953386b7fe7f8290972228f52209cc12528f9ee
Flatpress 1.0 Traversal / Command Execution
Posted Nov 6, 2013
Authored by Wireghoul

Flatpress version 1.0 remote code execution exploit that leverages a comment loaded through a directory traversal vulnerability.

tags | exploit, remote, code execution
SHA-256 | 8cbb0d3675b2bd21358cd41f0015f77833c3b74c965121dd98e9e879bf4160dc
Webers CMS XSS / LFI / SQL Injection
Posted Nov 6, 2013
Authored by Hossein Hezami

Webers CMS suffers from cross site scripting, local file inclusion, path disclosure, and remote SQL injection vulnerabilities.

tags | exploit, remote, local, vulnerability, xss, sql injection, file inclusion
SHA-256 | c6438759ebe51d229ccf375aaf894cf618a11b2819b1b4ac091a7c1839f9b19d
Vivotek IP Cameras RTSP Authentication Bypass
Posted Nov 5, 2013
Authored by Core Security Technologies, Martin Di Paola | Site coresecurity.com

Core Security Technologies Advisory - A security vulnerability was found in Vivotek IP cameras that could allow an unauthenticated remote attacker to bypass the RTSP basic authentication and access the video stream.

tags | exploit, remote
advisories | CVE-2013-4985
SHA-256 | 065e30843612a7e4fb764cec626223e6530980e8429e2fcb08a39b7da3c52b90
Cisco MARS Cross Site Scripting
Posted Nov 5, 2013
Authored by Giovanni Delvecchio

A cross site scripting vulnerability has been found in Cisco Security Monitoring, Analysis and Response System. The issue is due to the input passed via several fields (eg: isnowLatency) to the /Query/NewQueryResult.jsp page are not properly sanitised before being returned to the user. Other pages could be affected by this issue.

tags | exploit, xss
systems | cisco
advisories | CVE-2013-5563
SHA-256 | a744cb9f4e5080fb1ab9d2c85ce572685f55379db22e423d3575ad8d31beec81
Project'Or RIA 3.4.0 SQL Injection
Posted Nov 5, 2013
Authored by Vicente Aguilera Diaz

Project'Or RIA version 3.4.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2013-6164
SHA-256 | 994b42a23c4f6da7f39c572a3975c13a575414930eac772b4f02905a50d8c355
Project'Or RIA 3.4.0 Cross Site Scripting
Posted Nov 5, 2013
Authored by Vicente Aguilera Diaz

Project'Or RIA version 3.4.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2013-6163
SHA-256 | 4939ebe50ee1824f871a19246958da91b44eab3ea21fdd422e8494f230995c9a
LBG Zoom In/Out Effect Slider Cross Site Scripting
Posted Nov 5, 2013
Authored by MustLive

LBG Zoom In/Out Effect Slider plugin for Wordpress suffers from cross site scripting and path disclosure vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 12d3b33513334dd4e4056c4abafe19c65e20a2bc662cf1eed2bb677267d039b9
LinkedIn Cross Site Scripting
Posted Nov 5, 2013
Authored by Eduardo Garcia Melia | Site isecauditors.com

LinkedIn suffered from multiple persistent cross site scripting vulnerabilities in the contact management system.

tags | exploit, vulnerability, xss
SHA-256 | 5d52af56073787e068a19ad8edc3d714d24ca4095ed030ceb3ffcbd259e05d6a
Enigmatis CMS Cross Site Scripting / SQL Injection
Posted Nov 5, 2013
Authored by Hossein Hezami

Enigmatic CMS suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | a8cad47f6b7a1ce3c9a17883beb2e8ba1410ba6df3c8cc3a8dcba59ed9063ea3
TinyMCE 3.2.7 SQL Injection / Shell Upload
Posted Nov 5, 2013
Authored by KedAns-Dz

TinyMCE version 3.2.7 suffers from SQL injection bypass and remote shell upload vulnerabilities.

tags | exploit, remote, shell, vulnerability, sql injection
SHA-256 | da157be90c213de25691605033cf76109eb9523b6e6b3a241e799fbda9a598d4
StoryBoard Quick 6 Memory Corruption
Posted Nov 5, 2013
Authored by Nick Freeman | Site metasploit.com

This Metasploit module exploits a stack-based buffer overflow in StoryBoard Quick 6.

tags | exploit, overflow
SHA-256 | be9f8f5b5e74ec032e061db1790ee6ae7ad5663dd6c25860b0832e0efd98f2d3
Final Draft 8 File Format Stack Buffer Overflow
Posted Nov 5, 2013
Authored by Nick Freeman | Site metasploit.com

This Metasploit module exploits a stack-based buffer overflow in Final Draft 8. Multiple fields are vulnerable to the overflow, however Word in IgnoredWords is the only field to accept mixed-case characters.

tags | exploit, overflow
SHA-256 | 1b1e0b81bd8090ce9c13897364857d059b72e2077047d444b433511ccd5550d8
Practico 13.9 XSS / CSRF / SQL Injection
Posted Nov 4, 2013
Authored by LiquidWorm | Site zeroscience.mk

Practico version 13.9 suffers from cross site request forgery, cross site scripting, and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection, csrf
SHA-256 | ff9142aad0a2a97aa39c95d5224216c432ff5d621e823fbd324fbcf88aae580f
Avid Media Composer 5.5 - Avid Phonetic Indexer Stack Overflow
Posted Nov 4, 2013
Authored by Nick Freeman | Site metasploit.com

This Metasploit module exploits a stack buffer overflow in process AvidPhoneticIndexer.exe (port 4659), which comes as part of the Avid Media Composer 5.5 Editing Suite. This daemon sometimes starts on a different port; if you start it standalone it will run on port 4660.

tags | exploit, overflow
SHA-256 | 1300424762c6a67dc6fa5b84891cd5d5326609e31ed49f16b15f85a4eadefc6f
Apache Tomcat 5.5.25 Cross Site Request Forgery
Posted Nov 4, 2013
Authored by Ivano Binetti

Apache Tomcat version 5.5.25 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
advisories | CVE-2013-6357
SHA-256 | 3b4c8cfd49efc14d10b5b4f7153524eef6ad2a708d0e0998b67b8820bfb36e18
pdirl PHP Directory Listing 1.0.4 Cross Site Scripting
Posted Nov 4, 2013
Authored by linc0ln.dll, Vulnerability Laboratory | Site vulnerability-lab.com

pdirl PHP Directory Listing version 1.0.4 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, php, vulnerability, xss
SHA-256 | d502495c1f4d1697a4162c75518ef6cb8992eb9acf45eec537d6037429800847
HOTBOX 2.1.11 CSRF / Traversal / Denial Of Service
Posted Nov 4, 2013
Authored by Oz Elisyan

HOTBOX router/modem version 2.1.11 suffers from cross site request forgery, denial of service, script injection, and directory traversal vulnerabilities. Denial of service and cross site request forgery proof of concepts included.

tags | exploit, denial of service, vulnerability, proof of concept, file inclusion, csrf
advisories | CVE-2013-5037, CVE-2013-5038, CVE-2013-5220, CVE-2013-5219, CVE-2013-5218, CVE-2013-5039
SHA-256 | 585492350dc0303ed89cfacabf2156926a2aaab57dd7657dc750ff289331075a
Final Draft 8 File Format Stack Buffer Overflow
Posted Nov 4, 2013
Authored by Nick Freeman | Site metasploit.com

This Metasploit module exploits a stack-based buffer overflow in Final Draft 8. Multiple fields are vulnerable to the overflow, however Word in IgnoredWords is the only field to accept mixed-case characters. This version of the exploit was deemed "old" by Metasploit.

tags | exploit, overflow
SHA-256 | 1b1e0b81bd8090ce9c13897364857d059b72e2077047d444b433511ccd5550d8
StoryBoard Quick 6 Memory Corruption
Posted Nov 4, 2013
Authored by Nick Freeman | Site metasploit.com

This Metasploit module exploits a stack-based buffer overflow in StoryBoard Quick 6. This version of the exploit was deemed "old" by Metasploit.

tags | exploit, overflow
SHA-256 | be9f8f5b5e74ec032e061db1790ee6ae7ad5663dd6c25860b0832e0efd98f2d3
Avid Media Composer 5.5 - Avid Phonetic Indexer Stack Overflow
Posted Nov 4, 2013
Authored by Nick Freeman | Site metasploit.com

This Metasploit module exploits a stack buffer overflow in process AvidPhoneticIndexer.exe (port 4659), which comes as part of the Avid Media Composer 5.5 Editing Suite. This daemon sometimes starts on a different port; if you start it standalone it will run on port 4660. This version of the exploit was deemed "old" by Metasploit.

tags | exploit, overflow
SHA-256 | 1300424762c6a67dc6fa5b84891cd5d5326609e31ed49f16b15f85a4eadefc6f
Page 5 of 6
Back23456Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close