what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 185 RSS Feed

Files

Cacti Superlinks 1.4-2 Code Execution / LFI / SQL Injection
Posted Dec 20, 2014
Authored by Wireghoul

Cacti Superlinks version 1.4-2 suffers from code execution via local file inclusion, and remote SQL injection vulnerabilities.

tags | exploit, remote, local, vulnerability, code execution, sql injection, file inclusion
advisories | CVE-2014-4644
SHA-256 | 5a23314873f3c7b79647dafc858449285d365137abb907d03a2007a2c4bb40fd
NetIQ eDirectory NDS iMonitor 8.8 SP8 / 8.8 SP7 XSS / Memory Disclosure
Posted Dec 20, 2014
Authored by Wolfgang Ettlinger | Site sec-consult.com

NetIQ eDirectory NDS iMonitor versions 8.8 SP8 and 8.8 SP7 suffer from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2014-5212, CVE-2014-5213
SHA-256 | 42f12d914fa5417e9b3009fd6a0222ff5662fe88ac1c59cf41efc6d5318502e6
Mobilis MobiConnect 3G ZDServer 1.0.1.2 Privilege Escalation
Posted Dec 20, 2014
Authored by Hadji Samir, Vulnerability Laboratory | Site vulnerability-lab.com

Mobilis MobiConnect 3G ZDServer version 1.0.1.2 suffers from a privilege escalation vulnerability.

tags | exploit
SHA-256 | 6c74b1f6e37725e0c1ac37c1c232da750e8669314683cec2a7bc5be5684e7c8d
Codiad 2.4.3 Cross Site Scripting / Local File Inclusion
Posted Dec 20, 2014
Authored by Taurus Omar

Codiad version 2.4.3 suffers from cross site scripting and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
advisories | CVE-2014-1137
SHA-256 | fe2507339eb5aeda7a897ee547f5f0796393c2acefcc81e722686bf71a1385ef
ProjectSend r561 Ultimate Cross Site Scripting / Path Disclosure
Posted Dec 20, 2014
Authored by Taurus Omar

ProjectSend version r561 Ultimate suffers from cross site scripting and path disclosure vulnerabilities.

tags | exploit, vulnerability, xss, info disclosure
advisories | CVE-2014-1155
SHA-256 | f914ac1aa8fc5e724fe7cbdabea5e45d01a153211b858cd9a295349ee69dc04e
Piwigo 2.7.2 Cross Site Scripting / SQL Injection
Posted Dec 20, 2014
Authored by Taurus Omar

Piwigo version 2.7.2 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
advisories | CVE-2014-1470
SHA-256 | 26ad1bdac26fbe5346039af7a88028c6e43d1ef8d7e34e737578c4186353d04c
GQ File Manager 0.2.5 Cross Site Scripting / SQL Injection
Posted Dec 20, 2014
Authored by Taurus Omar

GQ File Manager version 0.2.5 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
advisories | CVE-2014-1137
SHA-256 | 886376e4da426f55cb91e358853374c9e2a50517b41435e2711a8976b7e01973
Ettercap 0.8.0 / 0.8.1 Denial Of Service
Posted Dec 20, 2014
Authored by Nick Sampanis

Ettercap versions 0.8.0 and 0.8.1 suffers from multiple denial of service vulnerabilities.

tags | exploit, denial of service, vulnerability
advisories | CVE-2014-6395
SHA-256 | c2d3c37bbcf2c09b4172044c3ddf17cecc9c546ea8ab8c937287a9c6a36c57e6
iBackup 10.0.0.45 Privilege Escalation
Posted Dec 19, 2014
Authored by Hadji Samir, Vulnerability Laboratory | Site vulnerability-lab.com

iBackup version 10.0.0.45 suffers from a privilege escalation vulnerability.

tags | exploit
SHA-256 | f8234c8002f8415d0148571642c6e9af39afe89f33becf443ddf13aeecbfa0a0
TennisConnect 9.927 Cross Site Scripting
Posted Dec 19, 2014
Authored by Jing Wang

TennisConnect version 9.927 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2014-8490
SHA-256 | f244ce41ca3796d1fe50df063102d77a36ce63a9dccf714002f9f9bc5e5626eb
JCE-Tech 4.0 Cross Site Scripting
Posted Dec 19, 2014
Authored by Jing Wang

JCE-Tech version 4.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2014-8752
SHA-256 | 441a179317009110053a59995e002c92691f62f5c3041ef3ea86ee2cfe8b31c8
NetIQ Access Manager 4.0 SP1 XSS / CSRF / XXE Injection / Disclosure
Posted Dec 19, 2014
Authored by Wolfgang Ettlinger | Site sec-consult.com

NetIQ Access Manager version 4.0 SP1 suffers from cross site request forgery, external entity injection, information disclosure, and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, info disclosure, csrf
advisories | CVE-2014-5214, CVE-2014-5215, CVE-2014-5216, CVE-2014-5217
SHA-256 | 320f0bd45b1d76c447e2f9652fd8ee7c2db0f94b4c3c1ff00b05f978a6cc03b0
G-Parted 0.14.1 Command Execution
Posted Dec 19, 2014
Authored by Wolfgang Ettlinger | Site sec-consult.com

G-Parted versions 0.14.1 and below suffer from a root privilege escalation command execution vulnerability.

tags | exploit, root
advisories | CVE-2014-7208
SHA-256 | 22d59ee6ab3ecbc032151958235d46b8b87c383d2fc085ccae3a73125bc45eb5
VDG Security SENSE 2.3.13 File Disclosure / Bypass / Buffer Overflow
Posted Dec 19, 2014
Authored by Stefan Viehboeck | Site sec-consult.com

VDG Security SENSE version 2.3.13 suffers from buffer overflow, authentication bypass, file disclosure, password disclosure, and information leakage vulnerabilities.

tags | exploit, overflow, vulnerability
SHA-256 | ac434a1ed45818872cf0689b9c03f2efbd4c708358bf3dc82697edeb0a4ddbf6
TWiki 6.0.0 / 6.0.1 WebSearch Cross Site Scripting
Posted Dec 19, 2014
Authored by Onur YILMAZ, Robert Abela

TWiki versions 6.0.0 and 6.0.1 suffer from a WebSearch cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2014-9367
SHA-256 | 3c386fd31deb35c5c17c6e38e1c48abe7134a8dd4633f091bc6a6e15da5a5f72
TWiki 6.0.1 QUERYSTRING / QUERYPARAMSTRING XSS
Posted Dec 19, 2014
Authored by Onur YILMAZ, Robert Abela

TWiki version 6.0.1 suffers from a cross site scripting vulnerability in the QUERYSTRING and QUERYPARAMSTRING variables.

tags | exploit, xss
advisories | CVE-2014-9325
SHA-256 | 7d6060a6f3ac1cf0e347eac2b79617dbb2f7a92dda2f6ea4a24b643a009f569e
Facebook Studio Cross Site Scripting
Posted Dec 19, 2014
Authored by Paulos Yibelo, Vulnerability Laboratory | Site vulnerability-lab.com

Facebook Studio suffered from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 6c44cbb682aafd6daec44b1de42940894bcdb8d43089d73242d17f4e0333676d
E-Journal CMS SQL Injection / Privilege Escalation
Posted Dec 19, 2014
Authored by X-Cisadane, Vulnerability Laboratory | Site vulnerability-lab.com

E-Journal CMS suffers from remote SQL injection and privilege escalation vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 9298e8ad7711b487909c7268ffc3a5b282329dc56644725e20346394219ff0b1
WordPress WP Unique Article Header Image 1.0 CSRF / XSS
Posted Dec 18, 2014
Authored by Manideep K

WordPress WP Unique Article Header Image plugin version 1.0 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9400
SHA-256 | 175c2eebe0cd3e9866320048012d5b850ffb25b206ad28aeb85614bf7ef18381
WordPress WP Limit Posts Automatically 0.7 CSRF / XSS
Posted Dec 18, 2014
Authored by Manideep K

WordPress WP Limit Posts Automatically plugin version 0.7 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9401
SHA-256 | 02cf02ba43fd5e6ffe80a1658ac7e307090bb1728ec273aa4a332e82163239c7
WordPress TweetScribe 1.1 CSRF / XSS
Posted Dec 18, 2014
Authored by Manideep K

WordPress TweetScribe plugin version 1.1 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9399
SHA-256 | 1d76406802c8684f889122501e1b3d99929467e88e8f70f3718ece101882a6f2
WordPress Twitter LiveBlog 1.1.2 CSRF / XSS
Posted Dec 18, 2014
Authored by Manideep K

WordPress Twitter LiveBlog plugin version 1.1.2 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9398
SHA-256 | 7737feb3d919c8f94cdd597b7a5cc7b8587158803d504d5d054e5a53ab8f13e8
WordPress Simplelife 1.2 CSRF / XSS
Posted Dec 18, 2014
Authored by Manideep K

WordPress Simplelife plugin version 1.2 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9395
SHA-256 | 7c4e268a4627a49c11ea8bf6e7bdd5bb9da6c039791a9e86fcf216af0b8d04a5
WordPress twimp-wp Cross Site Request Forgery / Cross Site Scripting
Posted Dec 18, 2014
Authored by Manideep K

WordPress twimp-wp plugin suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9397
SHA-256 | 3dae5e7a77c85db23f395d2cb2ecc855858fb0acc77aefb86f4977c1cbdf7397
WordPress SimpleFlickr 3.0.3 CSRF / XSS
Posted Dec 18, 2014
Authored by Manideep K

WordPress SimpleFlickr plugin version 3.0.3 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2014-9396
SHA-256 | e1692774df6bebf2a54b8df21cc319a515fe14eee2bef5d0fd6e17ce23626d8b
Page 3 of 8
Back12345Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Google Patches Critical Chrome Vulnerability
Posted Apr 24, 2024

tags | headline, flaw, google, patch, chrome
Hackers Are Using Developing Countries For Ransomware Practice
Posted Apr 24, 2024

tags | headline, hacker, malware, cybercrime, fraud, cryptography
Authorities Investigate LabHost Users After Phishing Service Shutdown
Posted Apr 23, 2024

tags | headline, cybercrime, fraud, phish
Windows Vulnerability Reported By The NSA Exploited To Install Russian Malware
Posted Apr 23, 2024

tags | headline, government, microsoft, usa, russia, flaw, cyberwar, spyware, nsa
UnitedHealth Admits Breach Could Cover Substantial Proportion Of People In America
Posted Apr 23, 2024

tags | headline, hacker, privacy, data loss
Microsoft DRM Hack Could Allow Movie Downloads From Streaming
Posted Apr 23, 2024

tags | headline, microsoft, flaw, pirate
Over A Million Neighbourhood Watch Members Exposed
Posted Apr 23, 2024

tags | headline, privacy, britain, data loss
MITRE Hacked By State Sponsored Group Via Ivanti Zero Days
Posted Apr 23, 2024

tags | headline, hacker, government
Russia's Sandworm APT Linked To Attack On Texas Water Plant
Posted Apr 18, 2024

tags | headline, malware, usa, russia, cyberwar, scada
EU Tells Meta It Can't Paywall Privacy
Posted Apr 18, 2024

tags | headline, government, privacy, facebook, social
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close