what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 226 RSS Feed

Files

Packet Storm New Exploits For August, 2015
Posted Sep 1, 2015
Authored by Todd J. | Site packetstormsecurity.com

This archive contains 227 exploits that were added to Packet Storm in August, 2015.

tags | exploit
systems | linux
SHA-256 | 711e21db996e06d0c817ac3d3021c158dd83074edd4554d3ad15e8c66d316f17
Ganglia Web Frontend PHP Code Execution
Posted Aug 31, 2015
Authored by Andrei Costin

Ganglia Web Frontend versions prior to 3.5.1 suffer from a php code execution vulnerability.

tags | exploit, web, php, code execution
advisories | CVE-2012-3448, OSVDB-84240
SHA-256 | fbcf02257b1a1feb81f096347eb4f10f57e98b0efb768cc0b89613f793bb81b9
Viber 4.2.0 Denial Of Service
Posted Aug 31, 2015
Authored by Mohammad Reza Espargham

Viber version 4.2.0 suffers from a denial of service vulnerability.

tags | exploit, denial of service
SHA-256 | 28365d976a6af68499803475c65460fc59490640ce841475d266fee8f7447d24
Cyberoam CR500iNG-XP - 10.6.2 MR-1 Blind SQL Injection
Posted Aug 31, 2015
Authored by Dharmendra Kumar Singh

Cyberoam versions CR500iNG-XP - 10.6.2 MR-1 and below suffer from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 94bb98c046f5f4475204be3e981118e08bf8b5377cb3e2e1090ae79fc8c57972
PFTP Server 8.0f Buffer Overflow
Posted Aug 31, 2015
Authored by Robbie Corley

PFTP Server version 8.0f SEH bypass buffer overflow exploit.

tags | exploit, overflow
SHA-256 | 374b7b3828422456d3ecce6a3d6fb852605794c39adce138ddee7edb0248df1d
PHPWiki 1.5.4 Cross Site Scripting / Local File Inclusion
Posted Aug 31, 2015
Authored by Smash_

PHPWiki version 1.5.4 suffers from cross site scripting and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
SHA-256 | 216e784aadc993c5f17e69a31170e38ba94b3a61ea48ad4e2f70fca483672042
Samsung SyncThruWeb SMB Hash Disclosure
Posted Aug 31, 2015
Authored by Shad Malloy

Samsung SyncThruWeb suffers from an SMB hash disclosure vulnerability.

tags | exploit, info disclosure
SHA-256 | 89e66f78180f90029a6312a4b79f51f9a7ee6a5113073cf30a134e0a91a4078f
Edimax PS-1206MF Authentication Bypass
Posted Aug 31, 2015
Authored by Smash_

Edimax PS-1206MF suffers from a web admin authentication bypass vulnerability.

tags | exploit, web, bypass
SHA-256 | 8a3e97a0db7eae0cef4db2ec4ccb7ead22ab288d38984d67572609a6d418404b
Microsoft Office 2007 msxml5.dll Crash Proof Of Concept
Posted Aug 31, 2015
Authored by Mohammad Reza Espargham

Microsoft Office 2007 msxml5.dll crash proof of concept exploit.

tags | exploit, proof of concept
SHA-256 | 86d56e256401bbf80e123125cd449d24cf6365df9eb188543003be5ed7384a74
Joomla GoogleSearch (CSE) 3.0.2 Cross Site Scripting
Posted Aug 31, 2015
Authored by Bet0

Joomla GoogleSearch (CSE) component version 3.0.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | df140d2d1a7957d5cdae1531299d28ea283e66812582e860cacec23e01fdd5a5
Boxoft WAV To MP3 Converter Buffer Overflow
Posted Aug 31, 2015
Authored by Robbie Corley

Boxoft WAV to MP3 Converter SEH bypass buffer overflow exploit.

tags | exploit, overflow
SHA-256 | 7761b6a1ed9cade7d306f6578b5bfdb01c1cb8a8b62936c2ada2e08f4e708cec
WordPress Testimonial Slider 1.2.1 Cross Site Scripting
Posted Aug 31, 2015
Authored by Arash Khazaei

WordPress Testimonial Slider plugin version 1.2.1 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | c42a3e7a53fa032347f8db34ca336504c038103182ac19af39975cd7d2507601
Winmail Server 4.2 Cross Site Scripting
Posted Aug 30, 2015
Authored by Jing Wang

Winmail Server version 4.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | eec3c7ca5f439c77874ee890324a41cec3a56a1c5f7e183e0ee2900e4189c9c5
KnowledgeTree OSS 3.0.3b Cross Site Scripting
Posted Aug 30, 2015
Authored by Jing Wang

KnowledgeTree OSS version 3.0.3b suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 26ed7fb26ecaa5fc15303a5cb12cc717b096e034186db8f3f5d6c9efdad9b8ac
WordPress sourceAFRICA 0.1.3 Cross Site Scripting
Posted Aug 29, 2015
Authored by Ehsan Hosseini

WordPress sourceAFRICA plugin version 0.1.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 9efd1140b3838aceb2a7f90d528f8c60439da4fa3b7087995c279c33fe5f816a
Pluck CMS 4.7.3 CSRF / XSS / LFI / Code Execution
Posted Aug 28, 2015
Authored by Smash_

Pluck CMS version 4.7.3 suffers from code execution, cross site request forgery, cross site scripting, and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, code execution, xss, file inclusion, csrf
SHA-256 | 9c15c9353fd157ff999d6c6642d64faa272b0ac770bc946572239db5e9949812
freeSSHd 1.3.1 Denial Of Service
Posted Aug 28, 2015
Authored by 3unnym00n

freeSSHd version 1.3.1 suffers from a denial of service vulnerability.

tags | exploit, denial of service
SHA-256 | 394f6434e00eb05d1952d269485e3c3a636bd930a41c5b68ab983b352e8c2632
WordPress Captain Slider 1.0.6 Cross Site Scripting
Posted Aug 28, 2015
Authored by Arash Khazaei

WordPress Captain Slider plugin version 1.0.6 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 73470cb284596d274c1d8c36303b9ebc55b5a11435c41374e907a1eb3ff10eae
Apple OS X Entitlements Rootpipe Privilege Escalation
Posted Aug 28, 2015
Authored by joev, Emil Kvarnhammar | Site metasploit.com

This Metasploit module exploits the rootpipe vulnerability and bypasses Apple's initial fix for the issue by injecting code into a process with the 'admin.writeconfig' entitlement.

tags | exploit
systems | apple
advisories | CVE-2015-3673
SHA-256 | 675bfb209258c4d794420d872c3ae4a648abbf5cb0e2af4ea23e9559348211b2
QEMU Programmable Interrupt Timer Controller Heap Overflow
Posted Aug 28, 2015
Authored by Google Security Research, matttait

The programmable interrupt timer (PIT) controller in QEMU does not correctly validate the channel number when performing IO writes to the device controller, allowing both an information disclosure and a heap overflow within the context of the host.

tags | exploit, overflow, info disclosure
systems | linux
SHA-256 | 13f86bfcab19e0b4b4a2b31f5267866e4f2e1bf60fa810d064d79e7a787b0c07
Photo Transfer 2 1.0 Denial Of Service
Posted Aug 28, 2015
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

Photo Transfer 2 version 1.0 suffers from a denial of service vulnerability.

tags | exploit, denial of service
SHA-256 | 368ca11913bbeb4d94a623944cf3e7c3b1a4042d78d4ba52a188f2e5f763a61d
PayPal Stored Cross Site Scripting
Posted Aug 28, 2015
Authored by Ebrahim Hegazy, Vulnerability Laboratory | Site vulnerability-lab.com

A stored cross site scripting vulnerability existed in the SecurePayment page on PayPal.

tags | exploit, xss
SHA-256 | 3c310cb10ff9633ba901e4ad17bf6fa88edfed42f8596e1d63c337b7eb6b4073
Jenkins 1.626 Code Execution / Cross Site Request Forgery
Posted Aug 28, 2015
Authored by Smash_

Jenkins version 1.626 suffers from cross site request forgery and command execution vulnerabilities.

tags | exploit, vulnerability, csrf
SHA-256 | c340802683762618a09044390f24e3b3a483286548b95201dd3eb0d579b906a9
WordPress Responsive Thumbnail Slider 1.0 Shell Upload
Posted Aug 28, 2015
Authored by Arash Khazaei

WordPress Responsive Thumbnail Slider plugin version 1.0 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell
SHA-256 | f98b6997588b3f30ced3103e420f4be371274ba241219a5a03d4d7d3c513cfc0
WordPress Navis DocumentCloud 0.1 Cross Site Scripting
Posted Aug 27, 2015
Authored by Harry Metcalfe

WordPress Navis DocumentCloud plugin version 0.1 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2015-2807
SHA-256 | eb89f9e25ace8d58f4187bff085dd55fdc0a330cda30e57a0db85050911c40f0
Page 1 of 10
Back12345Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Juniper Networks Publishes Dozens Of New Security Advisories
Posted Apr 15, 2024

tags | headline, flaw, juniper
LockBit Copycat DarkVault Spurs Rebranding Rumor
Posted Apr 12, 2024

tags | headline, hacker, malware, cybercrime, fraud, cryptography
French Issue Alerte Rouge After Local Govs Knocked Offline By Cyberattack
Posted Apr 12, 2024

tags | headline, government, denial of service, france
More Legal Acrimony For Truth Social, As Executive Says He Was Hacked
Posted Apr 12, 2024

tags | headline, hacker, password, social
Palo Alto Networks Warns Of Exploited Firewall Vulnerability
Posted Apr 12, 2024

tags | headline, hacker, flaw
Roku Says More Than 500,000 Accounts Impacted In Cyberattack
Posted Apr 12, 2024

tags | headline, hacker, privacy, data loss, flaw
US Government On High Alert As Russian Hackers Steal Critical Correspondence From Microsoft
Posted Apr 12, 2024

tags | headline, hacker, government, microsoft, email, usa, russia, data loss, cyberwar
Apple Drops Term State-Sponsored Attacks From Its Threat Notification Policy
Posted Apr 11, 2024

tags | headline, government, privacy, phone, india, cyberwar, spyware, apple
Google Cloud Unveils New AI-Powered Security Capabilities
Posted Apr 11, 2024

tags | headline, botnet, google
Fortinet Patches FortiClientLinux Critical RCE Vulnerability
Posted Apr 11, 2024

tags | headline, flaw, patch
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close