exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 191 RSS Feed

Files

WordPress Ninja Forms 2.9.51 Cross Site Scripting
Posted Jul 19, 2016
Authored by Han Sahin

WordPress Ninja Forms plugin version 2.9.51 suffers from cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 7736356de45c70b551bfad1e9d2f465f4af57ee30034f6cbddf58e14110df94c
WordPress Icegram 1.9.18 Cross Site Request Forgery
Posted Jul 19, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Icegram plugin version 1.9.18 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 34497fd583aa9c4a2d176e260fdb464996bceb614b526b50b668962c1bc2887a
Joomla AI Contact Safe 2.0.20 Shell Upload / SQL Injection
Posted Jul 19, 2016
Authored by xBADGIRL21

Joomla AI Contact Safe component version 2.0.20 suffers from remote shell upload and remote SQL injection vulnerabilities.

tags | exploit, remote, shell, vulnerability, sql injection
SHA-256 | c2049eb4e581359332ad485b7117f2e4f2f2b171a2358e6c2fee94769b99b858
PHP Planner 0.4 SQL Injection
Posted Jul 19, 2016
Authored by N_A

PHP Planner versions 0.4 and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, php, sql injection
SHA-256 | b3c9ad95bd64e3f87af6abac18feb54eaf0483f5417b636e25885836b06e827d
Eclipse DLL Hijacking
Posted Jul 19, 2016
Authored by Stefan Kanthak

Various Eclipse installers suffer from a dll hijacking vulnerability.

tags | exploit
systems | windows
SHA-256 | 84b5c68827c357cd3a4657dba69c010f190130548f9e8a0dd72d6263002c004d
Django 3.3.0 Script Insertion
Posted Jul 19, 2016
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

Django version 3.3.0 suffers from a malicious client-side script insertion vulnerability.

tags | exploit
advisories | CVE-2016-6186
SHA-256 | 1f58284db9e8efd2a244e0272399d1285a2bfa2dba0aa1453cc6653a18df215e
Meinberg NTP Time Server ELX800/GPS M4x 5.30p Command Execution
Posted Jul 18, 2016
Authored by b0yd

Meinberg NTP Time Server ELX800/GPS M4x version 5.30p suffers from remote command execution and privilege escalation vulnerabilities.

tags | exploit, remote, vulnerability
advisories | CVE-2016-3962
SHA-256 | 6f1633ae04e491afc092bd0cc7bf524f422ae1a8b4cace3c75f7cbe230c2861a
OpenSSHD 7.2p2 User Enumeration
Posted Jul 18, 2016
Authored by Eddie Harari

OpenSSHD versions 7.2p2 and below user enumeration exploit.

tags | exploit
advisories | CVE-2016-6210
SHA-256 | b69a28b747a4fe5a117cdc11aded97dd15df51cde6788bd96001aa8f57bc36a6
Axis Communications MPQT/PACS SSI Remote Format String / Code Execution
Posted Jul 18, 2016
Authored by bashis

Axis Communications MPQT/PACS Server Side Include (SSI) remote format string exploit that provides a connect-back root shell.

tags | exploit, remote, shell, root
SHA-256 | 581d58f31b42ec0fd4f623e4f07fe9d1a20069ed433eac4bbf372d1675a12c75
Nexthon Whois Website Value Calculator 1.5 SQL Injection
Posted Jul 18, 2016
Authored by indoushka

Nexthon Whois Website Value Calculator version 1.5 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d48fbcedbce7bc9888606207c458e661a0a0bdf61a2a1e7188d99fdaea89f6b5
Codebase Business Directory Pro 1.02 SQL Injection
Posted Jul 18, 2016
Authored by indoushka

Codebase Business Directory Pro version 1.02 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d15c4152eaa5d4990211755c774ff35fbdb0b2fd2cad240e48272350019245f4
Clear Voyager Hotspot IMW-C910W File Disclosure
Posted Jul 17, 2016
Authored by Damaster

Clear Voyager Hotspot IMW-C910W suffers from a file disclosure vulnerability.

tags | exploit, info disclosure
SHA-256 | bc093ab05f8a07f9b31ac6a9c9653f2e84666407d5670e7187e5208e2709eec1
Vodafone EasyBox 804 Denial Of Service / Authentication Bypass
Posted Jul 17, 2016
Authored by Tim Schughart

Vodafone EasyBox 804 suffers from authentication bypass and denial of service vulnerabilities.

tags | exploit, denial of service, vulnerability, bypass
SHA-256 | f645c6a908861080432366b3dde886601bd41fb752174cd89a3b38fddbbe9a3c
PivotX 2.3.11 Blind SQL Injection
Posted Jul 15, 2016
Authored by Manuel Garcia Cardenas

PivotX versions 2.3.11 and below suffer from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 04b25d3f0ddd2f5d24b0a2d076749306561a3fb1da1cf0d223daaa6e8191cbfe
Joomla Guru Pro SQL Injection
Posted Jul 14, 2016
Authored by s0nk3y

Joomla Guru Pro component suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | bf9a3d7881c18454ddcb496ee9a0969f23f479df14f5e17d75d2fcaa167cd425
Joomla Zh GoogleMap 8.1.2.0 Blind SQL Injection
Posted Jul 14, 2016
Authored by indoushka

Joomla Zh GoogleMap component version 8.1.2.0 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7b82f572f01aff1c1ec0a6132debe285e04814d92c40e4860cc6ab1c558f7300
SAP xMII 15 Cross Site Scripting
Posted Jul 14, 2016
Authored by Vahagn Vardanyan, Nursultan Abubakirov

SAP xMII version 15 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2016-4016
SHA-256 | 5850231991ac99f0ad17f7ed8105673b22741e6d0c9e698a5cc695f008b1af0e
SAP NetWeaver AS JAVA 7.4 XXE Injection
Posted Jul 14, 2016
Authored by Vahagn Vardanyan

An attacker can trigger an XML Entity Expansion or XML External Entity Injection. This causes the entire machine to become unresponsive until the process is terminated manually. An attacker can use this flaw to perform a denial-of-service (DoS) attack. SAP NetWeaver AS JAVA version 7.4 is affected.

tags | exploit, java, xxe
advisories | CVE-2016-4014
SHA-256 | 00d680c67dc60d3912397c85f8496bcdaca53ce2cb060a4c8ebe9fc69b59c8a2
Irfan View 4.42 Crashes
Posted Jul 14, 2016
Authored by Cody Sixteen

Irfan View version 4.42 suffers from multiple crash vulnerabilities.

tags | exploit, denial of service, vulnerability
systems | linux
SHA-256 | d8b34f2ac98cb14fe582e633c1a7fd986c688540153b7c02ef5cf5d86bfdb7fa
f.lux DLL Hijacking
Posted Jul 14, 2016
Authored by Himanshu Mehta

flux-setup.exe from f.lux suffers from a dll hijacking vulnerability.

tags | exploit
systems | windows
SHA-256 | 5e6f71f21ce3ca0274fc9a2aa2ce79dd16a1ecc670bdff14847d950f1f1c0a98
WordPress Top 10 Popular Posts 2.3.0 Cross Site Scripting
Posted Jul 13, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Top 10 Popular Posts plugin version 2.3.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 2ef13b9046be953e681d2fe0e87def1da4ba275c47d315b48c71767de2390123
WordPress Simple Membership 3.2.8 Cross Site Scripting
Posted Jul 13, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Simple Membership plugin version 3.2.8 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 3e8992560e17c27925537a0aace108c6ef22f9b536239abaf910f9e8ea96163e
WordPress WP No External Links 3.5.15 Cross Site Scripting
Posted Jul 13, 2016
Authored by Yorick Koster, Securify B.V.

WordPress WP No External Links plugin version 3.5.15 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 708a16d3086d6d4fbf54c12feb7c24010807b262e8b4085980426fd79cdb8538
Open-Xchange App Suite 7.8.1 Cross Site Scripting
Posted Jul 13, 2016
Authored by Martin Heiland

Open-Xchange App Suite version 7.8.1 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2016-5124
SHA-256 | 54885411364ea66a6a88cc613ff3399708f6b52cbe59e735d9647a8e158559b8
WordPress Google Forms 0.84 Cross Site Scripting
Posted Jul 13, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Google Forms plugin version 0.84 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 8fb3153cc86d1f165cf198ec1a8cceeefd1b6e4eae41b148c5f367fda60005dd
Page 4 of 8
Back23456Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close