what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 208 RSS Feed

Files

Sudo get_process_ttyname() For Linux Stack Clash
Posted Jun 20, 2017
Site qualys.com

sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and command execution.

tags | exploit, info disclosure
advisories | CVE-2017-1000367
SHA-256 | ac65043996573ceeb614f1136d6a563af63993e3f685833845953860f65ca47f
Ektron CMS 9.10SP1 Cross Site Scripting
Posted Jun 20, 2017
Authored by Edmund Goh, Siyavash Ghasseminia

Ektron CMS version 9.10SP1 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2016-6133, CVE-2016-6201
SHA-256 | e8e24c6d44fe36f5041850023c32fb0d001111e45ffd05074e8dc93c2d8206ae
D-Link ADSL DSL-2640B SEA_1.01 Unauthenticated Remote DNS Changer
Posted Jun 20, 2017
Authored by Todor Donev

D-Link ADSL DSL-2640B SEA_1.01 remote dns changer exploit.

tags | exploit, remote
SHA-256 | aa1d1c9548799f9a0122226d781689edd68e7015b3773a9a466b320b329103bc
Beetel BCM96338 ADSL Router Unauthenticated Remote DNS Changer
Posted Jun 18, 2017
Authored by Todor Donev

Beetel BCM96338 ADSL Router remote dns changer exploit.

tags | exploit, remote
SHA-256 | bb0628061c87cab9351a58c687f203cbbebbae70211ead6bd8b6c4c1461c9a74
D-Link ADSL DSL-2640B GE_1.07 Unauthenticated Remote DNS Changer
Posted Jun 18, 2017
Authored by Todor Donev

D-Link ADSL DSL-2640B GE_1.07 remote dns changer exploit.

tags | exploit, remote
SHA-256 | e6249de682dd979206800332bdf70decfd80d998b48391637d0d43265208875e
D-Link ADSL DSL-2640U IM_1.00 Unauthenticated Remote DNS Changer
Posted Jun 17, 2017
Authored by Todor Donev

D-Link ADSL DSL-2640U IM_1.00 remote dns changer exploit.

tags | exploit, remote
SHA-256 | 27390425bbd80dfb6b500b653d7af0c08e596e7e911ba77f507b7d464d1edac0
UTstarcom WA3002G4 Unauthenticated Remote DNS Changer
Posted Jun 17, 2017
Authored by Todor Donev

UTstarcom WA3002G4 remote dns changer exploit.

tags | exploit, remote
SHA-256 | 0ba8169decbc4422fff51487624d607c9b92eae38ead137301b294690286879d
iBall Baton iB-WRA150N Unauthenticated Remote DNS Change
Posted Jun 16, 2017
Authored by Todor Donev

iBall Baton iB-WRA150N remote dns changer exploit.

tags | exploit, remote
SHA-256 | e911219ab4cd1ab0fd859c251525665fedb2edb1b55a73580efafd350a173e08
APC UPS Daemon 3.14.14 Privilege Escalation
Posted Jun 16, 2017
Authored by Richard Young

APC UPS Daemon versions 3.14.14 and below suffer from a privilege escalation vulnerability.

tags | exploit
advisories | CVE-2017-7884
SHA-256 | 7883eb46cb295a5d58722ffbbf84eb634440c4fa1de28144bab68e84bac41c2a
Joomla JoomRecipe 1.0.3 SQL Injection
Posted Jun 16, 2017
Authored by EziBilisim

Joomla JoomRecipe extension version 1.0.3 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | f71a33c150be44fac2a9f04853133ea994cdb7a3f93e5dca5732011b20dfc77e
nuevoMailer 6.0 SQL Injection
Posted Jun 16, 2017
Authored by Aleh Boitsau

nuevoMailer versions 6.0 and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2017-9730
SHA-256 | 5c12823df4b47c00cfd710ac6857773af9ef8923cf51f28c088a0a9179d9e5b0
Easy File Sharing 7.2 Buffer Overflow
Posted Jun 16, 2017
Authored by bl4ck h4ck3r

Easy File Sharing Web Server version 7.2 POST buffer overflow exploit with DEP bypass.

tags | exploit, web, overflow
SHA-256 | 8be28bb9525db42044157c5797f6d583798030eb10b9167399d92afefe5cb654
KBVault MySQL 0.16a Arbitrary File Upload
Posted Jun 16, 2017
Authored by Fatih Emiral

KBVault MySQL version 0.16a suffers from a remote arbitrary file upload vulnerability.

tags | exploit, remote, arbitrary, file upload
advisories | CVE-2017-9602
SHA-256 | 185ebbcc4f4866ecfeee74e287a51d6ffda0b287af520a8f2caba720ebdaa5eb
Mikrotik RouterOS 6.28 Cookie Buffer Overflow
Posted Jun 16, 2017
Authored by sultan albalawi

Mikrotik RouterOS version 6.28 suffers from a cookie HTTP request header buffer overflow vulnerability.

tags | exploit, web, overflow
SHA-256 | f9094809ee7a54b5ba82c3ce861b12c63658ce45783de7698e9d5d83a472dee0
Mikrotik RouterOS 6.39.2 FTP CWD Buffer Overflow
Posted Jun 16, 2017
Authored by sultan albalawi

Mikrotik RouterOS version 6.39.2 suffers from a FTP CWD command buffer overflow vulnerability.

tags | exploit, overflow
SHA-256 | a924ceacde68a55f9ad645ab470c04cb0e869ec8522c44c9e1b6c8e517add61e
Avast aswSnx.sys Kernel Driver 11.1.2253 Memory Corruption
Posted Jun 16, 2017
Authored by bee13oy

Avast aswSnx.sys kernel driver version 11.1.2253 suffers from a memory corruption vulnerability that allows for privilege escalation.

tags | exploit, kernel
SHA-256 | 4b059cb64fa6ab746c74284f0a93779fa8c1cf348195a1d979385aa00b69e1c1
WebKit JSC Intl.getCanonicalLocales Heap Buffer Overflow
Posted Jun 15, 2017
Authored by Google Security Research, lokihardt

WebKit JSC suffers from a heap buffer overflow vulnerability in Intl.getCanonicalLocales.

tags | exploit, overflow
advisories | CVE-2017-6984
SHA-256 | 3ce6984b8d5f3496724b9fd295322f1da9540728a002a8b0b7dee8bd77113aed
WebKit JSC arrayProtoFuncSplice Initialization Fail
Posted Jun 15, 2017
Authored by Google Security Research, lokihardt

WebKit JSC arrayProtoFuncSplice fails to initialize all indices.

tags | exploit
advisories | CVE-2017-6980
SHA-256 | 13dd72fa2af4303dbad93e7d94dcc56e573f5e78bf2f2a216b2508deb6db452e
WebKit JSC JSGlobalObject::haveABadTime Type Confusion
Posted Jun 15, 2017
Authored by Google Security Research, lokihardt

WebKit JSC suffers from a JSGlobalObject::haveABadTime type confusion vulnerability.

tags | exploit
advisories | CVE-2017-7005
SHA-256 | 1f481998f2bb5916dc1ba80de838274187ae1882f6a50f6e4569df9b5d0d75ba
WebKit JSC Jit Optimization Check Failure
Posted Jun 15, 2017
Authored by Google Security Research, lokihardt

WebKit JSC suffers from a JIT optimization check failure in IntegerCheckCombiningPhase::handleBlock.

tags | exploit
advisories | CVE-2017-2547
SHA-256 | 5f12e99ad1584896ed16974eedb9cb9acb232c0a88d9e26de9c971d18be09ec8
Aerohive AP340 HiveOS Remote Code Execution / Local File Inclusion
Posted Jun 15, 2017
Authored by Ike-Clinton

Aerohive AP340 HiveOS versions prior to 6.1r5 suffers from a local file inclusion vulnerability that allows for remote code execution.

tags | exploit, remote, local, code execution, file inclusion
SHA-256 | 5096df9922bc9ca5a7abe4965612168edede6678940eed12f33f417ba8ae74f1
VX Search Enterprise 9.7.18 Local Buffer Overflow
Posted Jun 15, 2017
Authored by Greg Priest

VX Search Enterprise version 9.7.18 suffers from a local buffer overflow vulnerability.

tags | exploit, overflow, local
SHA-256 | b867d95693b7b4c15e56482bd672165bbc3e486d1c5cd43eade554b80421cadb
WordPress WP Job Manager 1.26.1 Cross Site Scripting
Posted Jun 15, 2017
Authored by Ehsan Hosseini

WordPress WP Job Manager plugin version 1.26.1 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | ef663e26c69c86bb3454764a5630ef76e906e738a5c2b78dc4d41ff79918ffc0
SimpleCE 2.3.0 Cross Site Request Forgery / Cross Site Scripting
Posted Jun 15, 2017
Authored by 8bitsec

SimpleCE version 2.3.0 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | 73f4dbf9aae73e9ed6bd6b715bc4d53973e9ebf611084b48d09ebacdb37362f4
Camstudio 2.0 XSS / XSF / Content Forgery
Posted Jun 14, 2017
Authored by Project Insecurity, MLT | Site insecurity.zone

Camstudio version 2.0 suffers from cross site scripting and cross site flashing vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 3e5d7f60ff82000a0a8db9caace4dd48e2b13569296c8180aa9336a8f892ee04
Page 5 of 9
Back34567Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Google Patches Critical Chrome Vulnerability
Posted Apr 24, 2024

tags | headline, flaw, google, patch, chrome
Hackers Are Using Developing Countries For Ransomware Practice
Posted Apr 24, 2024

tags | headline, hacker, malware, cybercrime, fraud, cryptography
Authorities Investigate LabHost Users After Phishing Service Shutdown
Posted Apr 23, 2024

tags | headline, cybercrime, fraud, phish
Windows Vulnerability Reported By The NSA Exploited To Install Russian Malware
Posted Apr 23, 2024

tags | headline, government, microsoft, usa, russia, flaw, cyberwar, spyware, nsa
UnitedHealth Admits Breach Could Cover Substantial Proportion Of People In America
Posted Apr 23, 2024

tags | headline, hacker, privacy, data loss
Microsoft DRM Hack Could Allow Movie Downloads From Streaming
Posted Apr 23, 2024

tags | headline, microsoft, flaw, pirate
Over A Million Neighbourhood Watch Members Exposed
Posted Apr 23, 2024

tags | headline, privacy, britain, data loss
MITRE Hacked By State Sponsored Group Via Ivanti Zero Days
Posted Apr 23, 2024

tags | headline, hacker, government
Russia's Sandworm APT Linked To Attack On Texas Water Plant
Posted Apr 18, 2024

tags | headline, malware, usa, russia, cyberwar, scada
EU Tells Meta It Can't Paywall Privacy
Posted Apr 18, 2024

tags | headline, government, privacy, facebook, social
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close