exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 117 RSS Feed

Files

Packet Storm New Exploits For August, 2021
Posted Sep 1, 2021
Authored by Todd J. | Site packetstormsecurity.com

This archive contains all of the 116 exploits added to Packet Storm in August, 2021.

tags | exploit
SHA-256 | 1854109f17e8bc271ea7f561e45923488b7238dbbb19a6b8fc0b4d532e611ce2
BSCW Server Remote Code Execution
Posted Aug 31, 2021
Authored by Armin Stock | Site sec-consult.com

BSCW Server versions 7.4.2 and below, 7.3.2 and below, 5.2.3 and below, 5.1.9 and below, and 5.0.11 and below suffer from an authenticated remote code execution vulnerability.

tags | exploit, remote, code execution
advisories | CVE-2021-39271
SHA-256 | 49197fb2cfb022676fde90bcac4d9316f667e46b26bff72013da082a88e9e04f
BSCW Server XML Injection
Posted Aug 31, 2021
Authored by Armin Stock | Site sec-consult.com

BSCW Server versions 7.4.2 and below, 7.3.2 and below, 5.2.3 and below, 5.1.9 and below, and 5.0.11 and below suffer from an XML tag injection vulnerability.

tags | exploit
advisories | CVE-2021-36359
SHA-256 | 0c56c88ea69c8de1bff4db2aee1d3ede8a753424e728d03ae82775f025eaea03
Backdoor.Win32.Hupigon.aejq MVID-2021-0331 Traversal
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Hupigon.aejq malware suffers from a traversal vulnerability.

tags | exploit
systems | windows
SHA-256 | 11b3b0952584c5f99c0df4ddd7b8b6e771a3bdab508ca14fadae5640d3a5dc3f
Backdoor.Win32.Hupigon.aejq MVID-2021-0330 Man-In-The-Middle
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Hupigon.aejq malware suffers from a man-in-the-middle vulnerability.

tags | exploit
systems | windows
SHA-256 | 6515f7b9f9c5399c19813559ecb345dab2ea9b3fe486bd17c53628d2ab6371f3
Backdoor.Win32.Hupigon.aejq MVID-2021-0329 Authentication Bypass / Code Execution
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Hupigon.aejq malware suffers from bypass and code execution vulnerabilities.

tags | exploit, vulnerability, code execution
systems | windows
SHA-256 | 948f5f0c7f28c2b0b82dc92a672391a300526cc69a9fd8dc43fa4dfc4f88783a
Backdoor.Win32.BO2K.11.d MVID-2021-0328 Buffer Overflow
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.BO2K.11.d malware suffers from a buffer overflow vulnerability.

tags | exploit, overflow
systems | windows
SHA-256 | 42598038ae754d2698dc25471a6b3ccc010ee8c61db15312c3865ce62639d9f0
Git LFS Clone Command Execution
Posted Aug 31, 2021
Authored by Shelby Pace, Matheus Tavares, Johannes Schindelin | Site metasploit.com

Git clients that support delay-capable clean / smudge filters and symbolic links on case-insensitive file systems are vulnerable to remote code execution while cloning a repository. Usage of clean / smudge filters through Git LFS and a case-insensitive file system changes the checkout order of repository files which enables the placement of a Git hook in the .git/hooks directory. By default, this Metasploit module writes a post-checkout script so that the payload will automatically be executed upon checkout of the repository.

tags | exploit, remote, code execution
advisories | CVE-2021-21300
SHA-256 | e98b3afb62859d7020a7dd7d9fa1db727066effb6fcaf6be5eb8fbff19874b9d
WordPress ProfilePress 3.1.3 Privilege Escalation
Posted Aug 31, 2021
Authored by Numan Rajkotiya

WordPress ProfilePress plugin version 3.1.3 suffers from a privilege escalation vulnerability.

tags | exploit
advisories | CVE-2021-34621
SHA-256 | ab8fea0683b52cf0be923b3d886a6068928b9e2e6f2715d669727ad6bb5c7609
Backdoor.Win32.Delf.wr MVID-2021-0327 Man-In-The-Middle
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Delf.wr malware suffers from a man-in-the-middle vulnerability.

tags | exploit
systems | windows
SHA-256 | 1cde143a84dda4ccf90153fced2ccfff1418efac94ff8ba5e3745b36c9d66dc8
Backdoor.Win32.Delf.wr MVID-2021-0326 Authentication Bypass / Code Execution
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Delf.wr malware suffers from bypass and code execution vulnerabilities.

tags | exploit, vulnerability, code execution
systems | windows
SHA-256 | 6ab9d2c3a3532f616417be3d7b6cb8d4c3f8aae3f2edf0817613b9ca0bd913f2
Umbraco CMS 8.9.1 Traversal / Arbitrary File Write
Posted Aug 31, 2021
Authored by BitTheByte

Umbraco CMS versions 8.9.1 and below suffer from path traversal and arbitrary file write vulnerabilities.

tags | exploit, arbitrary, vulnerability, file inclusion
advisories | CVE-2020-5811
SHA-256 | 285a3167b58ee1d23f3b7b489f51a13fbc7670d634c6d025df3c15ebcfbdb31c
Online Leave Management System 1.0 SQL Injection
Posted Aug 31, 2021
Authored by nu11secur1ty

Online Leave Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | e78dd8b5ffb66e7907834608fdf4bbd7e16eb43fcbe3166f269c91a8918cec7c
Backdoor.Win32.Delf.um MVID-2021-0325 Authentication Bypass / Code Execution
Posted Aug 31, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Delf.um malware suffers from bypass and code execution vulnerabilities.

tags | exploit, vulnerability, code execution
systems | windows
SHA-256 | aae3992e5a8db7ea4b103aa648a73b01fd2c15bbe417fafd166d41a2d20337c9
Strapi 3.0.0-beta Authentication Bypass
Posted Aug 31, 2021
Authored by David Anglada

Strapi version 3.0.0-beta set password authentication bypass exploit.

tags | exploit, bypass
advisories | CVE-2019-18818
SHA-256 | e401d2d526abb18e08643bed89404964079613a0b0f8ea391d5e5598331a2cbb
Projectsend r1295 Cross Site Scripting
Posted Aug 30, 2021
Authored by Abdullah Kala

Projectsend r1295 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | b0ace11adad56457320c77f7e9c665ec13f7f0e28d26988fdb96e3f17ecaf3ca
Backdoor.Win32.Hupigon.abe MVID-2021-0322 Unauthenticated Open Proxy
Posted Aug 30, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Hupigon.abe malware suffers from an unauthenticated open proxy vulnerability.

tags | exploit
systems | windows
SHA-256 | 4e44c7e894df7c92f666175489a9003e00f647e8204cacf64934c30df9615d0b
Ship Ferry Ticket Reservation System 1.0 SQL Injection
Posted Aug 30, 2021
Authored by nu11secur1ty

Ship Ferry Ticket Reservation System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | 803a0c96cba11ecfa8b1ec9bfa813ccb70c19b42780ebdf3ff7fe5814519b7cc
Backdoor.Win32.Antilam.11 MVID-2021-0324 Remote Command Execution
Posted Aug 30, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Antilam.11 malware suffers from a remote command execution vulnerability.

tags | exploit, code execution
systems | windows
SHA-256 | 973c200838c252fb148bfc55a388c02ee8e7c1c9d7173c090575a58aa811b3ce
Strapi CMS 3.0.0-beta.17.4 Remote Code Execution
Posted Aug 30, 2021
Authored by Musyoka Ian

Strapi CMS version 3.0.0-beta.17.4 authenticated remote code execution exploit.

tags | exploit, remote, code execution
advisories | CVE-2019-18818, CVE-2019-19609
SHA-256 | eb8542fb58263a7355906f031b2beea938e879118461896e82c8ef5965181f72
Trojan-Proxy.Win32.Raznew.gen MVID-2021-0321 Unauthenticated Open Proxy
Posted Aug 30, 2021
Authored by malvuln | Site malvuln.com

Trojan-Proxy.Win32.Raznew.gen malware suffers from an unauthenticated open proxy vulnerability.

tags | exploit, trojan
systems | windows
SHA-256 | 3a4c17fcca85a0506324de058c0530cb8e86aa0de3ea2bf9bb4f2cb2d8b25f57
Backdoor.Win32.DarkKomet.aspl MVID-2021-0320 Insecure Permissions
Posted Aug 30, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.DarkKomet.aspl malware suffers from an insecure permissions vulnerability.

tags | exploit
systems | windows
SHA-256 | 923e03d718652aa6d969ac473905bb7038c0ea06617842856470211beac770aa
Bus Pass Management System 1.0 SQL Injection
Posted Aug 30, 2021
Authored by Aryan Chehreghani

Bus Pass Management System version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d7f97f9145b28fec2f5dc8b8070a6f14d9d73c509d68ef81bc8d81c866ce1cfd
HEUR.Trojan.Win32.Delf.gen MVID-2021-0323 Insecure Permissions
Posted Aug 30, 2021
Authored by malvuln | Site malvuln.com

HEUR.Trojan.Win32.Delf.gen malware suffers from an insecure permissions vulnerability.

tags | exploit, trojan
systems | windows
SHA-256 | 9f6526911bace5067431fbaedcf7a56e6a86ab57bb8afe2f863974c9dba238d8
Strapi 3.0.0-beta.17.7 Remote Code Execution
Posted Aug 30, 2021
Authored by David Uton

Strapi version 3.0.0-beta.17.7 authenticated remote code execution exploit.

tags | exploit, remote, code execution
advisories | CVE-2019-19609
SHA-256 | 530b0d45ba96774f13af16553dc2fa1a5181ccdae3f20c8c95c0d51b69121a3e
Page 1 of 5
Back12345Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
MoD Contractor Hacked By China Failed To Report Breach For Months
Posted May 10, 2024

tags | headline, hacker, government, britain, china, cyberwar, military
Ex-White House Election Threat Hunter Weighs In On What To Expect In November
Posted May 10, 2024

tags | headline, government, usa, russia, fraud, cyberwar
FBI Working Towards Nabbing Scattered Spider Hackers, Official Says
Posted May 10, 2024

tags | headline, hacker, government, usa, fbi
Leaked FBI Email Stresses Need For Warrantless Surveillance Of Americans
Posted May 10, 2024

tags | headline, government, privacy, usa, spyware, fbi
Cybersecurity Incident Impacts Operations At Ascension Hospitals
Posted May 10, 2024

tags | headline, hacker, privacy, malware, data loss
AWS CloudQuarry: Digging For Secrets In Public AMIs
Posted May 9, 2024

tags | headline, amazon, data loss, flaw, password
LockBit Takes Credit For City Of Wichita Ransomware Attack
Posted May 9, 2024

tags | headline, malware, cybercrime, cryptography
UK Armed Forces' Personal Data Hacked In MoD Breach
Posted May 9, 2024

tags | headline, privacy, britain, data loss, cyberwar, military
TunnelVision DHCP Flaw Lets Attackers Bypass VPNs, Redirect Traffic
Posted May 9, 2024

tags | headline, privacy, flaw
Zscaler Investigates Hacking Claims After Data Offered For Sale
Posted May 9, 2024

tags | headline, hacker, flaw
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close