what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 9 of 9 RSS Feed

Files from Christian Catalano

Email addressch.catalano at gmail.com
First Active2013-12-19
Last Active2016-08-13
SonarQube Jenkins Password Disclosure
Posted Aug 13, 2016
Authored by Christian Catalano, Rv3Lab

The SonarQube Jenkins plugin in Jenkins CI suffers from a plain text password disclosure vulnerability.

tags | exploit, info disclosure
advisories | CVE-2013-5676
SHA-256 | 127c8c86b8c0bf44289f1b21f47a30d02721a2459668e7f5692d4d16b1178397
ColoradoFTP 1.3 Prime Edition (Build 8) Directory Traversal
Posted Aug 12, 2016
Authored by Christian Catalano, Rv3Lab, Marco Fornaro

ColoradoFTP version 1.3 Prime Edition (Build 8) suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
SHA-256 | 91283725e1f5776a707996847385b3c798b3049566679412587c14ff20c727a7
Oliver 1.3.0 / 1.3.1 Cross Site Scripting
Posted Apr 19, 2016
Authored by Christian Catalano, Rv3Lab, Massimo Piccinno

Oliver versions 1.3.0 and 1.3.1 suffer from reflective cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2014-2710
SHA-256 | 432496911f1411e7822f0277e55dc6ffd1625b86f2ba47830b95a792365b7b98
SpagoBI 4.0 Cross Site Scripting / Shell Upload
Posted Mar 2, 2014
Authored by Christian Catalano

SpagoBI version 4.0 suffers from cross site scripting and arbitrary file upload vulnerabilities. The file upload issue could possibly lead to code execution.

tags | exploit, arbitrary, vulnerability, code execution, xss, file upload
advisories | CVE-2013-6234
SHA-256 | a473d04492ed0ca46728806a232c7a6ee98f70e5940464e4217b27d3d8c8a651
SpagoBI 4.0 HTML Injection
Posted Mar 2, 2014
Authored by Christian Catalano

SpagoBI version 4.0 suffers from an HTML injection vulnerability.

tags | exploit
advisories | CVE-2013-6233
SHA-256 | b8ca2e456b6ec5e643124527c4b74faae73a8dcad1893f8c1471c09a33533b6f
SpagoBI 4.0 Stored Cross Site Scripting
Posted Mar 2, 2014
Authored by Christian Catalano

SpagoBI version 4.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2013-6232
SHA-256 | 8d2851f9ad8e9898fb04e583d9b3ed25ef61555335668592cc857b8a3fb00edd
SpagoBI 4.0 Privilege Escalation
Posted Feb 28, 2014
Authored by Christian Catalano

SpagoBI version 4.0 suffers from an administrative privilege escalation vulnerability.

tags | exploit
advisories | CVE-2013-6231
SHA-256 | 08879394f05ec3888c94bd4b06561081d45aa1549a6e63d70b7be33bbcfe4f7f
JAMon 2.7 Cross Site Scripting
Posted Jan 24, 2014
Authored by Christian Catalano

JAMon version 2.7 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2013-6235
SHA-256 | 05d3cecf7d59ce888a09043a4aa1af1988abd9d302ed9dd5da80c76ff2e50e0a
Jenkins CI 1.523 Persistent Script Insertion
Posted Dec 19, 2013
Authored by Christian Catalano

Jenkins CI version 1.523 has a default markup formatter that permits offsite-bound forms. This vulnerability could be exploited by a remote attacker (a malicious user) to inject malicious persistent HTML script code (application side) and in turn perform a cross site scripting attack.

tags | exploit, remote, xss
advisories | CVE-2013-5573
SHA-256 | 5764f0eb1aedc4495f9f0a84672d7a2996fc96b4c3ea9d658bcea48cd425c6bf
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    16 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close