what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 7 of 7 RSS Feed

Files from Fara Denise Rustein

Email addressfrustein at deloitte.com
First Active2012-12-28
Last Active2014-10-01
Epicor Password Disclosure / Cross Site Scripting
Posted Oct 1, 2014
Authored by Fara Denise Rustein

Epicor suffers from cross site scripting and password disclosure vulnerabilities.

tags | exploit, vulnerability, xss, info disclosure
advisories | CVE-2014-4311, CVE-2014-4312
SHA-256 | 0adc38541eec06be524dcdc4e10cbddffc5db40fd0f6f43e692e614e15788b74
Titan FTP Server 10.32 Build 1816 Directory Traversals
Posted Feb 11, 2014
Authored by Fara Denise Rustein, Luciano Martins

Titan FTP server version 10.32 Build 1816 suffers from multiple directory traversal vulnerabilities.

tags | exploit, vulnerability, file inclusion
advisories | CVE-2014-1841, CVE-2014-1842, CVE-2014-1843
SHA-256 | ad132145c900e18a6160d6e6bc4f09d22483fb708a41e244c6b8db6f8d8e046c
Core FTP Server 1.2 DoS / Traversal / Disclosure
Posted Feb 5, 2014
Authored by Fara Denise Rustein, Luciano Martins

Core FTP Server version 1.2 suffers from denial of service race condition, password disclosure, and directory traversal vulnerabilities.

tags | exploit, denial of service, vulnerability, file inclusion, info disclosure
advisories | CVE-2014-1441, CVE-2014-1442, CVE-2014-1443
SHA-256 | cdd4723d3be809710e87bcb55c3ae14a73cde7aec28bad3f8f208fa620b79cce
Tftpd32 Client Side Format String
Posted Dec 3, 2013
Authored by Fara Denise Rustein

There is a format string vulnerability in Tftpd32 software. When the Tftpd server returns a string containing a specific format, the Tftpd32 client processes this string and displays it in an error message, triggering the vulnerability. This may be leveraged to perform remote command execution and denial of service attacks.

tags | exploit, remote, denial of service
advisories | CVE-2013-6809
SHA-256 | 129ac1ce08dc48d6f6e5cda682240d0878e3ec98aa003011b5bd7848a62ed8a7
SilverStripe CMS 3.0.3 Information Disclosure
Posted Aug 2, 2013
Authored by Fara Denise Rustein

SilverStripe CMS version 3.0.3 suffers from an information exposure issue through query strings in GET requests.

tags | exploit
advisories | CVE-2013-2653
SHA-256 | b253aeaf567f0b65c0cda5262c42aa41f9cbc6b6ddccc45eaf619117096d1e74
Trimble Infrastructure GNSS Series Receivers XSS
Posted Jan 16, 2013
Authored by Fara Denise Rustein

Trimble Infrastructure GNSS series receivers suffer from a cross site scripting vulnerability.

tags | advisory, xss
advisories | CVE-2012-5053
SHA-256 | 1158e6dcf3f30287cff7ab214df1a933a539502ecea6bd777731fb160f00790b
Polycom HDX Video End Points Cross Site Scripting
Posted Dec 28, 2012
Authored by Fara Denise Rustein

The Polycom HDX Video End Points web management interface suffers from a cross site scripting vulnerability.

tags | advisory, web, xss
advisories | CVE-2012-4970
SHA-256 | c33a77f2c171969139be48d5bb5f627a19f1a2eb5aac6100b6844b72341d03ac
Page 1 of 1
Back1Next

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    0 Files
  • 5
    Sep 5th
    0 Files
  • 6
    Sep 6th
    0 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    0 Files
  • 9
    Sep 9th
    0 Files
  • 10
    Sep 10th
    0 Files
  • 11
    Sep 11th
    0 Files
  • 12
    Sep 12th
    0 Files
  • 13
    Sep 13th
    0 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    0 Files
  • 17
    Sep 17th
    0 Files
  • 18
    Sep 18th
    0 Files
  • 19
    Sep 19th
    0 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close