what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 154 RSS Feed

Files from Securify B.V.

Email addresslists at securify.nl
First Active2014-09-22
Last Active2020-10-19
WordPress WassUp Real Time Analytics 1.9 Cross Site Scripting
Posted Nov 8, 2016
Authored by Securify B.V., Burak Kelebek

WordPress WassUp Real Time Analytics plugin version 1.9 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e8137223a57a625cf51649d12b64986a673655e47a6295721338115351eeeda2
WordPress Caldera Forms 1.3.5.3 Cross Site Scripting
Posted Nov 8, 2016
Authored by Securify B.V., Jurgen Kloosterman

WordPress Caldera Forms plugin version 1.3.5.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 5fe319cfc0582676fbf3df11ae0eedd99b8dcaba165bf4d04951d75ab931d4e3
WordPress Quotes Collection 2.0.5 Cross Site Scripting
Posted Nov 8, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Quotes Collection plugin version 2.0.5 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 3e714101167947eb893acf037ef84d9ed96b9fc784119af58b4e11c5506a768a
WordPress YITH WooCommerce Compare 2.0.9 PHP Object Injection
Posted Nov 8, 2016
Authored by Yorick Koster, Securify B.V.

WordPress YITH WooCommerce Compare plugin version 2.0.9 suffers from a PHP object injection vulnerability.

tags | exploit, php
SHA-256 | 0db04c264f42b23b55cb4613767ded49fab18d10ff1bb03155469fb2bb5d9b85
WordPress Woocommerce 2.6.2 API Cross Site Scripting
Posted Sep 10, 2016
Authored by Securify B.V., Sipke Mellema

WordPress Woocommerce version 2.6.2 suffers from an API related cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 966ca6305221b6545964485545c9145c5f9af5bec2754630836e28af8722fec3
WordPress InfiniteWP Admin Panel 2.8.0 Authorization Bypass
Posted Sep 10, 2016
Authored by Securify B.V., Sipke Mellema

WordPress InfiniteWP Admin Panel version 2.8.0 suffers from an authorization bypass vulnerability.

tags | exploit, bypass
SHA-256 | f0a3fd0adecee87dc4703e392a9724bd2a0c46a482e40d6e291bed9f76b941de
WordPress InfiniteWP Admin Panel 2.8.0 Command Injection
Posted Sep 10, 2016
Authored by Securify B.V., Sipke Mellema

WordPress InfiniteWP Admin Panel version 2.8.0 suffers from a command injection vulnerability.

tags | exploit
SHA-256 | 9a2f56e0d388524d1d706460eeac6bad439c42e829699ec509f6b08b7ba95106
WordPress MailPoet Newsletters 2.7.2 Cross Site Scripting
Posted Sep 10, 2016
Authored by Securify B.V., Sipke Mellema

WordPress MailPoet Newsletters 2.7.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 40cda53c6d2f269be14469db80a095b9ca3c018394ed435682d0e8b2bf87c80f
WordPress 4.5.3 Core Ajax Handlers Path Traversal
Posted Aug 22, 2016
Authored by Yorick Koster, Securify B.V.

WordPress version 4.5.3 suffers from a path traversal vulnerability in the core ajax handlers.

tags | exploit, file inclusion
SHA-256 | 78a9e8298d6dbe41d508c8f450f6b57d41e9ba8bdefa0dd06867e661676810ca
WordPress Magic Fields 1 Cross Site Scripting
Posted Aug 16, 2016
Authored by Securify B.V., Burak Kelebek

WordPress Magic Fields 1 plugin version 1.7.1 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 0e5a41214c3cdf2ddfe900c79fee3656604680337cc6e471ee17d963634ee9fe
WordPress Magic Fields 2 Cross Site Scripting
Posted Aug 16, 2016
Authored by Securify B.V., Burak Kelebek

WordPress Magic Fields 2 plugin version 2.3.2.4 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 1e2e9b0aac7faf7ff9732c41c744fcecda575220ec7c738221745f25368cff8b
WordPress Link Library 5.9.12.29 Cross Site Scripting
Posted Aug 16, 2016
Authored by Securify B.V., Burak Kelebek

WordPress Link Library plugin version 5.9.12.29 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 2e33996f60775e70ea4ebb78d472ee992b557cb5f8f855a3a6ac1a0c2fd005b1
WordPress Ajax Load More 2.11.1 Local File Inclusion
Posted Aug 16, 2016
Authored by Securify B.V., Burak Kelebek

WordPress Ajax Load More plugin version 2.11.1 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | e706562a71b9bb015efaece380e49a06c278f92b628b2583cd6b20cc38ce5b94
WordPress Google Maps 2.1.2 Cross Site Scripting
Posted Aug 15, 2016
Authored by Securify B.V., Julien Rentrop

WordPress Google Maps plugin version 2.1.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 717c9d71a3429f92c8a268c7c9adeb2b651062d83e2d6c905379409d3ebd668a
WordPress Photo Gallery 1.8.5 Cross Site Request Forgery
Posted Aug 15, 2016
Authored by Securify B.V., Umit Aksu

WordPress Photo Gallery by Supsystic plugin version 1.8.5 suffers from multiple cross site request forgery vulnerabilities.

tags | exploit, vulnerability, csrf
SHA-256 | 3a646b5137f1cfdaa41104d8ab6962a0e7d70e45af1cf63b0226b0899996ff5f
WordPress Email Users 4.8.3 Cross Site Request Forgery
Posted Aug 15, 2016
Authored by Securify B.V., Julien Rentrop

WordPress Email Users plugin version 4.8.3 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | e95cd129dfdad640f2314a8c9ef5fc62bab02dab246202c827b58fe411e8e97d
WordPress Peter's Login Redirect 2.9.0 XSS / CSRF
Posted Aug 15, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Peter's Login Redirect plugin version 2.9.0 suffers from cross site scripting and cross site request forgery vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | d923d75814f53455678a49a2ea9a573214a261b554bc26017e3d32911f08e0ae
WordPress Photo Gallery 1.8.5 Cross Site Scripting
Posted Aug 15, 2016
Authored by Securify B.V., Umit Aksu

WordPress Photo Gallery by Supsystic plugin version 1.8.5 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | bbf2306a93d24ed38fba12a410983e1a258e6de79e1573df0e5cad64ddd36e74
Microsoft Internet Explorer Local File Name Disclosure
Posted Aug 9, 2016
Authored by Yorick Koster, Securify B.V.

Microsoft Internet Explorer suffers from an iframe sandbox local file name disclosure vulnerability.

tags | advisory, local, info disclosure
advisories | CVE-2016-3321
SHA-256 | c9e6501898d6e4e506e28508a7c9fcb53f7ac24f8c867ab0e2dad6adc79d96b5
WordPress Add From Server 6.2 Cross Site Request Forgery
Posted Aug 8, 2016
Authored by Securify B.V., Edwin Molenaar

WordPress Add From Server plugin version 6.2 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 6c0c972a52a28a8103eab4912adf199d89faffb156826a7e339ae465f7789ef8
WordPress Ecwid Ecommerce Shopping Cart 4.4 / 4.4.3 PHP Object Injection
Posted Aug 6, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Ecwid Ecommerce Shopping Cart plugin versions 4.4 and 4.4.3 suffer from a PHP object injection vulnerability.

tags | advisory, php
SHA-256 | eea5dc338145f133ef2c948a11161b48b9195ae993992148222504ead33426e2
WordPress Store Locator Plus 4.5.09 Cross Site Scripting
Posted Aug 6, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Store Locator Plus plugin version 4.5.09 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 43b65d3af62ae6aa76f632546f4154184dffe47668db8ba7c2c6611719d67b43
VMware Host Guest Client Redirector DLL Hijacking
Posted Aug 6, 2016
Authored by Yorick Koster, Securify B.V.

A DLL side loading vulnerability was found in the VMware Host Guest Client Redirector, a component of VMware Tools. This issue can be exploited by luring a victim into opening a document from the attacker's share. An attacker can exploit this issue to execute arbitrary code with the privileges of the target user. This can potentially result in the attacker taking complete control of the affected system. If the WebDAV Mini-Redirector is enabled, it is possible to exploit this issue over the internet.

tags | advisory, arbitrary
systems | windows
SHA-256 | a9ebf159096d5d370785b483c89286e459f55701477990b573fb428d268cfcc8
WordPress Count Per Day 3.5.4 Cross Site Scripting
Posted Aug 4, 2016
Authored by Yorick Koster, Securify B.V.

WordPress Count Per Day plugin version 3.5.4 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | d69f6409f9285b4b341d81988998df80a9629b3685c4fee05a3057a084dfc9e1
WordPress FormBuilder 1.05 Cross Site Scripting
Posted Aug 4, 2016
Authored by Securify B.V., Peter Ganzevles

WordPress FormBuilder version 1.05 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | c56303663ea7a2852d8c3f6613f639585b306b1f1729381fbaf87f633594ba74
Page 4 of 7
Back23456Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close