what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 6 of 6 RSS Feed

Files from Shalom Carmel

Email addressprivate
First Active2005-03-24
Last Active2006-01-21
View User Profile
reverseProxyXSS.txt
Posted Jan 21, 2006
Authored by Shalom Carmel

Small write up discussing reverse proxy cross site scripting.

tags | paper, web, xss
SHA-256 | eae37617973a2892bf4ac789d799e0b8a3209e0ea2ccda63640fab3a48f15ca5
Enumeration_of_AS400_users_via_pop3.pdf
Posted Apr 20, 2005
Authored by Shalom Carmel | Site venera.com

The default POP3 server installed on iSeries boxes allows for username enumeration. This PDF contains a table converting POP3 login errorcodes to their actual meanings.

tags | advisory
SHA-256 | 4d267c5719f82f3364c7ebc3a98ea3abbcbf5823e3324094c48771565765e12e
as400ftp.txt
Posted Apr 17, 2005
Authored by Shalom Carmel

AS/400 servers suffer from a user account disclosure flaw due to a symbolic link vulnerability.

tags | advisory
SHA-256 | 56f7a4240acf2236ffb5d2182829895933929bdd93a94c2baa3c1456bf52cfc0
as400nc.txt
Posted Apr 14, 2005
Authored by Shalom Carmel

A reverse shell can be obtained using netcat on an AS/400 with PASE installed.

tags | advisory, shell
SHA-256 | 9e78ffcdd03fc9efdee0e3b370eea2d426fcdbb31edeaa8a406ac70e72a9221d
as400ldap.txt
Posted Mar 29, 2005
Authored by Shalom Carmel

The LDAP service on an iSeries server can be used to enumerate the AS400 user profiles.

tags | advisory
SHA-256 | c2b8bdaf2439c1b48e6be48182c9ebeacfaefa836bef1783fbc6e7ad751c62b1
Attack_5250_terminal_em.pdf
Posted Mar 24, 2005
Authored by Shalom Carmel

Attacking PC based 5250 terminal emulations from an iSeries server. Paper describing how insertion of commands inside an AS/400 application allows them to be executed as a command on the connected PC.

tags | exploit
SHA-256 | 217d0c1b9f177df1e380748a230cda90e51eeffaca5ecf0c5331199b95d7e20e
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    0 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close