exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 18 of 18 RSS Feed

Files Date: 2007-02-28

Gentoo Linux Security Advisory 200702-12
Posted Feb 28, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200702-12 - When certain CHM files that contain tables and objects stored in pages are parsed by CHMlib, an unsanitized value is passed to the alloca() function resulting in a shift of the stack pointer to arbitrary memory locations. Versions less than 0.39 are affected.

tags | advisory, arbitrary
systems | linux, gentoo
advisories | CVE-2007-0619
SHA-256 | 0cdeb08a32cce111fd038a019241c00a67b448dfb8ac26688dcb2da33eae0435
Gentoo Linux Security Advisory 200702-11
Posted Feb 28, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200702-11 - When checking for matching asm rules in the asmrp.c code, the results are stored in a fixed-size array without boundary checks which may allow a buffer overflow. Versions less than 1.0_rc1-r2 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2006-6172
SHA-256 | f6262f3d53ecb81efa85041c13e6624dcd2bb0a207a29c394dd43c0def1e4990
cursor-injection.pdf
Posted Feb 28, 2007
Authored by David Litchfield | Site databasesecurity.com

Whitepaper entitled "Cursor Injection - A New Method for Exploiting PL/SQL Injection and Potential Defences".

tags | paper, sql injection
SHA-256 | 5e052565e3661c687c0142cb2a857a3b5d8400a27ec65832792185de33fbad3d
unorg-sql.txt
Posted Feb 28, 2007
Authored by s0cratex

It appears that the un.org web site suffers from SQL injection vulnerabilities.

tags | exploit, web, vulnerability, sql injection
SHA-256 | 8edf0f91665807343bb0e713e66964ee4d23be23665f7b848ae9dcf9eb64d76b
sehato-msvulns.txt
Posted Feb 28, 2007
Authored by SehaTo

Multiple vulnerabilities have surfaced in multiple Windows applications. Follow the links in your Russian is decent.

tags | advisory, vulnerability
systems | windows
SHA-256 | 01c8f8496e59e7683989c0c77460c8e0c1f06ade3b45e75a62366fa2c0b4ff24
Gentoo Linux Security Advisory 200702-10
Posted Feb 28, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200702-10 - Five vulnerabilities were found: a buffer overflow in recv_add_unit(); a problem with improperly trusting user-supplied string information in decode_stringmap(); several issues with array manipulation via various commands during play; an SQL injection in server_protocol.cpp; and finally, a second buffer overflow in recv_map_data(). Versions less than 0.7.1062 are affected.

tags | advisory, overflow, vulnerability, sql injection
systems | linux, gentoo
advisories | CVE-2006-3788, CVE-2006-3789, CVE-2006-3790, CVE-2006-3791, CVE-2006-3792
SHA-256 | 7bb43db8613f943b782ed33c40c4f6c0feb0ece6ac15a313c55151ec2efba5c6
Gentoo Linux Security Advisory 200702-9
Posted Feb 28, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200702-09 - Nexuiz fails to correctly validate input within client commands. There is also a failure to correctly handle connection attempts from remote hosts. Versions less than 2.2.1 are affected.

tags | advisory, remote
systems | linux, gentoo
advisories | CVE-2006-6609, CVE-2006-6610
SHA-256 | 67972ac189283280a0e29a785c5e5a54cd5f6532acbba8ca2af079202aa55a28
sqllitemanager120-multi.txt
Posted Feb 28, 2007
Authored by Simon Bonnard

SQLiteManager version 1.2.0 suffers from local file inclusion and multiple cross site scripting vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
SHA-256 | 0801568530feffe7fc7f87e429113facaddaa00f9cb11a79d66f5f6bea21c0cd
pwg141-xss.txt
Posted Feb 28, 2007
Authored by Simon Bonnard

PHPWebGallery version 1.4.1 suffers from multiple cross site scripting flaws.

tags | advisory, xss
SHA-256 | 5a02974fc1c9ebfb5d0fc2e9c905508965ca1fef15df90a0893c3ee857057918
coppermine-blindsql.txt
Posted Feb 28, 2007
Authored by s0cratex

Coppermine Photo Gallery version 1.3.x blind SQL injection exploit.

tags | exploit, sql injection
SHA-256 | 628c7641d783fec5ce41a8c30c833f58cce4757bd991f43dbe66239702e430b6
photostand120-xss.txt
Posted Feb 28, 2007
Authored by Simon Bonnard

Photostand version 1.2.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 2d9f1ac802579e3d728f4e09487463c8e1dc0732380ae4ba86e9ca2d450ed9f3
RogueXMLSpecific.pdf
Posted Feb 28, 2007
Authored by Aditya Sood | Site zeroknock.metaeye.org

Whitepaper entitled Rogue XML Specifications. It discusses insecurities that relate to XML schema.

tags | paper
SHA-256 | 8f898961deadbbea1e0a38424a21b14dc2cd3202e6954fa1ff015c971451cb97
activecal120-multi.txt
Posted Feb 28, 2007
Authored by Simon Bonnard

ActiveCalendar version 1.2.0 suffers from cross site scripting and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
SHA-256 | 513b48e4fd48b42dbb697f29d0b224b641534ba4e92774151fd71c49c5916e88
pickle-lfi.txt
Posted Feb 28, 2007
Authored by laurent gaffie

Pickle suffers from a local file download vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 053c72f707859708312af60d0f95b7649892cd38e5fc1ba8d432d8ae2f4dbf0e
Mandriva Linux Security Advisory 2007.049
Posted Feb 28, 2007
Authored by Mandriva | Site mandriva.com

Mandriva Security Advisory - A bug in the way that SpamAssassin processes HTML emails containing URIs was discovered in versions 3.1.x. A carefully crafted mail message could make SpamAssassin consume significant amounts of CPU resources that could delay or prevent the delivery of mail if a number of these messages were sent at once. SpamAssassin has been upgraded to version 3.1.8 to correct this problem, and other upstream bugs. In addition, an invalid path setting in local.cf for the auto_whitelist_path has been fixed for Mandriva 2007.0.

tags | advisory, local
systems | linux, mandriva
advisories | CVE-2007-0451
SHA-256 | c5f6e215c75a28d923bc71e2534adebe232ba6f5f01f07832d989c57fbe0b4cf
sof-multi.txt
Posted Feb 28, 2007
Authored by laurent gaffie

Simple One-File Gallery suffers from local file inclusion and cross site scripting vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
SHA-256 | 4feb613dd583b4d8271756458f9ab29be34f28254f4ed8fd60d37927e6c4d673
sitex-multi.txt
Posted Feb 28, 2007
Authored by laurent gaffie

sitex suffers from upload and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | d049e5066c8158f632c257a7fa9b3d8ab821a800a4fd277933d64782e4252604
mtcms.txt
Posted Feb 28, 2007
Authored by laurent gaffie

MTCMS version 2.2 suffers from upload and cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss
SHA-256 | 1c2b781aa2810cd0355873f992e38743d3b685df68a93fb493ebb8c02c64034d
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close