what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 21 of 21 RSS Feed

Files Date: 2008-08-16

Pardus Linux Security Advisory 2008.25
Posted Aug 16, 2008
Authored by Pardus Linux, Pardus

Pardus Linux Security Advisory - Sebastian Krahmer has reported some security issues in Postfix, which can be exploited by malicious, local users to disclose potentially sensitive information and perform certain actions with escalated privileges.

tags | advisory, local
systems | linux
advisories | CVE-2008-2936, CVE-2008-2937
SHA-256 | 09ba3aabe11ce628dd002e7e470cfaad9ac27bf2961b1c53674a2baa0abb20d2
Mandriva Linux Security Advisory 2008-172
Posted Aug 16, 2008
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - A flaw in Amarok prior to 1.4.10 would allow local users to overwrite arbitrary files via a symlink attack on a temporary file that Amarok created with a predictable name. The updated packages have been patched to correct this issue.

tags | advisory, arbitrary, local
systems | linux, mandriva
advisories | CVE-2008-3699
SHA-256 | 0d264688899d2167dbf887dabf91ffafa4e1aa4caa375f120055a0a33aaacc86
Mandriva Linux Security Advisory 2008-171
Posted Aug 16, 2008
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - Sebastian Krahmer of the SUSE Security Team discovered a flaw in the way Postfix dereferenced symbolic links. If a local user had write access to a mail spool directory without a root mailbox file, it could be possible for them to append arbitrary data to files that root had write permissions to. The updated packages have been patched to correct this issue.

tags | advisory, arbitrary, local, root
systems | linux, suse, mandriva
advisories | CVE-2008-2936
SHA-256 | 0dc99c6c3ab906e3b0709a979337a18647bdbcec87cc66e91e250ed08b60ca71
quickpoll-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

Quick Poll suffers from a remote SQL injection vulnerability in code.php.

tags | exploit, remote, php, sql injection
SHA-256 | 5686bff39f61a500a3204eb66356fee3d9fb1f3156d41f24fcdf5cba3a10eb49
promoproducts-sql.txt
Posted Aug 16, 2008
Authored by baltazar, sinner_01 | Site darkc0de.com

PromoProducts suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | c3b9b233e3fe27351ad61ec0c34ba42881996f5881aa468eec2a6b2e60749e31
phpizabi-traverse.txt
Posted Aug 16, 2008
Authored by Lostmon | Site lostmon.blogspot.com

PHPizabi version 0.848b suffers from directory traversal and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, file inclusion
SHA-256 | 892b7aea775321174eb57821836fb8b3f0ba6c5e7507a247bdda03f69f1e2332
vsclam-0.9.0.tar.gz
Posted Aug 16, 2008
Authored by Markus Strehle | Site clamsap.sourceforge.net

ClamSAP consists of two C shared libraries that link between ClamAV and the Virus Scan Interface (VSI) of SAP (official name: NW-VSI). A SAP application can use the ClamAV engine to scan for malicious uploads in HTTP uploads, for example.

tags | web, virus
systems | unix
SHA-256 | a579badec7e234710ee75cc8b2bf53bde89b620fea98e4179a88079f9f52bfd2
flashget190-overflow.txt
Posted Aug 16, 2008
Authored by skOd

FlashGet version 1.9.0.1012 FTP PWD Response SEH stack overflow exploit.

tags | exploit, overflow
SHA-256 | 0999f84090712d0d9b6a50064b2335063f19efb2bba617ce908e6a3735abfd8b
dotcms-lfi.txt
Posted Aug 16, 2008
Authored by Don | Site balcan-crew.org

dotCMS version 1.6 suffers from local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
SHA-256 | 238cf060ce4e3175071ef6fb197d302bfd77b0beea9121b7c4c66dc8a7966ca0
deeemmcms-multi.txt
Posted Aug 16, 2008
Authored by IRCRASH | Site ircrash.com

DeeEmm CMS version 0.7.4 suffers from remote file inclusion and SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection, file inclusion
SHA-256 | d787870efeedc19a5dd2795d0b9e3476b92b63f7364d06fb37040036db053b81
zeelyrics-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

ZEELYRICS version 2.0 suffers from a remote SQL injection vulnerability in bannerclick.php.

tags | exploit, remote, php, sql injection
SHA-256 | e3d816079b8fecd18c1f8c057b3a53fdc2307774140c4fa258d6203a03f57c9a
zeejobsite-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

ZEEJOBSITE version 2.0 suffers from a remote SQL injection vulnerability in bannerclick.php.

tags | exploit, remote, php, sql injection
SHA-256 | 31625ddb184d54f18fa612a331415c2a32eeb02c999bdc786ff4d6f448450236
shaadiclone-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

ShaadiClone version 2.0 suffers from a remote SQL injection vulnerability in bannerclick.php.

tags | exploit, remote, php, sql injection
SHA-256 | 00906d58bd32d12429817c4d1cc27ff3db60c9214c18108b33b1fd7ca6165d33
ptcinvest-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

PTCinvestment version 1.2 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 5318f9c45d0b112eb698059860ac045aa90090242bd7e6b3093d0c8ab8c9164c
acgsurf-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

ACG-Surf version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 3aeb4ed950a34aef11bd8f0993cad36146acb0723e3a6a40701d351fec700e0f
acgptp-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

ACG-PTP version 1.0.6 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 47815fecb7ed5efa6bf4a2debb0682c229668f3f8adf341f2d2a5380b98572fc
acgscriptshop-sql.txt
Posted Aug 16, 2008
Authored by Hussin X | Site tryag.cc

ACG-ScriptShop suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | bcbb5dc68b545703117bf15b3d8946dbfa64af6fdb4900c35d65f7bdcd9b1745
flexcms-xss.txt
Posted Aug 16, 2008
Authored by IRCRASH | Site ircrash.com

FlexCMS versions 2.5 and below suffer from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | c746b1b2dda11944f09900c41590192734b06a754c330cc44d0f6b8e096590e3
mailscan-multi.txt
Posted Aug 16, 2008
Authored by Oliver Karow | Site oliverkarow.de

MailScan for Mail Servers version 5.6.a suffers from directory traversal, authentication bypass, cross site scripting, and log file access vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | c252c1c307e05192c2fa09056a415178873dda926f748575fc4b8f2e466329e4
munkybliki-lfi.txt
Posted Aug 16, 2008
Authored by IRCRASH | Site ircrash.com

munky-bliki suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 0e8e019b4d3d68279c17cf46850f2ace75905d52adaa16468372bf70d0f6ce30
mambo462-morexss.txt
Posted Aug 16, 2008
Authored by IRCRASH | Site ircrash.com

Mambo versions 4.6.2 and below appear susceptible to more cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | f7e6879744083fa2020edf3ac311b6c0cc6a327d4062bb79b377d2ecb04dde87
Page 1 of 1
Back1Next

File Archive:

December 2022

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    2 Files
  • 2
    Dec 2nd
    0 Files
  • 3
    Dec 3rd
    0 Files
  • 4
    Dec 4th
    0 Files
  • 5
    Dec 5th
    0 Files
  • 6
    Dec 6th
    0 Files
  • 7
    Dec 7th
    0 Files
  • 8
    Dec 8th
    0 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Hosting By
Rokasec
close