exploit the possibilities
Showing 1 - 15 of 15 RSS Feed

Files Date: 2009-09-26

Mereo 1.8.0 File Disclosure
Posted Sep 26, 2009
Authored by Dr_IDE

Mereo web server version 1.8 suffers from a remote source code disclosure vulnerability.

tags | exploit, remote, web
MD5 | 8cb9bb894e84dd235f1e48fa3f6cfaff
BigAnt Server 2.50 Buffer Overflow PoC 1
Posted Sep 26, 2009
Authored by Dr_IDE

BigAnt server versions 2.50 SP6 and below local buffer overflow exploit that creates a malicious .zip file.

tags | exploit, overflow, local
MD5 | 5813e89ab8bc82f20379574b3e3bb253
BigAnt Server 2.50 Buffer Overflow PoC 2
Posted Sep 26, 2009
Authored by Dr_IDE

BigAnt server versions 2.50 SP6 and below local buffer overflow exploit that creates a malicious .zip file.

tags | exploit, overflow, local
MD5 | 96d0a72caf7cabb104b6edaab3e19f51
CDBurnerXP 4.2.4.1351 Crash
Posted Sep 26, 2009
Authored by Dr_IDE

CDBurnerXP version 4.2.4.1351 local crash proof of concept exploit.

tags | exploit, local, proof of concept
MD5 | 55b7589317c634786dd478d28d214347
Core FTP LE 2.1 Buffer Overflow
Posted Sep 26, 2009
Authored by Dr_IDE

Core FTP LE version 2.1 build 1612 local buffer overflow proof of concept exploit.

tags | exploit, overflow, local, proof of concept
MD5 | a528962313b589f441958f1b5772e712
VLC Media Player 1.0.2 smb:// Stack Overflow
Posted Sep 26, 2009
Authored by Dr_IDE

VLC Media Player version 1.0.2 smb:// URI handling remote stack overflow proof of concept exploit.

tags | exploit, remote, overflow, proof of concept
MD5 | 418dcda83ba2c2c08e2492da4c70cee1
CuteFTP 8.3.3 Buffer Overflow
Posted Sep 26, 2009
Authored by Dr_IDE

CuteFTP version 8.3.3 Home/Pro/Lite create new site local buffer overflow proof of concept exploit.

tags | exploit, overflow, local, proof of concept
MD5 | cd736f70bb379d88680bd8bf8ca83821
Mandriva Linux Security Advisory 2009-248
Posted Sep 26, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-248 - The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates. Unspecified vulnerability in PHP before 5.2.11 has unknown impact and attack vectors related to missing sanity checks around exif processing. Unspecified vulnerability in the imagecolortransparent function in PHP before 5.2.11 has unknown impact and attack vectors related to an incorrect sanity check for the color index. This update provides a solution to these vulnerabilities.

tags | advisory, spoof, php, vulnerability
systems | linux, mandriva
advisories | CVE-2009-3291, CVE-2009-3292, CVE-2009-3293
MD5 | 128fd9c6b55d3d378d8639c4e1eac2e5
Mandriva Linux Security Advisory 2009-247
Posted Sep 26, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-247 - The dba_replace function in PHP 5.2.6 and 4.x allows context-dependent attackers to cause a denial of service (file truncation) via a key with the NULL byte. The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates. Unspecified vulnerability in PHP before 5.2.11 has unknown impact and attack vectors related to missing sanity checks around exif processing. Unspecified vulnerability in the imagecolortransparent function in PHP before 5.2.11 has unknown impact and attack vectors related to an incorrect sanity check for the color index. This update provides a solution to these vulnerabilities.

tags | advisory, denial of service, spoof, php, vulnerability
systems | linux, mandriva
advisories | CVE-2008-7068, CVE-2009-3291, CVE-2009-3292, CVE-2009-3293
MD5 | acc7563331b69cc1b21bfb01eefe3f29
Mandriva Linux Security Advisory 2009-246
Posted Sep 26, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-246 - The dba_replace function in PHP 5.2.6 and 4.x allows context-dependent attackers to cause a denial of service (file truncation) via a key with the NULL byte. The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates. Unspecified vulnerability in PHP before 5.2.11 has unknown impact and attack vectors related to missing sanity checks around exif processing. Unspecified vulnerability in the imagecolortransparent function in PHP before 5.2.11 has unknown impact and attack vectors related to an incorrect sanity check for the color index. This update provides a solution to these vulnerabilities.

tags | advisory, denial of service, spoof, php, vulnerability
systems | linux, mandriva
advisories | CVE-2008-7068, CVE-2009-3291, CVE-2009-3292, CVE-2009-3293
MD5 | 7c36d51641d1336db8bd89c885d8e71c
Drupal Bibliography Module Cross Site Scripting
Posted Sep 26, 2009
Authored by Black Packeteer

The Drupal Bibliography module suffers from a cross site scripting vulnerability.

tags | advisory, xss
MD5 | 3d486ace9a1432f07697d7b6fed03925
Gentoo Linux Security Advisory 200909-20
Posted Sep 26, 2009
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200909-20 - An error in the X.509 certificate handling of cURL might enable remote attackers to conduct man-in-the-middle attacks. Scott Cantor reported that cURL does not properly handle fields in X.509 certificates that contain an ASCII NUL (\\0) character. Specifically, the processing of such fields is stopped at the first occurrence of a NUL character. This type of vulnerability was recently discovered by Dan Kaminsky and Moxie Marlinspike. Versions less than 7.19.6 are affected.

tags | advisory, remote
systems | linux, gentoo
advisories | CVE-2009-2417
MD5 | 7f68353f90c3624a80f0b65e93d4b94f
Klonet E-Commerce SQL Injection
Posted Sep 26, 2009
Authored by S3T4N | Site sux0r.net

Klonet E-Commerce suffers from a remote SQL injection vulnerability in products.php.

tags | exploit, remote, php, sql injection
MD5 | 2fb2d50cb9b9d060fc28d63404d4d5c0
Cisco ACE XML Gateway 6.0 IP Disclosure
Posted Sep 26, 2009
Authored by nitr0us

Cisco ACE XML Gateway versions 6.0 and below suffer from an internal IP address disclosure.

tags | advisory, info disclosure
systems | cisco
MD5 | e649f032dcfa6e9238f4338cebbed7fc
Engeman 6.x.x SQL Injection
Posted Sep 26, 2009
Authored by crashbrz

Engeman version 6.x.x suffers from a SQL injection vulnerability.

tags | exploit, sql injection
MD5 | 2a517f9e37eed12024f3c2bc17892fca
Page 1 of 1
Back1Next

File Archive:

July 2021

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    13 Files
  • 2
    Jul 2nd
    12 Files
  • 3
    Jul 3rd
    1 Files
  • 4
    Jul 4th
    2 Files
  • 5
    Jul 5th
    34 Files
  • 6
    Jul 6th
    21 Files
  • 7
    Jul 7th
    21 Files
  • 8
    Jul 8th
    13 Files
  • 9
    Jul 9th
    6 Files
  • 10
    Jul 10th
    1 Files
  • 11
    Jul 11th
    3 Files
  • 12
    Jul 12th
    15 Files
  • 13
    Jul 13th
    19 Files
  • 14
    Jul 14th
    15 Files
  • 15
    Jul 15th
    15 Files
  • 16
    Jul 16th
    9 Files
  • 17
    Jul 17th
    2 Files
  • 18
    Jul 18th
    2 Files
  • 19
    Jul 19th
    19 Files
  • 20
    Jul 20th
    21 Files
  • 21
    Jul 21st
    53 Files
  • 22
    Jul 22nd
    14 Files
  • 23
    Jul 23rd
    14 Files
  • 24
    Jul 24th
    1 Files
  • 25
    Jul 25th
    1 Files
  • 26
    Jul 26th
    21 Files
  • 27
    Jul 27th
    8 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2020 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close