exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 28 RSS Feed

Files Date: 2011-04-08

1024cms ACP 1.1.0 Complete Modules Directory Traversal
Posted Apr 8, 2011
Authored by Demetris Papapetrou, QSecure | Site qsecure.com.cy

1024cms Admin Control Panel version 1.1.0 Beta Complete-Modules package suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
SHA-256 | 3be2f44cf76e5ae7fd20ecc2e29adc30229ad16974dd5ac1a6083b763d488d8e
Mandriva Linux Security Advisory 2011-071
Posted Apr 8, 2011
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2011-071 - kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a certificate issued by a legitimate Certification Authority for an IP address, a different vulnerability than CVE-2009-2702. Additionally it was discovered that kdelibs4 for 2009.0 was using an old private copy of the ca-bundle.crt file containing the root CA certs, this has now been resolved so that it uses the system wide and up to date /etc/pki/tls/certs/ca-bundle.crt file last updated with the MDVSA-2011:068 advisory.

tags | advisory, arbitrary, root, spoof
systems | linux, mandriva
advisories | CVE-2011-1094
SHA-256 | ca74073a54bdf3fa6ed44368aeb87bf7fa79b29e76ea5a6dff0258a6cfd9f7fd
Mandriva Linux Security Advisory 2011-070
Posted Apr 8, 2011
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2011-070 - GNOME Display Manager 2.x before 2.32.1 allows local users to change the ownership of arbitrary files via a symlink attack on a face icon file under /var/cache/gdm/. The updated packages have been patched to correct this issue.

tags | advisory, arbitrary, local
systems | linux, mandriva
advisories | CVE-2011-0727
SHA-256 | 0f118fb359865e8ede51fb480d81a21ec3b20361b945d201f83a80eb5aee21c4
Fiberhome HG-110 Cross Site Scripting / Local File Inclusion
Posted Apr 8, 2011
Authored by Zerial

Fiberhome HG-110 routers suffer from cross site scripting and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
SHA-256 | 25b1b59839207535d1b10fdda49adf6dd271eec45326a77d87756b0b77bb02e4
1024cms ACP 1.1.0 Master-cPanel Cross Site Scripting
Posted Apr 8, 2011
Authored by Demetris Papapetrou, QSecure | Site qsecure.com.cy

1024cms Admin Control Panel version 1.1.0 Beta Master-cPanel package suffers from cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | ee30cc9ef6e3c2fbccfc4751f4a67c2589a0bea5b4988189e37b6e9bbbb7287d
1024cms ACP 1.1.0 Complete Modules Cross Site Scripting
Posted Apr 8, 2011
Authored by Demetris Papapetrou, QSecure | Site qsecure.com.cy

1024cms Admin Control Panel version 1.1.0 Beta Complete-Modules package suffers from cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 8cf4b9bea8adf52595b36b697b381a16521a1d20af19ec4ee2bc7ebe2230c924
Live Wire 2.3.1 XSS / Disclosure / Denial Of Service
Posted Apr 8, 2011
Authored by MustLive

Live Wire Edition theme version 2.3.1 for WordPress suffers from cross site scripting, denial of service, path disclosure and abuse of functionality vulnerabilities.

tags | exploit, denial of service, vulnerability, xss
SHA-256 | 79b89bb2c36ba7e839e6894861693e23d1bfac75cb85db1f03d2104a7ce96832
Mandriva Linux Security Advisory 2011-069
Posted Apr 8, 2011
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2011-069 - It was discovered that the /etc/cron.d/php cron job for php-session allows local users to delete arbitrary files via a symlink attack on a directory under /var/lib/php.

tags | advisory, arbitrary, local, php
systems | linux, mandriva
advisories | CVE-2011-0441
SHA-256 | 4ddd0bc9be0cce6a362be1bdc7eb82ad31d1d7d9b1b1227994b66c3ddc135211
1024cms ACP 1.1.0 Master-cPanel Local File Inclusion
Posted Apr 8, 2011
Authored by Demetris Papapetrou, QSecure | Site qsecure.com.cy

1024cms Admin Control Panel version 1.1.0 Beta Master-cPanel package suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 7975b0f9f1c6865f41f7054ad4a84e1a382158deff42c3fd8fde2fef9aa1a5d6
AOL Desktop 9.6 RTX Buffer Overflow
Posted Apr 8, 2011
Authored by sinn3r, sup3r, sickn3ss | Site metasploit.com

This Metasploit module exploits a vulnerability found in AOL Desktop 9.6's Tool\rich.rct component. By supplying a long string of data in the hyperlink tag, rich.rct copies this data into a buffer using a strcpy function, which causes an overflow, and results in arbitrary code execution.

tags | exploit, overflow, arbitrary, code execution
advisories | OSVDB-70741
SHA-256 | 575398da23b144e83224a7732459cb00c12c5012deeba1c3667a78c5a47f4714
1024cms ACP 1.1.0 Complete Modules Local File Inclusion
Posted Apr 8, 2011
Authored by Demetris Papapetrou, QSecure | Site qsecure.com.cy

1024cms Admin Control Panel version 1.1.0 Beta Complete-Modules package suffers from local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
SHA-256 | fa4242a228ac0874e96bc27bc2c4b836686a7cdf15990449815adda1a30be809
Post-Newsweek Media CMS SQL Injection
Posted Apr 8, 2011
Authored by Xecuti0N3r

Post-Newsweek Media CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 5bf56b5de3bb5440ac2789625e71af361d3fe7d2f2082276208abe9770e10bcc
Secunia Security Advisory 44039
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has acknowledged a vulnerability in the pure-ftpd package for SUSE Linux Enterprise Server, which can be exploited by malicious, local users to gain escalated privileges.

tags | advisory, local
systems | linux, suse
SHA-256 | a4190e8e805f0c817f46542f4f42aff5fcb61412698da4e27fd772e53742ec8c
Secunia Security Advisory 44035
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been discovered in GreenPants, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, vulnerability, sql injection
SHA-256 | 35abf734d642c8b023c1e00914099365b9b405ff4d77e963479a1494d3ab3e19
Secunia Security Advisory 44064
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in VLC Media Player, which can be exploited by malicious people to compromise a user's system.

tags | advisory
SHA-256 | 2a4a63d1ab9b61462dc05cb8908430aef73dbf6ad0fb0d62d6bb2a995b686e01
Secunia Security Advisory 44018
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for wireshark. This fixes multiple vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.

tags | advisory, denial of service, vulnerability
systems | linux, suse
SHA-256 | 805e46ebbe929bbd2de95eaddfec8a87a4154fc2e430f4ea1a3387ce578a9315
Secunia Security Advisory 44019
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debian has issued an update for vlc. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.

tags | advisory, vulnerability
systems | linux, debian
SHA-256 | 293e7e3b8274befd8c9011a666dcddd1ce26b06fd45190accb2530fdac056dca
Secunia Security Advisory 44048
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Slackware has issued an update for dhcp. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.

tags | advisory
systems | linux, slackware
SHA-256 | 270d38b57415eeb3120ee8bb90a6d9c850fe35458619ded8bc69be53ed6cd5d3
Secunia Security Advisory 44038
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been reported in WordPress, which can be exploited by malicious people to conduct cross-site scripting attacks and cause a DoS (Denial of Service).

tags | advisory, denial of service, vulnerability, xss
SHA-256 | e3833abb0a56c1f82de266e4b355b70221eae718338b51873b8ab41997fa8b4b
Secunia Security Advisory 44010
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for x11-xserver-utils. This fixes a security issue, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system.

tags | advisory, local
systems | linux, ubuntu
SHA-256 | 1f090e68af92b90c65ab04c28367d0705f16c6a93324293c67037307f59c5822
Secunia Security Advisory 44002
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Some vulnerabilities have been reported in Moonlight, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security features, and potentially compromise a user's system.

tags | advisory, vulnerability
SHA-256 | f85a84ea4f8e38a6016bbddd3a35a8c8bb2f41baa65352623c046b9bf817ce1a
Secunia Security Advisory 43999
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Mesut Timur has discovered a vulnerability in Redmine, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | 816818911d69c079cc7f733d92d63e2c8e1745695d73e9aa2e97a80fd09ffb62
Secunia Security Advisory 44023
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for telepathy-gabble. This fixes a vulnerability, which can be exploited by malicious people to conduct hijacking attacks.

tags | advisory
systems | linux, suse
SHA-256 | 1869ae77c7888ca2b60b6c8a1910a99abdd56f0a4481163d06bb713ce15b2a37
Secunia Security Advisory 44057
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for php. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.

tags | advisory, denial of service, php, vulnerability
systems | linux, fedora
SHA-256 | 452c73d3fd153c2a4f29893e07c42c301037b0caa27b3afe22de5e82821ab26d
Secunia Security Advisory 44009
Posted Apr 8, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debian has issued an update for vlc. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.

tags | advisory
systems | linux, debian
SHA-256 | 4c89f23e73f2037e689469d04ed9de755cb621eacea638924208aa0a035e8fee
Page 1 of 2
Back12Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close