exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 26 RSS Feed

Files Date: 2011-05-03

Xplico Network Forensic Analysis Tool 0.6.2
Posted May 3, 2011
Authored by Gianluca Costa, Andrea de Franceschi | Site xplico.org

Xplico is an open source Network Forensic Analysis Tool (NFAT) that allows for data extraction from traffic captures. It supports extraction of mail from POP, IMAP, and SMTP, can extract VoIP streams, etc. This is the version that has a GUI allowing you to view photos, texts and videos contained in MMS messages.

Changes: l7-patterns for all flows/protocols not decoded by Xplico. Xplico Interface (XI) improved. Python3 porting of many script. Various other bug fixes.
tags | tool, imap, forensics
systems | linux
SHA-256 | b9516f367af7a347e61ade0106c508246b38cb4e1dcbece44616718b23a7badf
Owning A Cop Car
Posted May 3, 2011
Authored by Kevin Finisterre

This paper details how poorly Linux devices in cop cars are set up and how their lack of a secure design puts everyone at risk.

tags | exploit
systems | linux
SHA-256 | fc7efa4a04b53671d3343de2d1e7775fdccf6bd40812c3090eabe0d4f58c410b
Secunia Security Advisory 44441
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Interbase XE, which can be exploited by malicious people to compromise a vulnerable system.

tags | advisory
SHA-256 | accf945a2cebc96fcfa0fa614c5a50f4b23f695a6a1975327c4c6958b2a4b0d6
Secunia Security Advisory 44393
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debian has issued an update for qemu-kvm. This fixes a security issue and some vulnerabilities, which can be exploited by malicious, local users in a guest system to cause a DoS (Denial of Service) and potentially gain escalated privilege and by malicious people to bypass certain security restrictions.

tags | advisory, denial of service, local, vulnerability
systems | linux, debian
SHA-256 | abf229c0fbcf6a836f2ec0812a55ca9ee0a541424bbd8bbdfe532ce8df19e683
Secunia Security Advisory 44397
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debian has issued an update for spip. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service).

tags | advisory, denial of service
systems | linux, debian
SHA-256 | 2a336ae65a2b3de5d7c2b26e059163fc665049840b6bc575437addcec46428a0
Secunia Security Advisory 44398
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debian has issued an update for iceweasel. This fixes multiple vulnerabilities, which can be exploited by malicious people to disclose sensitive information and compromise a user's system.

tags | advisory, vulnerability
systems | linux, debian
SHA-256 | ec6702cf302b6943242d1471ef77c4754bdd15ea5d0caf9cc1215cdf36ae56c4
Secunia Security Advisory 44437
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - AutoSec Tools has discovered multiple vulnerabilities in Time and Expense Management System, which can be exploited by malicious people to conduct cross-site scripting attacks and compromise a vulnerable system.

tags | advisory, vulnerability, xss
SHA-256 | 01f3ab65a241c3f9f303424d061425e439b8d0faecf84dd6459e6e8146194b87
Secunia Security Advisory 44438
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - AutoSec Tools has discovered a vulnerability in Tine 2.0, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | fb5ce019f6381d2ca933c2bd89c4f09343ca825596de84d870e953be162d35f9
Secunia Security Advisory 44442
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for the kernel. This fixes multiple weaknesses and vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, cause a DoS (Denial of Service), and potentially gain escalated privileges, by malicious people with physical access to potentially compromise a vulnerable system and cause a DoS, and by malicious people to cause a DoS and potentially compromise a vulnerable system.

tags | advisory, denial of service, kernel, local, vulnerability
systems | linux, suse
SHA-256 | aa462f3208b4fe05947578f78359f05b66cce25f2382e96d8658aa22824747a3
Secunia Security Advisory 44337
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ignacio Garrido has reported multiple vulnerabilities in 360 Web Manager, which can be exploited by malicious people to disclose sensitive information, delete files on an affected system, and compromise a vulnerable system.

tags | advisory, web, vulnerability
SHA-256 | e4c91f5368c2225859db14c10de6c22b3f027cc98b64d06c09b43e4a1d09d510
Secunia Security Advisory 44440
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - AutoSec Tools has discovered a vulnerability in FrontAccounting, which can be exploited by malicious people to conduct cross-site request forgery attacks.

tags | advisory, csrf
SHA-256 | e0352e4c2d9c4c5960aaaa719b04e1fa1019c18c5ce784c639fd3036182cc830
Secunia Security Advisory 44404
Posted May 3, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for firefox and xulrunner. This fixes multiple vulnerabilities, which can be exploited by malicious people to disclose sensitive information and compromise a user's system.

tags | advisory, vulnerability
systems | linux, ubuntu
SHA-256 | 59b97ea24368b3cb86dbeb27a22238c46881485380c5733697c4d94b2945eec0
Front Accounting 2.3.4 Cross Site Request Forgery
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

A cross site request forgery vulnerability in Front Accounting version 2.3.4 can be exploited to create a new admin.

tags | exploit, csrf
SHA-256 | 276c57c4a04414f8488f50a79caa808f3ef20c522cbb0296f61b1ba5071dd5d8
LDAP Account Manager 3.4.0 Cross Site Scripting
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

A reflected cross site scripting vulnerability in LDAP Account Manager version 3.4.0 can be exploited to execute arbitrary JavaScript.

tags | exploit, arbitrary, javascript, xss
SHA-256 | 5d743e629aefd622c38a22ab1190e577c9a0c735df0e1f9917a1ce3bc2aa2ceb
Time And Expense Management System Command Injection
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

A command injection vulnerability in Time and Expense Management System can be exploited to execute arbitrary operating system commands.

tags | exploit, arbitrary
SHA-256 | 51c4634c95a72dd7a3507b01554276d6e188fc95a426618f902ccee708d85bb6
Oracle Enterprise Manager 10g Release 1/2 Cross Site Scripting
Posted May 3, 2011
Authored by Esteban Martinez Fayo | Site appsecinc.com

Oracle Enterprise Manager 10g Release 1 and Release 2 both suffer from a cross site scripting vulnerability.

tags | advisory, xss
advisories | CVE-2011-0785
SHA-256 | 4015885c223ff70fa622d3116b9ad723667b5bf20c559042a9e6f22c17627cd1
Oracle Enterprise Manager 11g Release 1 SQL Injection
Posted May 3, 2011
Authored by Esteban Martinez Fayo | Site appsecinc.com

Oracle Enterprise Manager 11g Release 1 suffers from a remote SQL injection vulnerability.

tags | advisory, remote, sql injection
advisories | CVE-2011-0787
SHA-256 | f2f11a1a28f0a9de198654ca510395ee753ef265e1a37a322a1ccd7270512599
Time And Expense Management System Shell Upload
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

An arbitrary upload vulnerability in Time and Expense Management System can be exploited to upload a PHP shell.

tags | exploit, arbitrary, shell, php
SHA-256 | 16b29e1a3571d25e957dea7d04207efa6fa61c470091da011080484606247e3a
Time And Expense Management System Cross Site Scripting
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

A reflected cross site scripting vulnerability in Time and Expense Management System can be exploited to execute arbitrary JavaScript.

tags | exploit, arbitrary, javascript, xss
SHA-256 | 9929c1154e8449e482f364c675b0eb774cbb040a0429a1c140032178d50497c4
Tine 2.0 Cross Site Scripting
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

A reflected cross site scripting vulnerability in Tine version 2.0 can be exploited to execute arbitrary JavaScript.

tags | exploit, arbitrary, javascript, xss
SHA-256 | 974e1713b17b2547525c8eb2f602e892fd4d4398944b32b6631e56e7d166bc6b
WebAuction 0.3.6 Cross Site Scripting
Posted May 3, 2011
Authored by AutoSec Tools | Site autosectools.com

A reflected cross site scripting vulnerability in WebAuction version 0.3.6 can be exploited to execute arbitrary JavaScript.

tags | exploit, arbitrary, javascript, xss
SHA-256 | 6fe6a65011ccf04a17d369e44a4e147b973dad4457b154b13a7713d60b983ee5
Oracle Database Server Network Denial Of Service
Posted May 3, 2011
Authored by Esteban Martinez Fayo | Site appsecinc.com

Sending a specially crafted network packet to an Oracle Database during the connection before the user authentication is performed it is possible to make the Oracle process consume all available CPU resources. To exploit this vulnerability no authentication is needed, the attacker needs to know the SID or Service Name of the database. Affected are Oracle Database Server versions 10gR1, 10gR2, 11gR1 and 11gR2 (on Windows platform).

tags | advisory
systems | windows
advisories | CVE-2011-0806
SHA-256 | 6061c4891857303cc29e065da2ea05260f71114bccb80e80eab2d4b335fe434d
Network Protocols And Algorithms Call For Papers
Posted May 3, 2011
Site macrothink.org

A Call For Papers for Network Protocols and Algorithms has been announced. Network Protocols and Algorithms is a free-access online international journal, peer-reviewed and published by Macrothink Institute. It publishes papers focused on the design, development, manage, optimize or monitoring any type of network protocol, communication system, algorithm for communication and any protocol and algorithm to communicate network devices.

tags | paper, protocol, conference
SHA-256 | 69d3d8af620a0172ec05f8c775ee0f18bbc47179e2fe92e7407bc6e16d1ee5d1
Ubuntu Security Notice USN-1128-1
Posted May 3, 2011
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1128-1 - Kevin Chen discovered that Vino incorrectly handled certain client framebuffer requests. A remote attacker could use this flaw to cause Vino to crash, leading to a denial of service.

tags | advisory, remote, denial of service
systems | linux, ubuntu
advisories | CVE-2011-0904, CVE-2011-0905
SHA-256 | fca3394ce9f2f0b40dffc19c7f0227e7f88d5765a3d7d309cff829797dea9fce
Multiple Vendors libc/glob(3) GLOB_BRACE|GLOB_LIMIT Memory Exhaustion
Posted May 3, 2011
Authored by Maksymilian Arciemowicz

Multiple vendors are affected by a memory exhaustion vulnerability in libc/glob(3) GLOB_BRACE|GLOB_LIMIT.

tags | exploit
advisories | CVE-2011-0418
SHA-256 | 1d1f0bb940366641cffd2edd81473a10c047934622b6fc4b18eefc826bbb182e
Page 1 of 2
Back12Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close