what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 21 of 21 RSS Feed

Files Date: 2012-02-11

Mandriva Linux Security Advisory 2012-016
Posted Feb 11, 2012
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2012-016 - A File Inclusion vulnerability was discovered and corrected in GLPI. This advisory provides the latest version of GLPI that is not vulnerable to this issue.

tags | advisory, file inclusion
systems | linux, mandriva
advisories | CVE-2012-1037
SHA-256 | 472e73b16fd6ee0050d72856f96d1475f3599833e914ef1810a140d86ca674bc
OnxShop CMS 1.5.0 Cross Site Scripting
Posted Feb 11, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

OnxShop CMS version 1.5.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | e8a201d0d5b0323baf61099f5afd6ad6fc229256f0f037c31caf05de12515339
Microsoft Security Bulletin Advance Notification For February 2012
Posted Feb 11, 2012
Site microsoft.com

This is an advance notification of 9 security bulletins that Microsoft is intending to release on February 14, 2012.

tags | advisory
SHA-256 | 2864d36f24321d7fe0c59bc2c1994ddaeeddb562bca4982a58705a41aff0e6bd
CubeCart 3.0.20 Open Redirection
Posted Feb 11, 2012
Authored by Aung Khant | Site yehg.net

CubeCart versions 3.0.20 and below suffer from an open URL redirection vulnerability.

tags | exploit
SHA-256 | 8fb0b91c0d8185446874dfadb33789cc6680b80322c161e21ff4e36a31252ee1
D-Link DAP 1150 CSRF / XSS / Denial Of Service
Posted Feb 11, 2012
Authored by MustLive

The D-Link DAP 1150 suffers from cross site request forgery, cross site scripting and denial of service vulnerabilities.

tags | exploit, denial of service, vulnerability, xss, info disclosure, csrf
SHA-256 | 84d992689d283edc1df7b827c78c8b56fe44c863680d45edf495fbff087bbea0
Zen-Cart 1.3.9h Cross Site Request Forgery
Posted Feb 11, 2012
Authored by DisK0nn3cT

Zen-Cart version 1.3.9h suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
advisories | CVE-2011-4403
SHA-256 | ef286cbf4e4b4530afcb9dd37b44ca77c53e9e70a3ed3ba5031156b4e02ae852
Astaro Security Gateway Whitelist Bypass
Posted Feb 11, 2012
Authored by Timeless Prototype

The Astaro Security Gateway suffers from a whitelist bypass vulnerability due to a poorly formed regex.

tags | exploit, bypass
SHA-256 | 95ea96f06b3c0334ad43503c83b9525b824e814fb14b0812c2e99395926a0759
Dolibarr CMS 3.2.0 Alpha SQL Injection
Posted Feb 11, 2012
Authored by Benjamin Kunz Mejri, longrifle0x, Vulnerability Laboratory | Site vulnerability-lab.com

Dolibarr CMS version 3.2.0 Alpha suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 34fc47c667c6f4094df8fb50bcbc95a32e02280417779b2c7d04e499361b440f
Dolibarr CMS 3.2.0 Alpha Local File Inclusion
Posted Feb 11, 2012
Authored by Benjamin Kunz Mejri, longrifle0x, Vulnerability Laboratory | Site vulnerability-lab.com

Dolibarr CMS version 3.2.0 Alpha suffers from multiple local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
SHA-256 | bbb174eab63b07e87d7e046ec962fecd0864e7437b1c7890ce5e9c099dfaab6a
Pfile 1.02 Cross Site Scripting / SQL Injection
Posted Feb 11, 2012
Authored by indoushka

Pfile version 1.02 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 5d886584cbf2c8533cd7efae044b8130d3b097ea7474ffaed7f309bc7ac69ec1
Nova CMS Remote File Inclusion
Posted Feb 11, 2012
Authored by indoushka

Nova CMS suffers from multiple remote file inclusion vulnerabilities.

tags | exploit, remote, vulnerability, code execution, file inclusion
SHA-256 | 9ae18fcb0e487affa891a9dbe09003a50ade0d58d4de98b74f8be7279c6b81e4
OpenSSH 5.9p1 Backdoor
Posted Feb 11, 2012
Authored by IPSECS

This is a patch for OpenSSH version 5.9p1 that adds a magic root password backdoor, logs usernames and passwords and keeps connections from being logged in wtmp, utmp, etc.

tags | root, encryption
systems | unix
SHA-256 | 294b74ffd207124239b3013f71cccdcb5dc76d5678ea55de7a9c059b9d674d5f
Kloxo LxCenter Server CP 6.1.10 Cross Site Scripting
Posted Feb 11, 2012
Authored by Vulnerability Laboratory | Site vulnerability-lab.com

Kloxo LxCenter Server CP version 6.1.10 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | a33d451cb7193212b19f52ef71ea0a69584fc6f9bc06e942ff9162339e22559c
STHS v2 Web Portal 2.2 SQL Injection
Posted Feb 11, 2012
Authored by Liyan Oz

STHS v2 Web Portal version 2.2 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, web, sql injection
SHA-256 | df2aef2b8ed5719432fab9d65d36c1e6976ddeece6ee659a2784031108fcd5bd
MachForm 2.4 Remote File Inclusion
Posted Feb 11, 2012
Authored by indoushka

MachForm version 2.4 suffers from multiple remote file inclusion vulnerabilities.

tags | exploit, remote, vulnerability, code execution, file inclusion
SHA-256 | bce7bab595ecbfc5ef5e856586e31f7e51fce32963657f2bf22dc3989c98047b
BASE 1.4.5 Remote File Inclusion / Shell Creation
Posted Feb 11, 2012
Authored by indoushka

BASE version 1.4.5 suffers from multiple remote file inclusion vulnerabilities and a shell creation vulnerability.

tags | exploit, remote, shell, vulnerability, code execution, file inclusion
SHA-256 | 6a79ee2e653de8efb45a8234d719c59e30b017ce3998869ca0fbc8cd937dbac3
Gocart 1.0.2 Remote File Inclusion
Posted Feb 11, 2012
Authored by indoushka

Gocart version 1.0.2 suffers from multiple remote file inclusion vulnerabilities.

tags | exploit, remote, vulnerability, code execution, file inclusion
SHA-256 | 879419ea1fef01142ef557c0d764cd162b626d5b5bf725e84037bc2f043fe390
Indianapolis Superbowl 2012 SQL Injection
Posted Feb 11, 2012
Authored by Alexander Fuchs, Vulnerability Laboratory | Site vulnerability-lab.com

The Indianapolis Superbowl 2012 website suffered from multiple remote SQL injection vulnerabilities.

tags | advisory, remote, vulnerability, sql injection
SHA-256 | eddaa373cb5b70d21e51fdcc4d1018f7f0492e9bf1242456fe667349d571be59
GLPI 0.80.61 Local File Inclusion / Remote File Inclusion
Posted Feb 11, 2012
Authored by Emilien Girault

GLPI versions 0.80.61 and below suffer from local file inclusion and remote file inclusion vulnerabilities.

tags | exploit, remote, local, vulnerability, code execution, file inclusion
advisories | CVE-2012-1037
SHA-256 | 0f618b4a22f1c38efc5bf06ca069a4fa57200e710e5d7a97fd5eca84a84d382f
BeWelcome Cross Site Scripting
Posted Feb 11, 2012
Authored by Sony

BeWelcome suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e28e795aeb5bb10a80008d1ad616c5121a9c76aa0e2bba823e211fc4160151cc
DotDotPwn - The Directory Traversal Fuzzer 3.0
Posted Feb 11, 2012
Authored by nitr0us, chr1x

DotDotPwn is a very flexible intelligent fuzzer to discover directory traversal vulnerabilities in software such as Web/FTP/TFTP servers, Web platforms such as CMSs, ERPs,Blogs, etc. Also, it has a protocol-independent module to send the desired payload to the host and port specified. On the other hand, it also could be used in a scripting way using the STDOUT module.

Changes: Multiple new switches and encodings added.
tags | web, vulnerability, protocol, fuzzer
systems | unix
SHA-256 | 7c954b9db834e02e36acbc4ebda32cfec3049f30d94668702004db28f42c7afe
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close