what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 32 RSS Feed

Files Date: 2012-12-11

Microsoft Security Bulletin Re-Release For December, 2012
Posted Dec 11, 2012
Site microsoft.com

This bulletin summary lists seven re-released Microsoft security bulletins for December, 2012.

tags | advisory
SHA-256 | 04d837d1d265cde30d477764982d763845d28215cf738b7a9636c0d7645e7fbb
Microsoft Security Bulletin Summary For December, 2012
Posted Dec 11, 2012
Site microsoft.com

This bulletin summary lists 7 released Microsoft security bulletins for December, 2012.

tags | advisory
SHA-256 | 0dd5e142fdcf04a52a823850d4dd6cd748b2771de824de0f31fd48a7d0ce04e6
Axway Directory Traversal
Posted Dec 11, 2012
Authored by Sebastian Perez

Axway suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
advisories | CVE-2012-4991
SHA-256 | 04f8c9608f7b081b5b9f36da218554d16571200bee8fe3757da362b47b6ab9b5
HP Security Bulletin HPSBOV02834 SSRT101055
Posted Dec 11, 2012
Authored by HP | Site hp.com

HP Security Bulletin HPSBOV02834 SSRT101055 - A potential security vulnerabilities have been identified with OpenVMS LOGIN or ACMELOGIN (when running ACME_SERVER process). The vulnerabilities could be remotely or locally exploited to cause a Denial of Service (DoS). Revision 1 of this advisory.

tags | advisory, denial of service, vulnerability
advisories | CVE-2012-3276, CVE-2012-3277
SHA-256 | 6e6dcc8b8e3984a056c85055edadd3e133ddb072405df1e030536f8179434170
Microsoft Internet Explorer Mouse Tracking
Posted Dec 11, 2012
Authored by Nick Johnson

A security vulnerability in Internet Explorer, versions 6 through 10, allows your mouse cursor to be tracked anywhere on the screen, even if the Internet Explorer window is inactive, unfocused or minimized. The vulnerability is notable because it compromises the security of virtual keyboards and virtual keypads.

tags | exploit
SHA-256 | 9620aa1b047f609f033a379bbdd5599317f9e375d596dca4ac5843568aa76fa3
MyBB Profile Blogs 1.2 Cross Site Scripting / SQL Injection
Posted Dec 11, 2012
Authored by Zixem

MyBB Profile Blogs plugin version 1.2 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 99365166b379b24a1e62bdad682fab348042ecd9020dad7c86223aa0e2485bea
IrfanView 4.33 IMXCF.DLL Code Execution
Posted Dec 11, 2012
Authored by beford

IrfanView version 4.33 suffers from a code execution vulnerability in IMXCF.DLL.

tags | exploit, code execution
systems | linux
SHA-256 | 0a1f142ba76135c7bcf860c32266bf1a855ad2cd191192fcf8ec2176558f0b9c
MyBB Bank v3 SQL Injection
Posted Dec 11, 2012
Authored by Red_Hat

MyBB Bank v3 plugin suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8b7b4808b066772f9bf0187917fb4d6afe4c2c05f6c110e936183f8394da4506
Secunia Security Advisory 51512
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been reported in the JooProperty component for Joomla!, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.

tags | advisory, vulnerability, xss, sql injection
SHA-256 | 1714f93b1e39ae4393125163b235697d17ff0434387b9a4e60b8afc7cce845c4
Secunia Security Advisory 51500
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A security issue has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security restrictions.

tags | advisory
systems | windows
SHA-256 | 1e476c23bd81d9cc0e5dd8ddbda4c568e5138f425c93f7515cf361234821a424
Secunia Security Advisory 51522
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Blue Coat has acknowledged some vulnerabilities in IntelligenceCenter, which can be exploited by malicious people to potentially compromise a vulnerable system.

tags | advisory, vulnerability
SHA-256 | 6845b6e429ee1bc07611a4d04eb006f716cfe22a6ab084fea07baa6f3ee66f1e
Secunia Security Advisory 51527
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Some vulnerabilities have been reported in Symantec Endpoint Protection, which can be exploited by malicious people to compromise a vulnerable system.

tags | advisory, vulnerability
SHA-256 | 52549cd98fd8ef6cd8f0a66cb9f8cfa55d79f04ae18d5f25362fbb55b85414b1
Secunia Security Advisory 51542
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Blue Coat has acknowledged some vulnerabilities in ProxySG, which can be exploited by malicious people to potentially compromise a vulnerable system.

tags | advisory, vulnerability
SHA-256 | 5b780914de66d9ff5704f3038294cd5fd5da1b60f908c662dd5536ac15f14e55
Secunia Security Advisory 51529
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for mysql. This fixes a vulnerability, which can be exploited by malicious users to compromise a vulnerable system.

tags | advisory
systems | linux, ubuntu
SHA-256 | 7716381b201b6d97ddfd45b82aead516f8a8a49415c3d47dbc705dee750d72de
Secunia Security Advisory 51411
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Three vulnerabilities have been reported in Microsoft Internet Explorer, which can be exploited by malicious people to compromise a user's system.

tags | advisory, vulnerability
SHA-256 | 0b017f9fe30a3b362b5340561260fca72a4513a72f40cc972a9f7e2fb964efd3
Secunia Security Advisory 51459
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.

tags | advisory, vulnerability
systems | windows
SHA-256 | 481ae16dd3e032bcb2c78a35c125d54a2860b1e709b7f5169c1d5b184172021d
Secunia Security Advisory 51497
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.

tags | advisory
systems | windows
SHA-256 | 94a36d97dd88eddff8601b436ebed1474f2d25645538812ec81287ca039a380e
Secunia Security Advisory 51493
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.

tags | advisory
systems | windows
SHA-256 | b81ae1b3624df4fe5dd76fc6941bb899c5f9922cc85f9edde22c41d44c9997f3
Secunia Security Advisory 51467
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Microsoft Office, which can be exploited by malicious people to compromise a user's system.

tags | advisory
SHA-256 | 9c0ef7ab62fbfa4d87df26d588834ed6b2d6558c7b8145c7519a12988d33b8eb
Secunia Security Advisory 51474
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in Microsoft Exchange Server, which can be exploited by malicious users to cause a DoS (Denial of Service) and by malicious people to compromise a vulnerable system.

tags | advisory, denial of service, vulnerability
SHA-256 | 72f207b6d36742a54536e13d71aab2a161d25822be985436b2293a93d727ce4b
Secunia Security Advisory 51518
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in FreeVimager, which can be exploited by malicious people to compromise a user's system.

tags | advisory
SHA-256 | 13b1e0932781d8927c437f0972fc5ac4c672aa4dc5c739bda475ca6bed413476
Secunia Security Advisory 51528
Posted Dec 11, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for gimp. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.

tags | advisory
systems | linux, ubuntu
SHA-256 | ad433011e6aab8270fc8e6389c0bedf3ffdff632805b3a670ef5e4fb8cbc74b5
Fwknop Port Knocking Utility 2.0.4
Posted Dec 11, 2012
Authored by Michael Rash | Site cipherdyne.org

fwknop implements an authorization scheme that requires only a single encrypted packet to communicate various pieces of information, including desired access through a Netfilter policy and/or specific commands to execute on the target system. The main application of this program is to protect services such as SSH with an additional layer of security in order to make the exploitation of vulnerabilities much more difficult. The authorization server works by passively monitoring authorization packets via libpcap.

Changes: On the server side, this release adds a chain_exists() check to SPA rule creation so that if any of the fwknop chains are deleted out from under fwknopd, they will be recreated on the fly. It adds new SPA packet fuzzing capability to the test suite to assist in validation of SPA operations. It adds upstart config for systems running the upstart daemon. An OpenBSD ndbm/gdbm usage bugfix. ICMP type/code client command line arguments have been added for when SPA packets are sent over ICMP.
tags | tool, scanner, vulnerability
systems | unix
SHA-256 | e6a88e969264ff23bd5837a47e5b60b8c4d36fc8a2326c6b377f8447ecf2adea
Snare For Linux Password Disclosure
Posted Dec 11, 2012
Authored by Andrew Brooks

Snare for Linux ships with a web interface that can be used for viewing log data and configuring the agent. In the web interface at /remote, a user is able to set a password for remote configuration of the agent. The rendered page contains the field "RemotePassword" with its input type set to password which masks the password in the interface, however this is purely aesthetic. By inspecting the page source and examining the RemotePassword field, it is possible to retrieve the MD5 hash of the current password. Versions prior to 1.7.0 are affected.

tags | advisory, remote, web, info disclosure
systems | linux
advisories | CVE-2011-5247
SHA-256 | cc018c1484894edb98027c4723ebd35f2a2e6b1cbc86beb51f1ce05213c941c0
Smartphone Pentest Framework 0.1.3 / 0.1.4 Command Injection
Posted Dec 11, 2012
Authored by High-Tech Bridge SA | Site htbridge.com

Smartphone Pentest Framework (SPF) versions 0.1.3 and 0.1.4 suffer from an OS command injection vulnerability.

tags | exploit
advisories | CVE-2012-5878
SHA-256 | 906c7eea1fe12f12b9b25999c7595434ecd7575528a011fedfc47fad23b37053
Page 1 of 2
Back12Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close