what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 15 of 15 RSS Feed

Files Date: 2016-09-16

ZooKeeper 3.4.8 / 3.5.2 Buffer Overflow
Posted Sep 16, 2016
Authored by Lyon Yang

ZooKeeper versions 3.4.0 through 3.4.8 and 3.5.0 through 3.5.2 suffer from a buffer overflow vulnerability. This affects the ZooKeeper C client shells cli_st and cli_mt.

tags | advisory, overflow, shell
advisories | CVE-2016-5017
SHA-256 | dac1578f028d29ce343ed0fd6cce66eb90707710c6358e7134caa196a1cc54b6
Slackware Security Advisory - curl Updates
Posted Sep 16, 2016
Authored by Slackware Security Team | Site slackware.com

Slackware Security Advisory - New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue.

tags | advisory
systems | linux, slackware
advisories | CVE-2016-7167
SHA-256 | 17ab5bcec57a40add161eafd30fb8c99ec9160c22309af0adc7b46c7723807d7
Red Hat Security Advisory 2016-1905-01
Posted Sep 16, 2016
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2016-1905-01 - Chromium is an open-source web browser, powered by WebKit. This update upgrades Chromium to version 53.0.2785.113. Security Fix: Multiple flaws were found in the processing of malformed web content. A web page containing malicious content could cause Chromium to crash, execute arbitrary code, or disclose sensitive information when visited by the victim.

tags | advisory, web, arbitrary
systems | linux, redhat
advisories | CVE-2016-5170, CVE-2016-5171, CVE-2016-5172, CVE-2016-5173, CVE-2016-5174, CVE-2016-5175
SHA-256 | 0de4dbd636bf8199b04092466d1f4e3c34d8b6f6cd8688d066ccb681573ded47
Debian Security Advisory 3669-1
Posted Sep 16, 2016
Authored by Debian | Site debian.org

Debian Linux Security Advisory 3669-1 - Dawid Golunski of LegalHackers discovered that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation.

tags | advisory, local
systems | linux, debian
advisories | CVE-2016-1240
SHA-256 | 206d6b75119861b8a83da66629ef1f00284e5a30f11fb052bc9a1f4f46863523
Oxwall 1.8.0 Build 9900 Cross Site Scripting / Open Redirect
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

Oxwall version 1.8.0 build 9900 suffers from cross site scripting and open redirection vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | a4c32ba0454c27f760c02f058d4510e06c897d4884125228df497819f6da4eec
MyBB 1.8.6 Data Validation
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

MyBB version 1.8.6 suffers from improper validation of data passed to eval allowing for the disclosure of the database password.

tags | exploit
SHA-256 | 3d6c1ec3482077a352cb0a1a11260b9058bbaaeece23cc1c48d42e8cd4fedab7
MyBB 1.8.6 SQL Injection
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

MyBB version 1.8.6 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 578a8a6a42f1e722099b1d3ca87e3226ef2457eef8e1c59405a504c20e3f5b73
MyBB 1.8.6 Cross Site Request Forgery / Weak Hashing
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

MyBB version 1.8.6 suffers from a cross site request forgery vulnerability. Additionally, it stores passwords using weak hashing and sends password in clear text via email.

tags | exploit, csrf
SHA-256 | 351e86f1c83bf425eb67931e6cb7d4733f09eb3e132c0c56808dd7f55ec4eb09
Kajona 4.7 Cross Site Scripting / Directory Traversal
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

Kajona version 4.7 suffers from cross site scripting and directory traversal vulnerabilities.

tags | exploit, vulnerability, xss, file inclusion
SHA-256 | ed67e0114d9c33fdd1a3636f58d44dd22b21cc8994dda5e7185b29e8a676784c
Peel Shopping 8.0.2 Object Injection
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

Peel Shopping version 8.0.2 suffers from an object injection vulnerability.

tags | exploit
SHA-256 | f8e546fb1b2fb0fa264d9960e43b71446e3c9db90f144f95349ceefefa2e21d7
Cisco ASA EXTRABACON Improved Shellcode
Posted Sep 16, 2016
Authored by Sean Dillon

69 bytes small Cisco ASA authentication bypass (EXTRABACON) better shellcode.

tags | shellcode
systems | cisco
SHA-256 | 52d60da7cead5faec24d4586ff3dc647622de7386e5e131d3f21e84ea31b0773
Cisco ASA 9.2(3) EXTRABACON Module / Authentication Bypass
Posted Sep 16, 2016
Authored by Sean Dillon, Zachary Harding

This is an additional EXTRABACON module for Cisco ASA version 9.2(3). This does not use the same shellcode as the Equation Group version, but accomplishes the same task of disabling the auth functions in less stages/bytes.

tags | exploit, shellcode, bypass
systems | cisco
SHA-256 | b48c246e5c9d0e2536c96945fc13c72466f5ca13beb249ed401f73eedaf53ac4
MP3 Cutter 1.1.0 Registration Bypass
Posted Sep 16, 2016
Authored by ZwX

MP3 Cutter version 1.1.0 suffers from a registration bypass flaw.

tags | exploit, bypass
SHA-256 | 99ca49468c2b0873ac3f4c1a3263cc0c733ad1d60e29c4f2cd85be483c4ee3c9
AnoBBS 1.0.1 Remote File Inclusion
Posted Sep 16, 2016
Authored by bd0rk

AnoBBS version 1.0.1 suffers from a remote file inclusion vulnerability.

tags | exploit, remote, code execution, file inclusion
SHA-256 | 4c11842d58ef08fa53b6dad979d774aeaffbe2f8389350ae85d0e91ea4ec6dd6
BINOM3 Power Meter CSRF / XSS / Credential Management
Posted Sep 16, 2016
Authored by Karn Ganeshen

BINOM3 power meter suffers from cross site request forgery, weak credential management, information leakage, and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | da90f0253119dee9efcf642299ab65df9fc9b9a14cd008de6f27108d78d99c7c
Page 1 of 1
Back1Next

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    0 Files
  • 9
    Sep 9th
    0 Files
  • 10
    Sep 10th
    0 Files
  • 11
    Sep 11th
    0 Files
  • 12
    Sep 12th
    0 Files
  • 13
    Sep 13th
    0 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    0 Files
  • 17
    Sep 17th
    0 Files
  • 18
    Sep 18th
    0 Files
  • 19
    Sep 19th
    0 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close