what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 15 of 15 RSS Feed

Files Date: 2016-09-16

ZooKeeper 3.4.8 / 3.5.2 Buffer Overflow
Posted Sep 16, 2016
Authored by Lyon Yang

ZooKeeper versions 3.4.0 through 3.4.8 and 3.5.0 through 3.5.2 suffer from a buffer overflow vulnerability. This affects the ZooKeeper C client shells cli_st and cli_mt.

tags | advisory, overflow, shell
advisories | CVE-2016-5017
SHA-256 | dac1578f028d29ce343ed0fd6cce66eb90707710c6358e7134caa196a1cc54b6
Slackware Security Advisory - curl Updates
Posted Sep 16, 2016
Authored by Slackware Security Team | Site slackware.com

Slackware Security Advisory - New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue.

tags | advisory
systems | linux, slackware
advisories | CVE-2016-7167
SHA-256 | 17ab5bcec57a40add161eafd30fb8c99ec9160c22309af0adc7b46c7723807d7
Red Hat Security Advisory 2016-1905-01
Posted Sep 16, 2016
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2016-1905-01 - Chromium is an open-source web browser, powered by WebKit. This update upgrades Chromium to version 53.0.2785.113. Security Fix: Multiple flaws were found in the processing of malformed web content. A web page containing malicious content could cause Chromium to crash, execute arbitrary code, or disclose sensitive information when visited by the victim.

tags | advisory, web, arbitrary
systems | linux, redhat
advisories | CVE-2016-5170, CVE-2016-5171, CVE-2016-5172, CVE-2016-5173, CVE-2016-5174, CVE-2016-5175
SHA-256 | 0de4dbd636bf8199b04092466d1f4e3c34d8b6f6cd8688d066ccb681573ded47
Debian Security Advisory 3669-1
Posted Sep 16, 2016
Authored by Debian | Site debian.org

Debian Linux Security Advisory 3669-1 - Dawid Golunski of LegalHackers discovered that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation.

tags | advisory, local
systems | linux, debian
advisories | CVE-2016-1240
SHA-256 | 206d6b75119861b8a83da66629ef1f00284e5a30f11fb052bc9a1f4f46863523
Oxwall 1.8.0 Build 9900 Cross Site Scripting / Open Redirect
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

Oxwall version 1.8.0 build 9900 suffers from cross site scripting and open redirection vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | a4c32ba0454c27f760c02f058d4510e06c897d4884125228df497819f6da4eec
MyBB 1.8.6 Data Validation
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

MyBB version 1.8.6 suffers from improper validation of data passed to eval allowing for the disclosure of the database password.

tags | exploit
SHA-256 | 3d6c1ec3482077a352cb0a1a11260b9058bbaaeece23cc1c48d42e8cd4fedab7
MyBB 1.8.6 SQL Injection
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

MyBB version 1.8.6 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 578a8a6a42f1e722099b1d3ca87e3226ef2457eef8e1c59405a504c20e3f5b73
MyBB 1.8.6 Cross Site Request Forgery / Weak Hashing
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

MyBB version 1.8.6 suffers from a cross site request forgery vulnerability. Additionally, it stores passwords using weak hashing and sends password in clear text via email.

tags | exploit, csrf
SHA-256 | 351e86f1c83bf425eb67931e6cb7d4733f09eb3e132c0c56808dd7f55ec4eb09
Kajona 4.7 Cross Site Scripting / Directory Traversal
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

Kajona version 4.7 suffers from cross site scripting and directory traversal vulnerabilities.

tags | exploit, vulnerability, xss, file inclusion
SHA-256 | ed67e0114d9c33fdd1a3636f58d44dd22b21cc8994dda5e7185b29e8a676784c
Peel Shopping 8.0.2 Object Injection
Posted Sep 16, 2016
Authored by Tim Coen | Site curesec.com

Peel Shopping version 8.0.2 suffers from an object injection vulnerability.

tags | exploit
SHA-256 | f8e546fb1b2fb0fa264d9960e43b71446e3c9db90f144f95349ceefefa2e21d7
Cisco ASA EXTRABACON Improved Shellcode
Posted Sep 16, 2016
Authored by Sean Dillon

69 bytes small Cisco ASA authentication bypass (EXTRABACON) better shellcode.

tags | shellcode
systems | cisco
SHA-256 | 52d60da7cead5faec24d4586ff3dc647622de7386e5e131d3f21e84ea31b0773
Cisco ASA 9.2(3) EXTRABACON Module / Authentication Bypass
Posted Sep 16, 2016
Authored by Sean Dillon, Zachary Harding

This is an additional EXTRABACON module for Cisco ASA version 9.2(3). This does not use the same shellcode as the Equation Group version, but accomplishes the same task of disabling the auth functions in less stages/bytes.

tags | exploit, shellcode, bypass
systems | cisco
SHA-256 | b48c246e5c9d0e2536c96945fc13c72466f5ca13beb249ed401f73eedaf53ac4
MP3 Cutter 1.1.0 Registration Bypass
Posted Sep 16, 2016
Authored by ZwX

MP3 Cutter version 1.1.0 suffers from a registration bypass flaw.

tags | exploit, bypass
SHA-256 | 99ca49468c2b0873ac3f4c1a3263cc0c733ad1d60e29c4f2cd85be483c4ee3c9
AnoBBS 1.0.1 Remote File Inclusion
Posted Sep 16, 2016
Authored by bd0rk

AnoBBS version 1.0.1 suffers from a remote file inclusion vulnerability.

tags | exploit, remote, code execution, file inclusion
SHA-256 | 4c11842d58ef08fa53b6dad979d774aeaffbe2f8389350ae85d0e91ea4ec6dd6
BINOM3 Power Meter CSRF / XSS / Credential Management
Posted Sep 16, 2016
Authored by Karn Ganeshen

BINOM3 power meter suffers from cross site request forgery, weak credential management, information leakage, and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | da90f0253119dee9efcf642299ab65df9fc9b9a14cd008de6f27108d78d99c7c
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close