Twenty Year Anniversary
Showing 1 - 15 of 15 RSS Feed

Files Date: 2018-02-14

Dell EMC Isilon OneFS XSS / Code Execution / CSRF
Posted Feb 14, 2018
Authored by Core Security Technologies, Ivan Huertas, Maximiliano Vidal | Site coresecurity.com

Dell EMC Isilon OneFS suffers from code execution, cross site request forgery, and cross site scripting vulnerabilities.

tags | exploit, vulnerability, code execution, xss, csrf
advisories | CVE-2018-1186, CVE-2018-1187, CVE-2018-1188, CVE-2018-1189, CVE-2018-1201, CVE-2018-1202, CVE-2018-1203, CVE-2018-1204, CVE-2018-1213
MD5 | 035ddfcb8a7d024e325b9f233a3d9bcf
Debian Security Advisory 4113-1
Posted Feb 14, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4113-1 - Two vulnerabilities were discovered in the libraries of the Vorbis audio compression codec, which could result in denial of service or the execution of arbitrary code if a malformed media file is processed.

tags | advisory, denial of service, arbitrary, vulnerability
systems | linux, debian
advisories | CVE-2017-14632, CVE-2017-14633
MD5 | 3e78b5f22d8d879f4bbbb3a2bdf5e149
Red Hat Security Advisory 2018-0319-01
Posted Feb 14, 2018
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2018-0319-01 - Red Hat JBoss Fuse, based on Apache ServiceMix, provides a small-footprint, flexible, open source enterprise service bus and integration platform. Red Hat JBoss A-MQ, based on Apache ActiveMQ, is a standards compliant messaging system that is tailored for use in mission critical applications. This patch is an update to Red Hat JBoss Fuse 6.3 and Red Hat JBoss A-MQ 6.3. It includes bug fixes and enhancements, which are documented in the readme.txt file included with the patch files. Multiple security issues have been addressed.

tags | advisory
systems | linux, redhat
advisories | CVE-2017-12633, CVE-2017-12634, CVE-2017-2617, CVE-2017-5662, CVE-2017-8028
MD5 | b2f483230b527a8d46bf780efb668c75
Ubuntu Security Notice USN-3572-1
Posted Feb 14, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3572-1 - It was discovered that FreeType incorrectly handled certain files. An attacker could possibly use this to cause a denial of service.

tags | advisory, denial of service
systems | linux, ubuntu
advisories | CVE-2018-6942
MD5 | 91f73d44fcf28541ea13c58d020e8c86
Debian Security Advisory 4112-1
Posted Feb 14, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4112-1 - Multiple vulnerabilities have been discovered in the Xen hypervisor.

tags | advisory, vulnerability
systems | linux, debian
advisories | CVE-2017-17563, CVE-2017-17564, CVE-2017-17565, CVE-2017-17566
MD5 | 227a4e95c43bc1ebc4f9762fff3d1f24
NAT32 Build 22284 Remote Command Execution / CSRF
Posted Feb 14, 2018
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org

NAT32 build 22284 suffers from code execution and cross site request forgery vulnerabilities.

tags | exploit, vulnerability, code execution, csrf
advisories | CVE-2018-6941
MD5 | 49c0a8a084c7998bc4e286750e176f76
TypeSetter CMS 5.1 Cross Site Request Forgery
Posted Feb 14, 2018
Authored by Navina Asrani

TypeSetter CMS version 5.1 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
advisories | CVE-2018-6888
MD5 | c3781a44eff5184539eb3e3e64a5512f
Ubuntu Security Notice USN-3571-1
Posted Feb 14, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3571-1 - It was discovered that the Erlang FTP module incorrectly handled certain CRLF sequences. A remote attacker could possibly use this issue to inject arbitrary FTP commands. This issue only affected Ubuntu 14.04 LTS. It was discovered that Erlang incorrectly checked CBC padding bytes. A remote attacker could possibly use this issue to perform a padding oracle attack and decrypt traffic. This issue only affected Ubuntu 14.04 LTS. Various other issues were also addressed.

tags | advisory, remote, arbitrary
systems | linux, ubuntu
advisories | CVE-2014-1693, CVE-2015-2774, CVE-2016-10253, CVE-2017-1000385
MD5 | 48078f291ae5b42550e24c0643b482f1
NAT32 Build 22284 Remote Command Execution
Posted Feb 14, 2018
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org

NAT32 Build 22284 suffers from a remote command execution vulnerability.

tags | exploit, remote
advisories | CVE-2018-6940
MD5 | d782ad11ffc709c5a0e961ea5e585448
WordPress UltimateMember 2.0 Cross Site Scripting
Posted Feb 14, 2018
Authored by Aloyce J. Makalanga

WordPress UltimateMember plugin version 2.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2018-6944, CVE-2018-6943
MD5 | ad31bc4c93b7bee1d023747d80c17ee9
Ubuntu Security Notice USN-3570-1
Posted Feb 14, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3570-1 - Joonun Jang discovered that AdvanceCOMP incorrectly handled certain malformed zip files. If a user or automated system were tricked into processing a specially crafted zip file, a remote attacker could cause AdvanceCOMP to crash, resulting in a denial of service, or possibly execute arbitrary code.

tags | advisory, remote, denial of service, arbitrary
systems | linux, ubuntu
advisories | CVE-2018-1056
MD5 | de3a12a7ac229f31e97ba122d3de7796
userSpice 4.3 Cross Site Scripting
Posted Feb 14, 2018
Authored by Dolev Farhi

userSpice version 4.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | d5da674ca1fb9724ff316f704c021b3a
SOA School Management Remote SQL Injection
Posted Feb 14, 2018
Authored by Borna Nematzadeh

SOA School Management suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | a9a4654f5a03838a5ddc5cf5ccbf9410
Social Oauth Login PHP SQL Injection
Posted Feb 14, 2018
Authored by Borna Nematzadeh

Social Oauth Login PHP suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, php, sql injection
MD5 | 50c6d42d491cdd52647e23330f7ba0bf
GNU binutils 2.26.1 Integer Overflow
Posted Feb 14, 2018
Authored by r4xis

GNU binutils version 2.26.1 suffers from an integer overflow vulnerability.

tags | exploit, overflow
advisories | CVE-2018-6323
MD5 | 86e073dd65878eceaa6cd4bdecdc45cf
Page 1 of 1
Back1Next

File Archive:

September 2018

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    1 Files
  • 2
    Sep 2nd
    3 Files
  • 3
    Sep 3rd
    15 Files
  • 4
    Sep 4th
    15 Files
  • 5
    Sep 5th
    18 Files
  • 6
    Sep 6th
    18 Files
  • 7
    Sep 7th
    15 Files
  • 8
    Sep 8th
    2 Files
  • 9
    Sep 9th
    2 Files
  • 10
    Sep 10th
    16 Files
  • 11
    Sep 11th
    17 Files
  • 12
    Sep 12th
    15 Files
  • 13
    Sep 13th
    29 Files
  • 14
    Sep 14th
    21 Files
  • 15
    Sep 15th
    3 Files
  • 16
    Sep 16th
    1 Files
  • 17
    Sep 17th
    15 Files
  • 18
    Sep 18th
    16 Files
  • 19
    Sep 19th
    13 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2018 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close