exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 34 RSS Feed

Files Date: 2018-11-12

TufinOS 2.1.7 Build 1193 XML Injection
Posted Nov 12, 2018
Authored by Konstantinos Alexiou

TufinOS version 2.1.7 build 1193 suffers from an XML external entity injection vulnerability.

tags | exploit
SHA-256 | c7eeef472d3bbfb7e0cff63da1db6a06e9fc92d0a0ec3d9dd0bfd2873b6827ed
The Don 1.0.1 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

The Don version 1.0.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 1d1494778da165c4b9a148b3615719dbc3282fdbeeaee7dd316ae96fe28cc140
Mongoose Web Server 6.9 Denial Of Service
Posted Nov 12, 2018
Authored by Ihsan Sencan

Mongoose Web Server version 6.9 suffers from a denial of service vulnerability.

tags | exploit, web, denial of service
SHA-256 | e45658200f5068eded6224ec801cec877a7a224ea4e2f19abcd89c03616df4f3
Nominas 0.27 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

Nominas version 0.27 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 376720567b7c44de373543d1c782b268d56bb48f268bf55dea8d49939ba989ac
ServerZilla 1.0 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

ServerZilla version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | f3839e00581f55496a933aa7c29a55a457bee23a07303a6a728f37c893d75a9f
GPS Tracking System 2.12 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

GPS Tracking System version 2.12 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | dc194ed60e3bb0d6eaa8b18c8f8f0fd9c96f384b3dab205cf6d12230d7173f29
Easyndexer 1.0 Cross Site Request Forgery
Posted Nov 12, 2018
Authored by Ihsan Sencan

Easyndexer version 1.0 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 96f34f12369fac69cb444e427236030edde2d58b8b6beedd2dcdd9bd16687bb7
Facturation System 1.0 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

Facturation System version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 3cdf0faf7481c867bad479761586b3942fe292cb46659a92d0e64a9fa3db07ff
Paroiciel 11.20 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

Paroiciel version 11.20 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 4b02a8dde9bf0672f183aad781b6b53cd0bc37d13d293d8b563773a33010a1f0
Data Center Audit 2.6.2 SQL Injection
Posted Nov 12, 2018
Authored by Ihsan Sencan

Data Center Audit version 2.6.2 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 1645f9276057bda544a0f41edc8a90c560d3cf503ecfc30f2fbe6a158aadb222
RSA BSAFE Micro Edition Suite Key Management Error
Posted Nov 12, 2018
Site emc.com

RSA BSAFE Micro Edition Suite contains a fix for a key management error that could potentially be exploited by malicious users to compromise the affected system. RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and RSA BSAFE Micro Edition Suite versions prior to 4.1.6.2 (in 4.1.x series) are affected.

tags | advisory
advisories | CVE-2018-15769
SHA-256 | 3bcc2385506fa16473eee2660104e7f01f75597a74eb7193c69cf3658ddcad5a
WordPress PeepSo 1.11.2 Cross Site Scripting
Posted Nov 12, 2018
Authored by Socket_0x03

WordPress PeepSo plugin version 1.11.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | fd396ea5cc643099b2a7e2146c355fb3cbd14cd378133457ac2b8ff48080971a
WordPress PeepSo 1.11.2 SQL Injection
Posted Nov 12, 2018
Authored by Socket_0x03

WordPress PeepSo plugin version 1.11.2 suffers from a remote time-based SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | e6e7852e37e4cd29533835ebebdfea41c71e6c6c5ac4503ea3e6af9dfebdbf0f
WordPress WP User Manager 2.0.8 SQL Injection
Posted Nov 12, 2018
Authored by Socket_0x03

WordPress WP User Manager plugin version 2.0.8 suffers from a remote time-based SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 09c23ff80957e450be1722413ea7534476cf28145410ff2f592276861c1cd148
Dell EMC RecoverPoint Information Disclosure / Resource Consumption
Posted Nov 12, 2018
Authored by Paul Taylor | Site emc.com

Dell EMC RecoverPoint versions prior to 5.1.2.1 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an information disclosure vulnerability. A malicious boxmgmt user may potentially be able to determine the existence of any system file via Boxmgmt CLI. Dell EMC RecoverPoint versions prior to 5.1.2.1 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an uncontrolled resource consumption vulnerability. A malicious boxmgmt user may potentially be able to consume large amount of CPU bandwidth to make the system slow or to determine the existence of any system file via Boxmgmt CLI.

tags | advisory, info disclosure
advisories | CVE-2018-15771, CVE-2018-15772
SHA-256 | e033638c4387c53924eca9defee5afa2635afbe441c616a88fc88e39c7913e06
Vignette Content Management 6 Security Bypass
Posted Nov 12, 2018
Authored by Rafael Pedrero

Vignette Content Management version 6 suffers from a security bypass vulnerability.

tags | exploit, bypass
advisories | CVE-2018-18941
SHA-256 | fd1ae2120358fff81ac05ff978e1aa1744f9e464da869787a0055a45b821c60a
Netscape Enterprise 3.63 Cross Site Scripting
Posted Nov 12, 2018
Authored by Rafael Pedrero

Netscape Enterprise 3.63 suffers from a cross site scripting vulnerability in the default SnoopServlet servlet.

tags | exploit, xss
advisories | CVE-2018-18940
SHA-256 | 240fb459afdf1b383373a804901b3b5bf2e8c87801249c4cb6b143cbf98c500f
Advanced Comment System 1.0 SQL Injection
Posted Nov 12, 2018
Authored by Rafael Pedrero

Advanced Comment System version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2018-18619
SHA-256 | 4c5eb4935fe38a42d581db86d6efd601cb6dbf7233275a8bee0d4616b5561957
Ubuntu Security Notice USN-3815-2
Posted Nov 12, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3815-2 - USN-3815-1 fixed a vulnerability in gettext. This update provides the corresponding update for Ubuntu 12.04 ESM. It was discovered that gettext incorrectly handled certain messages. An attacker could possibly use this issue to execute arbitrary code.

tags | advisory, arbitrary
systems | linux, ubuntu
advisories | CVE-2018-18751
SHA-256 | 82b936d06f2749f9e3a0b08222a00ca6ba906e2e01948a9a37eb2b3ed0ce7ec8
Ubuntu Security Notice USN-3815-1
Posted Nov 12, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3815-1 - It was discovered that gettext incorrectly handled certain messages. An attacker could possibly use this issue to execute arbitrary code.

tags | advisory, arbitrary
systems | linux, ubuntu
advisories | CVE-2018-18751
SHA-256 | 53c639d38978fc1528e860e9ae62a9a034cc20f8e5c245d39467b0a84ac9a528
Ubuntu Security Notice USN-3814-1
Posted Nov 12, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3814-1 - It was discovered libmspack incorrectly handled certain malformed CAB files. A remote attacker could use this issue to cause libmspack to crash, resulting in a denial of service.

tags | advisory, remote, denial of service
systems | linux, ubuntu
advisories | CVE-2018-18584
SHA-256 | ccd8731c4b0c6092a969f4a05f50913cdf8dd6ae71758985ee23300a3bd11ae4
Red Hat Security Advisory 2018-3541-01
Posted Nov 12, 2018
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2018-3541-01 - Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection. Issues addressed include a code execution vulnerability.

tags | advisory, code execution
systems | linux, redhat
advisories | CVE-2018-17456
SHA-256 | 971f68d30a084edf1e61ac699ef1e8cba4ac26e04f2fd4aa6e63c7aace6475dd
Debian Security Advisory 4338-1
Posted Nov 12, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4338-1 - Integer overflows in the processing of packets in network cards emulated by QEMU, a fast processor emulator, could result in denial of service.

tags | advisory, denial of service, overflow
systems | linux, debian
advisories | CVE-2018-10839, CVE-2018-17962, CVE-2018-17963
SHA-256 | 3ee919b5ecb75492da066ae2c408500b9f95c2ae0828d39c6915d853e0f6a2af
Debian Security Advisory 4337-1
Posted Nov 12, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4337-1 - safety errors may lead to the execution of arbitrary code or denial of service.

tags | advisory, denial of service, arbitrary
systems | linux, debian
advisories | CVE-2018-12389, CVE-2018-12390, CVE-2018-12392, CVE-2018-12393
SHA-256 | 56f49906d85fb598d72fe1dc02adfdda82ac9c2203999f47baa5ef2b0ca4cdc2
Debian Security Advisory 4336-1
Posted Nov 12, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4336-1 - Several vulnerabilities were discovered in Ghostscript, the GPL PostScript/PDF interpreter, which may result in denial of service, disclosure of existence and size of arbitrary files, or the execution of arbitrary code if a malformed Postscript file is processed (despite the dSAFER sandbox being enabled).

tags | advisory, denial of service, arbitrary, vulnerability
systems | linux, debian
advisories | CVE-2018-11645, CVE-2018-17961, CVE-2018-18073, CVE-2018-18284
SHA-256 | 7e05b4b5b1f00eff8bded029cb3e5ca4e7b8b42b276d38f2c46ed503799239a9
Page 1 of 2
Back12Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close