exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 17 of 17 RSS Feed

Files Date: 2024-09-02

Packet Storm New Exploits For August, 2024
Posted Sep 2, 2024
Authored by Todd J. | Site packetstormsecurity.com

This archive contains all of the 722 exploits added to Packet Storm in August, 2024. Please note the increase in size for this month is due to a massive backlog of older exploits being added to the archive and is not representative of an uptick in new issues being discovered.

tags | exploit
SHA-256 | 134571b730367a368bd78e19cc2729522241ac88f947a572cd37314d9f37a24f
libpcap 1.10.5
Posted Sep 2, 2024
Site tcpdump.org

Libpcap is a portable packet capture library which is used in many packet sniffers, including tcpdump.

Changes: This libpcap release has fifteen changes to the source code, one to thread safety, four to packet filtering, nine to Linux, five to Solaris, three to macOS, eleven to Haiku, three to Windows, one to BSD, macOS, AIX, Solaris 11, Linux, one to AirPcap, two to nflog, and many other updates.
tags | library
advisories | CVE-2023-7256, CVE-2024-8006
SHA-256 | 84fa89ac6d303028c1c5b754abff77224f45eca0a94eb1a34ff0aa9ceece3925
tcpdump 4.99.5
Posted Sep 2, 2024
Site tcpdump.org

tcpdump allows you to dump the traffic on a network. It can be used to print out the headers and/or contents of packets on a network interface that matches a given expression. You can use this tool to track down network problems, to detect many attacks, or to monitor the network activities.

Changes: This tcpdump release has refined protocol decoding for 41 items, added 6 changes to the user interface, 17 source code changes including a fix to a memory leak, and many more updates.
tags | tool, sniffer
advisories | CVE-2024-2397
SHA-256 | d76395ab82d659d526291b013eee200201380930793531515abfc6e77b4f2ee5
Debian Security Advisory 5762-1
Posted Sep 2, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5762-1 - The WebKitGTK web engine suffers from multiple vulnerabilities. An anonymous researcher discovered that processing maliciously crafted web content may lead to an unexpected process crash. Huang Xilin discovered that processing maliciously crafted web content may lead to an unexpected process crash. Huang Xilin discovered that processing maliciously crafted web content may lead to an unexpected process crash. More issues are listed in this advisory.

tags | advisory, web, vulnerability
systems | linux, debian
advisories | CVE-2024-40776, CVE-2024-40779, CVE-2024-40780, CVE-2024-40782, CVE-2024-40785, CVE-2024-40789, CVE-2024-40794, CVE-2024-4558
SHA-256 | 84334a31b07991491b6bf97b8a6dd18f35a882dd2e58fa59b968cb5797f2b082
IntelliNet 2.0 Remote Root
Posted Sep 2, 2024
Authored by Jean Pereira

Zero day remote root exploit for IntelliNet version 2.0. It affects multiple devices of AES Corp and Siemens. The exploit provides a remote shell and escalates your permissions to full root permissions by abusing exec_suid. No authentication needed at all, neither any interaction from the victim. The firmware affected by this exploit runs on fire alarms, burglar sensors and environmental devices, all on the internet, all vulnerable, no patch. Full control over hardware and software with no restrictions, you can manipulate battery voltage and even damage the hardware with unknown outcomes.

tags | exploit, remote, shell, root
SHA-256 | 03f6a27dff52d1325441a14044dae92e43735378844d284aa4a56aa28a72abe1
Ubuntu Security Notice USN-6982-1
Posted Sep 2, 2024
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 6982-1 - It was discovered that Dovecot did not not properly have restrictions on the size of address headers. A remote attacker could possibly use this issue to cause denial of service.

tags | advisory, remote, denial of service
systems | linux, ubuntu
advisories | CVE-2024-23184
SHA-256 | f1dfff19271634129f0be2bcb6219e23156e32d9b9065bd7d6de18b555f5a24e
Online Musical Instrument Shop IN 1.0 Cross Site Scripting
Posted Sep 2, 2024
Authored by indoushka

Online Musical Instrument Shop IN version 1.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 2e3a9e009b49f67ad6f0534a437aba16431617d1d2588b6c4ed1087d4399d493
Online Job Portal IN 1.0 SQL Injection
Posted Sep 2, 2024
Authored by indoushka

Online Job Portal IN version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 92218ce274c20d93f28c9b743aacda84a68675963b3607d54c3484d9218e178e
Debian Security Advisory 5763-1
Posted Sep 2, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5763-1 - William Khem-Marquez discovered that Pymatgen, a Python library for materials analysis, could be tricked into running arbitrary code if a malformed CIF file is processed.

tags | advisory, arbitrary, python
systems | linux, debian
advisories | CVE-2024-23346
SHA-256 | bdcbd1c6000eda313c41cb0d5a73e82213383a8c9e63d571162a7f57daf4f021
pgAdmin 8.4 Code Execution
Posted Sep 2, 2024
Authored by indoushka

pgAdmin versions 8.4 and earlier are affected by a remote reverse connection execution vulnerability via the binary path validation API.

tags | exploit, remote
SHA-256 | 263e864f594c394a102efec26ea63661ce2ce5e3573fde482860fbce55467c71
SPIP 4.2.7 Code Execution
Posted Sep 2, 2024
Authored by indoushka

SPIP version 4.2.7 suffers from a code execution vulnerability.

tags | exploit, code execution
SHA-256 | 160ad4f3c2b9737ce719a722da0465d21060eaa5bdf0025e6c316b142389c830
Loan Management System 2024 1.0 Insecure Settings
Posted Sep 2, 2024
Authored by indoushka

Loan Management System 2024 version 1.0 suffers from an ignored default credential vulnerability.

tags | exploit
SHA-256 | 4e37e483991ec7b37ab54ed035920c62f7033979ca509714b26270c8fabb131b
Hostel Management System 1.0 Arbitrary File Upload
Posted Sep 2, 2024
Authored by indoushka

Hostel Management System version 1.0 version 1.0 suffers from an arbitrary file upload vulnerability.

tags | exploit, arbitrary, file upload
SHA-256 | 27f8218a09b1dbd02541ebb3a01b906007cc837ea1498cdeb2bc7e08eaf27619
File Management System 1.0 Cross Site Request Forgery
Posted Sep 2, 2024
Authored by indoushka

File Management System version 1.0 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 676936ef829ef1cf960e7f0060458d382b66a96385e77b8c68741ce295fe4400
Faculty Evaluation System 1.0 Cross Site Request Forgery
Posted Sep 2, 2024
Authored by indoushka

Faculty Evaluation System version 1.0 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 678ae6fb720616c66e425448002d1fbbb933f7132a46acc2939dc4fd7a87e909
eClass LMS 6.2.0 Shell Upload
Posted Sep 2, 2024
Authored by indoushka

eClass LMS version 6.2.0 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell
SHA-256 | c82e4b148e140d84b1e4d327bad2cf8efab60d29769cb3a98ec6f67d4da5538f
Free Hospital Management System For Small Practices 1.0 CSRF
Posted Sep 2, 2024
Authored by indoushka

Free Hospital Management System for Small Practices version 1.0 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 63c5e2192cb29a1865e229bd10036572dc2bf4101974aff1df01777f90b99bb9
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close