what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 92 RSS Feed

Files Date: 2005-07-07 to 2005-07-08

php2016.txt
Posted Jul 7, 2005
Authored by pigrelax

A cross site scripting bug exists in phpBB 2.0.16.

tags | exploit, xss
SHA-256 | df2d7e5c9a2e12f4c7d1163c9b83c906b93e8f7598c2b9a5923bbc30341a93d3
Exploit Labs Security Advisory 2005.11
Posted Jul 7, 2005
Authored by Donnie Werner, Exploit Labs

QuickBlogger version 1.4 and below is susceptible to a cross site scripting attack.

tags | advisory, xss
SHA-256 | ff3e82e8c502f427c05bcddb61b4a211c3bbd510fcae82f3c5f0ed4868c38b20
Gentoo Linux Security Advisory 200507-5
Posted Jul 7, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200507-05 - Tavis Ormandy of the Gentoo Linux Security Audit Team discovered a buffer overflow in zlib. A bounds checking operation failed to take invalid data into account, allowing a specifically malformed deflate data stream to overrun a buffer. Versions less than 1.2.2-r1 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2005-2096
SHA-256 | 63f68356a58d88284addd99b7f7714f60f275a5674597e8a3ec1dd09f4e6c7de
Gentoo Linux Security Advisory 200507-4
Posted Jul 7, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200507-04 - RealPlayer is vulnerable to a heap overflow when opening RealMedia files which make use of RealText. Versions less than 10.0.5 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2005-1766
SHA-256 | 7c674545a056f76a86c928708d7359a84077536fd75e8d56a65241ea7da03b36
ekg.insecure.txt
Posted Jul 7, 2005
Authored by Eric Romang

ekg versions 2005-06-05 and below suffer from a temporary file creation vulnerability that can lead to arbitrary code execution.

tags | advisory, arbitrary, code execution
advisories | CVE-2005-1916
SHA-256 | f3e3068a5e4291be5395ccfdd515de3b42a8eb9539016b6057bb6f8c1704c6ca
imail.cookie.txt
Posted Jul 7, 2005
Authored by Sintigan

IMail appears to store the password for an account in clear text in cookies issued.

tags | exploit
SHA-256 | d8338cb4182c4ec4004a9f4df0e8293a7cf7f66851e05a3791e62ac6888ec34f
Debian Linux Security Advisory 734-1
Posted Jul 7, 2005
Authored by Debian | Site security.debian.org

Debian Security Advisory DSA 734-1 - Two denial of service problems have been discovered in Gaim, a multi-protocol instant messaging client.

tags | advisory, denial of service, protocol
systems | linux, debian
advisories | CVE-2005-1269, CVE-2005-1934
SHA-256 | f0912041f297f3512a414df1b46808b71bcea8fe37cefeebea9cf83b55fd3c80
druppy461.pl.txt
Posted Jul 7, 2005
Authored by Alejandro Ramos

Exploit that makes use of a PHP injection vulnerability in Drupal.

tags | exploit, php
SHA-256 | 2950393b3baea1845cb16347e03ac6cafb03d7e51cd06e0ae9094e105086337a
kpopper10.txt
Posted Jul 7, 2005
Authored by Eric Romang | Site zataz.net

kpopper versions 1.0 and below suffer from an insecure temporary file creation vulnerability. Exploit included.

tags | exploit
SHA-256 | 5e595cc68818ef185cddc15d72da4f21886c1d6c97c53cf9a675490f90ec37d9
geeklog1311SQL.txt
Posted Jul 7, 2005
Authored by Stefan Esser

Geeklog versions 1.3.11 and below suffer from a SQL injection vulnerability.

tags | advisory, sql injection
SHA-256 | a7ca782761e0a409376d36cda0394ae4d439ee0ee330b8036371ab950806d143
aspjarSQL.txt
Posted Jul 7, 2005
Authored by Arash Setayeshi

ASPJar is susceptible to a SQL injection attack via the password variable when logging in.

tags | exploit, sql injection
SHA-256 | 1744371333b6a39c3ec78bf9e9876bae660ef924c69ad6618eacd2abfd0e2f2c
ldap.txt
Posted Jul 7, 2005
Authored by Rob Holland

pam_ldap/nss_ldap fail to re-start TLS when following referred connections. This can result in credentials being sent in clear text when pam_ldap/nss_ldap attempt to rebind.

tags | advisory
SHA-256 | 1db5cbc54ba4644e91c2b2907322e4a9a27bfa0dd7dfca936d22f23a82360a6f
Debian Linux Security Advisory 725-2
Posted Jul 7, 2005
Authored by Debian | Site security.debian.org

Debian Security Advisory DSA 725-1 - Jens Steube discovered that ppxp, yet another PPP program, does not release root privileges when opening potentially user supplied log files. This can be tricked into opening a root shell.

tags | advisory, shell, root
systems | linux, debian
advisories | CVE-2005-0392
SHA-256 | 49aa3aade8c068810ebb48865f06b64d93429832060adee89ddb3a60867fd38a
dosPlanet.txt
Posted Jul 7, 2005
Authored by fRoGGz, SecuBox Labs

PlanetFileServer version 2.0.1.3 is susceptible to a denial of service attack that causes the server to crash. Exploit provided.

tags | exploit, denial of service
SHA-256 | 068ea01417f9ad0e399b81ab3b7a9174755e126167c392076abf1ecdd89fe778
Gentoo Linux Security Advisory 200507-3
Posted Jul 7, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200507-03 - Ron van Daal discovered that phpBB contains a vulnerability in the highlighting code. Versions less than 2.0.16 are affected.

tags | advisory
systems | linux, gentoo
SHA-256 | b22899b77e65063d3709e981c44dc253e3c40e6b706c50b7a77d3c8af576a631
Gentoo Linux Security Advisory 200507-2
Posted Jul 7, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200507-02 - James Bercegay of the GulfTech Security Research Team discovered that WordPress insufficiently checks data passed to the XML-RPC server. He also discovered that WordPress has several cross-site scripting and full path disclosure vulnerabilities. Versions less than 1.5.1.3 are affected.

tags | advisory, vulnerability, xss
systems | linux, gentoo
advisories | CVE-2005-1921
SHA-256 | 8ef3cc7830aa91d24d15b2d98e64f7bac2893ffe531033defa532c1d06a66f2a
phpsource.traverse.txt
Posted Jul 7, 2005
Authored by Seth Alan Woolley

The Quick and Dirty PHPSource Printer version 1.0 is susceptible to a directory traversal attack. Exploitation provided.

tags | exploit
SHA-256 | 061998888d86c014b05d9604aaf58f6d5469167eeef964535422a7b3559412ac
Gentoo Linux Security Advisory 200507-1
Posted Jul 7, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200507-01 - James Bercegay of GulfTech Security Research discovered that the PEAR XML-RPC and phpxmlrpc libraries fail to sanitize input sent using the POST method. Versions less than 1.3.1 are affected.

tags | advisory
systems | linux, gentoo
advisories | CVE-2005-1921
SHA-256 | 1ccfd7f91652298e66cd06e890e188a97d9b460fd9f05dfd6e4e738dc832354c
xmlrpcAnti.pl.txt
Posted Jul 7, 2005
Authored by dukenn | Site asteam.org

XMLRPC remote command execution exploit. Original flaw discovered by the people at gulftech.org.

tags | exploit, remote
SHA-256 | 39d8bc75dc5318a886472ee7b9bb3ea89521c077251144a4bbbe8d58658e66b7
jBPM20.txt
Posted Jul 7, 2005
Authored by Marc Schoenefeld | Site illegalaccess.org

JBoss jBPM suffers from a remote command execution flaw that allows a remote attacker to execute commands with the rights of the JBoss process.

tags | advisory, remote
SHA-256 | b6366cd9f0cc53fbd4d73248a7eb8dce5d3fc8b82e395db714cead860175645d
cactiSQL086e-bypass.txt
Posted Jul 7, 2005
Authored by Stefan Esser

Cacti versions 0.8.6e and below suffer from a bypass vulnerability.

tags | advisory, bypass
SHA-256 | 37222644fbba63cb60c1d66e20630458bb9114e3b3461b0895e9c3de90a9d540
cactiSQL086e-exec.txt
Posted Jul 7, 2005
Authored by Stefan Esser

Cacti versions 0.8.6e and below suffer from a remote command execution vulnerability.

tags | advisory, remote
SHA-256 | b0c145d8ac8ca565a651191f53e65514cc46cb9bc24d1a177b8add989ab8cac3
cactiSQL086e-sql.txt
Posted Jul 7, 2005
Authored by Stefan Esser

Cacti versions 0.8.6e and below suffer from multiple SQL injection vulnerabilities.

tags | advisory, vulnerability, sql injection
SHA-256 | e80c8ae4856a741ff26de5874481b3d65512de972f859e5a63a3007a466db410
idm405.txt
Posted Jul 7, 2005
Authored by c0d3r | Site ihsteam.com

Internet Download Manager input URL stack overflow exploit that affects versions 4.05 and below.

tags | exploit, overflow
SHA-256 | 69cedfa56b55c0d8992f4038aec6c79f950fdc527f2a789e566bc97ca8653b70
r57xoops.pl
Posted Jul 7, 2005
Authored by 1dt.w0lf | Site rst.void.ru

Remote SQL injection exploit for xmlrpc.php that makes use of Xoops versions 2.0.11 and below.

tags | exploit, remote, php, sql injection
SHA-256 | c36f110025d00ce54d8e5068a0152dc03a6eeafd8ffc0733614c5f661c7ebd39
Page 2 of 4
Back1234Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close