what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 100 RSS Feed

Files Date: 2006-04-19 to 2006-04-20

Avast-1.0.5.txt
Posted Apr 19, 2006
Authored by Julien Lanthea

Avast Linux antivirus versions 1.0.5, 1.0.5-1 creates a temporary directory in an insecure manner. POC included.

tags | advisory
systems | linux
SHA-256 | 3c0f40295482663d29e11d9feaa0018a2941b262c4da82fd946fc58f7bf2a7fe
ms-hosts.txt
Posted Apr 19, 2006
Authored by Dave Korn

The microsoft DNS resolver hardcodes many hostnames such as go.microsoft.com, msdn.microsoft.com, windowsupdate.com, etc preventing the use of a hosts file.

tags | advisory
SHA-256 | dd72fe4f29bdb774b9ac30c94fc93b5f066aac5c8e15499913337583e477a296
Zero Day Initiative Advisory 06-09
Posted Apr 19, 2006
Authored by Tipping Point | Site zerodayinitiative.com

ZDI-06-009: Mozilla Firefox Tag Parsing Code Execution Vulnerability This vulnerability allows attackers to execute arbitrary code on vulnerable installations of the Mozilla/Firefox web browser and Thunderbird e-mail client. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious e-mail.

tags | advisory, web, arbitrary, code execution
SHA-256 | eebf61747be88f6bb06ec2e9b02772b93cc01fdff10cfb4278f8f189b8ce5cf4
Zero Day Initiative Advisory 06-010
Posted Apr 19, 2006
Authored by Tipping Point | Site zerodayinitiative.com

ZDI-06-010: Mozilla Firefox CSS Letter-Spacing Heap Overflow Vulnerability This vulnerability allows attackers to execute arbitrary code on vulnerable installations of the Mozilla/Firefox web browser. User interaction is required to exploit this vulnerability in that the target must visit a malicious page.

tags | advisory, web, overflow, arbitrary
SHA-256 | 3dffd581edfc8fae969152567b30518fea2689321f01495d398bb82bc62ca003
Zero Day Initiative Advisory 06-08
Posted Apr 19, 2006
Authored by Tipping Point | Site zerodayinitiative.com

ZDI-06-008: Novell GroupWise Messenger Accept-Language Buffer Overflow - This vulnerability allows attackers to execute arbitrary code on vulnerable installations of the Novell GroupWise Messenger. Authentication is not required to exploit this vulnerability.

tags | advisory, overflow, arbitrary
SHA-256 | d220110f812525e744b48e805ca035f261d8c2171a383640c2722aeb2ecc0cb3
win-hlp.txt
Posted Apr 19, 2006
Authored by c0ntex | Site open-security.org

There is a heap based buffer overflow in the rendering engine of .hlp files in winhlp32.exe which will allow some attacker the possibility of modifying the internal structure of the process with a means to execute arbitrary and malicious code.

tags | advisory, overflow, arbitrary
SHA-256 | 261cc8c6cf2b5eda5136962d8d3719ae3cb6e8c675f3c02463a079710b8a439e
ms-fp-2.txt
Posted Apr 19, 2006
Authored by Argeniss - Information Security | Site argeniss.com

FrontPage Server Extensions 2002 (included in Windows Sever 2003 IIS 6.0 and available as a separate download for Windows 2000 and XP) has a web page /_vti_bin/_vti_adm/fpadmdll.dll that is used for administrative purposes. This web page is vulnerable to cross site scripting attacks allowing an attacker to run client-side script on behalf of an FPSE user. If the victim is an administrator, the attacker could take complete control of a Front Page Server Extensions 2002 server. POC exploit examples included.

tags | advisory, web, xss
systems | windows
SHA-256 | 481c7a945450e48e78979147b05693402a43777326aca41596449f2f82aa8a32
SA-20060413-0.txt
Posted Apr 19, 2006
Authored by Bernhard Mueller | Site sec-consult.com

SEC-CONSULT Security Advisory 20060413-0 title: Opera Browser versions less than or equal to 8.52 CSS Attribute Integer Wrap and buffer overflow

tags | advisory, overflow
SHA-256 | dcd897dcb4d39d9b5637377385db693ba270ea31b7ef988a7b4ecf1ccb586ecb
TalentSoft.txt
Posted Apr 19, 2006
Authored by Revnic Vasile

TalentSoft Web Shop v5.3.6 suffers from a full path disclosure vulnerability.

tags | advisory, web
SHA-256 | b881c2624800eaf65a9f178b16306489109beff4dec37a018f0277c8758f2ac0
HP Security Bulletin 2006-11.33
Posted Apr 19, 2006
Authored by Hewlett Packard | Site hp.com

HPSBUX02108 SSRT061133 rev.6 - HP-UX running Sendmail, Remote Execution of Arbitrary Code

tags | advisory, remote, arbitrary
systems | hpux
SHA-256 | edee9f025360955988e3327828e0873bff12a444fd795d59d40448f67276cb73
Secunia-Adobe.txt
Posted Apr 19, 2006
Site secunia.com

Secunia Advisory 13/04/2006 - Adobe Document Server for Reader Extensions Multiple Vulnerabilities

tags | advisory, vulnerability
SHA-256 | a3337d74ce3e7f7d86956b521ab2ed6bba9f699ed9207943d08bfdd241f2ce26
RevoBoard-v1.8.txt
Posted Apr 19, 2006
Authored by r0xes | Site criticalsecurity.net

Revoboard 1.8 suffers from XSS in its email tag obfuscation scheme.

tags | advisory
SHA-256 | 8a5564004fe46f56554910ffff51490c93f52913d7f7f8040e6bdd3487547fc9
Amaya9.4-2.txt
Posted Apr 19, 2006
Authored by Thomas Waldegger | Site morph3us.org

Amaya versions less than or equal to 9.4 suffer from a stack overflow which could possibly lead to exploitation.

tags | advisory, overflow
SHA-256 | ae3820c53be2a9e1e1cdc3e9b6e09e27dc1bab23c4d2ab449785ce289189c117
Amaya9.4.txt
Posted Apr 19, 2006
Authored by Thomas Waldegger | Site morph3us.org

Amaya versions less than or equal to 9.4 suffer from a stack overflow which could possible lead to exploitation.

tags | advisory, overflow
SHA-256 | 9c81d184b776ff7a36d6680e96aa4fcd16bd4672df6845f35d834947c33b1803
Firefox1.5.0.1.txt
Posted Apr 19, 2006
Authored by Thomas Waldegger | Site buha.info

It is possible to crash Mozilla Firefox versions less than or equal to 1.5.0.1 with specially crafted html.

tags | advisory
SHA-256 | 9b66ed0425305ba1de35c949f74d69123bc46eaf20310462e684a9616b6f430a
WD-SMPL.txt
Posted Apr 19, 2006
Authored by World Defacers TeaM | Site worlddefacers.de

SimpleBBS v1.1(posts.php) remote command execution exploit.

tags | exploit, remote, php
SHA-256 | 519694ffe2172eff175adf5451805147e0e86baa066d584b0682a8f2a577a444
PatroNetCMS.txt
Posted Apr 19, 2006
Authored by Shabgard Security Team | Site shabgard.org

PatroNet CMS suffers from XSS.

tags | advisory
SHA-256 | 87d958b5d80ef151a47a5ca2d5709d03e7537fbc67d361fc1b2cc93c2dcfac42
MSIE6.0SP2.txt
Posted Apr 19, 2006
Authored by Thomas Waldegger - BuHa-Security | Site buha.info

Multiple Vulnerabilities in MS IE 6.0 SP2: All of these bugs are located in 'mshtml.dll' and are caused by incorrect handling of specially crafted HTML documents. The severity of the first security issue (mshtml.dll#7d6d2db4) is low because it is a non-exploitable Null Pointer Dereference vulnerability and leads to DoS. The second (mshtml.dll#7d519030) and third (mshtml.dll#7d529d35) vulnerability are similar and the Microsoft Security Response Center rated them as critical because, on the face of it, they could produce an exploitable memory corruption.

tags | advisory, vulnerability
SHA-256 | a0c9d63ca315248d2da49f038f9ac3123946ce6116af766aef30807aac61330d
MyBB1.10-2.txt
Posted Apr 19, 2006
Authored by Shabgard Security Team | Site shabgard.org

Yet another XSS vulnerability in MyBB 1.10.

tags | advisory
SHA-256 | a8d657d167a911cd69cb631fc2930612e68820e6e0ea8f0e70852546c4ff6b9f
phpWebSite-2.txt
Posted Apr 19, 2006
Authored by SnIpEr_SA | Site phpwebsite.appstate.edu

phpWebSite versions less than and equal to 0.10.1 suffer from an SQL injection vulnerability in topics.php.

tags | advisory, php, sql injection
SHA-256 | 9c47dd1a237d5caacf6b515cfa27dc0dbb4a7f33d48d453528fa61644c5499f1
ms-fp.txt
Posted Apr 19, 2006
Authored by Argeniss

The FrontPage Server Extensions 2002 (included in Windows Sever 2003 IIS 6.0 and available as a separate download for Windows 2000 and XP) has a web page /_vti_bin/_vti_adm/fpadmdll.dll that is used for administrative purposes. This web page is vulnerable to cross site scripting attacks allowing an attacker to run client-side script on behalf of an FPSE user. If the victim is an administrator, the attacker could take complete control of a Front Page Server Extensions 2002 server.

tags | advisory, web, xss
systems | windows
SHA-256 | 9bed5d2ecd96d30a7fb28837f16eddf4efa80b59c02584519705acad729cc70d
VBulletinImpEx.txt
Posted Apr 19, 2006
Authored by Dr.Jr7

VBulletin ImpEx suffers from a remote file inclusion vulnerability. POC included.

tags | exploit, remote, file inclusion
SHA-256 | b07054bd9ae1cd16abbfe504240781c9f708d9ffb2b3676d95edbe5e8410c498
yahoo-fake.txt
Posted Apr 19, 2006
Site WwW.SpyMasterSnake.org

yahoo.com suffers from a XSS vulnerability which can be used to refresh to a fake mail account.

tags | advisory
SHA-256 | 376db64b79edf1edf71e519935c56ec6c5a6f1164928cb8d0844881d8eb538ea
HP-management.txt
Posted Apr 19, 2006
Authored by SRC Telindus

CompaqHTTPServer/9.9 and HP System Management

tags | advisory
SHA-256 | 4b1dab8814da47d54ea46f4645bed3644e6450a34f3eb537da81528a48ab4da8
Secunia Security Advisory 19641
Posted Apr 19, 2006
Authored by Secunia | Site secunia.com

Secunia Security Advisory - r0t has reported some vulnerabilities in ModernBill, which can be exploited by malicious users to conduct SQL injection attacks.

tags | advisory, vulnerability, sql injection
SHA-256 | 5f1220f07ff11e9b4c207d44d0860de6fbd91267b3514fa72a1c0f8156e654df
Page 2 of 4
Back1234Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close