exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 132 RSS Feed

Files Date: 2007-03-20 to 2007-03-21

MOPB-array.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP versions 4.4.6 and below and versions 5.2.1 and below array_user_key_compare() ZVAL dtor local exploit.

tags | exploit, local, php
SHA-256 | 7951ffcb0d45030446a844d98707fec746f3d86a0f267daa38deeb816d14b6c3
MOPB-session.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP versions 5.2.1 and below session_regenerate_id() double free exploit.

tags | exploit, php
SHA-256 | fc557aadfbec5b0451270b714f5328ff862f73abe0aec6178a0cd749635df5a6
MOPB-rejected.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP version 5.2.0 and 5.2.1 rejected session ID double free exploit.

tags | exploit, php
SHA-256 | 63677ca8ee5a23a258092873b9ca58ce40aaf13e64de9b74d8aa13e5eb4c7cf6
MOPB-extfilter.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP version 5.2.0 ext/filter space trimming buffer underflow exploit for Mac OSX.

tags | exploit, php
systems | apple
SHA-256 | 2021590ddfd8b9a92e44b435ed7b810d0ddd652bf3d5d9ddb9e2c67b57e44995
MOPB-fdf.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP versions 5.2.0 and below ext/filter FDF post filter bypass exploit.

tags | exploit, php
SHA-256 | 2f4ac341948a2d6e42c0596dd2f9dcde20aab419cda5462546a951c2de441966
MOPB-pecl.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP 5.2.0 / PHP with PECL ZIP versions 1.8.3 and below zip:// URL wrapper buffer overflow exploit.

tags | exploit, overflow, php
SHA-256 | 9ab5f10c9a1c3b4db58904a3dd9e3c4edcb9934eec090d4da92ea41c9a5831cb
MOPB-substr.txt
Posted Mar 20, 2007
Authored by Stefan Esser | Site hardened-php.net

Month of PHP Bugs - PHP versions 5.2.1 and below substr_compare() information leak exploit.

tags | exploit, php
SHA-256 | 13745c954f00bdb48fb1188def122aa897683e1d76714bd699ea886c5890b4e8
netvios-sql.txt
Posted Mar 20, 2007
Authored by parad0x

NetVios Portal suffers from a remote SQL injection vulnerability in page.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | a5548c79556aef60c3b5a324104b1fb1fc196d041fee78142f8018a9e52e534b
minerva-sql.txt
Posted Mar 20, 2007
Authored by XORON

phpBB Minerva Mod versions 2.0.21 and below suffer from a SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | 5a8e3b8630181a6ae857d50b7f522437f344ff1395c2a291514f066e5bcd3252
phpnukesplat-lfi.txt
Posted Mar 20, 2007
Authored by GolD_M

PHP-Nuke Module splattforum version 4.0 RC1 local file inclusion exploit.

tags | exploit, local, php, file inclusion
SHA-256 | e1b2f9a3df41f2dc8ecf2bd4f579cf4d551dd185857310373b700b9dc391e84a
metaforum-upload.txt
Posted Mar 20, 2007
Authored by Gu1ll4um3r0m41n

MetaForum versions 0.513_beta and below remote file upload exploit.

tags | exploit, remote, file upload
SHA-256 | 37d3cb5144bb58c1a899e17619c20bd4944a257b1af50941ea8d173382944a4f
scriptmagix-sql.txt
Posted Mar 20, 2007
Authored by ajann

ScriptMagix Lyrics versions 2.0 and below index.php SQL injection exploit.

tags | exploit, php, sql injection
SHA-256 | 3b659304cb068d0b27f3a9127d2153498f97d4f98855fb6c2aa72d605bdcb1e3
katalog-sql.txt
Posted Mar 20, 2007
Authored by Kacper | Site rahim.webd.pl

Katalog Plyt Audio versions 1.0 and below remote SQL injection exploit.

tags | exploit, remote, sql injection
SHA-256 | ffd2c013a7dd3ed84e2d84685dff237de4dd82bde832cc699965b0fcb55e706b
ie7-phish.txt
Posted Mar 20, 2007
Authored by Aviv Raff | Site aviv.raffon.net

Internet Explorer 7.0 is vulnerable to cross-site scripting in one of its local resources. In combination with a design flaw in this specific local resource it is possible for an attacker to easily conduct phishing attacks against IE7 users.

tags | advisory, local, xss
SHA-256 | b2b26c80e92ddc7107b42af7cd66181fbbf55544a6b52617ee681dde95781999
wsnguest-sql.txt
Posted Mar 20, 2007
Authored by UniquE-Key

WSN Guest version 1.2.1 Comments.PHP SQL injection exploit.

tags | exploit, php, sql injection
SHA-256 | 30c43a23b32a4382a4f997fb9623d8d4f48a03e13f0061263142ee03733bb253
iDEFENSE Security Advisory 2007-03-14.1
Posted Mar 20, 2007
Authored by iDefense Labs | Site idefense.com

iDefense Security Advisory 03.14.07 - Remote exploitation of a divide by zero error in Trend Micro AntiVirus may allow attackers to cause a denial of service. The vulnerability exists in the kernel driver, VsapiNT.sys. This driver is responsible for scanning various file formats for malicious content. The code that parses UPX files takes an integer value from an attacker supplied file and uses it as a divisor. This results in a divide by zero error in kernel mode. This causes a kernel fault resulting in a blue screen of death (BSOD). iDefense has confirmed the existence of this vulnerability in Trend Micro AntiVirus version 14.10.1041, engine version 8.320.1003. Previous versions may also be affected.

tags | advisory, remote, denial of service, kernel
SHA-256 | e71e229da9c2d9659bd65c2398587b06e024b67717615b38e8e15a4c3c405bc7
minigzip.txt
Posted Mar 20, 2007
Authored by starcadi

Python version 2.5 (Modules/zlib) minigzip suffers from a local buffer overflow vulnerability.

tags | advisory, overflow, local, python
SHA-256 | b62dbc673cfedfa9fab36789398d6e364615e34b436dfe6a268135ce36fc208f
SA-20070314-0.txt
Posted Mar 20, 2007
Authored by D. Matscheko | Site sec-consult.com

SEC Consult Security Advisory 20070314-0 - If the Apache HTTP Server and Tomcat are configured to interoperate with the common proxy modules (mod_proxy, mod_rewrite, mod_jk), an attacker might be able to break out of the intended destination path up to the webroot in Tomcat.

tags | exploit, web
advisories | CVE-2007-0450
SHA-256 | ae0accd7dd41279f8531f981d7995776526f842a5d6e404b34ae2a7019a86a97
Tenshi Log Monitoring Program
Posted Mar 20, 2007
Authored by Andrea Barisani | Site dev.inversepath.com

Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.

Changes: fifo option can be specified multiple times, logfile and fifo mode can be simultaneous, added sort_order option, added listen option for syslog server mode, see Changelog for full details.
tags | system logging
systems | unix
SHA-256 | 7c47d86205354a3ef578815482374f7bab3450b2bea08621dcbde639bfda768d
Gentoo Linux Security Advisory 200703-12
Posted Mar 20, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200703-12 - Frank Benkstein discovered a possible NULL pointer dereference in apps/silcd/command.c if a new channel is created without specifying a valid hmac or cipher algorithm name. Versions less than 1.0.2-r1 are affected.

tags | advisory
systems | linux, gentoo
SHA-256 | 4a930d9bb639ddf1913f5162ada3ed189a110cd8a744da858d55a99a513b79c2
n.runs-SA-2007.006.txt
Posted Mar 20, 2007
Authored by Alexios Fakos | Site nruns.com

PHProjekt version 5.2.0 suffers from a privilege escalation vulnerability.

tags | advisory
SHA-256 | d0eb6dcd238466f8bf02343caec6f02edb744728d2bc4c2e508a7480db337ddc
n.runs-SA-2007.005.txt
Posted Mar 20, 2007
Authored by Alexios Fakos | Site nruns.com

PHProjekt version 5.2.0 suffers from a cross site request forgery vulnerability.

tags | advisory, csrf
SHA-256 | cf169ff516ecb37f27edb69c002fd063faf696d3add01baf063759d1e46d5b37
n.runs-SA-2007.004.txt
Posted Mar 20, 2007
Authored by Alexios Fakos | Site nruns.com

PHProjekt version 5.2.0 suffers from cross site scripting and filter evasion vulnerabilities.

tags | advisory, vulnerability, xss
SHA-256 | 2aa0a61eb00ffdfcd305ae3b72f1e7744df2d56d283d55a0fa6bb630096ffbd8
n.runs-SA-2007.003.txt
Posted Mar 20, 2007
Authored by Alexios Fakos | Site nruns.com

PHProjekt version 5.2.0 suffers from a SQL injection vulnerability.

tags | advisory, sql injection
SHA-256 | a09402b443c16796539cd108dd61aedcdcd438ccc160783d39617bb171dd08f5
ris-xss.txt
Posted Mar 20, 2007
Authored by Florian Stinglmayr

The RIS web application used to browse Austrian laws is susceptible to cross site scripting attacks.

tags | exploit, web, xss
SHA-256 | e56763b9c203ee649468a448d77a205237b07aba23504e7466e39f66cf1cbeb0
Page 4 of 6
Back23456Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    16 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close