what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 107 RSS Feed

Files Date: 2008-12-09 to 2008-12-10

Zero Day Initiative Advisory 08-082
Posted Dec 9, 2008
Authored by Tipping Point | Site zerodayinitiative.com

A vulnerability allows attackers to execute arbitrary code on vulnerable installations of BMC PatrolAgent. Authentication is not required to exploit this vulnerability. The specific flaw exists due to a format string handling error during log message writing. Supplying an invalid version number containing format string tokens to a vulnerable target on TCP port 3181 triggers an exploitable format string vulnerability which can result in arbitrary code execution.

tags | advisory, arbitrary, tcp, code execution
SHA-256 | 50a024ee379bd4d4b653015b171b320e160575d9344f28669885a9d75e113f28
Safe Mode Bypass
Posted Dec 9, 2008
Authored by Milen Rangelov

Yet another way to bypass PHP safe_mode.

tags | exploit, php, bypass
SHA-256 | e10423c9951a5db273b47ada045c6c7123c3150fa042997c5a07552152324afe
Google Gears Cross Origin Communication Model
Posted Dec 9, 2008
Authored by Yair Amit

Write up discussing the breaking of Google Gears' cross origin communication model.

tags | advisory
SHA-256 | 42c449424322d157ce506a8ff66a83abe0194f2dc1ba8d911cb1133691c3df2a
Aruba Networks Security Advisory - 12808
Posted Dec 9, 2008
Site arubanetworks.com

Aruba Networks Security Advisory - A denial of service vulnerability was discovered during standard bug reporting procedures in the Aruba Mobility Controller. A malformed EAP frame causes a process crash on the Aruba Mobility Controller causing a temporary denial of service condition for new clients configured to use EAP authentication. Prior successful security association is not required to cause this condition.

tags | advisory, denial of service
SHA-256 | 8a0d6e47b01396e94c7ae30e0ae5c5e6d22569e79a5505e39f1ccd696214662c
KomodiaLSP.zip
Posted Dec 9, 2008
Authored by Barak Weichselbaum | Site komodia.com

A repacked version of the Microsoft free LSP sample and Komodia's LSP guide. LSP is a technology that allows to intercepts all commands between an application and winsock (ws2_32.dll) thus allowing to log all network data, modify network commands and even change inbound/outbound data.

SHA-256 | 81611dc7f5df31f6a81a16b210dd6e7c50a416dba613435dcb07ff3e7326d6bd
Denial Of Service Attacks On MIME-Capable Software
Posted Dec 9, 2008
Authored by Bernhard Brehm | Site recurity-labs.com

Write up discussing denial of service attacks on MIME-capable software via complex MIME emails.

tags | paper, denial of service
SHA-256 | 53bd10bad899d06e8cd5862e270f0daa6438c3d83e9db951ef28550f67c14c2c
XOOPS 2.3.1/2.3.2a Cross Site Scripting
Posted Dec 9, 2008
Authored by Digital Security Research Group | Site dsecrg.com

XOOPS versions 2.3.1 and 2.3.2a suffer from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 534f8f6aef7f2108ae837a182e4ce5048655e00d91deb8c48ef9603fc0d3a2d3
XOOPS 2.3.1 Local File Inclusions
Posted Dec 9, 2008
Authored by Digital Security Research Group | Site dsecrg.com

XOOPS version 2.3.1 suffers from multiple local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
SHA-256 | 54b099c150b887ab86caa338b11cff18f3adad66ee42ba0782d9a29563b137f5
Multiple Anti-Virus Bypass Vulnerability
Posted Dec 9, 2008
Authored by DATA_SNIPER

Multiple Anti-Virus vendors suffer from a malicious webpage detection bypass vulnerability.

tags | advisory, virus, bypass
SHA-256 | f9dfa7e4d1f5008192bc17bb6b43ec0be0a51b5cc1e9623349686dfec0b9b2c1
HP Security Bulletin 2007-14.81
Posted Dec 9, 2008
Authored by Hewlett Packard | Site hp.com

HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Reporter and HP Reporter running on Windows. The vulnerability could be exploited remotely to create a Denial of Service (DoS).

tags | advisory, denial of service
systems | windows
advisories | CVE-2007-4349
SHA-256 | dd0e8331e23e78f9bf1b14b2588919532dc0118888dc6e0e7552c0f43ac4738b
HP Security Bulletin 2007-14.81
Posted Dec 9, 2008
Authored by Hewlett Packard | Site hp.com

HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Performance Agent and HP Performance Agent. The vulnerability could be exploited remotely to create a Denial of Service (DoS).

tags | advisory, denial of service
advisories | CVE-2007-4349
SHA-256 | dd16be0b227e1a5a6d31ffd458a4aef324c95f1c334ed72b85456a8bafbe0643
Face Recognition Authentication Fail
Posted Dec 9, 2008
Authored by SVRT | Site security.bkis.vn

The face recognition authentication mechanism in Lenovo, Asus, and Toshiba laptops suffers from a bypass vulnerability.

tags | advisory, bypass
SHA-256 | af4826555c3f1216ccef140a9ee97e90f1bd689835fef766d6a4543d535d16b8
WebCAF 1.4 Local File Inclusion / Code Execution
Posted Dec 9, 2008
Authored by dun

WebCAF versions 1.4 and below suffer from local file inclusion and remote code execution vulnerabilities.

tags | exploit, remote, local, vulnerability, code execution, file inclusion
SHA-256 | 02714586ceb58b2d7c6fce2533f3b0e5069e55a7fadd16fb69a1e1e8c2488041
phpBB 3 / Mod Tag Board 4 Blind SQL Injection
Posted Dec 9, 2008
Authored by StAkeR

phpBB version 3 (Mod Tag Board versions 4 and below) remote blind SQL injection exploit.

tags | exploit, remote, sql injection
SHA-256 | f334f10b3869bf5cac4e41127f0afd51cf50004bfbde08a40689507077503878
Debian Linux Security Advisory 1683-1
Posted Dec 9, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1683-1 - Multiple buffer overflows involving HTTP header and playlist parsing have been discovered in streamripper.

tags | advisory, web, overflow
systems | linux, debian
advisories | CVE-2007-4337, CVE-2008-4829
SHA-256 | e31c37741d4c87bf8e0d7f90072b7d60e9bea91960d307dee4674120e5a311cc
PHPepperShop 1.4 Cross Site Scripting
Posted Dec 9, 2008
Authored by Michael Brooks | Site rooksecurity.com

PHPepperShop version 1.4 suffers from four reflective cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 59d7d0c55a6e204217214485974834d11f9822f2250e9ffc6eb282478cf6ebb7
PrestaShop 1.1.0.3 Cross Site Scripting
Posted Dec 9, 2008
Authored by Michael Brooks | Site rooksecurity.com

PrestaShop version 1.1.0.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 54da5e1958764afe41b5ce67562353b39442f87ef11574611cc5b569e748c4f9
Google Analytics Stored Cross Site Scripting
Posted Dec 9, 2008
Authored by Roberto Suggi Liverani | Site security-assessment.com

Google Analytics suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 0a209401c10f1b5d544652d1f5d9cd721d1de9c2fe2cc9d09f5c228d23a3831f
3CX 6.0.806.0 XSS / Disclosure / Denial of Service
Posted Dec 9, 2008
Authored by Chris Castaldo

3CX version 6.0.806.0 suffers from session hijacking, cross site scripting, information disclosure, and denial of service vulnerabilities.

tags | advisory, denial of service, vulnerability, xss, info disclosure
SHA-256 | e041e74be469043bab5b9dcb42d39ea35a71d8850d91ceff171f6749c54515a3
ezscheduler Database Disclosure
Posted Dec 9, 2008
Authored by Pouya Server

ezscheduler suffers from a remote database disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | 34af5d552f4da002070f4c9dd974dec79feaa5217d83bfbe3d1c9e2e05b84178
ezpoll Database Disclosure
Posted Dec 9, 2008
Authored by Pouya Server

ezpoll suffers from a remote database disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | 658001395285c7d01776f6c5b3696fa37b2549c7a468085dc7f0981f0a80e4a2
eznewsletter Database Disclosures
Posted Dec 9, 2008
Authored by Pouya Server

eznewsletter suffers from multiple remote database disclosure vulnerabilities.

tags | exploit, remote, vulnerability, info disclosure
SHA-256 | 4c196053bad64eac438ed52014e279882aebcc33e5fd46fa75633f7c5002a477
ezhomepagepro Database Disclosures
Posted Dec 9, 2008
Authored by Pouya Server

ezhomepagepro suffers from multiple remote database disclosure vulnerabilities.

tags | exploit, remote, vulnerability, info disclosure
SHA-256 | 073f0a0a73fbb29d659f20bc062136b2597432e99af8d6c0bd7f962b93f7cf1d
ezguestbook Database Disclosure
Posted Dec 9, 2008
Authored by Pouya Server

ezguestbook suffers from a remote database disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | 84aff7a133693ded9a7dd0be59b40e6d86093d61190fedce6e13212f304ddb12
Secure Downloads 2.0.0r SQL Injection
Posted Dec 9, 2008
Authored by Cn4phux

Secure Download version 2.0.0r for vBulletin suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 5635f83d5140df3514730ee273c03e6462d47c2b5d377363aa364dff173d40e2
Page 3 of 5
Back12345Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    16 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close