exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 137 RSS Feed

Files Date: 2008-12-30 to 2008-12-31

Wordpress Page Flip Image Gallery 0.2.2 File Disclosure
Posted Dec 30, 2008
Authored by GolD_M | Site tryag.cc

The Wordpress Page Flip Image Gallery plugin versions 0.2.2 and below suffer from a remote file disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | 283261ff7da9ea8859483cb7af3007b56b40dadff53197dce81539c8d4a75463
Mozilla Firefox 3.0.5 Crash Exploit
Posted Dec 30, 2008
Authored by Jeremy Brown | Site jbrownsec.blogspot.com

Mozilla Firefox version 3.0.5 location.hash remote crash exploit.

tags | exploit, remote
SHA-256 | eebb83ab5074c9afe2b57616ec84944c9695df373c957e4d44dbbfc493853029
FreeSSHd 1.2.1 Multiple Overflows
Posted Dec 30, 2008
Authored by r0ut3r

FreeSSHd version 1.2.1 suffers from multiple remote stack overflow vulnerabilities. Proof of concept denial of service code included.

tags | exploit, remote, denial of service, overflow, vulnerability, proof of concept
SHA-256 | e1b2ce0109abe0bae36698e0f978538eaa5a35f9027ffd213a79b0eb0fe9f0ef
CoolPlayer 2.19 Local Buffer Overflow Exploit
Posted Dec 30, 2008
Authored by r0ut3r

CoolPlayer version 2.19 local buffer overflow exploit that spawns calc.exe.

tags | exploit, overflow, local
SHA-256 | 6a326e08914670dd6afbe441fc15378710139422b2dd25185d144997be8f65b0
Debian Linux Security Advisory 1691-1
Posted Dec 30, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1691-1 - Several remote vulnerabilities have been discovered in Moodle, an online course management system. The following issues are addressed in this update, ranging from cross site scripting to remote code execution.

tags | advisory, remote, vulnerability, code execution, xss
systems | linux, debian
advisories | CVE-2007-3555, CVE-2008-1502, CVE-2008-3325, CVE-2008-3326, CVE-2008-4796, CVE-2008-4810, CVE-2008-4811, CVE-2008-5432
SHA-256 | 157ae4c1f93c80363f5da2039e5008842435f365223797ef677fa7894c54dcf7
Debian Linux Security Advisory 1690-1
Posted Dec 30, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1690-1 - Two denial of service conditions were discovered in avahi, a Multicast DNS implementation.

tags | advisory, denial of service
systems | linux, debian
advisories | CVE-2007-3372, CVE-2008-5081
SHA-256 | ef1a5df07104978bb17173fe99f506005c7a6bbe6cf093b6fdec41e6a73983b8
Text Lines Rearrange Script File Disclosure
Posted Dec 30, 2008
Authored by SirGod | Site insecurity.ro

Text Lines Rearrange Script suffers from a remote file disclosure vulnerability in download.php.

tags | exploit, remote, php, info disclosure
SHA-256 | c59e98d22160dd351c9c1933f211f6afc7e57ca40eddfd103573f93141b93dcf
PHP Autorooter Script
Posted Dec 30, 2008
Authored by Rohit Bansal

PHP Autorooter that encodes exploits in Base64 and then decodes them and compiles them with gcc.

tags | exploit, php
SHA-256 | dad858b67667d67dc91c0c6bb8aa6779134347d2029f21d5bec096a6b7bcf35d
Joomla Top Hotel Module SQL Injection
Posted Dec 30, 2008
Authored by boom3rang | Site khq-crew.ws

The Joomla Top Hotel Module version 1.0 suffers from a blind SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | 6f22ebc140137da819b0f286f48bf924d93ac16b393af93f8b83ab53fb137ef4
Joomla HBS Search Component SQL Injection
Posted Dec 30, 2008
Authored by boom3rang | Site khq-crew.ws

The Joomla HBS Search component version 1.0 suffers from a blind SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | 1cae474c508258abb31cb78738cba027c919fc77e9e9f1fba431d2eeb086d03f
Gentoo Linux Security Advisory 200812-20
Posted Dec 30, 2008
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200812-20 - Multiple vulnerabilities have been discovered in phpCollab allowing for remote injection of shell commands, PHP code and SQL statements. Versions less than or equal to 2.5_rc3 are affected.

tags | advisory, remote, shell, php, vulnerability
systems | linux, gentoo
advisories | CVE-2006-1495, CVE-2008-4303, CVE-2008-4304, CVE-2008-4305
SHA-256 | b64c3015b2c58dad5271775cfc8ac2573f3bd171282bd8f6f9014bacea41ac41
Secunia Trend Micro HouseCall Vulnerability
Posted Dec 30, 2008
Authored by Alin Rad Pop | Site secunia.com

Secunia Research has discovered a vulnerability in Trend Micro HouseCall, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by a use-after-free error in the HouseCall ActiveX control (Housecall_ActiveX.dll). This can be exploited to dereference previously freed memory by tricking the user into opening a web page containing a specially crafted "notifyOnLoadNative()" callback function. Successful exploitation allows execution of arbitrary code. Trend Micro HouseCall ActiveX Control versions 6.51.0.1028 and 6.6.0.1278 are affected.

tags | advisory, web, arbitrary, activex
advisories | CVE-2008-2435
SHA-256 | f7d4170d51380b50b3229bbdfbfd97b6500d5154c69263a2bc8fd599516ec324
PHP mbstring Buffer Overflow
Posted Dec 30, 2008
Authored by Moriyoshi Koizumi

PHP versions 5.2.7 and below suffer from a mbstring buffer overflow vulnerability.

tags | advisory, overflow, php
advisories | CVE-2008-5557
SHA-256 | 37409b5b7371a744b1320cc0009af571db7064e7ad18669697f3b62fd7f1c554
IP-Array IPTables Firewall Script
Posted Dec 30, 2008
Authored by AllKind | Site sourceforge.net

IP-Array is a Linux iptables Firewall script written in bash. It allows the creation of precise, stateful rules, while remaining easy to configure. IP-Array supports VPN, Traffic Shaping (creation of custom HTB and SFQ qdiscs, Classes, and Filters), multiple external interfaces, multiple LANs, multiple DMZs, NAT, logging, MAC address matching, packet marking, syslog logging, and various sysctl settings. It also includes some presets and autoconfig options for common needs like DNS, FTP, SMTP.

Changes: A couple minor bug fixes.
tags | bash
systems | linux, unix
SHA-256 | f1e7a41179e6ca09832589705d422c58693e434faa931221bf9f2ea7591f2e6d
ReVou Twitter Clone File Upload
Posted Dec 30, 2008
Authored by S.W.A.T. | Site xmors.com

ReVou Twitter Clone suffers from a remote file upload vulnerability.

tags | exploit, remote, file upload
SHA-256 | 5152b6d6335829c4eb7ba31b927b895cc19e93ebaca56d742e33a6c630d157e2
BLOG 1.55B File Upload
Posted Dec 30, 2008
Authored by Piker

BLOG version 1.55B suffers from an arbitrary file upload vulnerability in image_upload.php.

tags | exploit, arbitrary, php, file upload
SHA-256 | 5166ee1e4ac3e08f3590cd372cfd2494601485705b85e26ea50cac54d8acf269
Emefa Guestbook 3.0 Database Disclosure
Posted Dec 30, 2008
Authored by Cyber.Zer0

Emefa Guestbook version 3.0 suffers from a remote database disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | dcb6f7303bb98a8da64202ec2bc3c5f103bef1bba28dded2b9f006bc537c6f8c
PHPg 1.6 XSS / Path Disclosure / Denial Of Service
Posted Dec 30, 2008
Authored by Anarchy Angel | Site hha.zapto.org

PHPg version 1.6 suffers from cross site scripting, path disclosure, and denial of service vulnerabilities.

tags | exploit, denial of service, vulnerability, xss, info disclosure
SHA-256 | 2266199981966fdd6ce2f1888616d9b1eec12414c6f09f4033e757ec091640e3
Userlocator 3.0 Blind SQL Injection Exploit
Posted Dec 30, 2008
Authored by katharsis | Site katharsis.x2.to

Userlocator version 3.0 remote blind SQL injection exploit.

tags | exploit, remote, sql injection
SHA-256 | d598c900988e96844d8ce2942d0abeafffbcfcbb2581cef2b7a9fbe00e1431d5
Debian Linux Security Advisory 1689-1
Posted Dec 30, 2008
Authored by Debian | Site debian.org

Debian Security Advisory DSA 1689-1 - Maksymilian Arciemowicz of securityreason.com reported that ProFTPD is vulnerable to cross-site request forgery (CSRF) attacks and executes arbitrary FTP commands via a long ftp:// URI that leverages an existing session from the FTP client implementation in a web browser.

tags | advisory, web, arbitrary, csrf
systems | linux, debian
advisories | CVE-2008-4242
SHA-256 | 0de29b8fab2fefaeabb052720b162b9a757b181550eb52d0a9b16f8641460152
Debian Linux Security Advisory 1678-2
Posted Dec 30, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1678-2 - The perl update in DSA-1678-1 contains a regression which is triggered by some Perl scripts which have changed into the directory tree removed by File::Path::rmtree. In particular, this happens if File::Temp::tempdir is used. This new update corrects this regression.

tags | advisory, perl
systems | linux, debian
advisories | CVE-2008-5302, CVE-2008-5303
SHA-256 | 7a6ee91b53e6aa6c99a93729bd44c00a32faf2e6b49baa69e2c88266c1e40521
Debian Linux Security Advisory 1688-1
Posted Dec 30, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1688 - Two SQL injection vulnerabilities have beein found in courier-authlib, the courier authentification library. The MySQL database interface used insufficient escaping mechanisms when constructing SQL statements, leading to SQL injection vulnerabilities if certain charsets are used (CVE-2008-2380). A similar issue affects the PostgreSQL database interface (CVE-2008-2667).

tags | advisory, vulnerability, sql injection
systems | linux, debian
advisories | CVE-2008-2380, CVE-2008-2667
SHA-256 | 9dc7b0b9ca92f9e1f59c4c6542e5d806f993baedd0e6072fa1262af0d44fbd0d
chicomas 2.0.4 XSS / Database Disclosure
Posted Dec 30, 2008
Authored by AmnPardaz Security Research Team | Site bugreport.ir

chicomas versions 2.0.4 and below suffer from cross site scripting and database disclosure vulnerabilities.

tags | exploit, vulnerability, xss, info disclosure
SHA-256 | 1b8f18a6119696049fa61d70058a2a3e5bd969f4ce3c9ad0e262db1258a56d73
Cain And Abel 4.9.25 Denial Of Service
Posted Dec 30, 2008
Authored by Glafkos Charalambous, George Nicolaou | Site astalavista.com

Cain and Abel versions 4.9.25 and below suffer from a denial of service condition.

tags | exploit, denial of service
SHA-256 | cc0f2c00adaa4b10e6aab7f5ebb814d51f23ec4edc068c91330fa64c88fce7a0
PHP APC 3.1.1 And 3.0.19 Cross Site Scripting
Posted Dec 30, 2008
Authored by Moritz Naumann

PHP APC versions 3.1.1, 3.0.19, and probably earlier releases all suffer from a cross site scripting vulnerability.

tags | exploit, php, xss
SHA-256 | c66690481d643d9fbf46653f31c83ab29640eb3464a300d6fe92f7230590d5d5
Page 3 of 6
Back12345Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close