what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 89 RSS Feed

Files Date: 2009-01-15 to 2009-01-16

NetSurf 1.2 width Integer Overflow Proof Of Concept
Posted Jan 15, 2009
Authored by Jeremy Brown | Site jbrownsec.blogspot.com

NetSurf version 1.2 width remote integer overflow proof of concept exploit.

tags | exploit, remote, overflow, proof of concept
SHA-256 | 1f38a66ba78f005f7670e9ba7ce59edab49a64c191fd1088fd5f21bfd16df1ee
NetSurf 1.2 hspace Integer Overflow Proof Of Concept
Posted Jan 15, 2009
Authored by Jeremy Brown | Site jbrownsec.blogspot.com

NetSurf version 1.2 hspace remote integer overflow proof of concept exploit.

tags | exploit, remote, overflow, proof of concept
SHA-256 | 975569aa5388a2a13c78de5c0cd649c6876628bc97c1e88f3864d2c02c3c7dab
Netsurf 1.2 Multiple Vulnerabilities
Posted Jan 15, 2009
Authored by Jeremy Brown | Site jbrownsec.blogspot.com

The NetSurf web browser version 1.2 suffers from integer overflows and memory leaks.

tags | advisory, web, overflow, memory leak
SHA-256 | 255be4475049790276b3f94b3ab54a4b1e0f80dad6dc21db35acfc31b63ebb0a
Gentoo Linux Security Advisory 200901-11
Posted Jan 15, 2009
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200901-11 - A Denial of Service vulnerability has been discovered in Avahi. Hugo Dias reported a failed assertion in the originates_from_local_legacy_unicast_socket() function in avahi-core/server.c when processing mDNS packets with a source port of 0. Versions less than 0.6.24 are affected.

tags | advisory, denial of service
systems | linux, gentoo
advisories | CVE-2008-5081
SHA-256 | 728f3a014d0f773b7ef89d5f2678653b123b208673730d5a49f1b6610dea17be
Gentoo Linux Security Advisory 200901-10
Posted Jan 15, 2009
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200901-10 - A certificate validation error in GnuTLS might allow for spoofing attacks. Martin von Gagern reported that the _gnutls_x509_verify_certificate() function in lib/x509/verify.c trusts certificate chains in which the last certificate is an arbitrary trusted, self-signed certificate. Versions less than 2.4.1-r2 are affected.

tags | advisory, arbitrary, spoof
systems | linux, gentoo
advisories | CVE-2008-4989
SHA-256 | 546a34c942ac770823964c45d53398b233b2efafe5e1b7e29d324f13c99ef895
Zero Day Initiative Advisory 09-04
Posted Jan 15, 2009
Authored by Tipping Point | Site zerodayinitiative.com

Zero Day Initiative Advisory 09-004 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Oracle TimesTen. User interaction is not required to exploit this vulnerability. The specific flaw exists in the evtdump CGI module, which is used to write to an internal log file. The parameter 'msg' does not properly sanitize format string tokens and can be exploited to execute arbitrary code.

tags | advisory, remote, arbitrary, cgi
SHA-256 | 70598af4752bed89d8e6d52e31dd0e3248333dc9c700f0bf2805dd31cef415a6
Zero Day Initiative Advisory 09-03
Posted Jan 15, 2009
Authored by Tipping Point | Site zerodayinitiative.com

Zero Day Initiative Advisory 09-003 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Oracle Secure Backup. Authentication is not required to exploit this vulnerability. The specific flaw exists within the routine exec_qr() defined in the web script login.php. The user-supplied variable $rbtool is improperly sanitized and later passed through a call to popen(), this can result in remote pre-authentication command injection.

tags | advisory, remote, web, arbitrary, php
SHA-256 | d4cd07bc743ecebda2d3c06bd6512358d54e624bcb8559f431c37c5b49682626
Debian Linux Security Advisory 1704-1
Posted Jan 15, 2009
Authored by Debian | Site debian.org

Debian Security Advisory 1704 - Several remote vulnerabilities have been discovered in Xulrunner, a runtime environment for XUL applications.

tags | advisory, remote, vulnerability
systems | linux, debian
advisories | CVE-2008-5500, CVE-2008-5503, CVE-2008-5506, CVE-2008-5507, CVE-2008-5508, CVE-2008-5511, CVE-2008-5512
SHA-256 | 9e3e36a4fa485680c7a4bd74e51761da2d1644c64d0801e1cec00e1a9bab5952
Avira Antivirus Division By Zero
Posted Jan 15, 2009
Authored by Thierry Zoller

Avira Antivirus suffers from division by zero / null pointer dereferencing vulnerabilities when handling a malformed RAR archive.

tags | advisory, vulnerability
SHA-256 | 3e074bda1d6c4131f956074250da30e305fd5f819946441e5497bdd2e6b9a43e
Cisco Security Advisory 20090114-ironport
Posted Jan 15, 2009
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - The IronPort PXE Encryption solution is affected by two vulnerabilities that could allow unauthorized individuals to view the contents of secure e-mail messages. To exploit the vulnerabilities, attackers must first intercept secure e-mail messages on the network or via a compromised e-mail account.

tags | advisory, vulnerability
systems | cisco
advisories | CVE-2009-0053, CVE-2009-0054, CVE-2009-0055, CVE-2009-0056
SHA-256 | d14c7c842a9fa4c4ef16913bd857ba57a212d8117696108b49a89e32373a454d
Cisco Security Advisory 20090114-ons
Posted Jan 15, 2009
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - The Cisco ONS 15300 series Edge Optical Transport Platform, the Cisco ONS 15454 Optical Transport Platform, the Cisco ONS 15454 SDH Multiservice Platform, and the Cisco ONS 15600 Multiservice Switching Platform contains a vulnerability when processing TCP traffic streams that may result in a reload of the device control card.

tags | advisory, tcp
systems | cisco
advisories | CVE-2008-3818
SHA-256 | 841a5186013359e3c9165b3020de065e23861d5123cf1cf16bbbc4a5d1ae7471
Cisco Security Advisory - IOS XSS
Posted Jan 15, 2009
Site cisco.com

Cisco Security Advisory - Two separate Cisco IOS Hypertext Transfer Protocol (HTTP) cross-site scripting (XSS) vulnerabilities have been reported to Cisco by two independent researchers.

tags | advisory, web, vulnerability, protocol, xss
systems | cisco
advisories | CVE-2008-3821
SHA-256 | a2bee618606c9dd7a67a873a8f1cb844c5e6661564a26c811408b6bc35bc3e1b
Cisco Unified IP Phone 7960G and 7940G (SIP) RTP Header Vulnerability
Posted Jan 15, 2009
Authored by Laurent Butti, Gabriel Campana

The Cisco Unified IP Phone 7960G and 7940G (SIP) do not correctly parse some malformed RTP headers leading to a deterministic denial of service.

tags | advisory, denial of service
systems | cisco
advisories | CVE-2008-4444
SHA-256 | 00372e28c3e7b41b85a1d67580955f2b158b3cbd709e06747aa677141b355c44
Linux On Power/Cell BE Architecture Buffer Oveflows
Posted Jan 15, 2009
Authored by Ramon de C Valle | Site risesecurity.org

Whitepaper called Linux on Power/Cell BE Architecture Buffer Overflow Vulnerabilities.

tags | paper, overflow, vulnerability
systems | linux
SHA-256 | 6f0f5225518ea3a48a4c06600fde8fd3ac3600d92bcdf768072d926d39dc8060
ProCheckUp Security Advisory 2008.19
Posted Jan 15, 2009
Authored by Adrian Pastor, ProCheckUp | Site procheckup.com

The Cisco IOS HTTP server is vulnerable to cross site scripting within invalid parameters processed by the "/ping" server-side binary/script.

tags | exploit, web, xss
systems | cisco
SHA-256 | 9ae67732eb54093c6544c63e2953cba56031df7cd73a205c4ce458b69783a88a
Conference On Cyber Warfare Call For Papers
Posted Jan 15, 2009
Site ccdcoe.org

Call For Papers - The Cooperative Cyber Defence Centre of Excellence is hosting a Conference on Cyber Warfare in 2009. It will be held June 17th through the 19th in Tallinn, Estonia.

tags | paper, conference
SHA-256 | 780a40ca4787a7a09b275aaffd7c45af46a97adab664bb1667eda6ef8dc5f81e
phpList 2.10.8 Local File Inclusion
Posted Jan 15, 2009
Authored by AmnPardaz Security Research Team | Site bugreport.ir

phpList version 2.10.8 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 1eb55150b3a06e1d12a2efbf61d6588802763badec0178d47fe489fdc179b69f
WowWee Rovio Insufficient Access Controls
Posted Jan 15, 2009
Authored by Brian Dowling | Site simplicity.net

WowWee Rovio suffers from insufficient access control vulnerabilities that allow for snooping.

tags | exploit, vulnerability
SHA-256 | 7717e09060d2782859b3fb4ceecaf9c5e847e585570e53a710199dd78a6562a7
DMXReady Blog Manager XSS / SQL Injection
Posted Jan 15, 2009
Authored by Pouya Server

DMXReady Blog Manager suffers from cross site scripting and remote SQL injection vulnerabilities. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 9c0b7b9e37ad9fecf817603c2803d49c43fb3e02acaee982d5d2057d366055a6
DMXReady Members Area Manager 1.2 SQL Injection
Posted Jan 15, 2009
Authored by ajann

DMXReady Members Area Manager versions 1.2 and below suffer from a remote SQL injection vulnerability. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote, sql injection
SHA-256 | 14d1ad609b58147b308f036720f2649613d1be7af578c0bded0453dc83628acf
DMXReady Member Direcotry Manager 1.1 SQL Injection
Posted Jan 15, 2009
Authored by ajann

DMXReady Member Directory Manager versions 1.1 and below suffer from a remote SQL injection vulnerability. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote, sql injection
SHA-256 | 7065feb42146ce778714da163ee6d85b0131a3394994a9114e366412f0c055d7
DMXReady Classified Listings Manager 1.1 SQL Injection
Posted Jan 15, 2009
Authored by ajann

DMXReady Classified Listings Manager versions 1.1 and below suffer from a remote SQL injection vulnerability. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote, sql injection
SHA-256 | 9e6d500e5e3a32db5f3b820c967bb93050f1da60c10a729709e9bb12f58310a4
DMXReady Faqs Manager 1.1 Contents Change
Posted Jan 15, 2009
Authored by ajann

DMXReady Faqs Manager versions 1.1 and below suffer from a remote contents change vulnerability. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote
SHA-256 | a44276872e9be6ee758bbaace1c222ba8d33d039a6e04b4f84978d313d8bc204
DMXReady Document Library Manager 1.1 Contents Change
Posted Jan 15, 2009
Authored by ajann

DMXReady Document Library Manager versions 1.1 and below suffer from a remote contents change vulnerability. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote
SHA-256 | 23cf09925fdac3b46d8ae4f897c46a2afa9aaf0b5c77e3a75444034114891918
DMXReady Contact Us Manager 1.1 Contents Change
Posted Jan 15, 2009
Authored by ajann

DMXReady Contact Us Manager versions 1.1 and below suffer from a remote contents change vulnerability. DMXReady has stated that the following release addresses this security issue.

tags | exploit, remote
SHA-256 | 6ad0e65439954062e5159de9e2b0f9e14e3b58bf9b43792bf5ca73cba7c12f6c
Page 3 of 4
Back1234Next

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    1 Files
  • 9
    Sep 9th
    16 Files
  • 10
    Sep 10th
    38 Files
  • 11
    Sep 11th
    21 Files
  • 12
    Sep 12th
    40 Files
  • 13
    Sep 13th
    18 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    21 Files
  • 17
    Sep 17th
    51 Files
  • 18
    Sep 18th
    23 Files
  • 19
    Sep 19th
    48 Files
  • 20
    Sep 20th
    36 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    38 Files
  • 24
    Sep 24th
    65 Files
  • 25
    Sep 25th
    24 Files
  • 26
    Sep 26th
    26 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close