what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 83 RSS Feed

Files Date: 2010-06-23 to 2010-06-24

Secunia Security Advisory 40277
Posted Jun 23, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Luigi Auriemma has reported a vulnerability in Wolfenstein, which can be exploited by malicious people to compromise a user's system.

tags | advisory
SHA-256 | 73890aec65a29056d37c5fe2e2ae53be0215ac47fcdf75110f1d9fa42782c200
Secunia Security Advisory 40278
Posted Jun 23, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been reported in the RSComments component for Joomla, which can be exploited by malicious people to conduct script insertion attacks.

tags | advisory, vulnerability
SHA-256 | 61056ca876422ce72783feda665a5dfafcf94659bc28523304a2da0d11458d67
SIPVicious Tool Suite 0.2.6
Posted Jun 23, 2010
Authored by Sandro Gauci | Site sipvicious.org

SIPVicious tools address the need for traditional security tools to be ported to SIP. This package consists of a SIP scanner, a SIP wardialer, and a SIP PBX cracker. Written in Python.

Changes: Various bug fixes and a new tool called svcrash.py.
tags | telephony, python
SHA-256 | 1e25862cc9e81979e0d66e5fb298c8cfd17279e7dd683b1dd841dcf1dbc29cc8
Lentyay Script Review Page SQL Injection
Posted Jun 23, 2010
Authored by s1ayer

Lentyay Script Review suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7811a374f22a5fc31cfda4a2bfa012345757f0ee046cc200c777580fca14ef5a
Skype Client For Mac Chat Unicode Denial Of Service
Posted Jun 23, 2010
Authored by Marc Ruef | Site scip.ch

The Skype client for Mac Chat suffers from a unicode related denial of service vulnerability.

tags | advisory, denial of service
SHA-256 | f948952222defade88deecce448672cc4c9753535691afb7597dc9381db5ac14
Cornerstone CMS 1.0 SQL Injection
Posted Jun 23, 2010
Authored by Th3 RDX

Cornerstone CMS version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | e9cabeb8928adaec5705dfa77b8f6941360bca3ccaf316f67d8526957577dd4b
Joomla Picasa2Gallery 1.2.8 Local File Inclusion
Posted Jun 23, 2010
Authored by kaMtiEz | Site indonesiancoder.com

The Joomla Picasa2Gallery component version 1.2.8 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | e99e46db1fcc3cb3449aa5013a0f5595aa6aaed2808e7c688183d3b2ddade78a
Joomla Ybggal 1.0 SQL Injection
Posted Jun 23, 2010
Authored by v3n0m

The Joomla Ybggal component version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | aba050c2cb38d7eb1931dc8b5e5372d3ed19aa0f390238c9a4622d7fbd0742af
sFileManager 24a Local File Inclusion
Posted Jun 23, 2010
Authored by Pepelux | Site pepelux.org

sFileManager version 24a suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | c13346916d0a566b8317c0f280e60a5a0961e290ec82cf84a6dd485d194ac2a7
Pictue Rating SQL Injection
Posted Jun 23, 2010
Authored by L0rd CrusAd3r

Pictue Rating suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | e0d1bb1f7917b5db6e1cd249fbc4aaabb8488a9f3344f3d04fc9b81c49001674
2daybiz Video Community Portal SQL Injection / Cross Site Scripting
Posted Jun 23, 2010
Authored by L0rd CrusAd3r

2daybiz Video Community Portal suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 269a3ac8df238c9d0bf39d93f1d5744aa1ac419ba07abd733d2f7e428d66d2a9
Social Comunity Script SQL Injection
Posted Jun 23, 2010
Authored by L0rd CrusAd3r

Social Community Script suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | 816045c51550965d0cc1527e25c650e261fba09e1b5d93e2b5eb7c0eb88daf1d
The Uploader 2.0.4 File Disclosure
Posted Jun 23, 2010
Authored by Xa7m3d

The Uploader version 2.0.4 suffers from a remote file disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | a06582d992b665eedad649893c5fba31959516d4f6addb115437d35cfd145583
Grering Card SQL Injection
Posted Jun 23, 2010
Authored by Net.Edit0r

Grering Card suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 0409f790e9ad6201d09fc01d3cdfe3961a8138537fe4af07c54bb9b55922a362
Con-imedia CMS Design's Cross Site Scripting / SQL Injection
Posted Jun 23, 2010
Authored by gendenk

Con-imedia CMS Design's suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 29c6811f072e69fca8a738020ddd9092cd15227c262f43df6c61b4e9b39af384
Subtitle Translation Wizard 3.0.0 Proof Of Concept
Posted Jun 23, 2010
Authored by Blake

Subtitle Translation Wizard version 3.0.0 SEH proof of concept exploit.

tags | exploit, overflow, proof of concept
SHA-256 | 53a08678d8d8e934aedd1d15dbc4def6e16432b41f85da05bdf3b9a5f802643b
Ubuntu Security Notice 955-2
Posted Jun 23, 2010
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 955-2 - USN-955-1 fixed vulnerabilities in OPIE. This update provides rebuilt libpam-opie packages against the updated libopie library. Original advisory details: Maksymilian Arciemowicz and Adam Zabrocki discovered that OPIE incorrectly handled long usernames. A remote attacker could exploit this with a crafted username and make applications linked against libopie crash, leading to a denial of service.

tags | advisory, remote, denial of service, vulnerability
systems | linux, ubuntu
advisories | CVE-2010-1938
SHA-256 | 6d881d1bf9449ce4551c894d833aa443a26b38c042725b55ac1b136dc42f49db
Ubuntu Security Notice 955-1
Posted Jun 23, 2010
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 955-1 - Maksymilian Arciemowicz and Adam Zabrocki discovered that OPIE incorrectly handled long usernames. A remote attacker could exploit this with a crafted username and make applications linked against libopie crash, leading to a denial of service.

tags | advisory, remote, denial of service
systems | linux, ubuntu
advisories | CVE-2010-1938
SHA-256 | 507803c47313ade3c813f28b126c91b99fa0c93c366cc7954e2e3af2d7f85dd0
Ubuntu Security Notice 954-1
Posted Jun 23, 2010
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 954-1 - Kevin Finisterre discovered that the TIFF library did not correctly handle certain image structures. If a user or automated system were tricked into opening a specially crafted TIFF image, a remote attacker could execute arbitrary code with user privileges, or crash the application, leading to a denial of service. Dan Rosenberg and Sauli Pahlman discovered multiple flaws in the TIFF library. If a user or automated system were into opening a specially crafted TIFF image, a remote attacker could execute arbitrary code with user privileges, or crash the application, leading to a denial of service.

tags | advisory, remote, denial of service, arbitrary
systems | linux, ubuntu
advisories | CVE-2010-1411, CVE-2010-2065, CVE-2010-2067
SHA-256 | 445168d075106e2e28b608bb7b0e6b3a6fb154c276fc48ef2ed70391a24d46d6
Ubuntu Security Notice 953-1
Posted Jun 23, 2010
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 953-1 - Dan Rosenberg discovered that fastjar incorrectly handled file paths containing ".." when unpacking archives. If a user or an automated system were tricked into unpacking a specially crafted jar file, arbitrary files could be overwritten with user privileges.

tags | advisory, arbitrary
systems | linux, ubuntu
advisories | CVE-2010-0831
SHA-256 | c522fc3e3fe5c9822122c33072c335308b6b3a4a2403c724a3b7a2aaf63b999e
Ubuntu Security Notice 952-1
Posted Jun 23, 2010
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 952-1 - Adrian Pastor and Tim Starling discovered that the CUPS web interface incorrectly protected against cross-site request forgery (CSRF) attacks. If an authenticated user were tricked into visiting a malicious website while logged into CUPS, a remote attacker could modify the CUPS configuration and possibly steal confidential data. It was discovered that CUPS did not properly handle memory allocations in the texttops filter. If a user or automated system were tricked into printing a crafted text file, a remote attacker could cause a denial of service or possibly execute arbitrary code with privileges of the CUPS user (lp). Luca Carettoni discovered that the CUPS web interface incorrectly handled form variables. A remote attacker who had access to the CUPS web interface could use this flaw to read a limited amount of memory from the cupsd process and possibly obtain confidential data.

tags | advisory, remote, web, denial of service, arbitrary, csrf
systems | linux, ubuntu
advisories | CVE-2010-0540, CVE-2010-0542, CVE-2010-1748
SHA-256 | d6b0dd56c3037c879f67bee3d005df81cfa31ae5a24b1282c543cddedbbda89f
Alpin CMS 1.0 SQL Injection
Posted Jun 23, 2010
Authored by Th3 RDX

Alpin CMS version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 0f3a225c99825208ab771da37cd2e33dcf1b75667dc540dccd3e27093df89187
Job Search Engine Script SQL Injection
Posted Jun 23, 2010
Authored by L0rd CrusAd3r

Job Search Engine Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 4d92476777790c306cc740296a364623aee05b0df6111d57eccdb41ffd166d65
Joomla JomSocial 1.6.288 Cross Site Scripting
Posted Jun 23, 2010
Authored by jdc

THe Joomla JomSocial component version 1.6.288 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 8bd42fc52b3f667e6519894ed2a6fe2ebe72cf9aa576e3bc7b5b72f3b10fb960
PHPWCMS 1.4.5 r398 Cross Site Request Forgery
Posted Jun 23, 2010
Authored by Jeremiah Talamantes

PHPWCMS version 1.4.5 r398 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 93e6488c6d392a12fe2649b75519d29ef3679d061392cf77e3996be46d13733f
Page 1 of 4
Back1234Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close