what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 31 of 31 RSS Feed

Files Date: 2011-08-03 to 2011-08-04

Ubuntu Security Notice USN-1182-1
Posted Aug 3, 2011
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1182-1 - Yoshihiro Ishikawa discovered that the Samba Web Administration Tool (SWAT) was vulnerable to cross-site request forgeries (CSRF). If a Samba administrator were tricked into clicking a link on a specially crafted web page, an attacker could trigger commands that could modify the Samba configuration. Nobuhiro Tsuji discovered that the Samba Web Administration Tool (SWAT) did not properly sanitize its input when processing password change requests, resulting in cross-site scripting (XSS) vulnerabilities. With cross-site scripting vulnerabilities, if a user were tricked into viewing server output during a crafted server request, a remote attacker could exploit this to modify the contents, or steal confidential data, within the same domain.

tags | advisory, remote, web, vulnerability, xss
systems | linux, ubuntu
advisories | CVE-2011-2522, CVE-2011-2694
SHA-256 | b5365411c65e521113377455a95fb0f5eb3b5f1438e32a7b5c8c7fb63e1875c2
Red Hat Security Advisory 2011-1106-01
Posted Aug 3, 2011
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2011-1106-01 - The kernel packages have been updated to address a vulnerability. A flaw allowed napi_reuse_skb() to be called on VLAN packets. An attacker on the local network could trigger this flaw by sending specially-crafted packets to a target system, possibly causing a denial of service.

tags | advisory, denial of service, kernel, local
systems | linux, redhat
advisories | CVE-2011-1576
SHA-256 | d2511485720906fd14fc2a3f975c01b817038b49d64c90f52a352c78915e2b1a
Digital Whisper Electronic Magazine #23
Posted Aug 3, 2011
Authored by cp77fk4r, digitalwhisper

Digital Whisper Electronic Magazine issue 23. Written in Hebrew.

tags | magazine
SHA-256 | 808bef75f9f92f4a824dc27916a418683b3932202291c50b278dac977d0ed626
Return-Oriented Programming / DEP Bypass
Posted Aug 3, 2011
Authored by Canberk BOLAT

This whitepaper details the ins and outs of return-oriented programming and DEP bypass.

tags | paper, bypass
SHA-256 | cd7c52e6aacd9baf229c258107646cd9b87b0fd8eebc7072ca57f5903e148874
System Werkform 2.0 SQL Injection
Posted Aug 3, 2011
Authored by Net.Edit0r

System Werkform version 2.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 885c01f00d03554a914bdbb499c296759662718182582d6ebcca7d7eb11dcc99
Facebook Mobile User Enumeration
Posted Aug 3, 2011
Authored by Zerial

The Facebook mobile system suffers from a user enumeration vulnerability.

tags | exploit
SHA-256 | 3019482c64ace86e5a5026e090506cf5b63a6a4f5f8fda853511567dad32241d
Page 2 of 2
Back12Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close