what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 899 RSS Feed

Files Date: 2011-10-01 to 2011-10-31

Joomla Web Scanner 1.3
Posted Oct 30, 2011
Authored by Pepelux | Site enye-sec.org

Joomla web scanning perl script that gets the version, components and shows possible bugs.

Changes: Version 1.3 now recognizes Joomla! versions up to 1.7.2 and shows possible bugs in the core and components.
tags | tool, web, scanner, perl
systems | unix
SHA-256 | dbf6afebc08cfab8556c7d449c2714a2f927de9e575f463d09ddc670e6dbb60d
Facebook My Phrase Box SQL Injection
Posted Oct 30, 2011
Authored by Chokri Ben Achor, Vulnerability Laboratory | Site vulnerability-lab.com

The Facebook My Phrase Box application suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d755674e1fdd428f6060a5e57d5858cd95626ae2eea709e22cb5bc82d4660655
WordPress Classipress Theme 3.1.4 Cross Site Scripting
Posted Oct 30, 2011
Authored by Paul Loftness

WordPress Classipress Theme versions 3.1.4 and below suffer from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e74ca6cbe19df29e6142f0244318d744e50bbe6676a127b217cb1096037d4190
Domain Shop Cross Site Scripting
Posted Oct 30, 2011
Authored by Mr.PaPaRoSSe

Domain Shop suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 3a70b9654dfb596be39cf757f33f10a8238d1104bdcebb9ab13fa6a6b6fe7d54
vBulletin 4.1.7 Beta 1 Remote File Inclusion
Posted Oct 30, 2011
Authored by indoushka

vBulletin version 4.1.7 Beta 1 suffers from multiple remote file inclusion vulnerabilities.

tags | exploit, remote, vulnerability, code execution, file inclusion
SHA-256 | b9073b76bf88aeb821fd3141de1ab8b03da0bb2cfe3d0d757b0ea42b61faab30
BroadWin WebAccess SCADA / HMI Code Execution
Posted Oct 30, 2011
Authored by Snake

BroadWin WebAccess SCADA/HMI client remote code execution exploit that takes advantage of an arbitrary file creation vulnerability in bwocxrun.ocx.

tags | exploit, remote, arbitrary, code execution
SHA-256 | f079fd3dc3cf78363b594fd11ee0b79d8882cd62845270eb0046830691d26fd5
Slang Media Group Shell Upload
Posted Oct 30, 2011
Authored by indoushka

Slang Media Group suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell
SHA-256 | 61c1d727c518f81b93a815a9c97f5692be7d46ebae32f7f1f5ce839f9a7092aa
WordPress WP Glossary SQL Injection
Posted Oct 30, 2011
Authored by longrifle0x

The WordPress WP Glossary plugin suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | bcf0672184dc7599c8ed00b70b03d31c5525148fb31cf94fcd32160bfcd01e06
Smbwebdemo SQL Injection
Posted Oct 30, 2011
Authored by 3spi0n

Smbwebdemo suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 9f6d2e901d93dd909e2d8ba0d59467eb2f2b7dc40ca8c6d05a0ef591d6ff278a
Attraction Website Design SQL Injection
Posted Oct 30, 2011
Authored by 3spi0n

Attraction Website Design suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 79658c1b0fc744ec3f36cd374c416e33f335b009a501b64e5833c451bf8f8a09
360ideas SQL Injection
Posted Oct 30, 2011
Authored by 3spi0n

360ideas suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 0bb651dbf5a9be1e428c240fa14b4c39c1c82eed0e0740406dddb5d18b9f7a39
HighCMS Overflow
Posted Oct 30, 2011
Authored by BHG Security Center

HighCMS suffers from an overflow vulnerability when handling the pageid variable.

tags | exploit, overflow
SHA-256 | 93744a6c8c3f2e97056286c6fb6d441ee2dd84ef4497dc29022027a1079223e9
Mevin Productions SQL Injection
Posted Oct 30, 2011
Authored by 3spi0n

Sites powered by Melvin Productions suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | c1660a5be7b456bfb32c157e6e63701e653bc58adfda0bf52c74c22aff23b808
Joomla HM Community SQL Injection / Cross Site Scripting
Posted Oct 29, 2011
Authored by 599eme Man

The Joomla HM Community component suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 769455c969c44a7554dd7112a7d253c5a829b2fee7569fdc6fe8fee939d6afa3
Mndajans Script SQL Injection
Posted Oct 29, 2011
Authored by Mr.PaPaRoSSe

Mndajans Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7eec4c73453a21cd4e59a09e7b132c26d5ca6007d5bcc1f4a0c2f16dfd2714f8
PHP Photo Album 0.4.1.16 Cross Site Scripting / Disclosure
Posted Oct 29, 2011
Authored by BHG Security Center

PHP Photo Album version 0.4.1.16 suffers from cross site scripting and local file disclosure vulnerabilities.

tags | exploit, local, php, vulnerability, xss, info disclosure
SHA-256 | 9eff1e5176c1596c336a40be56eb0e5eb102b38a0edc5861694345c87a39bc1c
Debian Security Advisory 2332-1
Posted Oct 29, 2011
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2332-1 - Paul McMillan, Mozilla and the Django core team discovered several vulnerabilities in Django, a Python web framework.

tags | advisory, web, vulnerability, python
systems | linux, debian
advisories | CVE-2011-4136, CVE-2011-4137, CVE-2011-4138, CVE-2011-4139, CVE-2011-4140
SHA-256 | 58a235a4d66e5650b14ae17e73287994e75b7e79c69339689b8b98c9c34b52a1
ZTE ZXDSL Authentication Bypass / Cross Site Request Forgery
Posted Oct 29, 2011
Authored by Mehdi Boukazoula, Ibrahim Debeche

ZTE ZXDSL version 831IIV7.5.0a_Z29_OV suffers from authentication bypass and cross site request forgery vulnerabilities.

tags | exploit, vulnerability, bypass, csrf
SHA-256 | b0cdee2ba4dc214b8a6c019458a09d907d2a3782ad951c3b3a90bef136744d61
GateProtectCC 3.0.1 Memory Corruption
Posted Oct 29, 2011
Authored by Vulnerability Laboratory | Site vulnerability-lab.com

GateProtect CC version 3.0.1 suffers from a memory corruption vulnerability.

tags | advisory
SHA-256 | 550d7f7d2f41263804e50ce29955269f66a63e9d3f3eb535012b38c8979e5fe4
HP Security Bulletin HPSBUX02707 SSRT100626 2
Posted Oct 29, 2011
Authored by HP | Site hp.com

HP Security Bulletin HPSBUX02707 SSRT100626 2 - A potential security vulnerability has been identified with HP-UX Apache Web Server. This vulnerability could be exploited remotely to create a Denial of Service (DoS). Revision 2 of this advisory.

tags | advisory, web, denial of service
systems | hpux
advisories | CVE-2011-0419, CVE-2011-3192, CVE-2011-3348
SHA-256 | 2bc580cebeaede10bf326b7f8b67beb2822682b19ca788d5dc123a8023251ae1
HP Security Bulletin HPSBUX02702 SSRT100606 5
Posted Oct 29, 2011
Authored by HP | Site hp.com

HP Security Bulletin HPSBUX02702 SSRT100606 5 - Potential security vulnerabilities have been identified with HP-UX Apache Web Server. These vulnerabilities could be exploited remotely to create a Denial of Service (DoS). Revision 5 of this advisory.

tags | advisory, web, denial of service, vulnerability
systems | hpux
advisories | CVE-2011-0419, CVE-2011-3192
SHA-256 | a34907b555a172f5345fd6f023fcaedbb9208697f80f7db3d6a74714556b4712
LFI Fuzzploit Tool
Posted Oct 29, 2011
Authored by nullbyt3

LFI Fuzzploit is a simple tool to help in the fuzzing for, finding, and exploiting of local file inclusion vulnerabilities in Linux-based PHP applications. Using special encoding and fuzzing techniques, lfi_fuzzploit will scan for some known and some not so known LFI filter bypasses and exploits using some advanced encoding/bypass methods to try to bypass security and achieve its goal which is ultimately, exploiting a local file inclusion.

tags | tool, local, scanner, php, vulnerability, file inclusion
systems | linux, unix
SHA-256 | 3a5d65839a39e161cd4eb55e8727cfcb58218b82ef4a1136b4b36f4b0ca58a14
Ubuntu Security Notice USN-1250-1
Posted Oct 28, 2011
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1250-1 - It was discovered that a cross-site scripting (XSS) vulnerability in the Adium theme allows remote attackers to inject arbitrary javascript or HTML via a crafted nickname in XMPP group conversations.

tags | advisory, remote, arbitrary, javascript, xss
systems | linux, ubuntu
advisories | CVE-2011-3635, CVE-2011-4170
SHA-256 | bb596737256bf1498dc4e8ab2deb23600bef32b7a1deac28b628191754cadc06
Debian Security Advisory 2323-1
Posted Oct 28, 2011
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2323-1 - Multiple security issues were discovered by Vasiliy Kulikov in radvd, an IPv6 Router Advertisement daemon.

tags | advisory
systems | linux, debian
advisories | CVE-2011-3602, CVE-2011-3604, CVE-2011-3605
SHA-256 | 5011a0d57a2d3bcd1bbdb7aa010687f4cb29594299d50e2675f3636d660b1533
D-Link DIR-300 Information Disclosure
Posted Oct 28, 2011
Authored by Sergey Scherbel | Site ptsecurity.com

D-Link DIR-300 routers suffers from a clear text password storage vulnerability.

tags | advisory
SHA-256 | 9598062e190d8c02ca556a242d55eabbd367d1358072cfc2a466819ce7d98fc6
Page 1 of 36
Back12345Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close