exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 76 - 100 of 541 RSS Feed

Files Date: 2017-03-01 to 2017-03-31

Just Another Video Script 1.4.3 SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

Just Another Video Script version 1.4.3 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 350e1174ff9ffcb00928ebf39f0df540b8540e1ef1dff396f87d8f1a70c888d5
PHP Real Estate Property Script SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

PHP Real Estate Property Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, php, sql injection
SHA-256 | f0bcdf99f1d897854660bc9ad3a6528182e1afc92c7042268923f6484f1cfaeb
CouponPHP CMS 3.1 SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

CouponPHP CMS version 3.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | ba2faa41e2ea8a5720e05881d297415465ba03effde7ab954db97f42e291e6d1
B2B Marketplace Script 2.0 SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

B2B Marketplace Script version 2.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 2c48999829a11a9b1b256f64e9c0ad35c1838f530acaf84fc4153c38333aa1b3
Professional Bus Booking Script SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

Professional Bus Booking Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d22244cdac109a573e8da2cf2072eb2c50b985d3ae38e076568e195f8815f09f
Courier Tracking Software 6.0 SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

Courier Tracking Software version 6.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 2858229e628c8f79108b3c014d742c494f93f0f7c9387a1461c15f7d0634d822
Alibaba Clone Script SQL Injection
Posted Mar 26, 2017
Authored by Ihsan Sencan

Alibaba Clone Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d83211212cab2f9caeee1d588d347cd1b815ad19a0d210db353928b15f28c5f0
Adult Tube Video Script SQL Injection
Posted Mar 25, 2017
Authored by Ihsan Sencan

Adult Tube Video Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 1a250bb0173747909e14165c5d5a3d8cb58f92172792a2b17bdab21bcb23085e
Linux/x86 Reverse Shell Shellcode
Posted Mar 25, 2017
Authored by Jasmin Landry

110 bytes small Linux/x86 reverse /bin/bash shellcode.

tags | x86, shellcode, bash
systems | linux
SHA-256 | c877dbeb641d857b55e73f461a09ca14679ca4f290a989b9b455e4512cce7981
Debian Security Advisory 3817-1
Posted Mar 24, 2017
Authored by Debian | Site debian.org

Debian Linux Security Advisory 3817-1 - Multiple security issues have been found in the JBIG2 decoder library, which may lead to lead to denial of service or the execution of arbitrary code if a malformed image file (usually embedded in a PDF document) is opened.

tags | advisory, denial of service, arbitrary
systems | linux, debian
advisories | CVE-2016-9601
SHA-256 | f695f07a31864f9fbcba8a516dca7a7fd4e967523c42052df52113a9f1e281d0
Ubuntu Security Notice USN-3233-1
Posted Mar 24, 2017
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3233-1 - Multiple security issues were discovered in Thunderbird. If a user were tricked in to opening a specially crafted website in a browsing context, an attacker could potentially exploit these to bypass same origin restrictions, obtain sensitive information, cause a denial of service via application crash or hang, or execute arbitrary code.

tags | advisory, denial of service, arbitrary
systems | linux, ubuntu
advisories | CVE-2017-5398, CVE-2017-5400, CVE-2017-5401, CVE-2017-5402, CVE-2017-5404, CVE-2017-5405, CVE-2017-5407, CVE-2017-5408, CVE-2017-5410
SHA-256 | 4abb70b1c35863ded49709995ba4e6d401e8550e183f3defde0d6a4363af7dad
Miele Professional PG 8528 Directory Traversal
Posted Mar 24, 2017
Authored by Jens Regel

The Miele Professional PG 8528 suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
advisories | CVE-2017-7240
SHA-256 | c94b17923d930d05dd075dd8fc7387a99ddd50e808d1eec813b5c76589b89de4
Ubuntu Security Notice USN-3239-3
Posted Mar 24, 2017
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3239-3 - USN-3239-1 fixed vulnerabilities in the GNU C Library. Unfortunately, the fix for CVE-2016-3706 introduced a regression that in some circumstances prevented IPv6 addresses from resolving. This update reverts the change in Ubuntu 12.04 LTS.

tags | advisory, vulnerability
systems | linux, ubuntu
advisories | CVE-2015-8982, CVE-2015-8983, CVE-2015-8984, CVE-2016-1234, CVE-2016-3706, CVE-2016-4429, CVE-2016-5417, CVE-2016-6323
SHA-256 | 5ac6541ec2d8b1c23c092a5bf72c90784949c38ff1917bcec981e9c9d84897c2
Nuxeo Platform 6.x / 7.x Shell Upload
Posted Mar 24, 2017
Authored by Ronan Kervella

Nuxeo Platform versions 6.0 (LTS 2014), 7.1, 7.2, and 7.3 suffer from a remote shell upload vulnerability.

tags | exploit, remote, shell
advisories | CVE-2017-5869
SHA-256 | 3e2fc05481642e4e573d91a0aec056b65ed84f6b82806e8f82f2889909da7b0d
EON 5.0 SQL Injection
Posted Mar 24, 2017
Authored by Nicolas Serra

EON versions 5.0 and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2017-6088
SHA-256 | 67e1f146fc5c949060425000beb0f03761a65cdb1a34e7cefb735591016086d3
EON 5.0 Remote Code Execution
Posted Mar 24, 2017
Authored by Nicolas Serra

EON versions 5.0 and below suffer from a remote code execution vulnerability.

tags | exploit, remote, code execution
advisories | CVE-2017-6087
SHA-256 | c7846fe3c70cdb527a601ecf168a4bbb668fde1a6cdac12993d51150965c4783
Apple Security Advisory 2017-03-22-2
Posted Mar 24, 2017
Authored by Apple | Site apple.com

Apple Security Advisory 2017-03-22-2 - iTunes for Mac 12.6 is now available and addresses vulnerabilities in expat and SQLite.

tags | advisory, vulnerability
systems | apple
advisories | CVE-2009-3270, CVE-2009-3560, CVE-2009-3720, CVE-2012-1147, CVE-2012-1148, CVE-2012-6702, CVE-2013-7443, CVE-2015-1283, CVE-2015-3414, CVE-2015-3415, CVE-2015-3416, CVE-2015-3717, CVE-2015-6607, CVE-2016-0718, CVE-2016-4472, CVE-2016-5300, CVE-2016-6153
SHA-256 | e601858939a95c65d673d763bbb29441fc85d606b842630460eb8b9750f35800
Microsoft Windows AppLocker Bypass
Posted Mar 24, 2017
Authored by Stefan Kanthak

Microsoft Windows versions 8 and newer suffer from an AppLocker bypass vulnerability.

tags | advisory, bypass
systems | windows
SHA-256 | 9d1b92067f6ae28cd876b6ae4a80e1d0947df6c18468cc1f09f3c8d2eeeca041
wifirxpower Local Buffer Overflow
Posted Mar 24, 2017
Authored by Nassim Asrir

wifirxpower suffers from local stack-based buffer overflow vulnerability.

tags | exploit, overflow, local
SHA-256 | 7702a7d845f4147286735810caba8bdfbba5ae3fb84a17b4c88eb9fec0fd7af5
FTPShell Server 6.56 Import CSV Buffer Overflow
Posted Mar 24, 2017
Authored by Nassim Asrir

FTPShell Server version 6.56 import CSV buffer overflow denial of service exploit.

tags | exploit, denial of service, overflow
SHA-256 | 7a7641c431d0f588f45d092e14d5af75868943149b181c464babff71a810c013
Gr8 Tutorial Script SQL Injection
Posted Mar 24, 2017
Authored by Ihsan Sencan

Gr8 Tutorial Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8b6a6007ea8937aa9c224d330e0df5f987f8002cc7f690afbea6394d7f18588e
Sparrow Web Server Directory Traversal
Posted Mar 24, 2017
Authored by Nassim Asrir

Sparrow Web Server suffers from a directory traversal vulnerability.

tags | exploit, web, file inclusion
SHA-256 | bca941889016395fc4ea26b1d05b3ad0300e1155974bdfb8ba314432a81335ea
Gr8 Gallery Script SQL Injection
Posted Mar 24, 2017
Authored by Ihsan Sencan

Gr8 Gallery Script suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 3b4d29b9be17ecd5e950581d8da3d980189292ab4e1cfe9e2316095a6a287e04
Linux XFBurn Buffer Overflow
Posted Mar 24, 2017
Authored by Hosein Askari

XFBurn suffers from a stack-based buffer overflow vulnerability that escalate privileges.

tags | advisory, overflow
SHA-256 | ca0d7ba6363a978b3d6fa7d8e7bc4884c33c240783550a711247bccb95c25733
NETGEAR WNR2000v5 (Un)authenticated hidden_lang_avi Stack Overflow
Posted Mar 24, 2017
Authored by Pedro Ribeiro | Site metasploit.com

The NETGEAR WNR2000 router has a buffer overflow vulnerability in the hidden_lang_avi parameter. In order to exploit it, it is necessary to guess the value of a certain timestamp which is in the configuration of the router. An authenticated attacker can simply fetch this from a page, but an unauthenticated attacker has to brute force it. Brute-forcing the timestamp token might take a few minutes, a few hours, or days, but it is guaranteed that it can be brute-forced. This Metasploit module implements both modes, and it works very reliably. It has been tested with the WNR2000v5, firmware versions 1.0.0.34 and 1.0.0.18. It should also work with hardware revisions v4 and v3, but this has not been tested - with these routers it might be necessary to adjust the LibcBase variable as well as the gadget addresses.

tags | exploit, overflow
advisories | CVE-2016-10174
SHA-256 | 9a070ce74f71e2662326a2f24f0e886e3c26c8510e555c2e622810bbc7f545ed
Page 4 of 22
Back23456Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close