exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 365 RSS Feed

Files Date: 2022-02-01 to 2022-02-28

Ubuntu Security Notice USN-5292-1
Posted Feb 18, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5292-1 - James Troup discovered that snap did not properly manage the permissions for the snap directories. A local attacker could possibly use this issue to expose sensitive information. Ian Johnson discovered that snapd did not properly validate content interfaces and layout paths. A local attacker could possibly use this issue to inject arbitrary AppArmor policy rules, resulting in a bypass of intended access restrictions.

tags | advisory, arbitrary, local
systems | linux, ubuntu
advisories | CVE-2021-3155, CVE-2021-4120, CVE-2021-44730, CVE-2021-44731
SHA-256 | cd903c8b5359411ecb8e840d467ea204ce37f54e4b2751f2d53a192802d1ce9d
Hotel Druid 3.0.3 Remote Code Execution
Posted Feb 18, 2022
Authored by 0z09e

Hotel Druid version 3.0.3 suffers from a remote code execution vulnerability.

tags | exploit, remote, code execution
advisories | CVE-2022-22909
SHA-256 | 7744db6e72d7f36eeaaf02fcc2e34ca731580136eb6a6685b03172941236ce62
Red Hat Security Advisory 2022-0580-01
Posted Feb 18, 2022
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2022-0580-01 - Red Hat Openshift GitOps is a declarative way to implement continuous deployment for cloud native applications. Issues addressed include a traversal vulnerability.

tags | advisory
systems | linux, redhat
advisories | CVE-2016-4658, CVE-2019-13750, CVE-2019-13751, CVE-2019-17594, CVE-2019-17595, CVE-2019-18218, CVE-2019-19603, CVE-2019-20838, CVE-2019-5827, CVE-2020-12762, CVE-2020-13435, CVE-2020-14145, CVE-2020-14155, CVE-2020-16135, CVE-2020-24370, CVE-2021-20231, CVE-2021-20232, CVE-2021-20271, CVE-2021-22876, CVE-2021-22898, CVE-2021-22925, CVE-2021-27645, CVE-2021-28153, CVE-2021-3200, CVE-2021-33560, CVE-2021-33574
SHA-256 | 14e508f8b5ba4605bd8db42f72278f20a3b7e049cd664a90973860fae75556f7
OPENSSLDIR Privilege Escalation
Posted Feb 18, 2022
Authored by Marlon Petry

Whitepaper called OPENSSLDIR - The adventures of hidden folder to privilege escalation.

tags | paper
advisories | CVE-2021-2307
SHA-256 | 169de44bba1064b1fdf63754db8a9eba9c5bd777fa8e4e5dd12cb47dfe4af528
Cosmetics And Beauty Product Online Store 1.0 SQL Injection
Posted Feb 18, 2022
Authored by nu11secur1ty

Cosmetics and Beauty Product Online Store version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8c96834a21c7c1412cd4faf4cbbcbefa7d9d6c0ab4c866b01e5136099c7e1647
Cosmetics And Beauty Product Online Store 1.0 Cross Site Scripting
Posted Feb 18, 2022
Authored by nu11secur1ty

Cosmetics and Beauty Product Online Store version 1.0 suffers from an html injection vulnerability that may allow for cross site scripting attacks.

tags | exploit, xss
SHA-256 | 57638540f832830c3b440d78b2f5475814d86031a79a01dbb9864f7e31ab7ac5
Solaris/SPARC chmod() Shellcode
Posted Feb 18, 2022
Authored by Marco Ivaldi

64 bytes small Solaris/SPARC setuid(0) + chmod (/bin/ksh) + exit(0) shellcode.

tags | shellcode
systems | solaris
SHA-256 | ac0a8ce6fdd207649a67626e1818a1afd680783d1a46fb94677718a1d1994210
Solaris/SPARC execve() Shellcode
Posted Feb 18, 2022
Authored by Marco Ivaldi

60 bytes small Solaris/SPARC setuid(0) + execve (/bin/ksh) shellcode.

tags | shellcode
systems | solaris
SHA-256 | d785c150823ddd32cb42d29580182ea9055608bea403fff7662eca6bf006f946
Linux/MIPS N32 MSB Reverse Shell Shellcode
Posted Feb 18, 2022
Authored by Marco Ivaldi

Linux/MIPS N32 MSB reverse shell shellcode that showcases various techniques to avoid badchars.

tags | shell, shellcode
systems | linux
SHA-256 | b1b0100dc2ab1910886ea650ac52df457851a4b14a3d07a98e33678c077b6d6e
Solaris/SPARC chmod() Shellcode
Posted Feb 18, 2022
Authored by Marco Ivaldi

Solaris/SPARC chmod() shellcode with a max size of 36 bytes.

tags | shellcode
systems | solaris
SHA-256 | 844bef47108ea6b399c1949416ca0526422e2fc8ce504d583c3f36aaa4144470
TOSHIBA DVD PLAYER Navi Support Service 1.00.0000 Unquoted Service Path
Posted Feb 18, 2022
Authored by SamAlucard

TOSHIBA DVD PLAYER Navi Support Service version 1.00.0000 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 2cc1d1500b86df40a56c75f038edc816da6770b8e20d92d568bd6cf54a307371
Bluetooth Application 5.4.277 Unquoted Service Path
Posted Feb 18, 2022
Authored by SamAlucard

Bluetooth Application version 5.4.277 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 64649e4b03d676074e058a4bea1629b478b9bf31f364383beb81f3e04a484dd8
File Santizer For HP ProtectTools 5.0.1.3 Unquoted Service Path
Posted Feb 18, 2022
Authored by SamAlucard

File Sanitizer for HP ProtectTools version 5.0.1.3 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 75b26f7c0d16235054a3bca106f8e5ac092ce5691cfad937f93f63af339eb225
Intel Management Engine Components 6.0.0.1189 Unquoted Service Path
Posted Feb 18, 2022
Authored by SamAlucard

Intel Management Engine Components version 6.0.0.1189 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | aa2df716adf81cc23d4c42c366ac98e98cb2749914b61ff2e6120564771c8fa8
Connectify Hotspot 2018 Unquoted Service Path
Posted Feb 18, 2022
Authored by SamAlucard

Connectify Hotspot 2018 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 5c8e18583e7d44bd1da428fa8bcf86559a8aafd3b288374ca36284015731ccc2
Wondershare Dr.Fone 11.4.9 Unquoted Service Path
Posted Feb 18, 2022
Authored by Luis Martinez

Wondershare Dr.Fone version 11.4.9 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 106d0419943583c10a56662e06074859f3acce2402478d51934b850d8ab8a3dd
Wondershare MobileTrans 3.5.9 Unquoted Service Path
Posted Feb 18, 2022
Authored by Luis Martinez

Wondershare MobileTrans 3.5.9 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 08be95dd8b24bfc66887fde06b5d3154e9353d19ee69f3fce7e7a634c84bd765
Wondershare FamiSafe 1.0 Unquoted Service Path
Posted Feb 18, 2022
Authored by Luis Martinez

Wondershare FamiSafe version 1.0 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 3b88f6ed1d0a7f342614bb25297f781614c37bb062c717ce7750950caf3894ee
Wondershare UBackit 2.0.5 Unquoted Service Path
Posted Feb 18, 2022
Authored by Luis Martinez

Wondershare UBackit version 2.0.5 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | ad1ce13dcab054d9b8c3bb5a98f587de4c55619898b4bc3324cbdb24e2728fed
Ubuntu Security Notice USN-5291-1
Posted Feb 17, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5291-1 - It was discovered that libarchive incorrectly handled symlinks. If a user or automated system were tricked into processing a specially crafted archive, an attacker could possibly use this issue to change modes, times, ACLs, and flags on arbitrary files. It was discovered that libarchive incorrectly handled certain RAR archives. If a user or automated system were tricked into processing a specially crafted RAR archive, an attacker could use this issue to cause libarchive to crash, resulting in a denial of service, or possibly execute arbitrary code.

tags | advisory, denial of service, arbitrary
systems | linux, ubuntu
advisories | CVE-2021-23177, CVE-2021-36976
SHA-256 | 4444b74c02c62c6e4ec7adcda07f165bfa1f82d815a4e9ed5717ef2db923bab8
Zyxel Buffer Overflow / File Disclosure / CSRF / XSS / Broken Access Control
Posted Feb 17, 2022
Authored by Stefan Viehboeck, T. Weber, Gerhard Hechenberger, Steffen Robertz | Site sec-consult.com

Multiple Zyxel devices suffer from buffer overflow, local file disclosure, unsafe storage of sensitive data, command injection, broken access control, symbolic link processing, cross site request forgery, and cross site scripting vulnerabilities.

tags | exploit, overflow, local, vulnerability, xss, csrf
SHA-256 | 0ba1f45b7a5254a119e2a3aeddf4279392e2e0120fe45790d15563c4eadf7fd2
Red Hat Security Advisory 2022-0491-01
Posted Feb 17, 2022
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2022-0491-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages for Red Hat OpenShift Container Platform 4.7.43. Issues addressed include a cross site request forgery vulnerability.

tags | advisory, csrf
systems | linux, redhat
advisories | CVE-2022-20612, CVE-2022-20617
SHA-256 | f29f3f8bf2484c20ffee55f8b559d2a41fee6d4e66ede0a44305d0851c29a638
Trojan-Spy.Win32.Zbot.aawo.Zeus-Builder MVID-2022-0493 Insecure Permissions
Posted Feb 17, 2022
Authored by malvuln | Site malvuln.com

Trojan-Spy.Win32.Zbot.aawo.Zeus-Builder malware suffers from an insecure permissions vulnerability.

tags | exploit, trojan
systems | windows
SHA-256 | c68d33d4662620076c511a94c5c24ab8841bc6d060e7cced62cf12c97e5f6761
Red Hat Security Advisory 2022-0548-01
Posted Feb 17, 2022
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2022-0548-01 - Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.

tags | advisory, ruby
systems | linux, redhat
advisories | CVE-2020-36327
SHA-256 | 986d8c7944b2362ed7e7eec57d6eaf416489c5983bf83435fea62760e077dc74
WordPress Cozmoslabs Profile Builder 3.6.1 Cross Site Scripting
Posted Feb 17, 2022
Authored by Chloe Chamberland | Site wordfence.com

WordPress Cozmoslabs Profile Builder plugin versions 3.6.1 and below suffer from a cross site scripting vulnerability.

tags | advisory, xss
advisories | CVE-2022-0653
SHA-256 | 227d0cbc687a81308dae38c43331e51ea397ccd24a1a3764724ddc45172f1143
Page 5 of 15
Back34567Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close