what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 51 RSS Feed

Files Date: 2023-07-11 to 2023-07-12

Qatanna POS Software 1.0 Blind SQL Injection
Posted Jul 11, 2023
Authored by h4ck3r

Qatanna POS Software version 1.0 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 49a007024b408342a6c4ffe7fc445e5ed6da2a6ce49385bba67106930f7805e9
Red Hat Security Advisory 2023-4008-01
Posted Jul 11, 2023
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2023-4008-01 - Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Issues addressed include a bypass vulnerability.

tags | advisory, python, bypass
systems | linux, redhat
advisories | CVE-2023-24329
SHA-256 | 446d726ba1666bd8d2dcdf09f2b9166abaacfeb1a5be08387fc55d813ea928cb
Game Jackal Server 5 Unquoted Service Path
Posted Jul 11, 2023
Authored by Idan Malihi

Game Jackal Server version 5 suffers from an unquoted service path vulnerability.

tags | exploit
advisories | CVE-2023-36166
SHA-256 | 4eece30ec529072adf4f2209d2a2144ba485b0c1a36dc5f5ce2ebb7dc1f71c88
AVG Anti Spyware 7.5 Unquoted Service Path
Posted Jul 11, 2023
Authored by Idan Malihi

AVG Anti Spyware version 7.5 suffers from an unquoted service path vulnerability.

tags | exploit
advisories | CVE-2023-36167
SHA-256 | 4626fff738637fd6ad761ce20fc3f9fe7263941973f44e4480bd61f5c0a9d8fb
QuickQR 6.3.7 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

QuickQR version 6.3.7 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 656d3313e7a928fadf72915a6e743f8cd1666b0fff4d750d1efd970bc9cfb4ab
QuickJob 6.1 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

QuickJob version 6.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | ae0a66e77c8f8f98352b9916eb10db54968183f163abf6d123fc95c933b8e2f2
QuickVCard 2.1 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

QuickVCard version 2.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 9b5c2cc9599090ac30631078e3904aef7398489ad37187e8ca8e14025716f311
Ubuntu Security Notice USN-6211-1
Posted Jul 11, 2023
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 6211-1 - USN-6130-1 fixed vulnerabilities in the Linux kernel. Unfortunately, that update introduced a spurious warning in the IPv6 subsystem. This update removes the undesired warning message.

tags | advisory, kernel, vulnerability
systems | linux, ubuntu
SHA-256 | a8abbe6f1f962f8baef801725c6d2fa1f53bf7dcc31102be289a48cdd2ef7919
Virtual Freer 1.57 Cross Site Scripting
Posted Jul 11, 2023
Authored by indoushka

Virtual Freer version 1.57 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | ce4911129af04cb4a21a0100437eada036e9f2ec7a6163ee10a35d1bae269d36
Ubuntu Security Notice USN-6209-1
Posted Jul 11, 2023
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 6209-1 - Claudio Bozzato discovered that Gerbv incorrectly handled certain Gerber files. An attacker could possibly use this issue to crash Gerbv , or execute arbitrary code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. Claudio Bozzato discovered that Gerbv incorrectly handled certain Gerber files. An attacker could possibly use this issue to disclose information, crash Gerbv , or execute arbitrary code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS.

tags | advisory, arbitrary
systems | linux, ubuntu
advisories | CVE-2021-40391, CVE-2021-40393, CVE-2021-40401
SHA-256 | ce1d7e9ba6dcfe4ff56f3cd3479422174560a0b89e92073d34445d03c1ecb1a5
Inout Blockchain EasyPayments 1.0.1 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

Inout Blockchain EasyPayments version 1.0.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 83fe7874b2efdddd72f9c556c537d47f973235787ce5808a0ee800f5c504c04c
Inout Blockchain AltExchanger 2.0 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

Inout Blockchain AltExchanger version 2.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | f282a000465fd52bbc8e736fd86bb200c6a26cda038f000e955811be34566728
QuickAI OpenAI 3.8.1 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

QuickAI OpenAI version 3.8.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8fc4e091b45cf03fd5542090c42b5221cbf3813ea93fffd652a02ccb2f85ef9b
Siemens A8000 CP-8050 / CP-8031 Code Execution / Command Injection
Posted Jul 11, 2023
Authored by Gerhard Hechenberger, Steffen Robertz, Constantin Schieber-Knoebl, Stefan Viehbock, Gorazd Jank, Christian Hager | Site sec-consult.com

Siemens A8000 CP-8050 and CP-8031 MASTER MODULE versions 04.92 and below suffer from remote code execution, command injection, hard-coded password, and console login vulnerabilities.

tags | exploit, remote, vulnerability, code execution
advisories | CVE-2023-28489, CVE-2023-33919, CVE-2023-33920, CVE-2023-33921
SHA-256 | 61cdf36c1ecb8a689b5d1609b70af4afbbfe93f06571b226262e46776c6f150b
From RFC To RCE 16 Years Later
Posted Jul 11, 2023
Authored by Fabian Hagg | Site sec-consult.com

Whitepaper titled Everyone Knows SAP, Everyone Uses SAP, Everyone Uses RFC, No One Knows RFC: From RFC to RCE 16 Years Later.

tags | paper
SHA-256 | ec3e058c8f83be6779103d8bb8f9cdbd4b8c1663435f67a9d7c36923c7afe54a
Debian Security Advisory 5449-1
Posted Jul 11, 2023
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5449-1 - An anonymous researcher discovered that processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

tags | advisory, web, arbitrary, code execution
systems | linux, debian, apple
advisories | CVE-2023-32439
SHA-256 | f859e7e8827523481f32d52ea8c3dd4ba963a5e738312c34d9364a91544d1484
Netlify CMS 2.10.192 Cross Site Scripting
Posted Jul 11, 2023
Authored by tmrswrr

Netlify CMS version 2.10.192 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 22c8587b84da274531e18f07c10ae4e27dc53ba5a8ab16c345c5944a744ddbf8
BuildaGate5 Cross Site Scripting
Posted Jul 11, 2023
Authored by Idan Malihi

The BuildaGate5 library suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2023-36163
SHA-256 | cc7f52d929255d8a156c7d167fff822b4dafeaafc382528ba23b8bd3d31b7a06
Rukovoditel Project Management CRM 2.4.1 Local File Inclusion
Posted Jul 11, 2023
Authored by indoushka

Rukovoditel Project Management CRM version 2.4.1 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 3188a9e1f946b8d15e28a7a94a20a93b96c0bc83a23ed9a46bfe95f0c01754b4
Inout Blockchain FiatExchanger 3.0 SQL Injection
Posted Jul 11, 2023
Authored by CraCkEr

Inout Blockchain FiatExchanger version 3.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 239bcee8d5983cf2fc354932aecb9a78d2878fce29ee81b5845f1df3e46f2238
MiniTool Partition Wizard ShadowMaker 12.7 Unquoted Service Path
Posted Jul 11, 2023
Authored by Idan Malihi

MiniTool Partition Wizard ShadowMaker version 12.7 suffers from multiple unquoted service path vulnerabilities.

tags | exploit, vulnerability
advisories | CVE-2023-36164, CVE-2023-36165
SHA-256 | b65c7f242f90cef498d3dec84608658f583d76707f10f01c7ede7b38725ddd96
CANDOO Strategic CMS 2.0 SQL Injection
Posted Jul 11, 2023
Authored by indoushka

CANDOO Strategic CMS version 2.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | 5a0fa399d1e184b4d35844712a94b4e622e79013ed24361bd1ad0a36f7c4b4e2
Microsoft 365 MSO 2306 Build 16.0.16529.20100 Remote Code Execution
Posted Jul 11, 2023
Authored by nu11secur1ty

Microsoft Outlook suffers from a remote code execution via a maliciously crafted word file.

tags | exploit, remote, code execution
advisories | CVE-2023-33131
SHA-256 | 725407165978045839618f3033277cb34934c9f71370192c909d813afb99cc0b
Boomerang Parental Control App Cross Site Scripting / Privilege Escalation
Posted Jul 11, 2023
Authored by Fabian Densborn, Bernhard Grundling | Site sec-consult.com

Boomerang Parental Control App versions prior to 13.83 suffer from cross site scripting and privilege escalation vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2023-36620, CVE-2023-36621
SHA-256 | 36d9a4ce808b543a35f028f7b83b69cd74e5758e476b4d02cd6aa7de664767d3
ILIAS eLearning Platform XSS / Remote Code Execution
Posted Jul 11, 2023
Authored by Armin Stock | Site sec-consult.com

ILIAS eLearning platform suffers from cross site scripting and multiple code execution vulnerabilities. Various versions are affected.

tags | exploit, vulnerability, code execution, xss
SHA-256 | 5868da9da134a76c37eeb18ec2a1d909c7583b1c0d5cf5ac6f507d93749e8a1e
Page 2 of 2
Back12Next

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    28 Files
  • 16
    Jul 16th
    6 Files
  • 17
    Jul 17th
    34 Files
  • 18
    Jul 18th
    6 Files
  • 19
    Jul 19th
    34 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    19 Files
  • 23
    Jul 23rd
    17 Files
  • 24
    Jul 24th
    47 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close