what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 100 RSS Feed

Files

Symantec pcAnywhere Insecure File Permissions / Privilege Escalation
Posted May 2, 2012
Authored by Edward Torkington | Site ngssoftware.com

Symantec pcAnywhere suffers from an insecure file permissions vulnerability that allows for local privilege escalation.

tags | exploit, local
SHA-256 | 33997bb51755dd9bf99f53ef0cdc9918dbf0a6168c5c6e325055dca848b578f7

Related Files

Oracle Database 11g NULL Pointer
Posted May 2, 2013
Authored by Andy Davis | Site nccgroup.com

Oracle Database 11g suffers from a null pointer denial of service vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, denial of service
SHA-256 | 7366e77f697aca2ecdba7bfb457e1fe1dfc05c93aea874d256f1f2686baea2f7
Oracle Database 11g Denial Of Service
Posted May 2, 2013
Authored by Andy Davis | Site nccgroup.com

Oracle Database 11g suffers from a denial of service vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, denial of service
SHA-256 | 60d5de1a200f206f295e52a01fff891d50942ff110a36d295495ac71804abc8b
Oracle Retail Integration Bus 13.x Directory Traversal
Posted May 2, 2013
Authored by Andrew Davies | Site nccgroup.com

Oracle Retail Integration Bus versions 13.0, 13.1, and 13.2 suffer from a directory traversal vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory
SHA-256 | 6f8a1120d684841ffb90bdd49168f11bb340737bbffc7f5797135391c8ec0273
Virtual Access Monitor SQL Injection
Posted Apr 2, 2013
Authored by Ken Wolstencroft | Site nccgroup.com

NCC Group has discovered multiple SQL injection vulnerabilities in Virtual Access Monitor. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, vulnerability, sql injection
SHA-256 | 936fbe2a15d567292c6f111a3e024b35c22de77119e739eda6031b3184566fcf
Symantec Enterprise Security Management 10.x Privilege Escalation
Posted Feb 5, 2013
Site nccgroup.com

Symantec Enterprise Security Management versions 10.x and below suffer from a privilege escalation vulnerability.

tags | advisory
SHA-256 | c443df4d121433a3485da2ff9539b52207d42460b04ff347a8310a636a91ccbc
Symantec NAC 12.1 Privilege Escalation
Posted Feb 5, 2013
Site nccgroup.com

Symantec Network Access Control versions 12.1 and below suffer from a privilege escalation vulnerability.

tags | advisory
SHA-256 | bc4b02b6cf1503ad7e787cb5dfa879912224f4fa3c21df82d20411b4bc1df961
Symantec Messaging Gateway 9.5.3-3 Cross Site Request Forgery
Posted Dec 1, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | dc05d05741d0032ca22015833dc4041ed1ca3c2d65c591c24b1938667377ebc9
Symantec Messaging Gateway 9.5.3-3 Arbitrary File Download
Posted Dec 1, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from an authenticated arbitrary file download vulnerability.

tags | exploit, arbitrary
SHA-256 | 02e19ca0a225fdcd1f0c1e586751901daa77b8a2d4f8ed03598a1e686d6ea790
SysAid Helpdesk 8.5 Pro SQL Injection
Posted Nov 30, 2012
Authored by Daniel Compton | Site nccgroup.com

SysAid Helpdesk version 8.5 Pro suffers from multiple remote blind SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 6b32da064f8d6d2d434491a60fd914b8e9cf99d9ceab79f915c421782d761761
Squiz CMS 11654 File Path Traversal
Posted Nov 30, 2012
Authored by Robert Ray | Site nccgroup.com

Squiz CMS version 11654 suffers from a directory traversal vulnerability.

tags | exploit
SHA-256 | 9aad92b935f5ad7c893786de544430c0d9cb211b6cbbaed9edeef9c1a0e15cce
Nagios XI Network Monitor 2011R1.9 SQL Injection
Posted Nov 30, 2012
Authored by Daniel Compton | Site nccgroup.com

Nagios XI Network Monitor version 2011R1.9 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 2cf56eed695230c853b7b3b4f90eb894c8c6fc9ed6af1f23249a37152923da76
Nagios XI Network Monitor 2011R1.9 OS Command Injection
Posted Nov 30, 2012
Authored by Daniel Compton | Site nccgroup.com

Nagios XI Network Monitor version 2011R1.9 suffers from OS command injection vulnerabilities.

tags | exploit, vulnerability
SHA-256 | cefe812c8837b8e434b4ea93fe2c8a19e990a7fdd85084570601625036f225c8
Oracle Gridengine sgepasswd Buffer Overflow
Posted Nov 30, 2012
Authored by Edward Torkington | Site ngssoftware.com

Oracle Gridengine's sgepasswd suffers from a buffer overflow vulnerability.

tags | exploit, overflow
SHA-256 | 27c545a1cda033f55904dc6058b6be0f7c4252cea190bf6782a8be65bf19b66d
DataArmor / DriveArmor Privilege Escalation / Decryption
Posted Nov 30, 2012
Authored by Stuart Passe | Site ngssoftware.com

DataArmor and DriveArmor versions prior to 3.0.12.861 suffer from restricted environment breakout, privilege escalation, and full disk decryption vulnerabilities.

tags | exploit, vulnerability
SHA-256 | 0fc5ee98ad7150597b23a730a459a04feb859a6daba3aacc92a056f31d04b665
Symantec Messaging Gateway Backdoor / Privilege Escalation
Posted Nov 30, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from backdoor account and privilege escalation vulnerabilities.

tags | advisory, vulnerability
advisories | CVE-2007-4573, CVE-2008-0009, CVE-2008-4210, CVE-2009-1046, CVE-2009-1337, CVE-2009-2692, CVE-2009-3547, CVE-2010-1146, CVE-2010-2959, CVE-2010-3848, CVE-2010-3849, CVE-2010-3850, CVE-2010-3904, CVE-2010-4073, CVE-2010-4258, CVE-2010-4347
SHA-256 | 0037358302ea3ef9e579ea39b29f6aeedaab8ea3fd730436e1fe43363d09f8dc
Apple Mac OS X Lion Arbitrary Code Execution
Posted Sep 28, 2012
Authored by Andy Davis | Site ngssecure.com

Andy Davis of NCC Group has discovered an arbitrary code execution vulnerability in Apple OS X Lion versions 10.7 to 10.7.4 and OS X Lion Server versions 10.7 to 10.7.4.

tags | advisory, arbitrary, code execution
systems | apple, osx
SHA-256 | 4d92bdc3d4a04a081d6ffd6f55afa9423679f106f5b331ef53e98497ba57edae
Symantec Messaging Gateway 9.5.3-3 Cross Site Scripting
Posted Sep 18, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from an out-of-band stored cross site scripting vulnerability via email. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, xss
SHA-256 | efc556b14d7eaaab1ee4e073431e2ec92e2cb39a2d25ac6dc8ece93acb4541eb
Symantec Messaging Gateway 9.5.3-3 Arbitrary File Download
Posted Sep 18, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from an authenticated arbitrary file download vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, arbitrary
SHA-256 | 25af61338564cb5ac5945690d75e3ef01177fd3439ed35b0b88b7b650a1c8240
Symantec Messaging Gateway 9.5.3-3 Unauthorized SSH Access
Posted Sep 18, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from an unauthorized ssh access vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory
SHA-256 | c0fb665289612f001a3b0b55edd4149f5142e0dc932b0d8e4991ffd2e0c26fc2
Symantec Messaging Gateway 9.5.3-3 Cross Site Request Forgery
Posted Sep 18, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from a cross site request forgery vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, csrf
SHA-256 | 378f303f72289da19ddbd813812ef932bf32812e90d735f95783481de4d04b58
Symantec Messaging Gateway 9.5.3-3 Disclosure
Posted Sep 18, 2012
Authored by Ben Williams | Site nccgroup.com

Symantec Messaging Gateway version 9.5.3-3 suffers from an unauthenticated detailed version disclosure vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory
SHA-256 | bbb4709841e4fe0d02dc171408f915bd1b98a01e969446b1da6b82f3608fa832
SysAid Helpdesk Pro 8.5.04 Cross Site Scripting
Posted Aug 20, 2012
Authored by Daniel Compton | Site nccgroup.com

SysAid Helpdesk Pro version 8.5.04 suffers from a stored cross site scripting vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, xss
SHA-256 | 03c43058e177e3b91020c6e39d3d4b8fef0a48ac9173faa8dfc4180f12dd8a08
SysAid Helpdesk Pro 8.5.04 Blind SQL Injection
Posted Aug 20, 2012
Authored by Daniel Compton | Site nccgroup.com

SysAid Helpdesk Pro version 8.5.04 suffers from a remote blind SQL injection vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, remote, sql injection
SHA-256 | fa0cc50d3a2adf2a8ddb3859e8fb079052be312b93323a5634d101115b058456
Moodle CMS 2.2.1 Cross Site Scripting
Posted Aug 20, 2012
Authored by Daniel Compton | Site nccgroup.com

Moodle CMS version 2.2.1 suffers from a stored cross site scripting vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, xss
SHA-256 | 4a0870cfddbf39fd62f02df0db57dd921f34ce9e7f9ed2934dac0a28128680f8
Squiz CMS 11654 Directory Traversal
Posted Aug 20, 2012
Authored by Robert Ray | Site nccgroup.com

Squiz CMS version 11654 suffers from a directory traversal vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory
SHA-256 | bd1d48dd97d7de5029f3cb53576f8191116e49f18e456dc5eea6446e09176111
Page 1 of 4
Back1234Next

File Archive:

December 2023

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    11 Files
  • 2
    Dec 2nd
    0 Files
  • 3
    Dec 3rd
    0 Files
  • 4
    Dec 4th
    32 Files
  • 5
    Dec 5th
    10 Files
  • 6
    Dec 6th
    13 Files
  • 7
    Dec 7th
    23 Files
  • 8
    Dec 8th
    19 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close