what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 100 RSS Feed

Files

Photo Video Album Transfer 1.0 Local File Inclusion / Shell Upload
Posted Dec 12, 2013
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

Photo Video Album version 1.0 suffers from local file inclusion and remote shell upload vulnerabilities.

tags | exploit, remote, shell, local, vulnerability, file inclusion
SHA-256 | f3876755c36f7ac9243e6f8a55d654c919116bcd7078c7115015dc4c737dd532

Related Files

availphoto-sqlxss.txt
Posted Sep 10, 2008
Authored by sl4xUz

Availscript Photo Album suffers from cross site scripting and SQL injection vulnerabilities in pics.php.

tags | exploit, php, vulnerability, xss, sql injection
SHA-256 | 2f26fa6572f8286017ccb5793aea1deef54ec9aacf54e16d15db481e28860924
Gentoo Linux Security Advisory 200809-8
Posted Sep 8, 2008
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200809-08 - Amarok uses temporary files in an insecure manner, allowing for a symlink attack. Dwayne Litzenberger reported that the MagnatuneBrowser::listDownloadComplete() function in magnatunebrowser/magnatunebrowser.cpp uses the album_info.xml temporary file in an insecure manner. Versions less than 1.4.10 are affected.

tags | advisory
systems | linux, gentoo
advisories | CVE-2008-3699
SHA-256 | a8677abbc4fd25501e2f4c6ef773ea98bc5581d088341c3ff7771de90a64c963
Secunia Security Advisory 31649
Posted Sep 5, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Alemin_Krali has reported some vulnerabilities in aspWebAlbum, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks or compromise a vulnerable system.

tags | advisory, vulnerability, xss, sql injection
SHA-256 | c2ceb3aa49a236612dd79ed4ea3eb404cf2764d676e1985d11bb9e29ca81ddb5
aspwebalbum-sqlxssupload.txt
Posted Sep 3, 2008
Authored by Alemin Krali | Site al3m.blogspot.com

aspWebAlbum version 3.2 suffers from cross site scripting, SQL injection, and upload vulnerabilities.

tags | exploit, vulnerability, xss, sql injection, file upload
SHA-256 | 9100025966c075d93a29f844cda21de61f1b0b61c904988e6d76b4864284e1ca
ezwebalbum-cookie.txt
Posted Jul 23, 2008
Authored by hadihadi | Site virangar.org

EZWebAlbum suffers from an insecure cookie handling vulnerability that allows anyone to be an administrator.

tags | exploit, insecure cookie handling
SHA-256 | 2b4daa4e463ca44a323fb0d3c054525f029f5c280b1fe776bb840583356dad62
ezwebalbum-disclose.txt
Posted Jul 21, 2008
Authored by Ghost Hacker | Site real-hack.net

EZWebAlbum suffers from a remote file disclosure vulnerability.

tags | exploit, remote, info disclosure
SHA-256 | 081640ba7602be156e088c197157995ee7aa643257d38bb76bfef52e128b5644
webalbum-xss.txt
Posted Jun 6, 2008
Authored by CWH Underground | Site citecclub.org

WEBAlbum version 2.0 and below suffer from a remote stored cross site scripting vulnerability.

tags | exploit, remote, xss
SHA-256 | 4a243ea4bd1630011d4692bf1836c6fa923d09d800068ac5fb50c3226c883751
Secunia Security Advisory 30407
Posted May 29, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - cOndemned has discovered two vulnerabilities in PHPhotoalbum, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, vulnerability, sql injection
SHA-256 | 527bd6e27486fc3e5c20e1bef1c5a325ea8e87efb26bc0ad70d88a37284b1c3c
phphotoalbum-sql.txt
Posted May 28, 2008
Authored by cOndemned | Site condemned.r00t.la

PHPhotoalbum version 0.5 suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 721077397f84e8e69167f5ef354777f2e9fa8b4733e0b7d39c565c4fef78a9cd
adobealbum-overflow.txt
Posted Apr 21, 2008
Authored by c0ntex | Site open-security.org

Adobe Photoshop Album Starter, Adobe After Effects CS3, and Adobe Photoshop CS3 all suffer from a local buffer overflow vulnerability. Included is an exploit for Album Starter version 3.2 on Microsoft Windows SP2 that launches calc.exe.

tags | exploit, overflow, local
systems | windows
SHA-256 | b9d39af85285018f275769b36f2ed7800d54726f4a9f858f9a4302a44dc409f9
joomlamyalbum-sql.txt
Posted Mar 28, 2008
Authored by parad0x | Site inso.host.sk

The Joomla MyAlbum component version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 771c22825e7f27cb918d9625ea1fcb03472301cfe6352b8e6650a0344b42b7f4
kap-sql.txt
Posted Mar 19, 2008
Authored by JosS | Site spanish-hackers.com

KAPhotoservice remote SQL injection exploit that makes use of album.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 0643496d453fa9f22174d217201584f7c5b02522fccba291927674b10ce23d56
Secunia Security Advisory 28988
Posted Feb 21, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in the WP Photo Album (WPPA) plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, sql injection
SHA-256 | c545f997ff32681c104254c71d18d26025500dbff7a5e9565e3eec70e025f2a3
wpphoto-sql.txt
Posted Feb 18, 2008
Authored by S@BUN | Site hackturkiye.com

The WordPress Photo Album suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 4cdc7ed07e632099d2bc0f92847a29db5cf94c91770e7d9e62c1517fb931d1f4
Secunia Security Advisory 28501
Posted Jan 16, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Russ McRee has reported a vulnerability in Dansie Photo Album, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | 25dd311a566e093badf0f50c2cea6eb36f9d9a57faba4d55283fa5b3c3b4faac
imagealbum-sql.txt
Posted Jan 11, 2008
Authored by dB

ImageAlbum versions 2.0.0b2 and below suffer from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 8faa5e4a3562f47c3b4fd096f989d84dca895b9ac459d9ed15d97ac153f594e4
joomla-comalbum-rfi.txt
Posted Oct 23, 2007
Authored by vitux

The Joomla Photo Album component version 1.24 suffers from a remote file inclusion vulnerability.

tags | exploit, remote, file inclusion
SHA-256 | 318d6777b649e658d0761d9421ef7355471656ba28580f7305a468e04664e46d
Gentoo Linux Security Advisory 200710-13
Posted Oct 15, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200710-13 - LT discovered that the match parameter in albums.php is not properly sanitized before being processed. The Apache development team also reported an error when handling user sessions. Versions less than 3.3.3.5 are affected.

tags | advisory, php
systems | linux, gentoo
advisories | CVE-2007-4437, CVE-2007-4438
SHA-256 | 51e034dfc86c577529b8bcafe6b158ef2edd5920f0e562bfb87fce22c93fc6c1
la-rfi.txt
Posted Oct 10, 2007
Authored by S.W.A.T. | Site xmors.com

LiveAlbum version 0.9.0 suffers from a remote file inclusion vulnerability in common.php.

tags | exploit, remote, php, code execution, file inclusion
SHA-256 | b12c73953607f6967e6727aa5bebca1908e2e6c12b7e17f316e3ed6a4133c7eb
Secunia Security Advisory 27139
Posted Oct 10, 2007
Authored by Secunia | Site secunia.com

Secunia Security Advisory - S.W.A.T. has discovered a vulnerability in LiveAlbum, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.

tags | advisory
SHA-256 | 3a608d5f155a576cfbbf02df15183bc9ca2e8688d349c69d0cf41b2a752c0fc9
phpbbplusrbt-rfi.txt
Posted Sep 25, 2007
Authored by Rbt-4 Crew

phpBB Plus suffers from a remote file inclusion vulnerability in lang_admin_album.php.

tags | exploit, remote, php, code execution, file inclusion
SHA-256 | 3db115fede6f2e754b24773d279e3a245c98df46983db5e5425fd1bff288efa7
Trustix Secure Linux Security Advisory 2007.5
Posted Sep 7, 2007
Authored by David Thiel | Site isecpartners.com

iTunes version 7.3.x suffers from a heap overflow vulnerability in the album cover parsing functionality. This has been fixed in version 7.4.

tags | advisory, overflow
SHA-256 | 28b4a0b4a1f784dab5f1f222467ff29b633f6ffdf4df0e5380890bb5487820be
Mandriva Linux Security Advisory 2007.143
Posted Jul 11, 2007
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - Multiple stack-based buffer overflows in stream/stream_cddb.c in MPlayer before 1.0rc1try3 allow remote attackers to execute arbitrary code via a CDDB entry with a long album title or category.

tags | advisory, remote, overflow, arbitrary
systems | linux, mandriva
advisories | CVE-2007-2948
SHA-256 | 8811ea551aa8ea7aee91fb2aa3d1a5832405aa5c947b0b09a04858480aebcf0a
monalbum-exec.txt
Posted May 16, 2007
Authored by Dj7xpl | Site Dj7xpl.2600.ir

Monalbum version 0.8.7 remote code execution exploit.

tags | exploit, remote, code execution
SHA-256 | 823c3b6ff02bf8997bd11a826848edf291e9dcce36d7b65559bbfafb51eef30b
Secunia Security Advisory 25260
Posted May 15, 2007
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Dj7xpl has reported some vulnerabilities in MonAlbum, which can be exploited by malicious people to compromise a user's system.

tags | advisory, vulnerability
SHA-256 | 3c9346cd9ac682cd27db5dff4af2e46624c6073967d768c4d4691242c433704d
Page 3 of 4
Back1234Next

File Archive:

December 2023

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    11 Files
  • 2
    Dec 2nd
    0 Files
  • 3
    Dec 3rd
    0 Files
  • 4
    Dec 4th
    32 Files
  • 5
    Dec 5th
    10 Files
  • 6
    Dec 6th
    13 Files
  • 7
    Dec 7th
    23 Files
  • 8
    Dec 8th
    19 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close