exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 100 RSS Feed

Files

vBulletin 5.5.2 PHP Object Injection
Posted Nov 28, 2022
Authored by EgiX | Site karmainsecurity.com

vBulletin versions 5.5.2 and below suffers from an issue where user input passed through the "messageids" request parameter to /ajax/api/vb4_private/movepm is not properly sanitized before being used in a call to the unserialize() PHP function. This can be exploited by malicious users to inject arbitrary PHP objects into the application scope, allowing them to carry out a variety of attacks, such as executing arbitrary PHP code.

tags | exploit, arbitrary, php
SHA-256 | 642eb80065f04eaf2d94765043c9d033ac86f7e4e3dda966ce90660dd7167e15

Related Files

vBulletin 4.1.3 SQL Injection
Posted Jul 21, 2011
Authored by FB1H2S

vBulletin versions 4.0.x through 4.1.3 suffer from a remote SQL injection vulnerability in messagegroupid.

tags | exploit, remote, sql injection
SHA-256 | f6247497c278e39673c5ca386d68ebbd647569a0f0b7ec7d68b6e4a6963a2b5c
vBulletin Search UI SQL Injection
Posted Jul 21, 2011
Authored by James Bercegay | Site gulftech.org

vBulletin suffers from a Search UI remote SQL injection vulnerability. Proof of concept code included.

tags | exploit, remote, sql injection, proof of concept
SHA-256 | ff18a6080f828d0166944b872e6dd81a31c0dcaeaa4d4bb564bd68099b4dfd64
Secunia Security Advisory 45290
Posted Jul 20, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in vBulletin Publishing Suite and vBulletin Forum Classic, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, sql injection
SHA-256 | 70b672df156554b703386d98b87568c7dec04a4d978b3f8c02780b855d6e500c
vBulletin CMS 4.1.1 Recent Articles Cross Site Scripting
Posted Jul 2, 2011
Authored by X-h4ck

vBulletin CMS version 4.1.1 with the Recent Articles widget suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 72f350a6e733b48455ad3965cc1b997ae594ecfa7d27995664b27d8e3ec8d8a8
Secunia Security Advisory 45026
Posted Jun 20, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in the vBExperience module for vBulletin, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | a7611a2483ddcfcbd19f5211af2cdc12a05437bcaaf735d11e0a8c4fdf48d986
vBulletin VBExperience Cross Site Scripting
Posted Jun 17, 2011
Authored by Mr.ThieF

The vBExperience add-on as shipped with vBulletin versions 3.x.x and 4.x.x suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e45483003574c24072a4ea684eb504b8ab7dfaaaf34ed36b7ffdcec312891b79
vBulletin 3.x.x vBTube 1.2.9 Cross Site Scripting
Posted Jun 14, 2011
Authored by Mr.ThieF

vBulletin version 3.x.x with the vBTube version 1.2.9 add-on suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | e7f22f85242668c8be470d27ff17b6110ad159892ef6a775b8c5c662c0fc2ff9
Secunia Security Advisory 44806
Posted Jun 6, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in the vBExperience module for vBulletin, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | 2e679b74fe0b17b291cd3200cc0ee3bd3ba68cdfb0724fcd3cdba921e723f941
Secunia Security Advisory 44830
Posted Jun 6, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A weakness has been reported in vBulletin, which can be exploited by malicious people to conduct spoofing attacks.

tags | advisory, spoof
SHA-256 | 4bacd401ce9f10a5cd777a0e0c28211620c0e05c1ca27e9736b38eeada837af2
vBulletin 3.x vBExperience Cross Site Scripting
Posted Jun 4, 2011
Authored by Mr.ThieF

vBulletin version 3.x.x with the vBExperience add-on suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e924dae1d3bbb435c119d685e197c46a03bae17d96c4120bcd85abab9559991f
vBulletin 4.1.3 Open Redirect
Posted Jun 3, 2011
Authored by Robert Gilbert

vBulletin versions 3 through 4.1.3 suffer from an open redirect vulnerability.

tags | exploit
advisories | CVE-2011-5251
SHA-256 | 989a8a937a2214f2d260b564c812ed66065292cdff6d9760e9c95465e25c148f
Secunia Security Advisory 44794
Posted Jun 1, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability with an unknown impact has been reported in vBulletin Publishing Suite and vBulletin Forum Classic.

tags | advisory
SHA-256 | 7932f7ab4ac8dfbc82d9c67bd333603f64b925bb8f0471e5640600790c63902b
vBulletin 4.1.2 search.php SQL Injection
Posted May 30, 2011
Authored by James Bercegay | Site gulftech.org

vBulletin versions 4 through 4.1.2 are vulnerable to a preauth SQL Injection issue that may be used by an attacker to extract user credentials, and potentially gain administrative access, potentially leading to remote PHP code execution.

tags | exploit, remote, php, code execution, sql injection
SHA-256 | 66a76054bed8d3379af551d8013a3dd18f852a2244d56170a687f6adc9318f37
vBulletin 4.0.x SQL Injection / Cross Site Request Forgery
Posted May 23, 2011
Authored by KedAns-Dz

vBulletin version 4.0.x suffers from a remote SQL injection vulnerability that can be leveraged using a cross site request forgery vulnerability.

tags | exploit, remote, sql injection, csrf
SHA-256 | f9857c4738bd671fa3a07ef92ee6901ad48b101a0bda8bf8372d643d1114462e
vBulletin 4.1.2 SQL Injection
Posted May 21, 2011
Authored by D4rkB1t

vBulletin versions 4.0.x through 4.1.2 suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 9905c4541f0ab913046a1adbc85e999c3f1167862f2838381864c6756578f1aa
Point Market System 3.1x SQL Injection
Posted Apr 10, 2011
Authored by Net.Edit0r

vBulletin plugin Point Market System version 3.1x suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 9dd6ddefa3f42971e834a1ba0b5352a7146288deb26c203dba0297a59e5ad117
Secunia Security Advisory 44084
Posted Apr 9, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in vBulletin Publishing Suite and vBulletin Forum Classic, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, sql injection
SHA-256 | b940dc36414a66d01a8c6c9c41073452388658de791e8ca9ce71f33dca231734
Hashkill 0.2.4
Posted Mar 7, 2011
Authored by gat3way | Site gat3way.eu

Hashkill is an opensource hash cracker for Linux that uses OpenSSL. Currently it supports 4 attack methods (dictionary, bruteforce, hybrid) and has 31 plugins for different types of hashes (md5, sha1, phpbb3, mysql, md5 (unix), des(unix), sha(unix), vbulletin, smf, etc). It is multithreaded and supports session save/restore.

Changes: The most important new feature is GPU-based cracking. The GPU kernels are highly optimized to deliver very fast speeds. Various other bug fixes and feature enhancements added.
tags | cracker
systems | linux, unix
SHA-256 | 26a6c0886046f56b50a2bf26bba2ee3a754c57452de7073dcc492e03d8e07022
EggAvatar For vBulletin 3.8.x SQL Injection
Posted Mar 6, 2011
Authored by DSecurity

EggAvatar for vBulletin version 3.8.x suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 45976127b0631724f09b42d026c55db87b2303688300a125a802dfa83c5e9d6d
cChatBox For vBulletin 3.6.8 / 3.7.x SQL Injection
Posted Mar 2, 2011
Authored by DSecurity

cChatBox for vBulletin versions 3.6.8 and 3.7.x suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 721e37bfba2eca950514ff9e9b12e67f8dd087cddaea943f5d735600992a1700
vBulletin 4.0.8 PL1 Cross Site Scripting Filter Bypass
Posted Nov 22, 2010
Authored by MaXe

vBulletin version 4.0.8 PL1 suffers from a cross site scripting filter bypass vulnerability.

tags | exploit, xss, bypass
SHA-256 | d46b6323051b1c93fb2c5d131d46becb2785b74ae325c5aa82a1f76eb3ccb419
Secunia Security Advisory 42209
Posted Nov 17, 2010
Authored by Secunia | Site secunia.com

Secunia Security Advisory - MaXe has reported a vulnerability in vBulletin, which can be exploited by malicious users to conduct script insertion attacks.

tags | advisory
SHA-256 | 4d1179df97bb06f799ef2b3684c3ed76bc0e2d46f72c2d5fd40e191bb1f16592
vBulletin 4.0.8 Cross Site Scripting
Posted Nov 16, 2010
Authored by MaXe

vBulletin version 4.0.8 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 532b77cbe0f670822b9ca72b962634967c91c6ebf944208f42852cd4e2b6da83
vBulletin Downloads FileInfo SQL Injection
Posted Nov 11, 2010
Authored by jos_ali_joe

vBulletin Downloads FileInfo suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 5a1f9cba7d1877678b412adcfd181ae8d615cb3784c52e11c6d21277ca0e477a
vBulletin 3.6.1 SQL Injection
Posted Oct 20, 2010
Authored by jos_ali_joe

vBulletin version 3.6.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | e1eb3d388da11c00dc9be594c878990679dda896dbcaf95aa0383b2488531777
Page 2 of 4
Back1234Next

File Archive:

June 2023

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jun 1st
    18 Files
  • 2
    Jun 2nd
    13 Files
  • 3
    Jun 3rd
    0 Files
  • 4
    Jun 4th
    0 Files
  • 5
    Jun 5th
    32 Files
  • 6
    Jun 6th
    39 Files
  • 7
    Jun 7th
    22 Files
  • 8
    Jun 8th
    17 Files
  • 9
    Jun 9th
    20 Files
  • 10
    Jun 10th
    0 Files
  • 11
    Jun 11th
    0 Files
  • 12
    Jun 12th
    0 Files
  • 13
    Jun 13th
    0 Files
  • 14
    Jun 14th
    0 Files
  • 15
    Jun 15th
    0 Files
  • 16
    Jun 16th
    0 Files
  • 17
    Jun 17th
    0 Files
  • 18
    Jun 18th
    0 Files
  • 19
    Jun 19th
    0 Files
  • 20
    Jun 20th
    0 Files
  • 21
    Jun 21st
    0 Files
  • 22
    Jun 22nd
    0 Files
  • 23
    Jun 23rd
    0 Files
  • 24
    Jun 24th
    0 Files
  • 25
    Jun 25th
    0 Files
  • 26
    Jun 26th
    0 Files
  • 27
    Jun 27th
    0 Files
  • 28
    Jun 28th
    0 Files
  • 29
    Jun 29th
    0 Files
  • 30
    Jun 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close