what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 465 RSS Feed

ASP Files

ASP Ublog 1.6 Database Disclosure
Posted Jan 5, 2010
Authored by indoushka

ASP Ublog version 1.6 suffers from a remote database download vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | cee10f65d05dd0e27836f9408a1ccd68a72e0e6931a165b87de53b742d42ac24
ASP SkyPortal 1 Database Disclosure
Posted Jan 5, 2010
Authored by indoushka

ASP SkyPortal version 1 suffers from a remote database download vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | e6a5a78ebe52ee5cf1cef83243eb91b4a188ce40fd95bcc9b05e867343426051
ASP PD Portal 4.0 Database Disclosure
Posted Jan 4, 2010
Authored by indoushka

ASP PD Portal version 4.0 suffers from a database download vulnerability.

tags | exploit, asp, info disclosure
SHA-256 | a805c902aac71243acc51fd3db494490c9071f90865d09bd68118243570333f4
ASP Vural Portal 2.0 Database Disclosure
Posted Jan 4, 2010
Authored by indoushka

ASP Vural Portal version 2.0 suffers from a remote database download vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | a2702cae870076d51d40a7c9d0279081e00734b59cf71528b6e1d42a9a03abd0
ASP Edepyahu Video Database Disclosure
Posted Jan 4, 2010
Authored by indoushka

ASP Edepyahu Video suffers from a remote database download vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | 29ef230631a50b7eeb3c7c4a0b558ebaacc9d67fbf4710df94bd59d9d6650672
ASP Zirve Portal Database Disclosure
Posted Jan 4, 2010
Authored by indoushka

ASP Zirve Portal suffers from a remote database disclosure vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | 854064e4c416b2e4c40d31fe84a1be5f849accbd65c569e28141f305f3cc9145
ASP Cnr Hikaye Scripti Database Download
Posted Jan 4, 2010
Authored by indoushka

ASP Cnr Hiyake Scripti suffers from a remote database download vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | 77f4c5f1a2381570de8dd3628d61b01cc20473a5c12e6e731779146445cc6239
ASP Fot Video Siciripti 1.1 Database Download
Posted Jan 4, 2010
Authored by indoushka

ASP Fot Video Siciripti version 1.1 suffers from a remote database download vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | 4927757e937283c7ca243e62ee2e5b46078828262cf2a4032751d71de293e178
ASP Invision Gallery Show SQL Injection
Posted Dec 30, 2009
Authored by R3d-D3v!L

ASP Invision gallery_show.asp suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection, asp
SHA-256 | 48378027c7f88c104facb07bab2a2e049cbeda4787f3ced528ab23a4ca72274a
Asp JGBBS 3.0beta1 Database Disclosure
Posted Dec 30, 2009
Authored by indoushka

Asp JGBBS version 3.0beta1 suffers from a remote database disclosure vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | 7319973bc6a7fec0a1d40d04e432865f6bc2063cb34fc3935259fd5103b3c45e
Fully Functional ASP Forum 1.0 Database Disclosure
Posted Dec 30, 2009
Authored by indoushka

Fully Functional ASP Forum version 1.0 suffers from a database disclosure vulnerability.

tags | exploit, asp, info disclosure
SHA-256 | cdadd49d2f33dbd2a6e856092cfb024afad8c7c46f05041225273621fb875feb
ASP Makit News/Blog Poster 3.1 Database Disclosure
Posted Dec 30, 2009
Authored by indoushka

ASP Makit News/Blog Poster version 3.1 suffers from a remote database disclosure vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | f8e37f234aede523f8eb8662ef25057c3cc23afa829ca0614715f4223eb768a6
ASP Battle Blog Database Disclosure
Posted Dec 30, 2009
Authored by indoushka

ASP Battle Blog suffers from a remote database disclosure vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | fc0f6767107f2f2402ceb5c2afe556306b664f129954708e331612e7ac032da3
ASP Simple Blog 3.0 Shell Upload
Posted Dec 30, 2009
Authored by indoushka

ASP Simple Blog version 3.0 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell, asp
SHA-256 | b76b6b905f4535c692f5efca57d341253413a3c0139cd95b9eadb241a0dae05e
ActiveBuyandSell 6.2 Blind SQL Injection
Posted Dec 18, 2009
Authored by R3d-D3v!L

ActiveBuyandSell version 6.2 suffers from a blind SQL injection vulnerability in buyersend.asp.

tags | exploit, sql injection, asp
SHA-256 | 27892f081153209f7dd1b6589496ff57cb9b71c50a00f7226e441189432325f1
Free ASP GuestBookPro Database Disclosure
Posted Dec 16, 2009
Authored by ViRuSMaN

Free ASP GuestBookPro script suffers from a remote database disclosure vulnerability.

tags | exploit, remote, asp, info disclosure
SHA-256 | a52d9f78328587b6ef4a6b9485b292c7e2d69af08779b7de2ed18d48163f7fa6
Accessible ASP Star Ratings Script 0.2 SQL Injection
Posted Dec 16, 2009
Authored by R3d-D3v!L

Accessible ASP Star Ratings Script version 0.2 suffers form a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection, asp
SHA-256 | 2b346ee2a62cd9e8b165e61875c965a305de4dceafda25852c2c95c28f84d0fd
ClickTrackerASP SQL Injection
Posted Dec 15, 2009
Authored by R3d-D3v!L

ClickTrackerASP suffers from a remote SQL injection vulnerability in sitedetails.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | d2d418a68891c16750e95f7ddb92bfb20159995c37d45fdb8415dc9587b09f1c
Free ASP Shell Upload
Posted Dec 10, 2009
Authored by Mr.aFiR | Site aFiR.me

Free ASP suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell, asp, file upload
SHA-256 | 9bba26c9ce7fe30951060c79b0d86c5e96c82e0a5289088edf6fdf17cd77bf7c
Mandriva Linux Security Advisory 2009-322
Posted Dec 7, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-322 - IOActive Inc. found a buffer overflow in Mono.Math.BigInteger class in Mono 1.2.5.1 and previous versions, which allows arbitrary code execution by context-dependent attackers. Multiple cross-site scripting (XSS) vulnerabilities were discovered in the ASP.net class libraries in Mono 2.0 and earlier. CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the query string. The XML HMAC signature system did not correctly check certain lengths. If an attacker sent a truncated HMAC, it could bypass authentication, leading to potential privilege escalation. Packages for 2008.0 are being provided due to extended support for Corporate products. The updated packages have been patched to fix these issues.

tags | advisory, remote, web, overflow, arbitrary, vulnerability, code execution, xss, asp
systems | linux, mandriva
advisories | CVE-2007-5197, CVE-2008-3422, CVE-2008-3906, CVE-2009-0217
SHA-256 | ac595de6900cd8c12028c1914747f7f1fc67ec1d0d49ad77f576b6b17b0f2203
Mandriva Linux Security Advisory 2009-268
Posted Oct 12, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-268 - Multiple cross-site scripting (XSS) vulnerabilities in the ASP.net class libraries in Mono 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via crafted attributes related to (1) HtmlControl.cs (PreProcessRelativeReference), (2) HtmlForm.cs (RenderAttributes), (3) HtmlInputButton (RenderAttributes), (4) HtmlInputRadioButton (RenderAttributes), and (5) HtmlSelect (RenderChildren). The XML HMAC signature system did not correctly check certain lengths. If an attacker sent a truncated HMAC, it could bypass authentication, leading to potential privilege escalation. This update fixes these vulnerabilities.

tags | advisory, remote, web, arbitrary, vulnerability, xss, asp
systems | linux, mandriva
advisories | CVE-2008-3422, CVE-2009-0217
SHA-256 | 0e41155cc42ddb5a5c21302a350227e68f876395d4400da79f4e4a1a818f4720
HotWeb Rentals SQL Injection
Posted Sep 16, 2009
Authored by R3d-D3v!L

HotWeb Rentals suffers from a remote blind SQL injection vulnerability in details.asp.

tags | exploit, remote, sql injection, asp
SHA-256 | 60bf05c4377ddd11c891d84028e8e5051aa507b3e832e32928d625061a346dd7
ASP And JSP Security
Posted Sep 2, 2009
Authored by Soroush Dalili

Whitepaper called ASP and JSP security. Written in Persian.

tags | paper, asp
SHA-256 | 9f0786137b295e197529b0f6c2c803c2290fb6965060132823b5ad6518989140
Ubuntu Security Notice 826-1
Posted Aug 26, 2009
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice USN-826-1 - It was discovered that the XML HMAC signature system did not correctly check certain lengths. If an attacker sent a truncated HMAC, it could bypass authentication, leading to potential privilege escalation. It was discovered that Mono did not properly escape certain attributes in the ASP.net class libraries which could result in browsers becoming vulnerable to cross-site scripting attacks when processing the output. With cross-site scripting vulnerabilities, if a user were tricked into viewing server output during a crafted server request, a remote attacker could exploit this to modify the contents, or steal confidential data (such as passwords), within the same domain. This issue only affected Ubuntu 8.04 LTS. It was discovered that Mono did not properly filter CRLF injections in the query string. If a user were tricked into viewing server output during a crafted server request, a remote attacker could exploit this to modify the contents, steal confidential data (such as passwords), or perform cross-site request forgeries. This issue only affected Ubuntu 8.04 LTS.

tags | advisory, remote, vulnerability, xss, asp
systems | linux, ubuntu
advisories | CVE-2008-3422, CVE-2008-3906, CVE-2009-0217
SHA-256 | 2ad29fa1156368f088ec7fd61ddf354bd88a9b875c072b5a2b54cec8ad4511a1
Online Work Order Suite ASP 3.10 XSS
Posted Aug 7, 2009
Authored by Moudi

Online Work Order Suite ASP version 3.10 suffers from cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, asp
SHA-256 | 71a625350d91f2c7d3481e46556e63cadd061df00b080e38b79c5929ddfb9719
Page 5 of 19
Back34567Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close