enabling everyone to be secure

Recent Files

Files RSS Feed
Gitorious Remote Command Execution
Posted Jan 28, 2012
Authored by joernchen | Site phenoelit.de

Gitorious versions prior to 2.1.1 suffer from a remote command execution vulnerability.

tags | exploit, remote
HP Diagnostics Server magentservice.exe Overflow
Posted Jan 28, 2012
Authored by AbdulAziz Hariri, hal | Site metasploit.com

This Metasploit module exploits a stack buffer overflow in HP Diagnostics Server magentservice.exe service. By sending a specially crafted packet, an attacker may be able to execute arbitrary code. Originally found and posted by AbdulAziz Harir via ZDI.

tags | exploit, overflow, arbitrary
MS12-004 midiOutPlayNextPolyEvent Heap Overflow
Posted Jan 28, 2012
Authored by sinn3r, juan vazquez, Shane Garrett | Site metasploit.com

This Metasploit module exploits a heap overflow vulnerability in the Windows Multimedia Library (winmm.dll). The vulnerability occurs when parsing specially crafted MIDI files. Remote code execution can be achieved by using Windows Media Player's ActiveX control. Exploitation is done by supplying a specially crafted MIDI file with specific events, causing the offset calculation being higher than how much is available on the heap (0x400 allocated by WINMM!winmmAlloc), and then allowing us to either "inc al" or "dec al" a byte. This can be used to corrupt an array (CImplAry) we setup, and force the browser to confuse types from tagVARIANT objects, which leverages remote code execution under the context of the user. At this time, for IE 8 target, JRE (Java Runtime Environment) is required to bypass DEP (Data Execution Prevention). Note: Based on our testing, the vulnerability does not seem to trigger when the victim machine is operated via rdesktop.

tags | exploit, java, remote, overflow, code execution, activex
systems | windows
AWS Hash Collisions
Posted Jan 28, 2012
Site adacore.com

AdaCore Security Advisory - All AWS releases and wavefronts prior to 2012-01-21 suffer from hash collision vulnerabilities.

tags | advisory, vulnerability
Studio Manolibera Listarivisteuk SQL Injection
Posted Jan 28, 2012
Authored by Th4 MasK

Studio Manolibera's listarivisteuk.php suffers from a remote SQL injection vulnerability.

tags | exploit, remote, php, sql injection
Dark D0rk3r 0.5
Posted Jan 28, 2012
Authored by baltazar

Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.

Changes: New options added.
tags | tool, local, scanner, sql injection, python, file inclusion
systems | unix
IBBY SQL Injection
Posted Jan 28, 2012
Authored by Th4 MasK

IBBY's nouvelles.php suffers from a remote SQL injection vulnerability.

tags | exploit, remote, php, sql injection
Kraken Payload Generator Beta 1.0
Posted Jan 27, 2012
Authored by Bl4ck.Viper

Kraken Payload Generator is a bash script that makes use of msfpayload to generate various shellcode.

tags | shellcode, bash
Fortigate UTM WAF Appliance Cross Site Scripting
Posted Jan 27, 2012
Authored by Benjamin Kunz Mejri | Site vulnerability-lab.com

The Fortigate UTM WAF appliance suffers from persistent and reflective cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss
Adobe Cross Site Scripting
Posted Jan 27, 2012
Authored by Raghavendra Karthik D

Adobe's forgotten password flow suffers from a cross site scripting vulnerability.

tags | exploit, xss
Gentoo Linux Security Advisory 201201-16
Posted Jan 27, 2012
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201201-16 - A debugging functionality in the X.Org X Server that is bound to a hotkey by default can be used by local attackers to circumvent screen locking utilities. Versions less than 2.4.1-r3 are affected.

tags | advisory, local
systems | linux, gentoo
Debian Security Advisory 2396-1
Posted Jan 27, 2012
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2396-1 - Nicolae Mogoraenu discovered a heap overflow in the emulated e1000e network interface card of KVM, a solution for full virtualization on x86 hardware, which could result in denial of service or privilege escalation.

tags | advisory, denial of service, overflow, x86
systems | linux, debian
Debian Security Advisory 2395-1
Posted Jan 27, 2012
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2395-1 - Laurent Butti discovered a buffer underflow in the LANalyzer dissector of the Wireshark network traffic analyzer, which could lead to the execution of arbitrary code.

tags | advisory, arbitrary
systems | linux, debian
Interactive Web Design SQL Injection
Posted Jan 27, 2012
Authored by 3spi0n

Interactive Web Design suffers from a remote SQL injection vulnerability.

tags | exploit, remote, web, sql injection
Global Media Service SQL Injection
Posted Jan 27, 2012
Authored by ITTIHACK

Global Media Service suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
Gentoo Linux Security Advisory 201201-15
Posted Jan 27, 2012
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201201-15 - Two vulnerabilities have been found in ktsuss, allowing local attackers to gain escalated privileges. Versions less than or equal to 1.4 are affected.

tags | advisory, local, vulnerability
systems | linux, gentoo
Debian Security Advisory 2394-1
Posted Jan 27, 2012
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2394-1 - Many security problems had been fixed in libxml2, a popular library to handle XML data files.

tags | advisory
systems | linux, debian
vBSEO 3.6.0 proc_deutf() Remote PHP Code Injection
Posted Jan 27, 2012
Authored by EgiX | Site metasploit.com

This Metasploit module exploits a vulnerability in the 'proc_deutf()' function defined in /includes/functions_vbseocp_abstract.php. User input passed through 'char_repl' POST parameter isn't properly sanitized before being used in a call to preg_replace() function which uses the 'e' modifier. This can be exploited to inject and execute arbitrary code leveraging the PHP's complex curly syntax.

tags | exploit, arbitrary, php
Peel SHOPPING 2.8 / 2.9 Cross Site Scripting / SQL Injection
Posted Jan 26, 2012
Authored by Cyber-Crystal

Peel SHOPPING versions 2.8 and 2.9 suffer from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
RSA enVision Variable Disclosure
Posted Jan 26, 2012
Site emc.com

RSA has announced security fixes to address an environmental variable disclosure vulnerability in RSA enVision 4.x.

tags | advisory
EMC NetWorker Buffer Overflow
Posted Jan 26, 2012
Authored by Tal Zeltzer | Site emc.com

EMC NetWorker Server 7.5.x and 7.6.x contain a buffer overflow vulnerability which may possibly be exploited to cause a denial of service or, possibly, arbitrary code execution.

tags | advisory, denial of service, overflow, arbitrary, code execution
xClick Cart 1.0.1 / 1.0.2 Cross Site Scripting
Posted Jan 26, 2012
Authored by Sony

xClick Cart versions 1.0.1 and 1.0.2 suffer from a cross site scripting vulnerability.

tags | exploit, xss
Register Plus 3.5.1 Cross Site Scripting / Code Execution
Posted Jan 26, 2012
Authored by MustLive

Register Plus versions 3.5.1 and below for WordPress suffer from code execution, cross site scripting and path disclosure vulnerabilities.

tags | exploit, vulnerability, code execution, xss
Sysax Multi Server 5.50 Create Folder Buffer Overflow
Posted Jan 26, 2012
Authored by Craig Freyman | Site metasploit.com

This Metasploit module exploits a stack buffer overflow in the create folder function in Sysax Multi Server 5.50. This issue was fixed in 5.52. You must have valid credentials to trigger the vulnerability. Your credentials must also have the create folder permission and the HTTP option has to be enabled. This Metasploit module will log into the server, get your a SID token and then proceed to exploit the server. Successful exploits result in LOCALSYSTEM access. This exploit works on XP and 2003.

tags | exploit, web, overflow
Cisco Security Advisory 20120126-ironport
Posted Jan 26, 2012
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - Cisco IronPort Email Security Appliances (ESA) and Cisco IronPort Security Management Appliances (SMA) contain a vulnerability that may allow a remote, unauthenticated attacker to execute arbitrary code with elevated privileges. Workarounds that mitigate this vulnerability are available.

tags | advisory, remote, arbitrary
systems | cisco
View Older Files →

File Archive:

January 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jan 1st
    20 Files
  • 2
    Jan 2nd
    15 Files
  • 3
    Jan 3rd
    19 Files
  • 4
    Jan 4th
    32 Files
  • 5
    Jan 5th
    24 Files
  • 6
    Jan 6th
    52 Files
  • 7
    Jan 7th
    21 Files
  • 8
    Jan 8th
    8 Files
  • 9
    Jan 9th
    40 Files
  • 10
    Jan 10th
    34 Files
  • 11
    Jan 11th
    40 Files
  • 12
    Jan 12th
    42 Files
  • 13
    Jan 13th
    39 Files
  • 14
    Jan 14th
    10 Files
  • 15
    Jan 15th
    16 Files
  • 16
    Jan 16th
    41 Files
  • 17
    Jan 17th
    22 Files
  • 18
    Jan 18th
    61 Files
  • 19
    Jan 19th
    29 Files
  • 20
    Jan 20th
    33 Files
  • 21
    Jan 21st
    43 Files
  • 22
    Jan 22nd
    35 Files
  • 23
    Jan 23rd
    41 Files
  • 24
    Jan 24th
    66 Files
  • 25
    Jan 25th
    51 Files
  • 26
    Jan 26th
    20 Files
  • 27
    Jan 27th
    43 Files
  • 28
    Jan 28th
    7 Files
  • 29
    Jan 29th
    0 Files
  • 30
    Jan 30th
    0 Files
  • 31
    Jan 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

News Tags

packet storm

© 2011 Packet Storm. All rights reserved.

close