all things security

Recent Files

Files RSS Feed
Bluelog Bluetooth Scanner/Logger 1.0.2
Posted Feb 13, 2012
Authored by Tom Nardi | Site digifail.com

Bluelog is a Bluetooth scanner/logger written with speed in mind. It is intended to be used as a site survey tool, concerned more about accurately detecting the number of discoverable Bluetooth devices than individual device specifics. Bluelog also includes the unique "Bluelog Live" mode, which puts discovered devices into a constantly updating live webpage which you can serve up with your HTTP daemon of choice.

Changes: This release streamlines the OpenWRT build process, as Bluelog has been submitted for inclusion into the official repositories and will no longer need to be built manually.
tags | tool, web, wireless
systems | unix
Kloxo LxCenter CP 6.1.10 Cross Site Scripting
Posted Feb 13, 2012
Site vulnerability-lab.com

Kloxo LxCenter CP version 6.1.10 suffers from a cross site scripting vulnerability.

tags | advisory, xss
Mandriva Linux Security Advisory 2012-017
Posted Feb 13, 2012
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2012-017 - Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial of service or possibly execute arbitrary code.

tags | advisory, remote, denial of service, arbitrary
systems | linux, mandriva
Zimbra Cross Site Scripting
Posted Feb 13, 2012
Authored by Sony

Zimbra suffers from a cross site scripting vulnerability.

tags | exploit, xss
Fork CMS 3.2.4 Cross Site Scripting / Local File Inclusion
Posted Feb 13, 2012
Authored by d3v1l, RandomStorm

Fork CMS version 3.2.4 suffers from cross site scripting and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, xss, file inclusion
Codetective Analysis Tool
Posted Feb 12, 2012
Authored by Francisco Gama Tabanez Ribeiro

Codetective is a simple tool to determine the crypto/encoding algorithm used according to traces of its representation. Written in Python.

tags | tool, encryption, crypto
Wi-Fi Security With Wi-Fi Protection Plus
Posted Feb 12, 2012
Authored by Ajin Abraham, Vimal Jyothi

Whitepaper called Wi-Fi Security with Wi-Fi Protection Plus. Wi-Fi P+ is a new security architecture proposed by the authors.

tags | paper
PBBoard 2.1.4 Cross Site Request Forgery / Shell Upload
Posted Feb 12, 2012
Authored by KedAns-Dz

PBBoard version 2.1.4 suffers from cross site request forgery and shell upload vulnerabilities.

tags | exploit, shell, vulnerability, csrf
Razor CMS 1.2 File Disclosure
Posted Feb 12, 2012
Authored by KedAns-Dz

Razor CMS version 1.2 suffers from multiple file disclosure vulnerabilities.

tags | exploit, vulnerability, info disclosure
eFront Community++ 3.6.10 SQL Injection
Posted Feb 12, 2012
Authored by Benjamin Kunz Mejri | Site vulnerability-lab.com

eFront Community++ version 3.6.10 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
Yahoo! Messenger 11.5 Buffer Overflow
Posted Feb 12, 2012
Authored by Manideep

Yahoo! Messenger version 11.5 suffers from a buffer overflow vulnerability.

tags | advisory, overflow
Win32 Speaking Shellcode
Posted Feb 12, 2012
Authored by Debasish Mandal

Win32 speaking shellcode that says "You are owned!" when injected into a process.

tags | shellcode
systems | windows
Mandriva Linux Security Advisory 2012-016
Posted Feb 11, 2012
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2012-016 - A File Inclusion vulnerability was discovered and corrected in GLPI. This advisory provides the latest version of GLPI that is not vulnerable to this issue.

tags | advisory, file inclusion
systems | linux, mandriva
OnxShop CMS 1.5.0 Cross Site Scripting
Posted Feb 11, 2012
Authored by Benjamin Kunz Mejri | Site vulnerability-lab.com

OnxShop CMS version 1.5.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
Microsoft Security Bulletin Advance Notification For February 2012
Posted Feb 11, 2012
Site microsoft.com

This is an advance notification of 9 security bulletins that Microsoft is intending to release on February 14, 2012.

tags | advisory
CubeCart 3.0.20 Open Redirection
Posted Feb 11, 2012
Authored by Aung Khant | Site yehg.net

CubeCart versions 3.0.20 and below suffer from an open URL redirection vulnerability.

tags | exploit
D-Link DAP 1150 CSRF / XSS / Denial Of Service
Posted Feb 11, 2012
Authored by MustLive

The D-Link DAP 1150 suffers from cross site request forgery, cross site scripting and denial of service vulnerabilities.

tags | exploit, denial of service, vulnerability, xss, info disclosure, csrf
Zen-Cart 1.3.9h Cross Site Request Forgery
Posted Feb 11, 2012
Authored by DisK0nn3cT

Zen-Cart version 1.3.9h suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
Astaro Security Gateway Whitelist Bypass
Posted Feb 11, 2012
Authored by Timeless Prototype

The Astaro Security Gateway suffers from a whitelist bypass vulnerability due to a poorly formed regex.

tags | exploit, bypass
Dolibarr CMS 3.2.0 Alpha SQL Injection
Posted Feb 11, 2012
Authored by Benjamin Kunz Mejri, longrifle0x | Site vulnerability-lab.com

Dolibarr CMS version 3.2.0 Alpha suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
Dolibarr CMS 3.2.0 Alpha Local File Inclusion
Posted Feb 11, 2012
Authored by Benjamin Kunz Mejri, longrifle0x | Site vulnerability-lab.com

Dolibarr CMS version 3.2.0 Alpha suffers from multiple local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
Pfile 1.02 Cross Site Scripting / SQL Injection
Posted Feb 11, 2012
Authored by indoushka

Pfile version 1.02 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
Nova CMS Remote File Inclusion
Posted Feb 11, 2012
Authored by indoushka

Nova CMS suffers from multiple remote file inclusion vulnerabilities.

tags | exploit, remote, vulnerability, code execution, file inclusion
OpenSSH 5.9p1 Backdoor
Posted Feb 11, 2012
Authored by IPSECS

This is a patch for OpenSSH version 5.9p1 that adds a magic root password backdoor, logs usernames and passwords and keeps connections from being logged in wtmp, utmp, etc.

tags | root, encryption
systems | unix
Kloxo LxCenter Server CP 6.1.10 Cross Site Scripting
Posted Feb 11, 2012
Site vulnerability-lab.com

Kloxo LxCenter Server CP version 6.1.10 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
View Older Files →

File Archive:

February 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Feb 1st
    36 Files
  • 2
    Feb 2nd
    46 Files
  • 3
    Feb 3rd
    45 Files
  • 4
    Feb 4th
    27 Files
  • 5
    Feb 5th
    12 Files
  • 6
    Feb 6th
    26 Files
  • 7
    Feb 7th
    48 Files
  • 8
    Feb 8th
    54 Files
  • 9
    Feb 9th
    28 Files
  • 10
    Feb 10th
    50 Files
  • 11
    Feb 11th
    21 Files
  • 12
    Feb 12th
    26 Files
  • 13
    Feb 13th
    5 Files
  • 14
    Feb 14th
    0 Files
  • 15
    Feb 15th
    0 Files
  • 16
    Feb 16th
    0 Files
  • 17
    Feb 17th
    0 Files
  • 18
    Feb 18th
    0 Files
  • 19
    Feb 19th
    0 Files
  • 20
    Feb 20th
    0 Files
  • 21
    Feb 21st
    0 Files
  • 22
    Feb 22nd
    0 Files
  • 23
    Feb 23rd
    0 Files
  • 24
    Feb 24th
    0 Files
  • 25
    Feb 25th
    0 Files
  • 26
    Feb 26th
    0 Files
  • 27
    Feb 27th
    0 Files
  • 28
    Feb 28th
    0 Files
  • 29
    Feb 29th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

News Tags

packet storm

© 2012 Packet Storm. All rights reserved.

close