Packet Storm new exploits for September, 2007.
a02f93731c7da3953acb9c313e193046Whitepaper discussing multiple vulnerabilities discovered against the AXIS 2100 IP camera system.
c14d61fdf02cb99eeda4ed644b8a84c2Netkamp Emlak Scripti is susceptible to a SQL injection vulnerability.
479f21229fd30636abe00776856203c4Ohesa Emlak Portal is susceptible to a SQL injection vulnerability.
4ac9fe286f730946c3002dcd93578185This script can be used to steal G-Mail's keychained password by injecting javascript into Safari. When executed it opens G-Mail's login page, reads the saved password and sends it to a logging server by creating an hidden iframe into G-Mail's page.
f25867c70c9f1546c6cf772d9272279fThis script can be used to steal G-Mail's keychained password by injecting javascript into Safari. When executed it opens G-Mail's login page, reads the saved password and prompts it into an alert box.
be54b1b330d258fc5c3ba6851cf17ef2Tor versions below 0.1.2.16 ControlPort remote rewrite exploit.
77fb45cee39d5aa961bd1a6a6c903981mxBB module mx_glance version 2.3.3 suffers from a remote file inclusion vulnerability.
f1a59522809926ca8a5303cd24e61e87Mambo component Mambads versions 1.5 and below suffer from a remote SQL injection vulnerability.
565d5c84f94276d614a70859dfc5be3cMDPro version 1.0.76 remote SQL injection exploit.
be9f59bdeda566615762fe43be96f463Zomplog versions 3.8.1 and below suffer form an arbitrary file upload vulnerability.
a2253be0b71c1d9a269546061ca4b6f5Public Media Manager versions 1.3 and below suffer from a remote file inclusion vulnerability.
f49a36f127f9c16d09d6e979010f8e84PhFiTo version 1.3.0 suffers from a remote file inclusion vulnerability.
d18f9943c293e24203033ee2ea38b258IntegraMOD Nederland version 1.4.2 suffers from a remote file inclusion vulnerability.
e02f9bfcac8a06e4198bab5489dec3deChupix CMS version 0.2.3 suffers from a remote file inclusion vulnerability.
25dc55457762a2c2ba4a18c7b4e55091lustig.cms BETA version 2.5 suffers from a remote file inclusion vulnerability in forum.php.
5de9a41421c4fafea1795507ff565489Local root exploit for the x86_64 Linux kernel ia32syscall emulation bug.
5d14ec4f80a173aed4a21dadebd3c189The Promise NAS NS4300N web GUI allows an administrative user to change the root password.
1264c688a0a91902e9a94babdb53fd1cSiteX CMS is susceptible to an unauthorized file upload vulnerability.
05102e83373625b3de5cb5a8e21092e8Novus version 1.0 suffers from a remote SQL injection vulnerability in notas.asp.
6ad8f9b8b1c45b57341b940c91955082Softbiz Classifieds PLUS suffers from a remote SQL injection vulnerability.
19dba9c69c9a38272686d797dd91548dFrontAccounting version 1.13 suffers from remote file inclusion vulnerabilities.
7cd2f345bb9716d267fcb943d81cfb6cCore Security Technologies Advisory - Remote command execution, HTML and JavaScript injection vulnerabilities in AOL's Instant Messaging software. Versions 6.1, 6.2, Pro, and Lite are affected.
9f6886148c8923f1548101c7a3d286c4SimpNews version 2.41.03 suffers from a local file inclusion vulnerability.
f201adbb8842c41ffbceb0012ac67bc1SimpGB version 1.46.02 suffers from an information disclosure vulnerability.
00efdd2c2ad7840a33a130db04b99cbb