we care because you do
Showing 101 - 125 of 491 RSS Feed

Files

MKPortal Horoscop Cross Site Scripting
Posted May 25, 2010
Authored by Inj3ct0r

The MKPortal Horoscop module suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | 6bafb5a7d79cc0a8866005031aa543ab
MOPS-2010-034 - PHP iconv_mime_encode() Interruption Information Leak
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - PHP's iconv_mime_encode() function can be abused for information leak attacks, because of the call time pass by reference feature. This vulnerability also demonstrates that fixing zend_parse_parameters() is not enough to kill some of these vulnerabilities. PHP versions 5.2.13 and below and 5.3.2 and below are affected.

tags | exploit, php, vulnerability
MD5 | 9867aef6cb0e23eb7e1c90501a688b87
HostFriendz.com SQL Injection
Posted May 25, 2010
Authored by Ivan Sanchez

Software from HostFriendz.com suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 22701d2983b7b0292ed0b1507faaa196
MOPS-2010-033 - PHP iconv_subsrt() Interruption Information Leak
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - PHP’s iconv_substr() function can be abused for information leak attacks, because of the call time pass by reference feature. PHP versions 5.2.13 and below and 5.3.2 and below are affected.

tags | exploit, php
MD5 | 1a1045191cfaa946584ed44708cbb48c
Lizzard Active Media SQL Injection
Posted May 25, 2010
Authored by CoBRa_21

Lizzard Active Media suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
MD5 | fa4faebda9d855d35a1fbbf27ad0c103
MOPS-2010-032 - PHP iconv_mime_decode() Interruption Information Leak
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - PHP’s iconv_mime_decode() function can be abused for information leak attacks, because of the call time pass by reference feature. PHP versions 5.2.13 and below and 5.3.2 and below are affected.

tags | exploit, php
MD5 | 8f24b17078f4235b786eab6a5ba37659
MOPS-2010-031 - e107 SQL Injection
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - An SQL Injection vulnerability was discovered in the user settings dialog of e107 that allows any user to become an admin easily. Versions 0.7.20 and below are affected.

tags | exploit, php, sql injection
MD5 | 80e955f1e398e050dc783afd88d7e583
Scientific Atlanta DPC2100 Cable Modem Cross Site Request Forgery
Posted May 25, 2010
Authored by Dan Rosenberg

The Scientific Atlanta DPC2100 Cable Modem suffers from cross site request forgery and insufficient authentication vulnerabilities.

tags | exploit, vulnerability, csrf
advisories | CVE-2010-2025, CVE-2010-2026
MD5 | bc54b454b787a236cb2a8e47e43a8a32
MOPS-2010-030 - CMSQlite mod Parameter Local File Inclusion
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - A local file inclusion vulnerability was discovered in CMSQlite that might allow remote PHP code execution. Versions 1.2 and below are affected.

tags | exploit, remote, local, php, code execution, file inclusion
MD5 | 2a2002bbe18931001acb66cd137d308c
MOPS-2010-029 - CMSQlite c Parameter SQL Injection
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - An SQL Injection vulnerability was discovered in CMSQlite that allows to retrieve all data from the database. Versions 1.2 and below are affected.

tags | exploit, php, sql injection
MD5 | 755198535b782ed8d177a7e4be7a107a
MOPS-2010-028 - PHP phar_wrapper_open_url Format String
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - The new phar extension in PHP 5.3 contains several format string vulnerabilities in the internal phar_wrapper_open_url() function. PHP versions 5.3 through 5.3.2 are affected.

tags | exploit, php, vulnerability
MD5 | acdaf9ccac055cc91b5f298f13f30ec9
MOPS-2010-027 - PHP phar_parse_url Format String
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - The new phar extension in PHP 5.3 contains several format string vulnerabilities in the internal phar_parse_url() function. PHP versions 5.3 through 5.3.2 are affected.

tags | exploit, php, vulnerability
MD5 | f462a1cdc1c6472c8d3b233582b1f2ec
Blox CMS SQL Injection
Posted May 25, 2010
Authored by CoBRa_21

Blox CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 69f953dde24a7837751377c3d18a9efd
Alsco CMS SQL Injection
Posted May 25, 2010
Authored by Princeofhacking

Alsco CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 2106155de1617e3163098046d6df1486
Interuse Website Builder And Design SQL Injection
Posted May 25, 2010
Authored by CoBRa_21

Interuse Website Builder and Design suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 565a3df6a302704d545a962e19a4cecd
MOPS-2010-026 - PHP phar_wrapper_unlink Format String
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - The new phar extension in PHP 5.3 contains a format string vulnerability in the internal phar_wrapper_unlink() function. PHP versions 5.3 through 5.3.2 are affected.

tags | exploit, php
MD5 | 19cb5a4deeb4170dcda854149e84b8d2
MOPS-2010-025 - PHP phar_wrapper_open_dir Format String
Posted May 25, 2010
Authored by Stefan Esser | Site php-security.org

Month Of PHP Security - The new phar extension in PHP 5.3 contains a format string vulnerability in the internal phar_wrapper_open_dir() function. PHP versions 5.3 through 5.3.2 are affected.

tags | exploit, php
MD5 | d0ac40b5cd3d8f7524dbc123581a6c67
Apache Axis2 1.4.1 Local File Inclusion
Posted May 25, 2010
Authored by HC

Apache Axis2 version 1.4.1 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
MD5 | 2d12676574f4255c3308efae3e8cdb97
ProWeb Design SQL Injection
Posted May 25, 2010
Authored by cyberlog

ProWeb Design suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 8c459ad810d8545aa52a8f0fb7599b8c
Fjallfoss.fcc.gov Cross Site Scripting
Posted May 25, 2010
Authored by Marshall Whittaker

Fjallfoss.fcc.gov suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | e6a6b7b9302456ff7632ab268e46dd77
PHP Graphy 0.9.7 Command Execution
Posted May 25, 2010
Authored by Sniper Site Hacker

PHP Graphy versions 0.9.7 and below suffer from a remote command execution vulnerability.

tags | exploit, remote, php
MD5 | 14feb257012772fa66c4d52047b8eb95
Webasyst Shop-Script Blind SQL Injection
Posted May 25, 2010
Authored by zsh.shell

Webasyst Shop-Script remote blind SQL injection exploit.

tags | exploit, remote, sql injection
MD5 | 6685ed4a2505a9ca7ef15fff57013195
TeleData CMS 0.9 Local File Inclusion
Posted May 25, 2010
Authored by AutoSec Tools

TeleData CMS version 0.9 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
MD5 | 45f0a183cdb1e162392952a8986f0a80
Joomla QPersonel SQL Injection
Posted May 25, 2010
Authored by Valentin Hoebel

Remote SQL injection exploit for the Joomla QPersonel component.

tags | exploit, remote, sql injection
MD5 | 56fd3e4f4f47fc073d1e98de4e9ff4ce
Schaf CMS 1.0 SQL Injection
Posted May 25, 2010
Authored by Manas58

Schaf CMS version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 7ba2102dc306eabb4ba13787b06dee18
Page 5 of 20
Back34567Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Armenia Jails Bredolab Botmaster For 4 Years
Posted May 24, 2012

tags | headline, government, cybercrime, botnet, fraud
Police Given 350 Mobile Fingerprint Scanners For Olympics
Posted May 24, 2012

tags | headline, government, privacy, britain
Researcher Needles Oracle Over Java Security
Posted May 24, 2012

tags | headline, flaw, oracle, java
35,000 Passwords Reset After BigPond GameArena Hacked
Posted May 24, 2012

tags | headline, hacker, data loss, password
Indian SMBs Facing Advanced Attack Threats
Posted May 23, 2012

tags | headline, hacker, india, denial of service, symantec
Jailed Facebook Hack Brit Targeted Justin Bieber's Girlfriend
Posted May 23, 2012

tags | headline, hacker, britain, facebook, social
123-Reg Hosted Websites Go Offline After 'China Attack'
Posted May 23, 2012

tags | headline, china, denial of service
Google To Alert Thousands Over Loss Of Internet Risk From DNSChanger Trojan
Posted May 23, 2012

tags | headline, malware, trojan, dns, google
Microsoft's Rozzle Bolsters Drive-By Malware Defenses
Posted May 22, 2012

tags | headline, malware, microsoft
Chinese Social Network To Recruit In-House Censor
Posted May 22, 2012

tags | headline, china, social, twitter, censorship
View More News →
packet storm

© 2012 Packet Storm. All rights reserved.

close