This archive contains all of the 352 exploits added to Packet Storm in November, 2010.
cc19b8f8defaea4e0727a37c83029a17DynPG version 4.2.0 suffers from local file inclusion, path disclosure and remote SQL injection vulnerabilities.
c0824b2f34fa150d2fc98d25f7f566c7Elxis CMS 2009.2 suffers from a remote SQL injection vulnerability.
697aaa1f1a9c4e62ad5a35ccaee2629dEnano CMS version 1.1.7pl1 suffers from path disclosure and remote SQL injection vulnerabilities.
1f2b9ed1e0f9fb4bf578cbbfd8a9fb4bEclime version 1.1.2b suffers from cross site scripting and remote SQL injection vulnerabilities.
571f4bba22868cf3d52b8cb89391291cDuhok Forum versions 1.1 and below suffer from a remote shell upload vulnerability.
a2d51773943c98f4ad9530971415f466Link Protect version 1.2 suffers from a cross site scripting vulnerability.
6cf29ed8de87cb4d2a243686055c1447Provj version 5.1.5.5 buffer overflow proof of concept exploit that creates a malicious .m3u file.
e4e51c4cf56d4816709b9d8b82cb177fA directory traversal vulnerability has been found in the PJL file system access interface of various HP LaserJet MFP devices. File system access through PJL is usually restricted to a specific part of the file system. Using a pathname such as 0:\..\..\..\ it is possible to get access to the complete file system of the device.
79d26b9b4e5c973e5fc016d41e265db2MicroNetSoft RV Dealer Website suffers from multiple remote SQL injection vulnerabilities.
3698fd21fe12b7c4ec8870f9eb5247a9Car Portal version 2.0 suffers from a cross site scripting vulnerability.
d4dd7f45197ca305936640dcfeaca798The Joomla Competitions component suffers from a remote SQL injection vulnerability.
2dc0b31352161373ad574a5ea11b6318WM Downloader version 3.1.2.2 suffers from an insecure library loading vulnerability.
1a9b80ba78e1e1662ddf397895828131Mediacoder version 0.7.5.4792 SEH overwrite buffer overflow exploit.
da3bfafa44073beea1036bf63799f491Diferior version 8.03 suffers from a cross site scripting vulnerability.
47450bd91240c8df88dcd9da68d4e2b7Easy Banner Free suffers from multiple cross site scripting vulnerabilities.
2140bbd752eeff24381004b12a80ad16Easy Banner Free suffers from a remote SQL injection vulnerability that allows for authentication bypass.
98cec791e8f4a3467a2abb019930cec4FoxPlayer version 2.4.0 denial of service exploit that creates a malicious .m3u file.
b6e38f56bb3039085fe924ee9aa1d6f1CA Internet Security Suite 2010 KmxSbx.sys kernel pool overflow exploit.
2300e6c48c68716a4e194924b1e62f53Site2Nite Big Truck Broker suffers from a remote SQL injection vulnerability.
de444669d0143bb3b0bac6eeb9f9632dHanso Player version 1.4.0 denial of service exploit that creates a malicious .m3u file.
ba22d24fe393460e4b721716e8375547The Joomla Competitions component suffers from a remote SQL injection vulnerability.
cb31e25c02862643b443ee67a1b7f088The Joomla Jeajaxeventcalendar component suffers from a remote blind SQL injection vulnerability.
a36d1cd4832c860e4687ca02cd8bba9dThe Joomla Jeajaxeventcalendar component suffers from a local file inclusion vulnerability.
af2f07b48c9dd0fdc7c981e1c8a58ca2Skeletonz CMS suffers from a cross site scripting vulnerability.
bd9f88d9fa3edc9309fa1c35424a362e