trust is easily compromised
Showing 101 - 125 of 70,025 RSS Feed

Files

Quarks PwDump 0.1b
Posted May 20, 2012
Authored by Kaczmarek Sebastien | Site code.google.com

Quarks PwDump is a native Win32 tool to extract credentials from Windows operating systems. It currently extracts local accounts NT/LM hashes and history, domain accounts NT/LM hashes and history, cached domain password, and Bitlocker recovery information.

tags | local, cracker
systems | windows, 32
MD5 | 8f2cf3805445690010dece3116715100
Ajaxmint-Gallery 1.0 Cross Site Request Forgery
Posted May 20, 2012
Authored by KedAns-Dz

Ajaxmint-Gallery version 1.0 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
MD5 | 27a90c5e063f56bf4f1b2c5e882f0546
Acuity CMS 2.6.x Directory Traversal
Posted May 20, 2012
Authored by Aung Khant | Site yehg.net

Acuity CMS version 2.6.x suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
MD5 | 6a7dc29433a7c31b7b617b6e8af633f5
AZ Photo Album Script Cross Site Scripting
Posted May 20, 2012
Authored by Eyup CELIK

AZ Photo Album Script suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | 59fe0c8f013e6f7a2c7641a9e0ea8aad
DVD-Lab Studio 1.25 Crash
Posted May 20, 2012
Authored by Ahmed Elhady Mohamed

DVD-Lab Studio version 1.25 DAL file denial of service exploit.

tags | exploit, denial of service
MD5 | 8b1c1797db08e4a804ccca08e1a0e455
Concrete CMS 5.5 Shell Upload / Denial Of Service
Posted May 20, 2012
Authored by KedAns-Dz

Concrete CMS version 5.5 suffers from shell upload and denial of service vulnerabilities.

tags | exploit, denial of service, shell, vulnerability
MD5 | e5d9fdde1d792cd4bab71b4d1dbfc6ee
CHICCO SnoopyClub Cross Site Scripting / SQL Injection
Posted May 20, 2012
Authored by the_cyber_nuxbie

CHICCO SnoopyClub suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
MD5 | 11215544f6e99dfa8f0057a3fb597e29
CMS-AhMeBa Professional Shell Upload
Posted May 20, 2012
Authored by Shinee_

CMS-AhMeBa Professional suffers from a shell upload vulnerability.

tags | exploit, shell
MD5 | 5a5f979b206f24906f399f6bcf455f81
Double Take Design SQL Injection
Posted May 20, 2012
Authored by Am!r | Site irist.ir

Double Take Design CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | cbd708ce42086f04d5ffc147070c429d
Nogod SQL Injection
Posted May 20, 2012
Authored by the_cyber_nuxbie

Nogod suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
MD5 | 19cb9a25f7f8d8dbcae2860d3cb875a1
Vanilla FirstLastNames 1.3.2 Cross Site Scripting
Posted May 19, 2012
Authored by Henry Hoggard

Vanilla FirstLastNames plugin version 1.3.2 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
MD5 | 1d03ec944c81263eb0d4a946b6306853
7th ICITST Call For Papers
Posted May 19, 2012
Site icitst.org

The 7th International Conference for Internet Technology and Secured Transactions (ICITST-2012) Call For Papers has been announced. It will be held December 10th through the 12th, 2012, in London, United Kingdom.

tags | paper, conference
MD5 | eeeda448683bda516a3f7881352dc07f
PE Explorer 1.99 R6 Heap Overflow
Posted May 19, 2012
Authored by Walied Assar

PE Explorer version 1.99 R56 suffers from a heap overflow vulnerability.

tags | advisory, overflow
MD5 | de77c8df75d41f666d559049cd32e1b4
Vertrigoserv 2.27 Privilege Escalation
Posted May 19, 2012
Authored by X-Cisadane

Vertrigoserv version 2.27 local privilege escalation exploit.

tags | exploit, local
MD5 | 3e31f92867d9546df9f23ff00c119ee5
Concrete 5.5.21 XSS / CSRF / Path Disclosure
Posted May 19, 2012
Authored by Akastep

Concrete version 5.5.21 suffers from cross site request forgery, cross site scripting, and various other vulnerabilities.

tags | exploit, vulnerability, xss, csrf
MD5 | b62d8369fc19b6e47afaa84c84bc8538
Attractweb SQL Injection
Posted May 19, 2012
Authored by Am!r, BHG Security Center | Site irist.ir

Attractweb CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 32b237f4e7ee1c7102d50bef4d0e13e5
Vanilla Latest Comment 1.1 Cross Site Scripting
Posted May 19, 2012
Authored by Henry Hoggard

Vanilla version 2.0.18.4 with Latest Comment plugin version 1.1 suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | e757bce29415dacf71305155a64b1c2f
Vanilla About Me 1.1.1 Cross Site Scripting
Posted May 19, 2012
Authored by Henry Hoggard

Vanilla version 2.0.18.4 with About Me plugin version 1.1.1 suffers from a cross site scripting vulnerability.

tags | exploit, xss
MD5 | 1410506aa8649e659b6980edb275a0a7
libssh2 C Library 1.4.2
Posted May 19, 2012
Site libssh2.org

libssh2 is a library implementing the SSH2 protocol as defined by Internet Drafts: SECSH-TRANS, SECSH-USERAUTH, SECSH-CONNECTION, SECSH-ARCH, SECSH-FILEXFER, SECSH-DHGEX, SECSH-NUMBERS, and SECSH-PUBLICKEY.

Changes: Fixes for 8 bugs, including ones that caused performance penalties.
tags | encryption, protocol
systems | unix
MD5 | 42e2b3796ac07fc1dbafc7abcc002cd3
Results Unlimited CMS SQL Injection
Posted May 18, 2012
Authored by Am!r | Site irist.ir

Results Unlimited CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | f0fa38524042a534d91395cfad574a05
Oracle Weblogic Apache Connector POST Request Buffer Overflow
Posted May 18, 2012
Site metasploit.com

This Metasploit module exploits a stack based buffer overflow in the BEA Weblogic Apache plugin. The connector fails to properly handle specially crafted HTTP POST requests, resulting a buffer overflow due to the insecure usage of sprintf. Currently, this module works over Windows systems without DEP, and has been tested with Windows 2000 / XP. In addition, the Weblogic Apache plugin version is fingerprinted with a POST request containing a specially crafted Transfer-Encoding header.

tags | exploit, web, overflow
systems | windows, 2k
advisories | CVE-2008-3257, OSVDB-47096
MD5 | 906cfff187bbb0026697ce9e23a575f1
Squiggle 1.7 SVG Browser Java Code Execution
Posted May 18, 2012
Authored by Nicolas Gregoire, sinn3r, juan vazquez | Site metasploit.com

This Metasploit module abuses the SVG support to execute Java Code in the Squiggle Browser included in the Batik framework 1.7 through a crafted svg file referencing a jar file. In order to gain arbitrary code execution, the browser must meet the following conditions: (1) It must support at least SVG version 1.1 or newer, (2) It must support Java code and (3) The "Enforce secure scripting" check must be disabled. The module has been tested against Windows and Linux platforms.

tags | exploit, java, arbitrary, code execution
systems | linux, windows
MD5 | 2c8371ebf9277f065c37c6f9a57a0aa1
libwpd WPXContentListener::_closeTableRow() Memory Overwrite
Posted May 18, 2012
Authored by Kestutis Gudinavicius | Site sec-consult.com

OpenOffice.org includes the customized libwpd version 0.8.8 library for parsing WordPerfect documents. The used version of the libwpd library suffers from a memory overwrite vulnerability when reading a specially crafted WPD file. Successful exploitation of this vulnerability could result in an arbitrary code execution within the OpenOffice.org software suite.

tags | advisory, arbitrary, code execution
advisories | CVE-2012-2149
MD5 | 3ccebc2967c3d54458d31d8698a6518d
Hackers 2 Hackers 9 Call For Papers
Posted May 18, 2012
Site h2hc.com.br

The Hackers 2 Hackers Conference (H2HC) 9th edition call for papers has been announced. It is being held in Sao Paulo, Brazil from October 18th through the 23rd, 2012.

tags | paper, conference
MD5 | ddc59b2f9e07687ebba9f5f9c13556d7
HP Security Bulletin HPSBOV02780 SSRT100766
Posted May 18, 2012
Authored by HP | Site hp.com

HP Security Bulletin HPSBOV02780 SSRT100766 - A potential security vulnerability has been identified with OpenVMS ACMELOGIN when SYS$ACM system service for authentication is enabled. The vulnerability could be locally exploited to allow unauthorized access and increased privileges. Revision 1 of this advisory.

tags | advisory
advisories | CVE-2012-2010
MD5 | a763d5d805c244aa57548276d2b6ed5c
Page 5 of 2,801
Back34567Next

File Archive:

May 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    37 Files
  • 2
    May 2nd
    53 Files
  • 3
    May 3rd
    33 Files
  • 4
    May 4th
    4 Files
  • 5
    May 5th
    10 Files
  • 6
    May 6th
    17 Files
  • 7
    May 7th
    19 Files
  • 8
    May 8th
    36 Files
  • 9
    May 9th
    34 Files
  • 10
    May 10th
    35 Files
  • 11
    May 11th
    20 Files
  • 12
    May 12th
    18 Files
  • 13
    May 13th
    11 Files
  • 14
    May 14th
    27 Files
  • 15
    May 15th
    58 Files
  • 16
    May 16th
    54 Files
  • 17
    May 17th
    25 Files
  • 18
    May 18th
    53 Files
  • 19
    May 19th
    9 Files
  • 20
    May 20th
    15 Files
  • 21
    May 21st
    25 Files
  • 22
    May 22nd
    32 Files
  • 23
    May 23rd
    35 Files
  • 24
    May 24th
    26 Files
  • 25
    May 25th
    25 Files
  • 26
    May 26th
    11 Files
  • 27
    May 27th
    8 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2012 Packet Storm. All rights reserved.

close