what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 7 of 7 RSS Feed

Files from FraMe

Email addressframe at kernelpanik.org
First Active2004-01-15
Last Active2007-03-20
w32.bypass.abstract.en.pdf
Posted Mar 20, 2007
Authored by FraMe | Site kernelpanik.org

This document is a technical abstract of paper "Win32/Bypass: Anulando la deteccion de ficheros". The main objective is to explain techniques used to bypass security measures of many antivirus programs.

tags | paper
systems | windows
SHA-256 | a80051bbb8ce9864fffe9ef392dcd3c70799043f3b62af74e23d40f6777bcba9
cutenews.txt
Posted Mar 1, 2005
Authored by FraMe | Site kernelpanik.org

Cutenews version 1.3.6 allows for cross site scripting and local code execution attacks. Written in Spanish. Detailed exploitation provided.

tags | exploit, local, code execution, xss
SHA-256 | 4ff35ce512b4b2ef759eb3df6051283b61c8390c04baf6a8e1f1fd0917983380
panews.txt
Posted Mar 1, 2005
Authored by FraMe | Site kernelpanik.org

paNews version 2.0b4 is susceptible to SQL injection and remote code execution attacks. Written in Spanish. Detailed exploitation provided.

tags | exploit, remote, code execution, sql injection
SHA-256 | 51bf414fb60238775ad6c46f6de89f8a906cc9b73db66e117e000228b3b68064
greym13.en.txt
Posted Jan 12, 2005
Authored by FraMe | Site kernelpanik.org

Greymatter 1.3 suffers from script insertion flaws due to a lack of input validation.

tags | advisory
SHA-256 | da1f5f42b079a3f9904b71392c248b088229d85558c51879520174534f21e8ac
php4curl.txt
Posted Oct 28, 2004
Authored by FraMe | Site kernelpanik.org

PHP4 cURL functions bypass open_basedir protection allowing users to navigate through the filesystem.

tags | advisory
SHA-256 | 765016dae640f3bcadcb4d07c7fffcebbe55bd3c65241833d9335fe8ef0f2813
mambo.txt
Posted Jan 19, 2004
Authored by FraMe | Site kernelpanik.org

The Mambo Open Source web content management system allows for remote command execution as the webserver user id due to a lack of input validation.

tags | advisory, remote, web
SHA-256 | da6f8e308f6903ca98dc9383805abc68a8004be17d4c4787d292645cd9e1a4cb
phpdig16x.txt
Posted Jan 15, 2004
Authored by FraMe | Site kernelpanik.org

PhpDig version 1.6.x allows for remote command execution in its config.php script. Anybody can inject a url in the relative_script_path variable and obtain command execution with web server privileges.

tags | advisory, remote, web, php
SHA-256 | b24e855c02a2ea8f3937595116627162c9ebfb2051a870e2bd9c0282161bf0f6
Page 1 of 1
Back1Next

File Archive:

December 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    0 Files
  • 2
    Dec 2nd
    41 Files
  • 3
    Dec 3rd
    25 Files
  • 4
    Dec 4th
    0 Files
  • 5
    Dec 5th
    0 Files
  • 6
    Dec 6th
    0 Files
  • 7
    Dec 7th
    0 Files
  • 8
    Dec 8th
    0 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close