PDFResurrect is a tool aimed at analyzing PDF documents. The PDF format allows for previous document changes to be retained in a more recent version of the document, thereby creating a running history of changes for the document. This tool attempts to extract all previous versions while also producing a summary of changes between versions. It can also "scrub" or write data over the original instances of PDF objects that have been modified or deleted, in an effort to disguise information from previous versions that might not be intended for anyone else to read.
884251b96571e947c6fce878ac038639a544e6f57f9e3af8a80b0f26438aeab6
Harris Stratex StarMAX subscriber station cross site request forgery exploit. StarMAX 2100 subscriber station version 3.0.4.1.7.C is affected.
fc7b76a985e2701cd03661b730692472b473be6139224f36b827cd046a8daf74
This is a presentation called the Introduction to Phishing 3.0 through Cross Application Scripting. Written in Italian.
d340c3fa78cbd404b971d40e9140498595b79f10a7ce64c899473b8bec222cc6
Whitepaper called Cross Application Scripting. Written in Italian.
ea84bd26e4f1fe8cbeb06c1d7b17b9e1e57f87bb912c36f1d68fe37500631506
Donar Player version 2.2.0 local crash exploit that creates a malicious .wma file.
1745a8a6a51bd924d24b25d4b804e99b0d249ce869dcc60a5ac5dddcdf80667e
FreeSSHD version 1.2.4 buffer overflow denial of service exploit.
c0080beea5f8d16cc9dc4b26d6fc74b78d10f0904076c038928a28c3c050dc7f
ZKSoftware Biometric Attendance Management Hardware appears to dump user related information when improper authentication occurs over UDP port 4370.
44c78ee04a4610584c09283be6af36caf6d2c2411a90fa07784efbe98445c04c
CMS Openpage suffers from a remote SQL injection vulnerability.
af10c62a5f94ce2d6d1a0df1a60e704751379fa94cb367f54f0b399f0368ab02
Mini CMS RibaFS version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
0e9ca29d9ca18ab1d2d13266b1f9683706f922897a9c6a34455df5bace63254a
Net::Nessus::XMLRPC is Perl interface for communication with the Nessus scanner over XMLRPC. It lets you start, stop, pause, and resume scans. It can display the progress and status of scans, download reports, etc.
fc3c63c44ec69d7a51687d08ceebb46c359afa40388d8fcba09713d3ff9b38a1
Skipfish is a fully automated, active web application security reconnaissance tool. It is high speed, has a low false positive rate, and is easy to use.
ed3d45cf54770db9cae12422c36f1e3f90857da4381a47956b355bc9d7f35ea0
PowieSys versions 0.7.7 Alpha and below suffer from a remote SQL injection vulnerability.
bd2a73b18166189c4bc76c9913d41969941d407fb229e42dfa430db0c6a9be16
Stack version 1.1 suffers from a local file inclusion vulnerability.
01f98adb2118dd83f29d613b4d480fa19d4848759ad8039096a38ada789f6b97
phpAuthentAdmin suffers from a cross site scripting vulnerability.
b98374e660808fc53f14d58483e04d52482a327ae70a6f028f7c05491ca9188c
Fw-BofF version 1.5.3beta suffers from multiple remote file inclusion vulnerabilities.
37e97b0e0f4e80c1160bb4b930fa6d0a7dd93cba7c5532bb1dcee0fa2e45337a
RepairShop2 version 1.9.023 suffers from a cross site scripting vulnerability.
9ea2501e96b7deeb4e19c57e5e62292de83a9a602cb17b12eb76c292e43a5b90
The PHP-Kit b-day.php add-on suffers from a remote SQL injection vulnerability.
d11d141a967cfd196493f05c734bc0c5a164ea49c9a35acc3603b21b423913e0
Woltlab Burning Board Lite Addon suffers from a remote SQL injection vulnerability in lexikon.php.
3918390727813b63059de8939b1259c49ceb2e262c3c773b138bed7351146ed3
4x CMS versions r26 and below suffer from a remote SQL injection vulnerability that allows for authentication bypass.
d21f15648358be139dade9f9020d22fd31407ff501149d391bbd8b5f0bce5c62
NotSopureEdit versions 1.4.1 and below suffer from a remote file inclusion vulnerability.
d2e103354357f270632c700bb4e940672758a7c2c72b06818549a18cef5ab25a
WebMaid CMS versions 0.2-6 Beta and below suffer from local and remote file inclusion vulnerabilities.
4ebf913eb19fcc936137e208fb41640a5102fe139d5b6133e12385e6c472bfef
Jewelry Cart suffers from a remote SQL injection vulnerability.
25bc1ca6344b405622f4535697cd5188421750338cc29541632e445095095d07
Debian Linux Security Advisory 2021-1 - It was discovered a missing input sanitization in spamass-milter, a milter used to filter mail through spamassassin. This allows a remote attacker to inject and execute arbitrary shell commands.
c0875c8a808db5ee3b2370238fa89b839811160c02f0750a8882fbbeb4d07fac
Kenward Zipper version 1.4 stack buffer overflow proof of concept exploit with calc.exe shellcode.
2c50ca1be00309025bbd2fc7e5826349a80afea4c20cca367801eae7998626cf
This whitepaper is a comparison of the security provider by Window's Local Area Network Manager and Message Digest Five hashes in the application of personal and business computers.
6b8a3087033c3403b1476120c4698035c6629b2e9b70c738b61fb10009954ed8