PCVmedia suffers from a remote SQL injection vulnerability.
8f5ffe9ee154189cc388bcb17fc83654cd3332beb6ce8b96b7eed057ea86b954
Bimbosanasia suffers from a remote SQL injection vulnerability.
7863c10e3d5c6246903985d8e4f60ad0372282c6263b7c8669084d6a54fb2baa
CdeVision suffers from multiple cross site scripting vulnerabilities.
1a227fc5edb19143db0350923e6e436e0de612e29dbc4604436c5bda5e145ec4
The Joomla Real Estate component from EZ Realty version 5.3.0 suffers from a remote blind SQL injection vulnerability.
b0cd24ab58c020c7168a33debc97093787b98ce364c33b66564b4321a79db69e
Neox suffers from a remote SQL injection vulnerability.
b22d3962e2ef39abe16e7662988f370a2f8a58b7ff7f5e6f4b5cf12d8a285045
Topsi suffers from a remote SQL injection vulnerability.
0bdd50a58871b9212c4dca5922a1ac8033fef5cb3b96f401a210f2bd28435ee1
Due to a bug in the capabilities code, jsvc (the service wrapper for Linux that is part of the Commons Daemon project) does not drop capabilities allowing the application to access files and directories owned by superuser. Tomcat versions 7.0.0 to 7.0.19, 6.0.30 to 6.0.32, and 5.5.32 to 5.5.33 are affected.
5e5ee821c342e72c13dbf3604b54d2d2c8e9ea11f60cb87dd9f1177cc2886a15
ClubHACK Magazine Issue 19 - Topics covered include SniffJoke - Defeating Interception Framework, RSA Security, Patent Law and Computer Technology, and various other articles.
b26edd5b6d7109a0b2fc71f4f7879c3a0b5b1d4930acee5dd38a391a6367c5c0
Alahliclub suffers from a remote SQL injection vulnerability.
424aa66d78c1f45995656653a5934ede2ba5c5a8e65cadb7be9175ce8016cf04
cdeVision suffers from a remote file inclusion vulnerability.
ce1e02cc5b915d8413cd299c0507403ed48702c2f508e24344e2dc29a282a603
The WordPress St Newsletter plugin suffers from a shell upload vulnerability.
628a5babed9e04c16023b162ca4bd9b883904239c0c29e3dc8bfd328e1b91089
QOLQA suffers from a remote SQL injection vulnerability.
a8308f63d5c2002a2711abcaf51983bbbc33e1329c84feeedbc7c150770ef4b7
ITB suffers from a remote SQL injection vulnerability.
080f2767d16ddc60762cf72e60d881653e1e111aaec1838da7a8b159f4c35087
The WordPress MM Forms Community plugin suffers from a shell upload vulnerability.
93726eada7c325e25baf4be778cd1e25920dc33acfd13ea1ba17520ad40787e2
SUSE Security Announcement - Flash-Player was updated to version 10.3.188.5 to fix various buffer and integer overflows. Earlier flash-player versions can be exploited to execute arbitrary code remotely with the privileges of the attacked user.
96be7d61fecca7a4af4551e34c28501ee3bc56ab21527b5e6688028fe656a43a
Red Hat Security Advisory 2011-1155-01 - X.Org is an open source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon. These xorg-x11 packages also provide the X.Org libXfont runtime library. A buffer overflow flaw was found in the way the libXfont library, used by the X.Org server, handled malformed font files compressed using UNIX compress. A malicious, local user could exploit this issue to potentially execute arbitrary code with the privileges of the X.Org server.
9fbcd3e83dd2dc4c80113c0331060aa4139a68169eaa357597f16e5ff6a1d054
Red Hat Security Advisory 2011-1154-01 - The libXfont packages provide the X.Org libXfont runtime library. X.Org is an open source implementation of the X Window System. A buffer overflow flaw was found in the way the libXfont library, used by the X.Org server, handled malformed font files compressed using UNIX compress. A malicious, local user could exploit this issue to potentially execute arbitrary code with the privileges of the X.Org server. Users of libXfont should upgrade to these updated packages, which contain a backported patch to resolve this issue. All running X.Org server instances must be restarted for the update to take effect.
57470e3fd555d4531f036ac185c2d2659bf2e4a8edf0279a2343baac1e688373
dword2url is a python script for creating obfuscation in URLs for malware.
50602f0305a4a9863d972c7e5998fc1e594b9bff55c7495bd451c65c682d9d62
Calisto Light, Light Plus, and Full suffers from administrative bypass and remote SQL injection vulnerabilities.
6b5158d5c7d3a860cc1ea59a756fa71ccbc90ce73468252dbb4ab96b12573fdd
VMware vFabric tc Server allows users to store the passwords used for JMX authentication in an obfuscated form for organizations where storing passwords in plain text is not permitted. The JMX authentication implementation was incorrectly allowing users to authenticate using the password in either its plain text form or its obfuscated form, bypassing the benefit of obfuscation. Versions 2.0.0.RELEASE to 2.0.5.SR01 and 2.1.0.RELEASE to 2.1.1.SR01 are affected.
a23ea5d133c5ea0c5b2775fefc4fcbc7cf7cf5fcd577cd7b417bb806221241f5
Debian Linux Security Advisory 2292-1 - David Zych discovered that the ISC DHCP crashes when processing certain packets, leading to a denial of service.
f148277f18f5fb227d13c61b32b9affaebbeeeaddc1f991bbb21f31037cd9813
MP3 CD Converter Professional version 5.3.0 universal DEP bypass exploit.
21a25559ac2b37f486bbc7fb5521c61f65b9c2ac0710f36c39e9f89df0fbd316
TeeChart Professional suffers from an integer overflow vulnerability.
11a5c0e59ad7bf75e294c9be9be2fc042be47fd83700edf3a665816921877a4a
Mambo CMS versions 4.6.5 and below suffer from a remote SQL injection vulnerability.
fdcbba2d727699c7388759b0fc412417ba7189f0d7da2d5e3416ed53cb15aec1
Concept500 CMS suffers from a cross site scripting vulnerability.
dff823603f0ab3278cc322760103de45afa6281001d91c4741f53e8e65af35ef