exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 15 of 15 RSS Feed

Files Date: 2018-02-27

ClipBucket SQL Injection / Command Injection / File Upload
Posted Feb 27, 2018
Authored by Fikri Fadzil, Wan Ikram, Jasveer Singh, Ahmad Ramadhan Amizudin | Site sec-consult.com

ClipBucket versions prior to 4.0.0 Release 4902 suffer from OS command injection, arbitrary file upload, and remote SQL injection vulnerabilities.

tags | exploit, remote, arbitrary, vulnerability, sql injection, file upload
SHA-256 | 9c6e2a39e41028f37a5698b02254f9b2ad0ed428ace7ac29e792084d6d5b69b5
HPE Security Bulletin HPESBHF03826 1
Posted Feb 27, 2018
Authored by Hewlett Packard Enterprise | Site hpe.com

HP Security Bulletin HPESBHF03826 1 - A security vulnerability in HPE Integrated Lights-Out 3 (iLO 3) allows remote Denial of Service (DoS). Revision 1 of this advisory.

tags | advisory, remote, denial of service
advisories | CVE-2017-8987
SHA-256 | 96123a6157c049a2fa2ec67ac8becc0ecf24e63e6db76d4affe345c9e06dea12
Red Hat Security Advisory 2018-0369-01
Posted Feb 27, 2018
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2018-0369-01 - OpenStack Compute launches and schedules large networks of virtual machines, creating a redundant and scalable cloud computing platform. Compute provides the software, control panels, and APIs required to orchestrate a cloud, including running virtual machine instances and controlling access through users and projects. python-novaclient is the python client for the OpenStack Nova API. The client's Python API and command-line script both implement 100% of the OpenStack Nova API. The following packages have been upgraded to a later upstream version: openstack-nova, python-novaclient.

tags | advisory, python
systems | linux, redhat
advisories | CVE-2017-16239
SHA-256 | 73b99ab9b45e486be6a0a82fa9e53c82401b8e1131b389295647f9f30f11080a
Red Hat Security Advisory 2018-0368-01
Posted Feb 27, 2018
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2018-0368-01 - Erlang is a general-purpose programming language and runtime environment. Erlang has built-in support for concurrency, distribution and fault tolerance. Security Fix: An erlang TLS server configured with cipher suites using RSA key exchange, may be vulnerable to an Adaptive Chosen Ciphertext attack against RSA. This may result in plain-text recovery of encrypted messages and/or a man-in-the-middle attack, despite the attacker not having gained access to the serveras private key itself.

tags | advisory
systems | linux, redhat
advisories | CVE-2017-1000385
SHA-256 | c277ef4292fb94d1f0c544f81ff9ce2da9d994760f2291a7c44ff52aed0b6311
Sony Playstation 4 (PS4) 5.0x Code Execution
Posted Feb 27, 2018
Authored by qwertyoruiopz, ALEXZZZ9

Sony Playstation 4 (PS4) 5.01 through 5.04 webkit code execution proof of concept exploit.

tags | exploit, code execution, proof of concept
advisories | CVE-2017-7005
SHA-256 | 50707ec1ea6cb183b1acc58f4a9105b02ed91e670bbbd52694de03322405d4b2
ActivePDF Toolkit Code Execution
Posted Feb 27, 2018
Authored by Francois Goichon

ActivePDF Toolkit versions prior to 8.1.0 suffer from multiple code execution vulnerabilities.

tags | exploit, vulnerability, code execution
advisories | CVE-2018-7264
SHA-256 | bbe1907fecb7b9d4c5a5f2a491197a7b33927ecda949f5cdea144209dab0a47b
School Management Script 3.0.4 SQL Injection
Posted Feb 27, 2018
Authored by Samiran Santra

School Management Script version 3.0.4 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
advisories | CVE-2018-7477
SHA-256 | 45f216a66035e45b3a0b6dfe7aae25b6acdba66900fb85bda6fbfee2de3b4510
Joomla! K2 2.8.0 Arbitrary File Download
Posted Feb 27, 2018
Authored by Ihsan Sencan

Joomla! K2 component version 2.8.0 suffers from an arbitrary file download vulnerability.

tags | exploit, arbitrary, info disclosure
advisories | CVE-2018-7482
SHA-256 | dc0c6b2f4c60b6b559ad0e56bf7a8207b044e34e6306339dae07b27da071a578
Sony Playstation 4 (PS4) 4.07 Code Execution
Posted Feb 27, 2018
Authored by qwertyoruiop

Sony Playstation 4 (PS4) versions 4.07 up to but not including 4.55 bpf local kernel code execution proof of concept exploit.

tags | exploit, kernel, local, code execution, proof of concept
SHA-256 | 0a80756cef32e8dfd86910fdf5196720b1d7040a5d57e9fdaa25c56b05e7426b
Microsoft Windows 8.1 / 2012 R2 SMB Denial Of Service
Posted Feb 27, 2018
Authored by Nabeel Ahmed

Microsoft Windows versions 8.1 and 2012 R2 SMB denial of service exploit.

tags | exploit, denial of service
systems | windows
advisories | CVE-2018-0833
SHA-256 | 2d61926739ef489e55031fa18143cb2f0cef2d256919289fb41f646dedec04e4
Concrete5 Username / Comments Enumeration
Posted Feb 27, 2018
Authored by Chapman Schleiss

Concrete5 versions prior to 8.3.0 suffers from enumeration vulnerabilities.

tags | exploit, vulnerability
advisories | CVE-2017-18195
SHA-256 | fb841081833ce7bda90f4c30fa3ff82541f8aae542692e8b4781a3128b4b6ac7
MyBB My Arcade 1.3 Cross Site Scripting
Posted Feb 27, 2018
Authored by 0xB9

MyBB My Arcade plugin version 1.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 6bebe42fea553fd01b350d3c3a22346f11c933d69ec6010f0f00e66caf42073b
Schools Alert Management Script 2.0.2 SQL Injection
Posted Feb 27, 2018
Authored by Prasenjit Kanti Paul

Schools Alert Management Script version 2.0.2 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
advisories | CVE-2018-6859
SHA-256 | 666d800ac5246d4a537bb9b76689a2facf3b7ec48c51e13335170e839e6f33df
Sony Playstation 4 (PS4) 4.55 Jailbreak
Posted Feb 27, 2018
Authored by Specter

In this project you will find a full implementation of the "bpf" kernel exploit for the PlayStation 4 on 4.55. It will allow you to run arbitrary code as kernel, to allow jailbreaking and kernel-level modifications to the system. This release however, does not contain any code related to defeating anti-piracy mechanisms or running homebrew. This exploit does include a loader that listens for payloads on port 9020 and will execute them upon receival.

tags | exploit, arbitrary, kernel
SHA-256 | eba51f80848f00f666976cb2e9bb1936b74c8847d8afaa983131dfe6a891da56
GetGo Download Manager 5.3.0.2712 Buffer Overflow
Posted Feb 27, 2018
Authored by bzyo

GetGo Download Manager version 5.3.0.2712 SEH buffer overflow exploit.

tags | exploit, overflow
SHA-256 | c403a2fb0efc8e2ed3bd05ca2a54019570e1d8ed5514bd37cbe4ab7afa40b188
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close