exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 47 of 47 RSS Feed

Files Date: 2008-11-18 to 2008-11-19

Mandriva Linux Security Advisory 2008-230
Posted Nov 18, 2008
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2008-230 - Security vulnerabilities have been discovered and corrected in the latest Mozilla Firefox 3.x, version 3.0.4. This update provides the latest Mozilla Firefox 3.x to correct these issues.

tags | advisory, vulnerability
systems | linux, mandriva
advisories | CVE-2008-0017, CVE-2008-5014, CVE-2008-5015, CVE-2008-5016, CVE-2008-5017, CVE-2008-5018, CVE-2008-5019, CVE-2008-5021, CVE-2008-5022, CVE-2008-5023, CVE-2008-5024
SHA-256 | cd12dfa15bcb2ac0c25d66d11ff5cdbdabd4a8e11943b79c78f4fd30d75a880c
Mandriva Linux Security Advisory 2008-227
Posted Nov 18, 2008
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2008-227-1 - Martin von Gagern found a flow in how GnuTLS versions 1.2.4 up until 2.6.1 verified certificate chains provided by a server. A malicious server could use this flaw to spoof its identity by tricking client applications that used the GnuTLS library to trust invalid certificates. It was found that the previously-published patch to correct this issue caused a regression when dealing with self-signed certificates. An updated patch that fixes the security issue and resolves the regression issue has been applied to these packages.

tags | advisory, spoof
systems | linux, mandriva
advisories | CVE-2008-4989
SHA-256 | bac14626a031686f97e9d85f053eab14d2203b73251d868c94d7cd0108d40380
Debian Linux Security Advisory 1666-1
Posted Nov 18, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1666-1 - Several vulnerabilities have been discovered in the GNOME XML library.

tags | advisory, vulnerability
systems | linux, debian
advisories | CVE-2008-4225, CVE-2008-4226
SHA-256 | 064f38eb88ea26a817466095e1b24a56f4b59230023f2ebed8afe3093a55b66d
chilkat-create.txt
Posted Nov 18, 2008
Authored by Underz0ne Crew | Site underz0ne.net

Chilkat Socket Active-X control (ChilkatSocket.DLL) version 2.3.1.1 remote arbitrary file creation exploit.

tags | exploit, remote, arbitrary, activex
SHA-256 | 6b2ae0709e8bcee8a87aed30190264ec6fdc0900b16372bf71e4707ea16842db
jobsiteinet-sql.txt
Posted Nov 18, 2008
Authored by d3b4g

Job Site Script Design by i-netsolution suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7b92a479c551dacd86bc96eccbd24121f251dc964e147878cea22464346e17c7
jadugalaxies-sql.txt
Posted Nov 18, 2008
Authored by ZoRLu

Jadu Galaxies suffers from a blind SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | 0190750d8c448e0a6821c98c4831651c106df26024ce32a31d15a61590c8c5ee
cnn-xss.txt
Posted Nov 18, 2008
Authored by anonymous

CNN.com suffers from cross site scripting and content modification vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | bfcc8419314c5c245c68d63bc8934b0444d1a4f928f37fd95e5471fb4182bb80
simplecustomer12-sql.txt
Posted Nov 18, 2008
Authored by d3b4g

Simple Customer version 1.2 suffers a SQL injection vulnerability that allows for authentication bypass.

tags | exploit, sql injection
SHA-256 | bb4ee43b3d58c182d6b3437f18390d40803fd1411b5cd0a2947ca2d816140de9
opera962-overflow.txt
Posted Nov 18, 2008
Authored by k'sOSe | Site pornosecurity.org

Opera version 9.62 local heap overflow exploit that makes use of file://.

tags | exploit, overflow, local
SHA-256 | 0c505f5b5815520dedfaa605cd1cc337f180f0f688e436a86e4ab9cd240e5e30
phpfan-rfi.txt
Posted Nov 18, 2008
Authored by ahmadbady

phpfan version 3.3.4 suffers from a remote file inclusion vulnerability in init.php.

tags | exploit, remote, php, code execution, file inclusion
SHA-256 | d2b29cc064f682a5fdf7ebc98bb7e13cf0c50222be635bb6e11a0318181b8a87
downlinepaid-sql.txt
Posted Nov 18, 2008
Authored by Hussin X | Site tryag.cc

Downline Goldmine Paidversion suffers from a remote SQL injection vulnerability in tr.php.

tags | exploit, remote, php, sql injection
SHA-256 | 34f7172cbbf59f12995cf890163a7dfe8ff96af21ca7945e11b53474c09cf322
Ubuntu Security Notice 671-1
Posted Nov 18, 2008
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice USN-671-1 - It was discovered that MySQL could be made to overwrite existing table files in the data directory. An authenticated user could use the DATA DIRECTORY and INDEX DIRECTORY options to possibly bypass privilege checks. This update alters table creation behavior by disallowing the use of the MySQL data directory in DATA DIRECTORY and INDEX DIRECTORY options. It was discovered that MySQL did not handle empty bit-string literals properly. An attacker could exploit this problem and cause the MySQL server to crash, leading to a denial of service.

tags | advisory, denial of service
systems | linux, ubuntu
advisories | CVE-2008-2079, CVE-2008-3963, CVE-2008-4097, CVE-2008-4098
SHA-256 | 00a13f8fad3bfb4215919fbf05ac85cb6b70b3801a97cc6ae3c91370e004410e
waraxe-2008-SA068.txt
Posted Nov 18, 2008
Authored by Janek Vind aka waraxe | Site waraxe.us

vBulletin version 3.7.3pl1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 281f8824a21ee744c2e9623738b4bfcf0f02c5d55605d6775a421d5c519da677
saturncms-sql.txt
Posted Nov 18, 2008
Authored by Hussin X | Site tryag.cc

SaturnCMS suffers from a blind SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | ca2111a4547d9a972b31fe8b6b1e8929baee9c092f32125548cbe7cfebb26b74
qshop-sqlxss.txt
Posted Nov 18, 2008
Authored by Bl@ckbe@rd

Q-Shop version 3.0 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | c2a91274a1ca83c31b7cebe41e70c8bb54787a1a665d06c111fd541f5e40f1fc
waraxe-2008-SA069.txt
Posted Nov 18, 2008
Authored by Janek Vind aka waraxe | Site waraxe.us

vBulletin version 3.7.4 suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 7616ea592696b19126df0c67e92f237a255b4bc6899fc4efcf4894b2314caa88
ultrastats-sql.txt
Posted Nov 18, 2008
Authored by EEK

Ultrastats versions 0.3.11 and 0.2.144 suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | e5fb44103bf0b0c9aa04eb9b41122fa3e6f907b655fc1f012ab0996cb4618efa
freezegreetings-password.txt
Posted Nov 18, 2008
Authored by cOndemned | Site condemned.r00t.la

FREEze Greetings version 1.0 remote password retrieval exploit.

tags | exploit, remote
SHA-256 | 3907092c7c2d070539fcafcb3214703d673428fcd430dd429645982f2ec63868
etopbizadmanager-sql.txt
Posted Nov 18, 2008
Authored by Hussin X | Site tryag.cc

E-topbiz AdManager version 4 suffers from a blind SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | f0aa9700327bc350bc231232c9463fd66add82f340e94cac9699b2a6ba8e0c0e
unixasm-1.3.0.tar.gz
Posted Nov 18, 2008
Authored by Ramon de C Valle | Site risesecurity.org

A collection of shellcodes for various platforms such as bsd-x86, linux-x86, sco-x86, and solaris-x86. This project contains a set of assembly components for proof of concept codes on different operating systems and architectures. These components were carefully designed and implemented for maximum reliability, following strict coding standards and requirements, such as system call invocation standards, position independent, register independent and zero free code. A special attention was put on code length when designing and implementing them, resulting in the most reliable and shortest codes for such purpose available today.

Changes: Some small bug fixes to AIX Power assembly components and payload modules. New assembly components and payload modules for AIX Power. New assembly components and payload modules for Linux Power/Cell Broadband Engine Architecture. New assembly components and payload modules for Linux Power/Cell Broadband Engine Architecture.
tags | x86, shellcode, proof of concept
systems | linux, solaris, bsd
SHA-256 | d25fcf7756089a75b6e419be8e5587a8b3471d72d2e0112c2cb38b7403c693ae
openasp-sql.txt
Posted Nov 18, 2008
Authored by StAkeR

OpenASP versions 3.0 and below suffer from a blind SQL injection vulnerability.

tags | exploit, sql injection
SHA-256 | a2a23419298200c81f3ed7a1118d63a73979d5690281b7b57400f426807fe3a3
mxcamarchive-download.txt
Posted Nov 18, 2008
Authored by ahmadbady

mxCamArchive version 2.2 suffers from a configuration bypass download vulnerability.

tags | exploit
SHA-256 | d2b79e9b09f56fa47ef3f19db7a8628f8889d0b1a956ce27b4ac6823e7286744
Page 2 of 2
Back12Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close