what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 58 RSS Feed

Files from Tom Adams

First Active2014-02-19
Last Active2024-09-01
Watu PRO 4.8.8.4 Cross Site Request Forgery
Posted Sep 1, 2015
Authored by Tom Adams

Watu PRO version 4.8.8.4 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 19f0b88e7f288e4fa32ed534a2e38308e94cc58b4fc328aaa767081170ce39cf
Watu PRO 4.8.8.4 Cross Site Scripting
Posted Sep 1, 2015
Authored by Tom Adams

Watu PRO version 4.8.8.4 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 720722e6007782ede3707fb5ce01ddfaf1a95e702e90393cf7603916016c0b30
WordPress Private Only 3.5.1 CSRF / Cross Site Scripting
Posted Aug 27, 2015
Authored by Tom Adams

WordPress Private Only plugin version 3.5.1 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
advisories | CVE-2015-5483
SHA-256 | dab9719c8bbda7fbb1bd873063f790d3b7aeb28984b3a0ff28b38002c26621b1
WordPress OAuth2 Complete 3.1.3 Insecure Random
Posted Aug 12, 2015
Authored by Tom Adams

OAuth Complete for WordPress version 3.1.3 uses a pseudorandom number generator which is non-cryptographically secure.

tags | advisory
SHA-256 | ccfcafdacba8b2d81d2bd3c376141e4d320efff33fafc4ebcfbea1b96d247dc9
WordPress iframe 3.0 Stored Cross Site Scripting
Posted Aug 10, 2015
Authored by Tom Adams

WordPress iframe plugin version 3.0 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e1c0096846f05588c5c54423834ef3075b290b167dc1dac3c8e73c3ca44a1706
WordPress iframe 3.0 Reflective Cross Site Scripting
Posted Aug 10, 2015
Authored by Tom Adams

WordPress iframe plugin version 3.0 suffers from a reflective cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 8e9311f769baf052389aa118740fd7ecc03cfc381229836797f134d88da03189
Google Analytics By Yoast Premium 5.4.4 Cross Site Scripting
Posted Aug 10, 2015
Authored by Tom Adams

Google Analytics by Yoast Premium version 5.4.4 suffers from a stored cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | c0163ebe83b5d4c6dcaea3d2ad3c2581e8e147f06e227869bce5efa31c905550
WordPress 3.8.1 / 3.8.2 / 4.2.2 Cross Site Request Forgery
Posted Aug 6, 2015
Authored by Tom Adams

A cross site request forgery vulnerability in the comment form of WordPress versions 3.8.1, 3.8.2, and 4.2.2 allows for administrative impersonation.

tags | exploit, csrf
SHA-256 | 09bde7dbd69e0407c983900deddc0b9dca95ac73b0615577e5ae18fe9eb615ce
WordPress Flickr Justified Gallery 3.3.6 Cross Site Scripting
Posted Jul 28, 2015
Authored by Tom Adams

WordPress Flickr Justified Gallery plugin version 3.3.6 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 976c6087ecb03d8b8cae5e43e9e600acaa4392bab73a3bae21e132826b40bada
WordPress BuddyPress Activity Plus 1.5 CSRF / File Deletion
Posted Jul 15, 2015
Authored by Tom Adams

WordPress BuddyPress Activity Plus plugin version 1.5 suffers from cross site request forgery and arbitrary file deletion vulnerabilities.

tags | exploit, arbitrary, vulnerability, info disclosure, csrf
SHA-256 | 61aad3a7f270847cbbf9e3c63259099d37595b528db86f197368bc0673bdaad6
WordPress Subscribe To Comments 2.1.2 LFI / Code Execution
Posted Jul 15, 2015
Authored by Tom Adams

WordPress Subscribe to Comments plugin version 2.1.2 suffers from code execution and local file inclusion vulnerabilities.

tags | exploit, local, vulnerability, code execution, file inclusion
SHA-256 | 4c5f361d4f71da927a1ede8b63f1aebbdf421dbdd9ffd77d4020a51acdca545b
WordPress Plotly 1.0.2 Cross Site Scripting
Posted Jul 14, 2015
Authored by Tom Adams

WordPress Plotly plugin version 1.0.2 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2015-5484
SHA-256 | 8c8ecc962a319c7bfa3171c85e8bd93531f424c4f1101eaddd89bbe50f29c468
The Events Calender: Eventbrite Tickets 3.9.6 Cross Site Scripting
Posted Jul 14, 2015
Authored by Tom Adams

The WordPress Eventbrite Tickets plugin from The Events Calendar version 3.9.6 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2015-5485
SHA-256 | 9d007e52a0aca85109b108602e13c60f95a5b63d24894f873375bcaaa6a3c02f
WordPress GD bbPress Attachments 2.1 Cross Site Scripting
Posted Jul 12, 2015
Authored by Tom Adams

WordPress GD bbPress Attachments plugin version 2.1 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 910aec15623881f8a6ea0df0172bf7e2424b9a95dcbe4b3d22a8a0a635673419
WordPress GD bbPress Attachments 2.1 Local File Inclusion
Posted Jul 12, 2015
Authored by Tom Adams

WordPress GD bbPress Attachments plugin version 2.1 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | d78cab793427b060a48099ccdb29ae7c0a9ea2b454b2029c55de9650174d00c4
WordPress Content Slide 1.4.2 CSRF / Cross Site Scripting
Posted Apr 19, 2015
Authored by Tom Adams

WordPress Content Slide plugin version 1.4.2 suffers from cross site request forgery and stored cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | 4766ca76e4e167f91e8d6586e49ab8b197c4767255485e74d57daa27c79079ed
WordPress Contact Form DB 2.8.29 Cross Site Request Forgery
Posted Mar 4, 2015
Authored by Tom Adams

WordPress Contact Form DB plugin version 2.8.29 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
advisories | CVE-2015-1874
SHA-256 | 17c045c565a5964067be268befbffcced1479a51cc769949b62b5c8feece37c7
WordPress Content Audit 1.6 Blind SQL Injection
Posted Oct 2, 2014
Authored by Tom Adams

WordPress Content Audit plugin version 1.6 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
advisories | CVE-2014-5389
SHA-256 | 6d1bb6dd85f2116cd4554ec0396d40bab0f7320fa84b6159add034a733189115
WordPress WP-Ban 1.62 Bypass
Posted Sep 17, 2014
Authored by Tom Adams

WordPress WP-Ban plugin version 1.62 suffers from a bypass vulnerability when a properly minted X-Forwarded-For header is used.

tags | exploit, bypass
advisories | CVE-2014-6230
SHA-256 | 993efa6dd07b224e9bb5b8fdab33d68bb547334c234e6e0ca083f1086bcc1733
WordPress Login Widget With Shortcode 3.1.1 CSRF / XSS
Posted Sep 17, 2014
Authored by Tom Adams

WordPress Login Widget With Shortcode plugin version 3.1.1 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | 53f460ac91c7d419b8bcb368ddda31921d0dbe302556c55c904f552f999c5396
WordPress Advanced Access Manager 2.8.2 File Write / Code Execution
Posted Sep 3, 2014
Authored by Tom Adams

WordPress Advanced Access Manager plugin version 2.8.2 suffers from arbitrary file write and code execution vulnerabilities.

tags | exploit, arbitrary, vulnerability, code execution
advisories | CVE-2014-6059
SHA-256 | 003e5940849ab6a302ac199a8b2d726fb390bc112f79728c3bd20e043f321df8
WordPress Mobile Pack 2.0.1 Information Disclosure
Posted Aug 20, 2014
Authored by Tom Adams

WordPress Mobile Pack version 2.0.1 suffers from an information disclosure vulnerability that allows anybody the ability to read password protected posts.

tags | advisory, info disclosure
SHA-256 | dff0a420e3f4d47e4e4afa42f423edf9c2e1f5d2a86e892ebba2995540b9076f
WordPress Theme My Login 6.3.9 Local File Inclusion
Posted Jun 30, 2014
Authored by Tom Adams

WordPress Theme My Login plugin version 6.3.9 provides access to arbitrary files and could facilitate arbitrary code execution.

tags | exploit, arbitrary, code execution, file inclusion
SHA-256 | 4c53920b98114515bc1f2346def95625fb01546704b44a6a30f469a4f29a1dea
WordPress JW Player 2.1.2 Cross Site Request Forgery
Posted Jun 10, 2014
Authored by Tom Adams

WordPress JW Player plugin for Flash and HTML5 video version 2.1.2 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | cdad1816681799d29e33dcf89e7fae83ab2ea38a2b1dc10c7013fdde5171470e
WordPress Member Approval Cross Site Request Forgery
Posted Jun 10, 2014
Authored by Tom Adams

WordPress Member Approval plugin suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
advisories | CVE-2014-3850
SHA-256 | cf0e211277b3af8f29f890eaee047abd87d67ab49da7b4f8644f2926c3e15974
Page 2 of 3
Back123Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close