exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 39 RSS Feed

Files Date: 2011-09-07

Ubuntu Security Notice USN-1197-3
Posted Sep 7, 2011
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1197-3 - USN-1197-1 partially addressed an issue with Dutch Certificate Authority DigiNotar mis-issuing fraudulent certificates. This update actively distrusts the DigiNotar root certificate as well as several intermediary certificates. Also included in this list of distrusted certificates are the Staat der Nederlanden root certificates. It was discovered that Dutch Certificate Authority DigiNotar, had mis-issued multiple fraudulent certificates. These certificates could allow an attacker to perform a "man in the middle" (MITM) attack which would make the user believe their connection is secure, but is actually being monitored. For the protection of its users, Mozilla has removed the DigiNotar certificate. Sites using certificates issued by DigiNotar will need to seek another certificate vendor.

tags | advisory, root
systems | linux, ubuntu
SHA-256 | 47f3b7beea1ebda82bd84a63554db1cecbeaa71f2dd97be15a3817c726e46203
Crush FTP 5 Blue Screen Of Death
Posted Sep 7, 2011
Authored by BSOD Digital

Crush FTP 5 APPE command remote blue screen of death proof of concept denial of service exploit.

tags | exploit, remote, denial of service, proof of concept
SHA-256 | bcf70a57907415f77afbdef299980957d6a8bf6d358114dbf588fdb06c2a4f0b
WordPress Eventify Simple Events 1.7.f SQL Injection
Posted Sep 7, 2011
Authored by Miroslav Stampar

WordPress Eventify - Simple Events plugin versions 1.7.f and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 02b78185705b63377f46371c9b4fdfee9a8b7e2407f0baa5ef934f7842b1a4d9
WordPress SCORM Cloud 1.0.6.6 SQL Injection
Posted Sep 7, 2011
Authored by Miroslav Stampar

WordPress SCORM Cloud plugin versions 1.0.6.6 and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 1e5aae1f61dd3e66784f62ee0be79646cc8e19097c3e7ed3be3a9c86aa117e6c
Short Fuzzy Rat Scanner
Posted Sep 7, 2011
Authored by Ratdance

Short Fuzzy Rat is a web fuzzing script written in perl. It was inspired by Luca Carettoni's original fuzzing list of 879 attack vectors with 8 levels of recursion.

tags | tool, web, scanner, perl
systems | linux, unix
SHA-256 | 47d1089c602db79c18a245d91394adc793cb408d0f321f22b72996325a09af03
Red Hat Security Advisory 2011-1268-01
Posted Sep 7, 2011
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2011-1268-01 - Mozilla Firefox is an open source web browser. XULRunner provides the XUL Runtime environment for Mozilla Firefox. The RHSA-2011:1242 Firefox update rendered HTTPS certificates signed by a certain Certificate Authority as untrusted, but made an exception for a select few. This update removes that exception, rendering every HTTPS certificate signed by that CA as untrusted. All Firefox users should upgrade to these updated packages, which contain Firefox version 3.6.22. After installing the update, Firefox must be restarted for the changes to take effect.

tags | advisory, web
systems | linux, redhat
SHA-256 | e394a1357e1399327b0c72cd1ed1ac714a601d15eba2ab9aa7dc4e55138db061
Red Hat Security Advisory 2011-1267-01
Posted Sep 7, 2011
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2011-1267-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. The RHSA-2011:1243 Thunderbird update rendered HTTPS certificates signed by a certain Certificate Authority as untrusted, but made an exception for a select few. This update removes that exception, rendering every HTTPS certificate signed by that CA as untrusted. All Thunderbird users should upgrade to this updated package, which resolves this issue. All running instances of Thunderbird must be restarted for the update to take effect.

tags | advisory, web
systems | linux, redhat
SHA-256 | 69aa7adc07bc289eb1af3b0ebabb93ca6e1a697884694c17a9a228c650adf59f
OpenSSL Toolkit 1.0.0e
Posted Sep 7, 2011
Site openssl.org

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security (TLS v1) protocols with full-strength cryptography world-wide.

Changes: Initialization of X509_STORE_CTX was fixed to eliminate a case where CRLs with "nextUpdate" in the past were sometimes accepted. An error in SSL memory handling for (EC)DH ciphersuites was fixed. A memory leak on bad inputs to x509_name_ex_d2i was fixed. Some ECC ciphersuites are no longer restricted to SHA1. Protection against ECDSA timing attacks was introduced
tags | encryption, protocol
systems | unix
advisories | CVE-2011-3207, CVE-2011-3210
SHA-256 | e361dc2775733fb84de7b5bf7b504778b772869e8f7bfac0b28b935cbf7380f7
WordPress WP Forum Server 1.7 SQL Injection
Posted Sep 7, 2011
Authored by Miroslav Stampar

WordPress WP Forum Server versions 1.7 and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 4bee72cbf045ce1a2a1bbbaa481e21f5dc13b64910212d95e76946acec4b20d3
Secunia Security Advisory 45899
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Blue Coat Reporter, which can be exploited by malicious people to disclose sensitive information.

tags | advisory
SHA-256 | 8de38d011232cf00be33778d73e4cfbbffde3785cd1a95f4ca7f0c5fb24718d5
Secunia Security Advisory 45813
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in the Tweet old post plugin for WordPress, which can be exploited by malicious users to conduct SQL injection attacks.

tags | advisory, sql injection
SHA-256 | b9a85a3781aaf410430fa62144ce52a04224defcb6a35663303a2cea36c7eb87
Secunia Security Advisory 45901
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Red Hat has issued an update for gstreamer-plugins. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library.

tags | advisory, denial of service, vulnerability
systems | linux, redhat
SHA-256 | 8aaa567e4762e77c72447f2077da87841777c0c4f43a791778d3dc172a4af7c4
Secunia Security Advisory 45917
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for rubygem-activesupport. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
systems | linux, fedora
SHA-256 | 7894e386c48b0825fe071024ae77aac9caa44ca27e0228c7e6df40fdb73457ae
Secunia Security Advisory 45898
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Blue Coat Reporter, which can be exploited by malicious people to disclose sensitive information.

tags | advisory
SHA-256 | e74653336405b260e43e679123ff88e6735c7850053a97f8e3e49949fce54ffe
Secunia Security Advisory 45882
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - NoGe has discovered multiple vulnerabilities in PlaySMS SMS Gateway, which can be exploited by malicious people to compromise a vulnerable system.

tags | advisory, vulnerability
SHA-256 | 6ab49509a40c640f6ad6192624eec440149a593e1e53f02352e63f8095d7f087
Secunia Security Advisory 45918
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for dhcp. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).

tags | advisory, denial of service, vulnerability
systems | linux, fedora
SHA-256 | 72a7a0a5613d9686d1bac8a1a436ac461bc765c96f2f2ba4768307d59ee32f83
Secunia Security Advisory 45919
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for libsndfile. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise an application using the library.

tags | advisory
systems | linux, fedora
SHA-256 | 4c5fedf1df7708f27bb340d87b5bbe6500c2611153cacdc0f89953deb6430e8b
Secunia Security Advisory 45827
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been reported in Hastymail2, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, vulnerability, xss
SHA-256 | bc354159f7cadd0fd8cd2d46c268ba930cb94080da52276834a5c40723d5d6db
Secunia Security Advisory 45861
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in OpenFabrics Enterprise Distribution, which can be exploited by malicious, local users to cause a DoS (Denial of Service).

tags | advisory, denial of service, local
SHA-256 | 29b6746854c2c4008041dad2c2bcd364f9e26cf4b598696b0e9ec90676bef54e
Secunia Security Advisory 45897
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Red Hat has issued an update for the kernel. This fixes some weaknesses and vulnerabilities, which can be exploited by malicious, local users to disclose certain system information, cause a DoS (Denial of Service), and gain escalated privileges and by malicious, local users in a guest virtual machine and malicious people to cause a DoS.

tags | advisory, denial of service, kernel, local, vulnerability
systems | linux, redhat
SHA-256 | ae1a266f7ed6e3ef5d08e4bb14160d641e43b1d9749c7f1a3bd3ebe0707dec91
Secunia Security Advisory 45924
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been discovered in GnuCash, which can be exploited by malicious people to compromise a user's system.

tags | advisory, vulnerability
SHA-256 | 3e6c5f01ad0af488beb55ceff4a44f926216a4a5d0a46cd5e256a327ad7c5059
Secunia Security Advisory 45884
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - High-Tech Bridge SA has discovered a vulnerability in Zikula Application Framework, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | d8e715749c636a77236f941919b7d6de92286eb29b0a9c9c62112ecc5cc4fb8c
Secunia Security Advisory 45846
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Miroslav Stampar has discovered two vulnerabilities in the KNR Author List plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, vulnerability, sql injection
SHA-256 | f639f4d418bc8d5ff3bb02905ce3941ab26a1c53f93f82f14109a1047856774b
Secunia Security Advisory 45925
Posted Sep 7, 2011
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in the wpcu3er plugin for WordPress, which can be exploited by malicious people to compromise a vulnerable system.

tags | advisory
SHA-256 | 56d5b491593d8f0e0e5ae67ffc9858ea0fcafad5cbf4b3a9dce0ca1d26b5d838
Red Hat Security Advisory 2011-1266-01.xt
Posted Sep 7, 2011
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2011-1266-01.xt - SeaMonkey is an open source web browser, email and newsgroup client, IRC chat client, and HTML editor. The RHSA-2011:1244 SeaMonkey update rendered HTTPS certificates signed by a certain Certificate Authority as untrusted, but made an exception for a select few. This update removes that exception, rendering every HTTPS certificate signed by that CA as untrusted. All SeaMonkey users should upgrade to these updated packages, which correct this issue. After installing the update, SeaMonkey must be restarted for the changes to take effect.

tags | advisory, web
systems | linux, redhat
SHA-256 | 65b993d94bc041a184d5a50dd74cec68450ace5a9cfd84a960c475ca090bd969
Page 1 of 2
Back12Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close