what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 18 of 18 RSS Feed

Files Date: 2012-01-28

FAA US Academy SQL Injection
Posted Jan 28, 2012
Authored by Vulnerability Laboratory | Site vulnerability-lab.com

FAA US Academy suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection
SHA-256 | 11a998cc55d43daa622f8c41368937c24f57cb2e70420eaa76da111430aa8e57
eBank IT Online Banking Cross Site Scripting
Posted Jan 28, 2012
Authored by Chokri Ben Achor, Vulnerability Laboratory | Site vulnerability-lab.com

eBank IT Online Banking suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 1e8a7a724d53d4c2f53dfb9b5a9593f9967ae92ffc51eb1189ec4e785b6f5dd6
Joomla Visa SQL Injection / Local File Inclusion
Posted Jan 28, 2012
Authored by the_cyber_nuxbie

The Joomla Visa component suffers from local file inclusion and remote SQL injection vulnerabilities.

tags | exploit, remote, local, vulnerability, sql injection, file inclusion
SHA-256 | d3118c6105e10b46918d16c4b6ee2c505680214a1ab0fc601485892d758a2cad
DGC SQL Injection
Posted Jan 28, 2012
Authored by Skote Vahshat

DGC suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | db7ffb03ff9ab63dcbcc4373bf434d417892efaf1a84b13e2d55267701ad9094
Joomla Cmotour SQL Injection
Posted Jan 28, 2012
Authored by the_cyber_nuxbie

The Joomla Cmotour component suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 5f709e000675ce62f1a3c28acb68dd88990285bc0318584e8a1725a6322f5b0e
Neda Rayaneh CMS SQL Injection
Posted Jan 28, 2012
Authored by M4sT3r4N0nY

Neda Rayaneh CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 05cdd7a7f20e9b454f4600fff764faa007608f077258f49555391293049b6083
TND Media CMS SQL Injection
Posted Jan 28, 2012
Authored by Am!r | Site irist.ir

TND Media CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 84bdf61dec2ee7bdfe6581398a8a79f8491a299258b440d7dc81b0635d63a275
FatCat SQL Injector
Posted Jan 28, 2012
Authored by Sandeep K

This is an automatic SQL Injection tool called FatCat. It has features that help you to extract the database information, table information, and column information from a web application.

tags | tool, web, scanner, sql injection
systems | unix
SHA-256 | d6543e663214a8df0076f59ba3d72d5f35619b7a0177b40574cb7a4a1d03b007
Silverstripe CMS Cross Site Scripting
Posted Jan 28, 2012
Authored by Karthik R

Silverstripe CMS suffers from a cross site scripting vulnerability in the page title module.

tags | exploit, xss
SHA-256 | 43021383dbfd91566ee035780291d677a45f4eada682c03ff73aaf7cde58d84c
Lifesystems Cross Site Scripting
Posted Jan 28, 2012
Authored by Skote Vahshat

Lifesystems suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 6c39aa775a7a4f40ebab6a87c03cb6dbe7db98d09fb87fa7c695f7ac46f37036
Motigo Forums/Calendar/Guestbook Cross Site Scripting
Posted Jan 28, 2012
Authored by Sony

Motigo Forums/Calendar/Guestbook suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | e074f30cd50bf25af3c1cf5be79c3b508a7b7422b79fe218e263c28eafd599af
Gitorious Remote Command Execution
Posted Jan 28, 2012
Authored by joernchen | Site phenoelit.de

Gitorious versions prior to 2.1.1 suffer from a remote command execution vulnerability.

tags | exploit, remote
SHA-256 | 6eaad22fe33effe3e4d1a3e355ffa9f4cb239465e6efdd17446f0304e8263e07
HP Diagnostics Server magentservice.exe Overflow
Posted Jan 28, 2012
Authored by AbdulAziz Hariri, hal | Site metasploit.com

This Metasploit module exploits a stack buffer overflow in HP Diagnostics Server magentservice.exe service. By sending a specially crafted packet, an attacker may be able to execute arbitrary code. Originally found and posted by AbdulAziz Harir via ZDI.

tags | exploit, overflow, arbitrary
advisories | CVE-2011-4789, OSVDB-72815
SHA-256 | c6a14560edab2b9d9defb11e36b12526fd6aaa6d5fa8fa8faa2534b45739ade1
MS12-004 midiOutPlayNextPolyEvent Heap Overflow
Posted Jan 28, 2012
Authored by sinn3r, juan vazquez, Shane Garrett | Site metasploit.com

This Metasploit module exploits a heap overflow vulnerability in the Windows Multimedia Library (winmm.dll). The vulnerability occurs when parsing specially crafted MIDI files. Remote code execution can be achieved by using Windows Media Player's ActiveX control. Exploitation is done by supplying a specially crafted MIDI file with specific events, causing the offset calculation being higher than how much is available on the heap (0x400 allocated by WINMM!winmmAlloc), and then allowing us to either "inc al" or "dec al" a byte. This can be used to corrupt an array (CImplAry) we setup, and force the browser to confuse types from tagVARIANT objects, which leverages remote code execution under the context of the user. At this time, for IE 8 target, JRE (Java Runtime Environment) is required to bypass DEP (Data Execution Prevention). Note: Based on our testing, the vulnerability does not seem to trigger when the victim machine is operated via rdesktop.

tags | exploit, java, remote, overflow, code execution, activex
systems | windows
advisories | CVE-2012-0003, OSVDB-78210
SHA-256 | 2fdc9c5c7f7d444b003b94e6d9ac9413e9711bc63c367b5bb555b0a3a0fecd1c
AWS Hash Collisions
Posted Jan 28, 2012
Site adacore.com

AdaCore Security Advisory - All AWS releases and wavefronts prior to 2012-01-21 suffer from hash collision vulnerabilities.

tags | advisory, vulnerability
SHA-256 | 7e3a1369a020e57b96e59b8b0b9529fdb0e3680525f1bd1d5292095b172b5eb3
Studio Manolibera Listarivisteuk SQL Injection
Posted Jan 28, 2012
Authored by Th4 MasK

Studio Manolibera's listarivisteuk.php suffers from a remote SQL injection vulnerability.

tags | exploit, remote, php, sql injection
SHA-256 | 28d2f1e146dd773e526708587175db0f5bfe66b4465bf4ec6d2d00fd23383036
Dark D0rk3r 0.5
Posted Jan 28, 2012
Authored by baltazar

Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.

Changes: New options added.
tags | tool, local, scanner, sql injection, python, file inclusion
systems | unix
SHA-256 | e01594c855c297a66c7de4fb7f73f8b55125cb6a8f3033145120cc7efa3dfe97
IBBY SQL Injection
Posted Jan 28, 2012
Authored by Th4 MasK

IBBY's nouvelles.php suffers from a remote SQL injection vulnerability.

tags | exploit, remote, php, sql injection
SHA-256 | c04b78989522c139651f6aa6c65f3d7460fff4e8d0dddf5d0eb5ed2ba7b110ea
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close