exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 9 of 9 RSS Feed

Files Date: 2015-05-18

BulletProof FTP Client 2010 Buffer Overflow
Posted May 18, 2015
Authored by His0k4, Gabor Seljan

BulletProof FTP Client 2010 buffer overflow SEH exploit.

tags | exploit, overflow
advisories | CVE-2008-5753, OSVDB-50968
SHA-256 | 9d2a8f92ad8d040a364da21925a40e5176a44528e1c55fb4e35eb9154c1ee38e
Forma LMS 1.3 PHP Object Injection
Posted May 18, 2015
Authored by Filippo Roncari

Forma LMS version 1.3 suffer from multiple PHP object injection vulnerabilities.

tags | exploit, php, vulnerability
SHA-256 | 044bd18c774d1e1b75ddccdda5b4e979fd43e42126b0cd1f29509d053af5c02c
OYO File Manager 1.1 LFI / Command Injection / Traversal
Posted May 18, 2015
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

OYO File Manager version 1.1 suffers from local file inclusion, command injection, and directory traversal vulnerabilities.

tags | exploit, local, vulnerability, file inclusion
SHA-256 | fe85738f1eab7c8cfd878542f88a4991a2d514748244ffcea4f4f4c22b56c5d9
iClassSchedule 1.6 Script Insertion
Posted May 18, 2015
Authored by Katharina S.L., Vulnerability Laboratory | Site vulnerability-lab.com

iClassSchedule version 1.6 suffers from a script insertion vulnerability.

tags | exploit
SHA-256 | d047f17c7217e693bc5c7eb259b591591c387b4165c900de8fe1190c3e7e22e2
Ubuntu Security Notice USN-2603-1
Posted May 18, 2015
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2603-1 - Jesse Ruderman, Mats Palmgren, Byron Campen, and Steve Fink discovered multiple memory safety issues in Thunderbird. If a user were tricked in to opening a specially crafted message with scripting enabled, an attacker could potentially exploit these to cause a denial of service via application crash, or execute arbitrary code with the privileges of the user invoking Thunderbird. Atte Kettunen discovered a buffer overflow during the rendering of SVG content with certain CSS properties in some circumstances. If a user were tricked in to opening a specially crafted message with scripting enabled, an attacker could potentially exploit this to cause a denial of service via application crash, or execute arbitrary code with the privileges of the user invoking Thunderbird. Various other issues were also addressed.

tags | advisory, denial of service, overflow, arbitrary
systems | linux, ubuntu
advisories | CVE-2015-2708, CVE-2015-2710, CVE-2015-2713, CVE-2015-2716
SHA-256 | 071dd2ac5a46c4050e07f2243d084650f3d54e4d6c7d9fccfaf5fd1b448736a0
Samba 3.0.37 EnumPrinters Memory Corruption
Posted May 18, 2015
Authored by Gabriele Avosani

Samba version 3.0.37 EnumPrinters memory corruption vulnerability proof of concept code.

tags | exploit, proof of concept
systems | linux
SHA-256 | b851df8826422abca18b43d10218e9f5051c9aca16b4dd80e5ab1da22edb4e6a
Red Hat Security Advisory 2015-1012-01
Posted May 18, 2015
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2015-1012-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. Several flaws were found in the processing of malformed web content. A web page containing malicious content could cause Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running Thunderbird. A heap-based buffer overflow flaw was found in the way Thunderbird processed compressed XML data. An attacker could create specially crafted compressed XML content that, when processed by Thunderbird, could cause it to crash or execute arbitrary code with the privileges of the user running Thunderbird.

tags | advisory, web, overflow, arbitrary
systems | linux, redhat
advisories | CVE-2015-2708, CVE-2015-2710, CVE-2015-2713, CVE-2015-2716
SHA-256 | 498b88d7e4d4bfa225ad0f2324ddcb350d365f2ef56d95457029b86ee7abc553
Facebook Filter Evasion / Open Redirect
Posted May 18, 2015
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

Facebook suffered from filter evasion and open redirection vulnerabilities.

tags | exploit, vulnerability
SHA-256 | 32ed60b541458088021184ce1c05f957aaa159bf25704ab3c0a004ad152f9f56
ManageEngine EventLog Analyzer 10.0 CSRF
Posted May 18, 2015
Authored by Akash S. Chavan

ManageEngine EventLog Analyzer version 10.0 build 10001 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 17c40b02db45425f3f5e9dc51696a724713566db259e3ec17a2530445625a7dd
Page 1 of 1
Back1Next

File Archive:

December 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    0 Files
  • 2
    Dec 2nd
    41 Files
  • 3
    Dec 3rd
    25 Files
  • 4
    Dec 4th
    0 Files
  • 5
    Dec 5th
    0 Files
  • 6
    Dec 6th
    0 Files
  • 7
    Dec 7th
    0 Files
  • 8
    Dec 8th
    0 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close