exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 24 of 24 RSS Feed

Files Date: 2024-09-30

Scapy Packet Manipulation Tool 2.6.0
Posted Sep 30, 2024
Authored by Philippe Biondi | Site secdev.org

Scapy is a powerful interactive packet manipulation tool, packet generator, network scanner, network discovery tool, and packet sniffer. It provides classes to interactively create packets or sets of packets, manipulate them, send them over the wire, sniff other packets from the wire, match answers and replies, and more. Interaction is provided by the Python interpreter, so Python programming structures can be used (such as variables, loops, and functions). Report modules are possible and easy to make. It is intended to do the same things as ttlscan, nmap, hping, queso, p0f, xprobe, arping, arp-sk, arpspoof, firewalk, irpas, tethereal, tcpdump, etc.

Changes: Dropped support of Python 2.7. Improved packaging. Support for RFC6874-like scope identifiers. The internals that read the routes and interfaces configuration have been rewritten on Linux and BSD. The changelog is quite extensive as it has been two years since the last release so definitely review it.
tags | tool, scanner, python
systems | unix
SHA-256 | cfd1babc5c0008bc021eede72149922c24dfc4a511ced7cc3a8665193b6be5c5
Debian Security Advisory 5779-1
Posted Sep 30, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5779-1 - Simone Margaritelli reported that cups, the Common UNIX Printing System, does not properly sanitize IPP attributes when creating PPD files, which may result in the execution of arbitrary code.

tags | advisory, arbitrary
systems | linux, unix, debian
advisories | CVE-2024-47175
SHA-256 | 83ecd659e56de14800ec1796cd224782a1142b21ab9254aa2e8f5a8461f8cfc3
Debian Security Advisory 5778-1
Posted Sep 30, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5778-1 - Simone Margaritelli reported several vulnerabilities in cups-filters. Missing validation of IPP attributes returned from an IPP server and multiple bugs in the cups-browsed component can result in the execution of arbitrary commands without authentication when a print job is started.

tags | advisory, arbitrary, vulnerability
systems | linux, debian
advisories | CVE-2024-47076, CVE-2024-47176
SHA-256 | 5a1f56f676d00911fffdf604e18b71c26411856c8f03de47176c8199b8debba9
VegaBird Vooki 5.2.9 DLL Hijacking
Posted Sep 30, 2024
Authored by Iulian Florea

VegaBird Vooki version 5.2.9 suffers from a dll hijacking vulnerability.

tags | exploit
systems | windows
advisories | CVE-2024-45874
SHA-256 | c5f33bc21c9e871866fcbc9aa668c73fe0ec052f868a7c993eb644b8d7aa159e
VegaBird Yaazhini 2.0.2 DLL Hijacking
Posted Sep 30, 2024
Authored by Iulian Florea

VegaBird Yaazhini version 2.0.2 suffers from a dll hijacking vulnerability.

tags | exploit
systems | windows
advisories | CVE-2024-45873
SHA-256 | 378aa772f21ffc902834ecaa037a742ac5bf2f8dbac879f976178e59558b4845
Gentoo Linux Security Advisory 202409-32
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-32 - Multiple vulnerabilities have been discovered in nginx, the worst of which could result in denial of service. Versions greater than or equal to 1.26.2-r2 are affected.

tags | advisory, denial of service, vulnerability
systems | linux, gentoo
advisories | CVE-2024-24989, CVE-2024-24990, CVE-2024-7347
SHA-256 | c67e42ea9263113d145ecfc6072219bcdcc3e992ec7ec9fff1c5ec0b8020e48a
Gentoo Linux Security Advisory 202409-31
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-31 - Multiple vulnerabilities have been found in Apache HTTPD, the worst of which could result in denial of service. Versions greater than or equal to 2.4.62 are affected.

tags | advisory, denial of service, vulnerability
systems | linux, gentoo
advisories | CVE-2023-38709, CVE-2024-24795, CVE-2024-27316, CVE-2024-36387, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39884, CVE-2024-40725, CVE-2024-40898
SHA-256 | e140c2ea34336c36470495b8e5becd4da0e3fc777733afa65462c3ef0f63a24c
BlackBerry CylanceOPTICS Uninstall Password Bypass
Posted Sep 30, 2024
Authored by P. Espernberger, M. Engleitner, Rene Grubmair | Site sec-consult.com

BlackBerry CylanceOPTICS versions prior to 3.3 MR2 and 3.2 MR5 suffer from an uninstall password bypass vulnerability.

tags | exploit, bypass
advisories | CVE-2024-35214
SHA-256 | 0a06d0ec45010ea8b159f9d5f9a891450ce9117faadcb6b526ef6e7aa21a7451
Debian Security Advisory 5777-1
Posted Sep 30, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5777-1 - It was discovered that the Booth cluster ticket manager failed to correctly validate some authentication hashes.

tags | advisory
systems | linux, debian
advisories | CVE-2024-3049
SHA-256 | e2ba56c0897ea23719114c79a7e1e668077245323fe2f33ce11a65f997355888
Gentoo Linux Security Advisory 202409-30
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-30 - Multiple vulnerabilities have been found in yt-dlp, the worst of which could result in arbitrary code execution. Versions greater than or equal to 2024.07.01 are affected.

tags | advisory, arbitrary, vulnerability, code execution
systems | linux, gentoo
advisories | CVE-2023-35934, CVE-2023-46121, CVE-2024-38519
SHA-256 | 37903e0f27bc7f4003dd07b4a6735ae803160c07c45c4354a17110a07fa7653c
Gentoo Linux Security Advisory 202409-29
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-29 - Multiple vulnerabilities have been discovered in Docker, the worst of which could result in denial of service. Versions greater than or equal to 25.0.4 are affected.

tags | advisory, denial of service, vulnerability
systems | linux, gentoo
advisories | CVE-2021-41089, CVE-2021-41091, CVE-2022-36109, CVE-2022-41717, CVE-2023-26054, CVE-2023-28840, CVE-2023-28841, CVE-2023-28842, CVE-2024-23650, CVE-2024-23651, CVE-2024-23652, CVE-2024-23653, CVE-2024-24557
SHA-256 | c10f26c3dc36aa6b7ec55396a172baf10c09930304afdd388326b8cb450d34fd
Microsoft CWE-73 Weakness
Posted Sep 30, 2024
Authored by Stefan Kanthak

A single command line can show you about 20,000 instances of CWE-73 issues with Microsoft Windows.

tags | advisory
systems | windows
SHA-256 | 98cca0958bfbc8ebf3577e8e302960e439c3a7358827822332a2847dd420517e
Debian Security Advisory 5776-1
Posted Sep 30, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5776-1 - Albert Cervera discovered two missing authorisation checks in the Tryton application platform.

tags | advisory
systems | linux, debian
SHA-256 | d8d4e782259fc7ccf5a546c723db85a3fbee2c67828b4a27c739de38071c2d8a
Gentoo Linux Security Advisory 202409-28
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-28 - Multiple vulnerabilities have been discovered in HashiCorp Consul, the worst of which could result in denial of service. Versions greater than or equal to 1.15.10 are affected.

tags | advisory, denial of service, vulnerability
systems | linux, gentoo
advisories | CVE-2022-41717
SHA-256 | 1f7e34df1929ecce37c52867b5e67fbfe75f2f217b1bde8a62f8fe6c90ced195
Gentoo Linux Security Advisory 202409-27
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-27 - A vulnerability has been found in tmux which could result in application crash. Versions greater than or equal to 3.4 are affected.

tags | advisory
systems | linux, gentoo
advisories | CVE-2022-47016
SHA-256 | 910d68afe94249f64b053260304042163a602aa92fc5f2f84331c9315b0de997
Gentoo Linux Security Advisory 202409-26
Posted Sep 30, 2024
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 202409-26 - Multiple vulnerabilities have been found in IcedTea, the worst of which could result in arbitrary code execution. Versions less than or equal to 3.21.0 are affected.

tags | advisory, arbitrary, vulnerability, code execution
systems | linux, gentoo
advisories | CVE-2020-14556, CVE-2020-14562, CVE-2020-14573, CVE-2020-14577, CVE-2020-14578, CVE-2020-14579, CVE-2020-14581, CVE-2020-14583, CVE-2020-14593, CVE-2020-14621, CVE-2020-14664, CVE-2020-14779, CVE-2020-14781, CVE-2020-14782
SHA-256 | a0f252940c968a736658ff9f40e765c5e120a68302d6d1c2726a4b81c7de0e0c
Red Hat Security Advisory 2024-7346-03
Posted Sep 30, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7346-03 - An update for cups-filters is now available for Red Hat Enterprise Linux 9. Issues addressed include a code execution vulnerability.

tags | advisory, code execution
systems | linux, redhat
advisories | CVE-2024-47076
SHA-256 | a6dfaba2b16f01e438380fea6cbfe9684f3819cb46bf2869bd28317290da624d
Student Management System 1.0 Insecure Cookie Handling
Posted Sep 30, 2024
Authored by indoushka

Student Management System version 1.0 suffers from an insecure cookie handling vulnerability.

tags | exploit, insecure cookie handling
SHA-256 | d658fbfc8c6a719141fdd1f2794283b78eab23b21c7970420e8965f026849eba
Student Enrollment 1.0 Arbitrary File Upload
Posted Sep 30, 2024
Authored by indoushka

Student Enrollment version 1.0 suffers from an arbitrary file upload vulnerability.

tags | exploit, arbitrary, file upload
SHA-256 | 49cc50e326b3fd62447d476f81a9de0cba690a49f3f4ee75a6bc4a78f3795d14
Sistem Penyewaan Baju atau Pakaian Berbasis Web 1.0 SQL Injection
Posted Sep 30, 2024
Authored by indoushka

Sistem Penyewaan Baju atau Pakaian Berbasis Web version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, web, sql injection, bypass
SHA-256 | 6bf344eafaf6c191620e5d4aaa4bda969218a3a332ca545a121590babfb99c51
Simple Student Quarterly Result / Grade System 1.0 Insecure Settings
Posted Sep 30, 2024
Authored by indoushka

Simple Student Quarterly Result / Grade System version 1.0 suffers from an ignored default credential vulnerability.

tags | exploit
SHA-256 | 65700e5d5f0a16db7935706da6a050674024b5d163710b8e4236fc5383e251ab
Simple Responsive Tourism Website 1.0 Cross Site Request Forgery
Posted Sep 30, 2024
Authored by indoushka

Simple Responsive Tourism Website version 1.0 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 493173ed90bd6f03279d5ce769c941991460d6871a24971c93c031df10a0443c
Simple Music Management System 1.0 Add Administrator / Cross Site Request Forgery
Posted Sep 30, 2024
Authored by indoushka

Simple Music Management System version 1.0 suffers from add administrator and cross site request forgery vulnerabilities.

tags | exploit, vulnerability, csrf
SHA-256 | df252f1eaa3b66e90a658dfc9a226ba2533289721dc44476e40043a787e9796d
Sample Blog Site 1.0 Cross Site Scripting / Remote File Inclusion
Posted Sep 30, 2024
Authored by indoushka

Sample Blog Site version 1.0 suffers from cross site scripting and remote file inclusion vulnerabilities.

tags | exploit, remote, vulnerability, xss, file inclusion
SHA-256 | 9eb4f98f6b5aa7c6a2b152f6a928201fce3e01efc03aed42ffeb58be9416ad69
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close