what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 71 RSS Feed

Files from David "Aesthetico" Vieira-Kurz

First Active2006-06-12
Last Active2013-02-05
Sony Playstation Vita Addressbar Spoofing
Posted Feb 5, 2013
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.com

The Sony Playstation Vita browser that is in firmware version 2.05 suffers from an addressbar spoofing vulnerability.

tags | exploit, spoof
SHA-256 | 4f94f5e5c19e28c6340f59b12d08adb37173a79130562d0dcdf3c0ae6a51fd9a
Apple Safari On iOS 5.1 Address Bar Spoofing
Posted Mar 20, 2012
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Apple Mobile Safari on iOS version 5.1 suffers from an address bar spoofing vulnerability.

tags | exploit, spoof
systems | cisco, linux, apple
SHA-256 | f58624461c9ee0c687b6f705715dc2c87e21e9ce9ecf806fc1a9ffd94102eac5
Simploo CMS 1.7.1 PHP Code Execution
Posted Jan 18, 2011
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Simploo CMS versions 1.7.1 and below suffers from a remote PHP code execution vulnerability.

tags | exploit, remote, php, code execution
SHA-256 | 9a1f0820fb1fdbc83a634a4a235ff07041fe96b86dc1fca2d9b0037a0bb7e4a0
Contao CMS 2.9.2 Cross Site Scripting
Posted Jan 12, 2011
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Contao CMS version 2.9.2 suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 689c90da0c703b57483653cc085150361aca36df954ce857454f1903b3702027
WordPress 3.0.1 Cross Site Scripting
Posted Aug 13, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

WordPress version 3.0.1 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 921c86ce003e8c1e9768354aad33c41325ac356eece76c0d02ce5a7905ee5694
PHPKIT WCMS 1.6.5 Reflected Cross Site Scripting
Posted Jul 28, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

PHPKIT WCMS vesion 1.6.5 suffers from a reflected cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 4e462957f2e106b8bb64e9043371757932788cc4d9d401bc835d3d3f0cd266b0
PHPKIT WCMS 1.6.5 Cross Site Scripting
Posted Jul 27, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

PHPKIT WCMS version 1.6.5 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | ecd55597608e71646904db6946b845c4681b1cddfd49ad04710cd12a26efcbdf
XINHA Editor Plugin ExtendedFileManager Cross Site Scripting
Posted Jul 18, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

The XINHA Editor plugin ExtendedFileManager suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | fc5ec831e8a2a4b95a06b33b4db1fe0d490c0f788e0c40df776fccba3307971f
Conpresso CMS 4.1.1 Cross Site Scripting
Posted Jul 15, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Conpresso CMS version 4.1.1 suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 7c0977c0adad6de76620d1d93c77ecb2bc784517716393efc9a7cdfdd10737c2
CMS RedAks 2.0 SQL Injection
Posted Jun 23, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

CMS RedAks version 2.0 suffers from a remote SQL injection vulnerability.

tags | advisory, remote, sql injection
SHA-256 | 0298c9b9f6da424253be8951edff9153168fca50c43bbe69b3add4f6b0716e72
CMS RedAks 2.0 Cross Site Scripting
Posted Jun 18, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

CMS RedAks version 2.0 suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 2dc45df9d209fbc36e7e5b7dfafe7b1a2ba8d07e612a2e5114c283a9df7d0c30
Subdreamer CMS 3.x.x SQL Injection
Posted Jun 16, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Subdreamer CMS version 3.x.x suffers from a remote SQL injection vulnerability.

tags | advisory, remote, sql injection
SHA-256 | f1e2368b256bbcbd22d92734451e9e7a11e07d3e5590ef937f0b2ce160fb99d8
Plume CMS Cross Site Request Forgery
Posted Jun 12, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Plume CMS version 1.2.4 suffers from a cross site request forgery vulnerability.

tags | advisory, csrf
SHA-256 | 57994f64a7a355285726e29a4a40b8c3c4bd364fda9396d7dd2f94b2537489c2
Invision Power Board Cross Site Scripting
Posted Jun 12, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Invision Power Board versions 3.0.5 and below suffer from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | f5ecd36d1a1ad6114652c5f28b4f938c181c6c1af539be6780b70b9424dc2f4b
Anantasoft Gazelle CMS 1.0 Cross Site Request Forgery
Posted Jun 12, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

Anantasoft Gazelle CMS version 1.0 suffers from a cross site request forgery vulnerability.

tags | advisory, csrf
SHA-256 | 04f0af3a3f6f6f2274852ff6ce45258268fe1788ff9fbdd81e4dba8fe9e30e62
Motorola Milestone (Droid) Smartphone Denial Of Service
Posted Feb 8, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

A remotely exploitable vulnerability has been found in the JavaScript Engine of the MobileSafari Browser(based on Webkit Engine) used on the Motorola Milestone(droid) smartphone. Proof of concept code included.

tags | exploit, javascript, proof of concept
SHA-256 | 3941ff0ec4b456ffb326af42a123bd9dc562135996b539830bbc13b661f15ffe
Apple Safari 4.0.4 Denial Of Service
Posted Feb 5, 2010
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

A remotely exploitable denial of service vulnerability has been found in the JavaScript Engine of the Apple Safari Browser (based on Webkit Engine). Versions 4.0.4 and below are affected.

tags | exploit, denial of service, javascript
systems | apple
SHA-256 | 2ba0632affdabfa20b35111f8625aedb43e2d6d6e35ec2a3b193de81c3c476b8
PHP 5.3 mysqli_real_escape_String() Disclosure
Posted Sep 29, 2009
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

PHP versions 5.3 and below suffer from a mysqli_real_escape_string() related full path disclosure vulnerability.

tags | advisory, php
SHA-256 | fd8379906be076c6c118615ff73d9afa57225ac48ec1b4423658885a20fc46ab
PHP 5.3 preg_match() Path Disclosure
Posted Sep 29, 2009
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

PHP versions 5.3 and below suffer from a preg_match() related full path disclosure vulnerability.

tags | advisory, php
SHA-256 | 110571519c8b75cd916edb69f611cef30e2fd5a456fc1a9922580caa97fe25a7
moziloCMS 1.10.1 Traversal / XSS / Fixation
Posted Sep 22, 2009
Authored by David "Aesthetico" Vieira-Kurz | Site majorsecurity.de

moziloCMS versions 1.10.1 and below suffer from directory traversal, cross site scripting, and session fixation vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 9db81cdf7e2dc7f6b3d2f4af8875ee3c0a5270d75ab8ae7707c165d493aee676
ConPresso CMS 4.07 Session Fixation / XSS
Posted Jan 26, 2009
Authored by David "Aesthetico" Vieira-Kurz

ConPresso CMS versions 4.07 and below suffer from session fixation, cross site scripting, and cross frame scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 2ea45a301dbc68c54a7b101ebd4a4bd8741dabf23d485fb2118fdc15f967705f
proclan-fixation.txt
Posted Dec 4, 2008
Authored by David "Aesthetico" Vieira-Kurz

Pro Clan Manager CMS version 0.4.2 suffers from a session fixation vulnerability.

tags | advisory
SHA-256 | 72780d5581ab030a08f1f7a8b26b21150ff1cf786ced8d0b6d1814a487de5357
impresscms-fixation.txt
Posted Nov 29, 2008
Authored by David "Aesthetico" Vieira-Kurz

Social Impress CMS version 1.1 suffers from a session fixation vulnerability.

tags | advisory
SHA-256 | bdbd81113d3a23f18eb205a88c4f1dbb88eab4e948a8f439902eed912a818016
social-sql.txt
Posted Nov 20, 2008
Authored by David "Aesthetico" Vieira-Kurz

Social Engine versions 2.7 and below suffer from remote SQL injection and cookie manipulation vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | cc404081ed843b5c909a79b12ce67ff7d853b70cf072abefb61a297df95cc82c
webnews-sql.txt
Posted Oct 17, 2008
Authored by David "Aesthetico" Vieira-Kurz

WEB//NEWS versions 1.4 and below suffer from remote SQL injection and cookie manipulation vulnerabilities.

tags | exploit, remote, web, vulnerability, sql injection
SHA-256 | d7ed855d72a03bb5a711b8d7e85850ab9b27894984626fccabddd644282006f4
Page 1 of 3
Back123Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close