Dynamic Flash Forum version 1.0 Beta suffers from SQL injection vulnerabilities including one that allows for authentication bypass. It also suffers from an information disclosure vulnerability.
2b8bed2cec7e44b2c10d8e5e1ac38ed296189fd72bf2badae2c9052d9b7fa13d
VMware Security Advisory - Updated VMware Hosted products and patches for ESX and ESXi resolve a critical security vulnerability. A critical vulnerability in the virtual machine display function might allow a guest operating system to run code on the host.
ded0d04acbe4c8b889c0e5575d735098c83e86bfdfa2bfcf6b60809b3bf1577e
Mandriva Linux Security Advisory 2009-090 - The JSON_parser function (ext/json/JSON_parser.c) in PHP 5.2.x before 5.2.9 allows remote attackers to cause a denial of service (segmentation fault) via a malformed string to the json_decode API function. The updated packages have been patched to correct these issues.
3a87e527ab8dfac604f5529c8360a28a8cb596eecd25191ee2b7931d433ae286
Whitepaper called Penetration from application down to OS - Getting OS access using IBM Websphere Application Server vulnerabilities.
8cb559ced52aca50e77a2ca1dd0ff696a7c3c944d422b4b8ac73a095b7c0ed54
Whitepaper called Penetration from application down to OS - Getting OS access using Oracle Database unprivileged user.
06a4f468cc6d983c52ce278ac87657eaa93f732c34490b98b2d0f73fc484fd6f
PHP 5.2.9 curl safe_mode and open_basedir bypass exploit.
f0b36ec719bc7e658f7f77f8ee5ea997db91aa373465e27bea1d0dd8347e2e70
PHP 5.2.9 suffers from a safe_mode and open_basedir bypass vulnerability.
eca58f1ebba6d590a2e6a8522d12061c8bc9659ecd89694fbcbf0454e64d12b3
NullSearchAccess is a scanner that attempts default logins for various services like ftp, pop3, imap, mysql, and more.
deb51f0cdf0a2234df7efbde07c893c2a68809e387b985c94f0da95bf8cdb7f0
Cisco ASA/PIX appliances fail to properly check fragmented TCP packets.
cf31e2d808f52215c9aa9a83ebaf0678772e6f5065c0f50988aaf86c9f3745b9
mozilloCMS version 1.11 suffers from local file inclusion, path disclosure, and cross site scripting vulnerabilities.
14e5d42d2c5aeeb509c76e5faedf776f4b6122c996d40b80850c1a375a7b9586
Redaxscript version 0.2.0 suffers from a local file inclusion vulnerability.
47d8f2b7b4ff4d2c57f88a8e09a42daf1365a46992d3aa47020a3f41973e759c
w3bcms Gaestebuch version 3.0.0 blind SQL injection exploit.
1c4baf476dc11e43c2135a14c2c84a5e29ace90e5256b24a9885b69be7ce168f
FunkyASP AD System version 1.1 suffers from a remote shell upload vulnerability.
d6cc3891f2531947d0618201cf76d7db062ba278a711f5f156d9b0bd83cd6f60