what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 51 - 75 of 79 RSS Feed

Files Date: 2012-03-29 to 2012-03-30

Drupal Contact Save 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Stella Power | Site drupal.org

The Drupal Contact Save module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 4f3ea4adabb18907ffc82b631487d5e06d8fd821187f9b3c6847ab996799d1e6
Cisco Security Advisory 20120328-rsvp
Posted Mar 29, 2012
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - Cisco IOS Software and Cisco IOS XE Software contain a vulnerability in the RSVP feature when used on a device configured with VPN routing and forwarding (VRF) instances. This vulnerability could allow an unauthenticated, remote attacker to cause an interface wedge, which can lead to loss of connectivity, loss of routing protocol adjacency, and other denial of service (DoS) conditions. This vulnerability could be exploited repeatedly to cause an extended DoS condition. A workaround is available to mitigate this vulnerability. Cisco has released free software updates that address this vulnerability.

tags | advisory, remote, denial of service, protocol
systems | cisco, osx
advisories | CVE-2012-1311
SHA-256 | 66b4808802d79e777b367723e8a72933aa4a79f44a9c183f78f6c8dee313e4cd
KnFTPd 1.0.0 Denial Of Service
Posted Mar 29, 2012
Authored by Stefan Schurtz

KnFTPd version 1.0.0 FEAT denial of service proof of concept exploit.

tags | exploit, denial of service, proof of concept
SHA-256 | 23362117b24d612d1493f972844422aad68f031cda99ca830f75c6ecd391d069
boastMachine 3.1 Cross Site Request Forgery
Posted Mar 29, 2012
Authored by Dr.NaNo

boastMachine version 3.1 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
SHA-256 | 687f4977244a4f791f5f6177c1e01288790274ddec9a178c971a30dab1a63d5b
B2Evolution CMS 4.1.3 SQL Injection
Posted Mar 29, 2012
Authored by the_storm, Vulnerability Laboratory | Site vulnerability-lab.com

B2Evolution CMS version 4.1.3 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | eb558ba60a7b9fc1009b783cbd7fcef1c83a1f294c0a03c006c7ee08745e73b7
HP Security Bulletin HPSBMU02748 SSRT100772
Posted Mar 29, 2012
Authored by HP | Site hp.com

HP Security Bulletin HPSBMU02748 SSRT100772 - Potential security vulnerabilities have been identified with HP OpenView Network Node Manager (OV NNM) running Apache HTTP Server. The vulnerabilities could be exploited remotely resulting in unauthorized disclosure of information, unauthorized modification, or Denial of Service (DoS). Revision 1 of this advisory.

tags | advisory, web, denial of service, vulnerability
advisories | CVE-2011-3368, CVE-2011-3607, CVE-2011-4317, CVE-2012-0021, CVE-2012-0031, CVE-2012-0053
SHA-256 | 7fae2700afe344be38de57d49ac19bea29b89131596241416dbf472e479b30dc
Cisco Security Advisory 20120328-msdp
Posted Mar 29, 2012
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - A vulnerability in the Multicast Source Discovery Protocol (MSDP) implementation of Cisco IOS Software and Cisco IOS XE Software could allow a remote, unauthenticated attacker to cause a reload of an affected device. Repeated attempts to exploit this vulnerability could result in a sustained denial of service (DoS) condition. Cisco has released free software updates that address this vulnerability. Workarounds that mitigate this vulnerability are available.

tags | advisory, remote, denial of service, protocol
systems | cisco, osx
advisories | CVE-2012-0382
SHA-256 | fce89adc97cc27de40394846d5c1768ffb1a6670294415b5229d201a5b12c8e4
TomatoCart 1.2.0 Alpha 2 Local File Inclusion
Posted Mar 29, 2012
Authored by Canberk BOLAT | Site netsparker.com

TomatoCart version 1.2.0 Alpha 2 suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
SHA-256 | 0380e1660aeeb3ac1fd74e36bfcf70e2820b85aa6e07eed9c2b8ae3e19e28257
Drupal Ubercart Views 6.x Access Bypass
Posted Mar 29, 2012
Authored by Derek Wright | Site drupal.org

The Drupal Ubercart Views module version 6.x suffers from an access bypass vulnerability.

tags | advisory, bypass
SHA-256 | 95d851e70092474174c3f74c194eba0d23ffef4f23ad8d778f8b91a297a6a861
Drupal Bundle Copy 7.x Cross Site Scripting
Posted Mar 29, 2012
Authored by David Rothstein | Site drupal.org

The Drupal Bundle Copy module version 6.x suffers from an arbitrary code execution vulnerability.

tags | advisory, arbitrary, code execution
SHA-256 | c91035ffcabe2a3b441c6f0e5b74a15d68101edb844b0764bfa9860191cf19cf
Drupal Share Buttons 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Kyle Small | Site drupal.org

The Drupal Share Buttons module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 5929a532a032594c5e8d08c25f27d18537dd86ccf4232cb0eec503cca25d9477
Drupal Contact Forms 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Ivo Van Geertruyen | Site drupal.org

The Drupal Contact Forms module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | fca0267cc244bdcfe1162744aabb35fed630fe06c6831938ae2596911c31689c
Drupal MultiBlock 6.x / 7.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Justin C. Klein Keane | Site drupal.org

The Drupal MultiBlock module versions 6.x and 7.x suffer from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 70876e7c8dfc2f422a45f8e33d5d72db26ba4d5e5008daa1b372d2d3d3154b0c
Cisco Security Advisory 20120328-zbfw
Posted Mar 29, 2012
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - Cisco IOS Software contains four vulnerabilities related to Cisco IOS Zone-Based Firewall features. These vulnerabilities are as follows: Memory Leak Associated with Crafted IP Packets. Memory Leak in HTTP Inspection. Memory Leak in H.323 Inspection. Memory Leak in SIP Inspection Workarounds that mitigate these vulnerabilities are not available. Cisco has released free software updates that address these vulnerabilities.

tags | advisory, web, vulnerability, memory leak
systems | cisco
advisories | CVE-2012-0387, CVE-2012-0388, CVE-2012-1310, CVE-2012-1315
SHA-256 | 425933ced497ae1f0580d31d6cb0bf3be88e191f8a0fb78ae095f067dc8b03ca
HP Security Bulletin HPSBMU02747 SSRT100771
Posted Mar 29, 2012
Authored by HP | Site hp.com

HP Security Bulletin HPSBMU02747 SSRT100771 - Potential security vulnerabilities have been identified with HP OpenView Network Node Manager (OV NNM) running Apache Tomcat. The vulnerabilities could be exploited remotely to create a Denial of Service (DoS). Revision 1 of this advisory.

tags | advisory, denial of service, vulnerability
advisories | CVE-2011-4858, CVE-2012-0022
SHA-256 | c9b0b0e660e5ff3746af0070f2ac163f913dacda8b2dfada5c74105a85308a96
National White Collar Crime Center Cross Site Scripting
Posted Mar 29, 2012
Authored by Ryuzaki Lawlet

National White Collar Crime Center at www.nw3c.org suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 779a8bdd46a61b70b94a28bc64c813a18424c18249c9aff27240624b57d59e4e
Respuestas.gobiernousa.gov Cross Site Scripting
Posted Mar 29, 2012
Authored by Ryuzaki Lawlet

Respuestas.gobiernousa.gov suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | f42828a9279e0c5222892bf174040164c71c785c461fa19bc4f8b2402468f557
Answers.usa.gov Cross Site Scripting
Posted Mar 29, 2012
Authored by Ryuzaki Lawlet

Answers.usa.gov suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 72778c83fde8097be6f8f1a58dd06b5bfa2eb0850572dfb3e8a9b5fe51ef647d
THOMAS (The Library Of Congress) Cross Site Scripting
Posted Mar 29, 2012
Authored by Ryuzaki Lawlet

THOMAS (The Library Of Congress) at thomas.loc.gov suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 774ef3e3c0ccd31308da9cd17f4625cd763df17933e2c3d493ebaa4d69839620
EasyPHP SQLite SQL Injection
Posted Mar 29, 2012
Authored by Skote Vahshat

EasyPHP SQLite suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | a0576b5b89a27fa6194b062b630f90ef32e2b624c7702fb789e32b221a1c7d16
Mandriva Linux Security Advisory 2012-042
Posted Mar 29, 2012
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2012-042 - Multiple vulnerabilities was found and corrected in Wireshark. The ANSI A dissector could dereference a NULL pointer and crash. The IEEE 802.11 dissector could go into an infinite loop. The pcap and pcap-ng file parsers could crash trying to read ERF data. The MP2T dissector could try to allocate too much memory and crash. This advisory provides the latest version of Wireshark which is not vulnerable to these issues.

tags | advisory, vulnerability
systems | linux, mandriva
SHA-256 | d5ef4777a0071d89f39f0706964555caac6cfffd482f25f0700d8da25008e21a
Microsoft ASP.NET Forms Authentication Bypass
Posted Mar 29, 2012
Authored by K. Gudinavicius, m | Site sec-consult.com

Microsoft ASP.NET Forms versions 4.0.30319.237 and below suffer from an authentication bypass vulnerability.

tags | exploit, asp, bypass
advisories | CVE-2011-3416
SHA-256 | 7432953a885d29ecc984b1dab18e4eeeb9ab253b2c398a82436125325e03bc71
F5 FirePass SSL VPN 6.x / 7.x SQL Injection
Posted Mar 29, 2012
Authored by Christoph Schwarz | Site sec-consult.com

F5 FirePass SSL VPN versions 6.0.0 through 6.1.0 and 7.0.0 suffers from a remote SQL injection vulnerability that allows for remote root access.

tags | exploit, remote, root, sql injection
advisories | CVE-2012-1777
SHA-256 | 17285d0e33742a99873151808caad6a558a6294c4e724dc671bd743f0057ab6d
WebPortal CMS Beta Arbitrary File Upload
Posted Mar 29, 2012
Authored by HELLBOY

WebPortal CMS Beta suffers from a shell upload vulnerability.

tags | exploit, shell
SHA-256 | 0a16776905892f9932c6a81532948beda759b23fb0a1ebd44a1a250d6589aa23
PicoPublisher 2.0 SQL Injection
Posted Mar 29, 2012
Authored by ZeTH

PicoPublisher version 2.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 8589422d53bbbd4b33ee700206a84b88b5972c5bd4cc284f934442e74079f7d5
Page 3 of 4
Back1234Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close