what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 207 RSS Feed

Files

Packet Storm New Exploits For November, 2012
Posted Dec 1, 2012
Authored by Todd J. | Site packetstormsecurity.com

This archive contains all of the 225 exploits added to Packet Storm in November, 2012.

tags | exploit
systems | linux
SHA-256 | e53bdc46e1d537d309a6c1b480219705cd6afc3f323fe17fc1150b4cdbf27d95
BlazeVideo HDTV Player Pro 6.6 Filename Handling
Posted Nov 30, 2012
Authored by sinn3r, b33f | Site metasploit.com

This Metasploit module exploits a vulnerability found in BlazeVideo HDTV Player's filename handling routine. When supplying a string of input data embedded in a .plf file, the MediaPlayerCtrl.dll component will try to extract a filename by using PathFindFileNameA(), and then copies whatever the return value is on the stack by using an inline strcpy. As a result, if this input data is long enough, it can cause a stack-based buffer overflow, which may lead to arbitrary code execution under the context of the user.

tags | exploit, overflow, arbitrary, code execution
advisories | OSVDB-80896
SHA-256 | ab34370a5debea1b2a8db24c582834304ee72c0e5a992dbbbcfedc31867011f6
Axis Commerce 0.8.7.2 Cross Site Scripting
Posted Nov 30, 2012
Authored by LiquidWorm | Site zeroscience.mk

Axis Commerce version 0.8.7.2 suffers from multiple stored cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 5b98c30892bfc1275681ae20caf39f5a066c85801cedca3fd96ad0fd88b04a10
SysAid Helpdesk 8.5 Pro SQL Injection
Posted Nov 30, 2012
Authored by Daniel Compton | Site nccgroup.com

SysAid Helpdesk version 8.5 Pro suffers from multiple remote blind SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 6b32da064f8d6d2d434491a60fd914b8e9cf99d9ceab79f915c421782d761761
Squiz CMS 11654 File Path Traversal
Posted Nov 30, 2012
Authored by Robert Ray | Site nccgroup.com

Squiz CMS version 11654 suffers from a directory traversal vulnerability.

tags | exploit
SHA-256 | 9aad92b935f5ad7c893786de544430c0d9cb211b6cbbaed9edeef9c1a0e15cce
Nagios XI Network Monitor 2011R1.9 SQL Injection
Posted Nov 30, 2012
Authored by Daniel Compton | Site nccgroup.com

Nagios XI Network Monitor version 2011R1.9 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 2cf56eed695230c853b7b3b4f90eb894c8c6fc9ed6af1f23249a37152923da76
Nagios XI Network Monitor 2011R1.9 OS Command Injection
Posted Nov 30, 2012
Authored by Daniel Compton | Site nccgroup.com

Nagios XI Network Monitor version 2011R1.9 suffers from OS command injection vulnerabilities.

tags | exploit, vulnerability
SHA-256 | cefe812c8837b8e434b4ea93fe2c8a19e990a7fdd85084570601625036f225c8
Oracle Gridengine sgepasswd Buffer Overflow
Posted Nov 30, 2012
Authored by Edward Torkington | Site ngssoftware.com

Oracle Gridengine's sgepasswd suffers from a buffer overflow vulnerability.

tags | exploit, overflow
SHA-256 | 27c545a1cda033f55904dc6058b6be0f7c4252cea190bf6782a8be65bf19b66d
DataArmor / DriveArmor Privilege Escalation / Decryption
Posted Nov 30, 2012
Authored by Stuart Passe | Site ngssoftware.com

DataArmor and DriveArmor versions prior to 3.0.12.861 suffer from restricted environment breakout, privilege escalation, and full disk decryption vulnerabilities.

tags | exploit, vulnerability
SHA-256 | 0fc5ee98ad7150597b23a730a459a04feb859a6daba3aacc92a056f31d04b665
jsupload.cgi.pl 0.6.4 Directory Traversal
Posted Nov 30, 2012
Authored by Sean de Regge

jsupload.cgi.pl versions 0.6.4 and below suffer from a directory traversal vulnerability.

tags | exploit, cgi, file inclusion
SHA-256 | ccd62aaa39befe158eac096c007c49a7c571779c421b3de5eb034f9c0b7abff3
PayPal Persistent Listing Cross Site Scripting
Posted Nov 30, 2012
Authored by Benjamin Kunz Mejri, Vulnerability Laboratory | Site vulnerability-lab.com

PayPal suffered from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 2410978fe3d394fded3f60d02efa3b9655e8eff8e42012acccdeb9c375cab246
SilverStripe CMS 3.0.2 Cross Site Request Forgery / Cross Site Scripting
Posted Nov 30, 2012
Authored by Nathaniel Carew | Site senseofsecurity.com.au

SilverStripe version 3.0.2 suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss, csrf
SHA-256 | 5cb762b339a330f6095d9df36320aed93b37bcf830588eaba27f260b27da40fb
Oracle OpenSSO 8.0 Cross Site Scripting
Posted Nov 30, 2012
Authored by LiquidWorm | Site zeroscience.mk

Oracle OpenSSO version 8.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 8c808e048c19a6a159ab6b29c16212a38f35d663f13ecf875b211ee928233412
WordPress Video Lead Form 0.5 Cross Site Scripting
Posted Nov 30, 2012
Authored by Aditya Balapure

WordPress Video Lead Form plugin version 0.5 suffers from a cross site scripting vulnerability.

tags | exploit, xss
advisories | CVE-2012-6312
SHA-256 | 6399d89e41c6f18b870131becc911b8866326d09c8fdc61c3e45091324d5ae69
Oracle Exadata Leaf Switch Weak Logins
Posted Nov 29, 2012
Authored by Larry W. Cashdollar

Oracle Exadata leaf switches come configured with easily guessable passwords and a shadow file that is world-readable.

tags | exploit
SHA-256 | 4656654c3f194537f44fd57130e17703524ad55c4635083060dae1b01824ac10
BigDump 0.32b XSS / Shell Upload / SQL Injection
Posted Nov 29, 2012
Authored by Ur0b0r0x

BigDump version 0.32b suffers from cross site scripting, arbitrary file upload, and remote SQL injection vulnerabilities.

tags | exploit, remote, arbitrary, vulnerability, xss, sql injection, file upload
SHA-256 | bc23c90c044ff4efc633cbcc3f27e340bad38ad3a444213bde86d3e4702abab0
UMPlayer Portable 0.95 Proof Of Concept
Posted Nov 29, 2012
Authored by p3kok

UMPlayer Portable version 0.95 crash proof of concept denial of service exploit.

tags | exploit, denial of service, proof of concept
SHA-256 | 645f405d6e5613e5ffaa01bd0c557e04533bc8bd28c446fcee2412fd2ffbdf56
Agilebits 1Password 3.9.9 Cross Site Scripting
Posted Nov 29, 2012
Authored by Christy Philip Mathew

Agilebits 1Password version 3.9.9 suffers from a cross site scripting vulnerability in the troubleshooting reporting system.

tags | exploit, xss
SHA-256 | 71744dd1e2e3fc6192bf9157fb70fc21a07956fc2047e6e02439c2ae46385835
Elastix 2.3.0 Cross Site Scripting
Posted Nov 29, 2012
Authored by cheki

Elastix version 2.3.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 1169ee193f94dedd59c9fe5880f39264785ad1850a53caa434d5b07ce5fb358a
MODx 1.0.6 XSS / Abuse Functionality / Denial Of Service
Posted Nov 29, 2012
Authored by MustLive

MODx versions 1.0.6 and below suffer from cross site request forgery, abuse of functionality, and denial of service vulnerabilities.

tags | exploit, denial of service, vulnerability, csrf
SHA-256 | 06e2431993e324f2e749b37a6e7c7e00a479836f6dfc847e0cea7aa9db329961
BigDump 0.29b Shell Upload / SQL Injection
Posted Nov 29, 2012
Authored by Ur0b0r0x

BigDump version 0.29b suffers from arbitrary file upload and remote SQL injection vulnerabilities.

tags | exploit, remote, arbitrary, vulnerability, sql injection, file upload
SHA-256 | 7f2a9f83ce7267074bd1e978a6656843e20681fe40e2a65f46e42520bcc2a69e
Seventeen Design Cross Site Scripting / SQL Injection
Posted Nov 29, 2012
Authored by Ur0b0r0x

Sites created by Seventeen Design suffer from cross site scripting and remote SQL injection vulnerabilities. Note that these findings house site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 6e024ff910a500b76d6e98d594d24f0970043c4043af514d8873b64e06e7d328
Espacio Ecuador Cross Site Scripting / SQL Injection
Posted Nov 29, 2012
Authored by Ur0b0r0x

Sites developed by Espacio Ecuador suffer from cross site scripting and remote SQL injection vulnerabilities. Note that these findings house site-specific data.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 22828edf67f35b77d1f498612cba632ea2ac891ab9f69bfcab423f6c9f593603
Windows AlwaysInstallElevated MSI
Posted Nov 29, 2012
Authored by Parvez Anwar, Ben Campbell | Site metasploit.com

This Metasploit module checks the AlwaysInstallElevated registry keys which dictate if .MSI files should be installed with elevated privileges (NT AUTHORITY\SYSTEM). The default MSI file is data/exploits/exec_payload.msi with the WiX source file under external/source/exploits/exec_payload_msi/exec_payload.wxs. This MSI simply executes payload.exe within the same folder. The MSI may not execute successfully successive times, but may be able to get around this by regenerating the MSI. MSI can be rebuilt from the source using the WIX tool with the following commands: candle exec_payload.wxs light exec_payload.wixobj.

tags | exploit, registry
SHA-256 | c7e98f972baf436cdfffebb9e430a37c5fe6f420bfd185f513efaf7d19a631e2
Apple QuickTime 7.7.2 MIME Type Buffer Overflow
Posted Nov 29, 2012
Authored by juan vazquez, Pavel Polischouk | Site metasploit.com

This Metasploit module exploits a buffer overflow in Apple QuickTime 7.7.2. The stack based overflow occurs when processing a malformed Content-Type header. The module has been tested successfully on Safari 5.1.7 and 5.0.7 on Windows XP SP3.

tags | exploit, overflow
systems | windows, apple
advisories | CVE-2012-3753, OSVDB-87088
SHA-256 | 10b7f159e2f92d30b2c07941abb1e4f934539758916904fa7372f9e7afa29641
Page 1 of 9
Back12345Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close