Exploits

Divulgar conteúdo
Packet Storm Last 10 Exploits
Atualizado: 1 minuto 58 segundos atrás

smbind-sql.txt

sex, 09/03/2010 - 21:00
SMBind versions 0.4.7 and below suffer from a remote SQL injection vulnerability that allows for authentication bypass.

pligg104-sql.txt

sex, 09/03/2010 - 21:00
Pligg version 1.0.4 suffers from additional remote SQL injection vulnerabilities outside of the previously discovered findings.

moaub-visinia.txt

sex, 09/03/2010 - 21:00
Month Of Abysssec Undisclosed Bugs - Visinia version 1.3 suffers from cross site request forgery and local file inclusion vulnerabilities.

moaub-trendmicro.txt

sex, 09/03/2010 - 21:00
Month Of Abysssec Undisclosed Bugs - Trend Micro Internet Security Pro 2010 suffers from an Active-X extSetOwner remote code execution vulnerability.

onecms-xss.txt

sex, 09/03/2010 - 21:00
OneCMS version 2.6.1 suffers from a cross site scripting vulnerability.

webmanagerpro-sql.txt

sex, 09/03/2010 - 21:00
CMS WebManager-Pro suffers from a remote SQL injection vulnerability.

PRL-2010-07.txt

sex, 09/03/2010 - 21:00
A flaw exists within SSHD.NLM of Novell Netware version 6.5. When the application attempts to resolve an absolute path on the server, a 512 byte destination buffer is used without bounds checking. By providing a large enough value, an attacker can cause a buffer to be overflowed. Successful exploitation results in remote code execution under the context of the server.

moovida-dllhijack.tgz

sex, 09/03/2010 - 21:00
Moovida Media Player versions 2.0.0.15 and below DLL hijacking exploit.

moaub-quicktime.txt

sex, 09/03/2010 - 21:00
Month Of Abysssec Undisclosed Bugs - Apple QuickTime player version 7.6.5 FlashPix NumberOfTiles remote code execution exploit.

vbshout-rfilfi.txt

sex, 09/03/2010 - 21:00
vbShout version 5.2.2 suffers from remote and local file inclusion vulnerabilities.

moaub-rainbowportal.txt

sex, 09/03/2010 - 02:00
Month Of Abysssec Undisclosed Bugs - Rainbow Portal version 2.0 suffers from login weakness, cross site scripting and remote SQL injection vulnerabilities.

shopalacart-sqlxss.txt

sex, 09/03/2010 - 02:00
Shop A La Cart suffers from cross site scripting and remote SQL injection vulnerabilities.

accton-backdoor.txt

sex, 09/03/2010 - 02:00
Accton-based switches which are commonly rebranded as 3Com, Dell, SMC, Foundry and EdgeCore suffer from a backdoor password vulnerability.

amirocmsfaq-xss.txt

sex, 09/03/2010 - 02:00
Amiro.CMS version 5.8.4.0 suffers from a stored cross site scripting vulnerability.

ZSL-2010-4961.txt

qua, 09/01/2010 - 18:00
LEADTOOLS version 16.5.0.2 suffers from buffer overflow, integer overflow and denial of service vulnerabilities related to Active-X Common Dialogs.

cpanelcp-xss.txt

qua, 09/01/2010 - 18:00
cPanel Customer Portal suffers from a cross site scripting vulnerability.

tftpddesktop-traversal.txt

qua, 09/01/2010 - 18:00
TFTP Desktop version 2.5 suffers from a directory traversal vulnerability.

tftpdwin-traversal.txt

qua, 09/01/2010 - 18:00
TFTPDWIN version 0.4.2 suffers from a directory traversal vulnerability.

autodeskmapguide-overflow.txt

qua, 09/01/2010 - 18:00
Autodesk MapGuide Viewer version 6.5 suffers from an Active-X related overflow vulnerability in MGAXCTRL.DLL.

moaub-adobenewclass.txt

qua, 09/01/2010 - 18:00
Month Of Abysssec Undisclosed Bugs - Adobe Acrobat Reader and Flash Player suffer from a newclass invalid pointer vulnerability.