what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 20 of 20 RSS Feed

Files Date: 2005-09-05

unb153.html
Posted Sep 5, 2005
Authored by rgod | Site retrogod.altervista.org

UNB 1.5.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | bcdfab728782930cc3fe3a6725314f4a5cd5506229d2ec320472965ad0e0384c
chitchat.html
Posted Sep 5, 2005
Authored by rgod | Site retrogod.altervista.org

Cyber-Cats ChitChat 2.0 permits cross site scripting attacks, allows for user launched attacks, permits insecure file deletion, and suffers from other vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | bc678c07887a690d894b31d8adac6732edf83b236bee11457c029622a54e1439
rediffbol70.txt
Posted Sep 5, 2005
Authored by Gregory R. Panakkal | Site infogreg.com

Rediff Bol's ActiveX control allows a webpage to read the user's Windows Address Book (WAB) contacts. Version 7.0 is affected.

tags | advisory, activex
systems | windows
SHA-256 | ed16e9cd4a0a461f65e16cd6971b90b7c52e34664b75db20d8cac3a78f0aed87
Gentoo Linux Security Advisory 200509-2
Posted Sep 5, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200509-02 - Gnumeric contains a private copy of libpcre which is subject to an integer overflow leading to a heap overflow (see GLSA 200508-17). Versions less than 1.4.3-r2 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2005-2491
SHA-256 | ea17c8c40a1112f64f55357546bf7e2518d8f26b0693e5f5ea412f72662287d7
rwkg.pl.txt
Posted Sep 5, 2005
Authored by BlackAngels

Random WEP/WPA key generation utility. Written in perl.

tags | tool, perl, wireless
SHA-256 | ba7f33ecc22c05fdbb1bd3b3dff6347a257593e711902b2bb03e70e4c225c394
filezillaWeak.txt
Posted Sep 5, 2005
Authored by Adrian Pastor | Site ikwt.com

The FileZilla client stores passwords using a weak XOR 'encryption'. The value of the cipher key is static and can be found in the source code. This vulnerability has been successfully tested on versions 2.2.14b and 2.2.15. However, it is suspected that most previous versions are also affected.

tags | exploit
SHA-256 | 637a74e948d0d2743a1666cf0c8f157510b94187658ebc3cb5fd4b191d073685
Debian Linux Security Advisory 798-1
Posted Sep 5, 2005
Authored by Debian | Site debian.org

Debian Security Advisory DSA 798-1 - Several vulnerabilities have been discovered in phpgroupware, a web based groupware system written in PHP.

tags | advisory, web, php, vulnerability
systems | linux, debian
advisories | CVE-2005-2498, CVE-2005-2600, CVE-2005-2761
SHA-256 | 5a9baa306095616296206f4d96b3c1e812832aaaf177227ba230c7910c9bb336
Debian Linux Security Advisory 797-1
Posted Sep 5, 2005
Authored by Debian | Site debian.org

Debian Security Advisory DSA 797-1 - zsync, a file transfer program, includes a modified local copy of the zlib library, and is vulnerable to certain bugs fixed previously in the zlib package.

tags | advisory, local
systems | linux, debian
advisories | CVE-2005-1849, CVE-2005-2096
SHA-256 | 974b95d3160474ce193e25a58a06b9f3ec51396dd5957e989da3dfe46ddd1a6f
Debian Linux Security Advisory 796-1
Posted Sep 5, 2005
Authored by Debian | Site debian.org

Debian Security Advisory DSA 796-1 - Kevin Finisterre reports that affix, a package used to manage bluetooth sessions under Linux, uses the popen call in an unsafe fashion. A remote attacker can exploit this vulnerability to execute arbitrary commands on a vulnerable system.

tags | advisory, remote, arbitrary
systems | linux, debian
advisories | CVE-2005-2716
SHA-256 | e29fd85cc71f1b6668939dadfb479e30d48a70dc0a4071aa5be03d6d95021bd5
phorum5x.txt
Posted Sep 5, 2005
Authored by Scott Dewey

Phorum versions 5.0.17a and below suffer from multiple vulnerabilities. These include cross site scripting, session hijacking, and insecure creation of client cookies.

tags | exploit, vulnerability, xss
SHA-256 | fd582ffea9a21051966c9c345b65387b1f491e38c0f6dd3710128bf72d79ec31
Debian Linux Security Advisory 794-1
Posted Sep 5, 2005
Authored by Debian | Site debian.org

Debian Security Advisory DSA 794-1 - Justin Rye noticed that polygen generates precompiled grammar objects world-writable, which can be exploited by a local attacker to at least fill up the filesystem.

tags | advisory, local
systems | linux, debian
advisories | CVE-2005-2656
SHA-256 | f94b5e060af156595ac79ac0df446e54076e4cc41faa66dccb31ee8608127bf3
Ubuntu Security Notice 175-1
Posted Sep 5, 2005
Authored by Ubuntu | Site ubuntu.com

Ubuntu Security Notice USN-175-1 - Thomas Biege discovered a flaw in the privilege dropping of the NTP server. When ntpd was configured to drop root privileges, and the group to run under was specified as a name (as opposed to a numeric group ID), ntpd changed to the wrong group. Depending on the actual group it changed to, this could either cause non-minimal privileges, or a malfunctioning ntp server if the group does not have the privileges that ntpd actually needs.

tags | advisory, root
systems | linux, ubuntu
SHA-256 | 4a267b5bef96ecb16cf73c4710bfaa24f4ac4b414bcb16eb98621f69960ecc90
cybsecApps.txt
Posted Sep 5, 2005
Authored by mnunez | Site cybsec.com

Multiple vendor web scanning utilities suffer from script injection vulnerabilities. These include N-Stealth Commercial Edition versions below 5.8.0.38, N-Stealth Free Edition versions below 5.8.1.03, and Nikto versions 1.35 and below.

tags | exploit, web, vulnerability
SHA-256 | 5d0cd9d18bf2bcdf2c6d9c6188b8e53f8a16bdf7b1d3e239bb9c4656783da2e8
2005.1.txt
Posted Sep 5, 2005
Authored by Francois Harvey | Site securiweb.net

The Barracuda Spam Firewall Appliance firmware versions 3.1.17 and below suffer from directory traversal, remote command execution, and password retrieval vulnerabilities.

tags | exploit, remote, vulnerability
SHA-256 | 42ec53e2eb500afc8a902f37140fda794ff5018657eb32d4ce443924ae4d2560
iDEFENSE Security Advisory 2005-09-01.2
Posted Sep 5, 2005
Authored by Pedram Amini, iDefense Labs | Site idefense.com

iDEFENSE Security Advisory 09.01.05-2 - Remote exploitation of a heap overflow vulnerability in Novell Inc.'s NetMail IMAP daemon allows unauthenticated attackers to execute arbitrary code with the privileges of the underlying user. iDEFENSE has confirmed the existence of the vulnerability in the latest version of Novell NetMail, version 3.5.2. It is suspected that earlier versions of NetMail are also affected.

tags | advisory, remote, overflow, arbitrary, imap
advisories | CVE-2005-1758
SHA-256 | f2cbaf9e51063add484b80d860008619bf019d716f633dd213c3d1184df5168e
iDEFENSE Security Advisory 2005-09-01.1
Posted Sep 5, 2005
Authored by iDefense Labs | Site idefense.com

iDEFENSE Security Advisory 09.01.05-1 - Remote exploitation of a directory traversal vulnerability in 3Com Corp.'s Network Supervisor version 5.0.2 may allow an attacker unauthorized access to files.

tags | advisory, remote
advisories | CVE-2005-2020
SHA-256 | 35e78d4d9e8bf321f382138ca66bfb3ce58af383cc80b15067d8151aaa709137
silc-server-toolkit-06152005.txt
Posted Sep 5, 2005
Authored by Eric Romang

silc-server versions 1.0 and below and silc-toolkit versions 0.9.12-r3 and below suffer from a symlink vulnerability.

tags | advisory
SHA-256 | a6a05964534a2dfa04c3e9f02a2c330927237610ff486f3e7ed9e48c25e353ee
Gentoo Linux Security Advisory 200509-1
Posted Sep 5, 2005
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200509-01 - Sven Tantau discovered a heap overflow in the code handling the strf chunk of PCM audio streams. Versions less than 1.0_pre7-r1 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2005-2718
SHA-256 | d32f6979b66e573cfbeb5e297f1f1d4cec6d8c222048617edbdb48807b371953
Debian Linux Security Advisory 793-1
Posted Sep 5, 2005
Authored by Debian | Site debian.org

Debian Security Advisory DSA 793-1 - Jakob Balle discovered a vulnerability in the handling of attachments in sqwebmail, a web mail application provided by the courier mail suite, which can be exploited by an attacker to conduct script insertion attacks.

tags | advisory, web
systems | linux, debian
advisories | CVE-2005-2724
SHA-256 | 08d015d40c6f7837225c6fb1edfe3576be98f626ffb34864253e71e43092907f
froxRead.txt
Posted Sep 5, 2005
Authored by c1zc0 | Site c1zc0.com

frox is susceptible to an arbitrary file reading vulnerability.

tags | exploit, arbitrary
SHA-256 | f1954b09f95e3629bbbf09478eac712f065089fa823d8803b13161873d5677c7
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close