what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 27 RSS Feed

Files Date: 2014-06-06

SAP SLD Information Tampering
Posted Jun 6, 2014
Authored by Jordan Santarsieri, Juan Pablo Perez Etchegoyen, Pablo Muller | Site onapsis.com

Onapsis Security Advisory - A remote unauthenticated attacker might be able to modify technical information about SAP systems potentially leading to a full compromise of all business information due to an SLD information tampering vulnerability.

tags | advisory, remote
SHA-256 | 38205de30d7077e9d7a6e240e956ac54d8c2700272a5830b5e2fc4a702ab4895
SAP Hard-Coded Credentials
Posted Jun 6, 2014
Authored by Sergio Abraham | Site onapsis.com

Onapsis Security Advisory - Various SAP systems suffer from hard-coded credential vulnerabilities.

tags | advisory, vulnerability
SHA-256 | f19ce8f84128aec4f22198225fcc61a16d9b7f54df40ed479627b26a8c0f4efb
WebTitan 4.01 Build 68 SQL Injection / Command Execution
Posted Jun 6, 2014
Authored by Robert Giruckas, Mindaugas Liudavicius | Site sec-consult.com

WebTitan version 4.01 build 68 suffers from remote command execution, remote SQL injection, unprotected access, and directory traversal vulnerabilities.

tags | exploit, remote, vulnerability, sql injection
SHA-256 | 2e05c7e62cf436ce3bb0670e2b6efaa153c41ca1fd1c21da7babcb705b27b1ff
Cisco Security Advisory 20140605-openssl
Posted Jun 6, 2014
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - Multiple Cisco products incorporate a version of the OpenSSL package affected by one or more vulnerabilities that could allow an unauthenticated, remote attacker to execute arbitrary code, create a denial of service (DoS) condition, or perform a man-in-the-middle attack. Workarounds that mitigate these vulnerabilities may be available.

tags | advisory, remote, denial of service, arbitrary, vulnerability
systems | cisco
SHA-256 | 2f080c94e977a0333759a49f142fbb34bc83ef319b5d401294a2f17fcbcc7184
Slackware Security Advisory - gnutls Updates
Posted Jun 6, 2014
Authored by Slackware Security Team | Site slackware.com

Slackware Security Advisory - New gnutls packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix security issues.

tags | advisory
systems | linux, slackware
advisories | CVE-2014-3465, CVE-2014-3466, CVE-2014-3467, CVE-2014-3468, CVE-2014-3469
SHA-256 | 7048df4ef4b612681d06186dbc787300b6781fa7ea3008f07aee1f4b25a28b84
Slackware Security Advisory - libtasn1 Updates
Posted Jun 6, 2014
Authored by Slackware Security Team | Site slackware.com

Slackware Security Advisory - New libtasn1 packages are available for Slackware 14.0, 14.1, and -current to fix security issues.

tags | advisory
systems | linux, slackware
advisories | CVE-2014-3467, CVE-2014-3468, CVE-2014-3469
SHA-256 | af948750ad6da705a091b7519b18f56b895aebed42dd621fd411bb84d610378c
Debian Security Advisory 2952-1
Posted Jun 6, 2014
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2952-1 - Several vulnerabilities have been discovered in the FreeBSD kernel that may lead to a denial of service or possibly disclosure of kernel memory.

tags | advisory, denial of service, kernel, vulnerability
systems | linux, freebsd, debian
advisories | CVE-2014-1453, CVE-2014-3000, CVE-2014-3880
SHA-256 | ed9ae58961ec6726a952124bc8bfc4359b78791bff785b07a58275d25c075aa7
Debian Security Advisory 2951-1
Posted Jun 6, 2014
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2951-1 - It was discovered that a buffer overflow in the MuPDF viewer might lead to the execution of arbitrary code.

tags | advisory, overflow, arbitrary
systems | linux, debian
advisories | CVE-2014-2013
SHA-256 | 7e9084191ba785e46676c0a92ef01798c9116b408c6a99e6ea1bfcb5cb7aad15
Gentoo Linux Security Advisory 201406-07
Posted Jun 6, 2014
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201406-7 - A buffer overflow in Echoping might allow remote attackers to cause a Denial of Service condition. Versions less than 6.0.2_p434 are affected.

tags | advisory, remote, denial of service, overflow
systems | linux, gentoo
advisories | CVE-2010-5111
SHA-256 | 9db162e5c82611c6a7102d2efee4966635bf75a8c315e8652e5c0868d95f0c2e
Slackware Security Advisory - openssl Updates
Posted Jun 6, 2014
Authored by Slackware Security Team | Site slackware.com

Slackware Security Advisory - New openssl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix security issues.

tags | advisory
systems | linux, slackware
advisories | CVE-2010-5298, CVE-2014-0195, CVE-2014-0198, CVE-2014-0221, CVE-2014-0224, CVE-2014-3470
SHA-256 | cf8aca9da762a6b44c65fafb1d8274b0cdcc4d026df6f988288ed5ec8b178686
Slackware Security Advisory - sendmail Updates
Posted Jun 6, 2014
Authored by Slackware Security Team | Site slackware.com

Slackware Security Advisory - New sendmail packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix a security issue.

tags | advisory
systems | linux, slackware
advisories | CVE-2014-3956
SHA-256 | 90bb57c190c6d63ed92ae6d285424dabcc1f3946ffb7d543f0cba722fe6b2280
OpenSSL CVE-2014-0224 Detection Script
Posted Jun 6, 2014
Authored by Craig Young | Site tripwire.com

OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict processing of ChangeCipherSpec messages, which allows man-in-the-middle attackers to trigger use of a zero-length master key in certain OpenSSL-to-OpenSSL communications, and consequently hijack sessions or obtain sensitive information, via a crafted TLS handshake, aka the "CCS Injection" vulnerability. This script tests for that vulnerability.

tags | tool, scanner
systems | unix
advisories | CVE-2014-0224
SHA-256 | f59eadbc19854f9ff9a362ab226550f4d66039b6eae733379588772f630f3b87
WordPress Elegance Local File Disclosure
Posted Jun 6, 2014
Authored by Felipe Andrian Peixoto

WordPress Elegance theme suffers from a local file disclosure vulnerability.

tags | exploit, local, info disclosure
SHA-256 | 213a8eaa8281192b4689d7dbbe774b7f1e475d62f21352aa3c698abeb8f32153
WordPress Infocus Local File Disclosure
Posted Jun 6, 2014
Authored by Felipe Andrian Peixoto

WordPress Infocus theme suffers from a local file disclosure vulnerability.

tags | exploit, local, info disclosure
SHA-256 | 1432547214d2a71e3e0a9f9575efc024ff820019e84a275b2039963c29f7f775
Sagem 2604 Password Disclosure
Posted Jun 6, 2014
Authored by TUNISIAN CYBER

Sagem 2604 suffers from a password disclosure vulnerability.

tags | exploit, info disclosure
SHA-256 | a883b208a619945404f9220b5089d27d4c1f43f9fc09d513a7f6b40ad87c70c7
Madness Pro 1.14 SQL Injection
Posted Jun 6, 2014
Authored by bwall

Madness Pro versions 1.14 and below suffer from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | d2daaf442e4919212f2463c778d13d77b88a02030d6b175e700fbc91535cdb18
Madness Pro 1.14 Cross Site Scripting
Posted Jun 6, 2014
Authored by bwall

Madness Pro versions 1.14 and below suffer from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 47454d2b1745735a214d20ff97b1200d84e29bfccfd4345615c493e72e439f2c
Ubuntu Security Notice USN-2241-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2241-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. A flaw was discovered in the Linux kernel virtual machine's (kvm) validation of interrupt requests (irq). A guest OS user could exploit this flaw to cause a denial of service (host OS crash). An information leak was discovered in the netfilter subsystem of the Linux kernel. An attacker could exploit this flaw to obtain sensitive information from kernel memory. Various other issues were also addressed.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2014-0155, CVE-2014-2568, CVE-2014-3122, CVE-2014-3153
SHA-256 | 9f556c84725fa489406fed432596d83e8cf96d8721c948a8dde8225ec5175290
Ubuntu Security Notice USN-2240-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2240-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. An information leak was discovered in the netfilter subsystem of the Linux kernel. An attacker could exploit this flaw to obtain sensitive information from kernel memory. Sasha Levin reported a bug in the Linux kernel's virtual memory management subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash). Various other issues were also addressed.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2014-2568, CVE-2014-3122, CVE-2014-3153
SHA-256 | 717f46e16db930378c24aaca56ffa76130972cc7967994484ac3f7ea3afb18b3
Ubuntu Security Notice USN-2239-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2239-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. A flaw was discovered in the Linux kernel virtual machine's (kvm) validation of interrupt requests (irq). A guest OS user could exploit this flaw to cause a denial of service (host OS crash). An information leak was discovered in the netfilter subsystem of the Linux kernel. An attacker could exploit this flaw to obtain sensitive information from kernel memory. Various other issues were also addressed.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2014-0155, CVE-2014-2568, CVE-2014-3122, CVE-2014-3153
SHA-256 | f6d854244ec1173e8de754f9b5576ff1b8318f1ad9b43e7ebffa38a9f1eff412
Ubuntu Security Notice USN-2238-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2238-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. A flaw was discovered in the Linux kernel's IPC reference counting. An unprivileged local user could exploit this flaw to cause a denial of service (OOM system crash).

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2013-4483, CVE-2014-3153
SHA-256 | 70fb20c757d7aab8aad26aa886ad9b69b70f92f55d8b50260d08a304901d4768
Ubuntu Security Notice USN-2237-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2237-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2014-3153
SHA-256 | f04c8f2591a87def309bd4ffec335fd7cff6076a031040da554fe99f35ccff6e
Ubuntu Security Notice USN-2236-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2236-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. A flaw was discovered in the vhost-net subsystem of the Linux kernel. Guest OS users could exploit this flaw to cause a denial of service (host OS crash). Sasha Levin reported a bug in the Linux kernel's virtual memory management subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash). Various other issues were also addressed.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2014-0055, CVE-2014-3122, CVE-2014-3153
SHA-256 | 3a1e08d39f79c8036e898dc93105df90865ee2f4a0f78a7cd9ca8133ba3c5a0c
Ubuntu Security Notice USN-2235-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2235-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. A flaw was discovered in the vhost-net subsystem of the Linux kernel. Guest OS users could exploit this flaw to cause a denial of service (host OS crash). Sasha Levin reported a bug in the Linux kernel's virtual memory management subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash). Various other issues were also addressed.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2014-0055, CVE-2014-3122, CVE-2014-3153
SHA-256 | 623ae2a1f685eb46320f0134b33584d128798c2c0c80c89ad8cd188194607df1
Ubuntu Security Notice USN-2234-1
Posted Jun 6, 2014
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 2234-1 - Pinkie Pie discovered a flaw in the Linux kernel's futex subsystem. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrative privileges. Dmitry Vyukov reported a flaw in the Linux kernel's handling of IPv6 UDP Fragmentation Offload (UFO) processing. A remote attacker could leverage this flaw to cause a denial of service (system crash). Hannes Frederic Sowa discovered a flaw in the Linux kernel's UDP Fragmentation Offload (UFO). An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or possibly gain administrative privileges. Various other issues were also addressed.

tags | advisory, remote, denial of service, kernel, local, udp
systems | linux, ubuntu
advisories | CVE-2013-4387, CVE-2013-4470, CVE-2013-4483, CVE-2014-1438, CVE-2014-3122, CVE-2014-3153
SHA-256 | a93c4dad0670abab855ed08d6ba04f65b5dd4b888b0d22e9e68426fca77a4f1d
Page 1 of 2
Back12Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close