exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 15 of 15 RSS Feed

Files Date: 2018-02-14

Dell EMC Isilon OneFS XSS / Code Execution / CSRF
Posted Feb 14, 2018
Authored by Core Security Technologies, Ivan Huertas, Maximiliano Vidal | Site coresecurity.com

Dell EMC Isilon OneFS suffers from code execution, cross site request forgery, and cross site scripting vulnerabilities.

tags | exploit, vulnerability, code execution, xss, csrf
advisories | CVE-2018-1186, CVE-2018-1187, CVE-2018-1188, CVE-2018-1189, CVE-2018-1201, CVE-2018-1202, CVE-2018-1203, CVE-2018-1204, CVE-2018-1213
SHA-256 | 59ab98938a25d8249efefd24dd954dee7bc863a7a6ee5476a2d7d2db32b025ba
Debian Security Advisory 4113-1
Posted Feb 14, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4113-1 - Two vulnerabilities were discovered in the libraries of the Vorbis audio compression codec, which could result in denial of service or the execution of arbitrary code if a malformed media file is processed.

tags | advisory, denial of service, arbitrary, vulnerability
systems | linux, debian
advisories | CVE-2017-14632, CVE-2017-14633
SHA-256 | 1cb1bd32d8833f948ddd33745aeaf3a7b19dd5e36fcc767ae724a53d6a15f13b
Red Hat Security Advisory 2018-0319-01
Posted Feb 14, 2018
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2018-0319-01 - Red Hat JBoss Fuse, based on Apache ServiceMix, provides a small-footprint, flexible, open source enterprise service bus and integration platform. Red Hat JBoss A-MQ, based on Apache ActiveMQ, is a standards compliant messaging system that is tailored for use in mission critical applications. This patch is an update to Red Hat JBoss Fuse 6.3 and Red Hat JBoss A-MQ 6.3. It includes bug fixes and enhancements, which are documented in the readme.txt file included with the patch files. Multiple security issues have been addressed.

tags | advisory
systems | linux, redhat
advisories | CVE-2017-12633, CVE-2017-12634, CVE-2017-2617, CVE-2017-5662, CVE-2017-8028
SHA-256 | e9ca392c86cd43b73ddc249d9d75bd30c2fe2225043a4b704dc7bf442df864f0
Ubuntu Security Notice USN-3572-1
Posted Feb 14, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3572-1 - It was discovered that FreeType incorrectly handled certain files. An attacker could possibly use this to cause a denial of service.

tags | advisory, denial of service
systems | linux, ubuntu
advisories | CVE-2018-6942
SHA-256 | 418a2c5d92f4ce5f77a1b28fc62133186353a80f29f0839ed7d7376998df802b
Debian Security Advisory 4112-1
Posted Feb 14, 2018
Authored by Debian | Site debian.org

Debian Linux Security Advisory 4112-1 - Multiple vulnerabilities have been discovered in the Xen hypervisor.

tags | advisory, vulnerability
systems | linux, debian
advisories | CVE-2017-17563, CVE-2017-17564, CVE-2017-17565, CVE-2017-17566
SHA-256 | ceffec33bc6915916fcb2374144acb38464d1ab03665c4ca820441049ca5d45c
NAT32 Build 22284 Remote Command Execution / CSRF
Posted Feb 14, 2018
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org

NAT32 build 22284 suffers from code execution and cross site request forgery vulnerabilities.

tags | exploit, vulnerability, code execution, csrf
advisories | CVE-2018-6941
SHA-256 | d8265d767cc9b963f07372c12f459b0825a9f700142f218191ee36f7a87b1710
TypeSetter CMS 5.1 Cross Site Request Forgery
Posted Feb 14, 2018
Authored by Navina Asrani

TypeSetter CMS version 5.1 suffers from a cross site request forgery vulnerability.

tags | exploit, csrf
advisories | CVE-2018-6888
SHA-256 | 9109814d944dd9f479f4fdf9836502981d58c127542b4be6466d544b591710fd
Ubuntu Security Notice USN-3571-1
Posted Feb 14, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3571-1 - It was discovered that the Erlang FTP module incorrectly handled certain CRLF sequences. A remote attacker could possibly use this issue to inject arbitrary FTP commands. This issue only affected Ubuntu 14.04 LTS. It was discovered that Erlang incorrectly checked CBC padding bytes. A remote attacker could possibly use this issue to perform a padding oracle attack and decrypt traffic. This issue only affected Ubuntu 14.04 LTS. Various other issues were also addressed.

tags | advisory, remote, arbitrary
systems | linux, ubuntu
advisories | CVE-2014-1693, CVE-2015-2774, CVE-2016-10253, CVE-2017-1000385
SHA-256 | 17cd261b5bd06018d5a33b401a3ff15f84875562d975783f5ffda1ae13006e8f
NAT32 Build 22284 Remote Command Execution
Posted Feb 14, 2018
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org

NAT32 Build 22284 suffers from a remote command execution vulnerability.

tags | exploit, remote
advisories | CVE-2018-6940
SHA-256 | 5e9d5778308626f253822fbf37640788d7ed14246ade5b5d62dbca929e95d132
WordPress UltimateMember 2.0 Cross Site Scripting
Posted Feb 14, 2018
Authored by Aloyce J. Makalanga

WordPress UltimateMember plugin version 2.0 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
advisories | CVE-2018-6944, CVE-2018-6943
SHA-256 | 51b063f46cb392f0050c79dbcc3dc46dea8b04d63218d3f46f09f89eb09badd9
Ubuntu Security Notice USN-3570-1
Posted Feb 14, 2018
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 3570-1 - Joonun Jang discovered that AdvanceCOMP incorrectly handled certain malformed zip files. If a user or automated system were tricked into processing a specially crafted zip file, a remote attacker could cause AdvanceCOMP to crash, resulting in a denial of service, or possibly execute arbitrary code.

tags | advisory, remote, denial of service, arbitrary
systems | linux, ubuntu
advisories | CVE-2018-1056
SHA-256 | 75147135bd3cc9deb6c58eecd03231925bcdc9977f68a5abde5a1231ed8ad642
userSpice 4.3 Cross Site Scripting
Posted Feb 14, 2018
Authored by Dolev Farhi

userSpice version 4.3 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 26358ad2b70455571f4f1d06206ca406168e9e50282758eb56139257d27de760
SOA School Management Remote SQL Injection
Posted Feb 14, 2018
Authored by Borna Nematzadeh

SOA School Management suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | b9dce9fe9ca5f5d0154ecb7e4e1127d25b4f49cea9fb65fd1cca8834283c2889
Social Oauth Login PHP SQL Injection
Posted Feb 14, 2018
Authored by Borna Nematzadeh

Social Oauth Login PHP suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, php, sql injection
SHA-256 | 182bdc6fc5d88b7e4fb011c6b87492522eeb273dd3dac14a11d2c39518c04792
GNU binutils 2.26.1 Integer Overflow
Posted Feb 14, 2018
Authored by r4xis

GNU binutils version 2.26.1 suffers from an integer overflow vulnerability.

tags | exploit, overflow
advisories | CVE-2018-6323
SHA-256 | 26582d3081e2af8016824f9f2e3f5ad188288579040d53bd7ac1e29801a8b933
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close