exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 21 of 21 RSS Feed

Files Date: 2020-05-06

Kentico CMS 12.0.14 Remote Command Execution
Posted May 6, 2020
Authored by aushack, Manoj Cherukuri, Justin LeMay | Site metasploit.com

This Metasploit module exploits a vulnerability in the Kentico CMS platform versions 12.0.14 and earlier. Remote command execution is possible via unauthenticated XML requests to the Staging Service SyncServer.asmx interface ProcessSynchronizationTaskData method stagingTaskData parameter. XML input is passed to an insecure .NET deserialize call which allows for remote command execution.

tags | exploit, remote
advisories | CVE-2019-10068
SHA-256 | 5b68d0d542ef6100308fe77d235af8615fef5ce550885eedaeb120ad41bc9f6f
Extreme Networks Aerohive HiveOS 11.x Denial Of Service
Posted May 6, 2020
Authored by LiquidWorm | Site zeroscience.mk

Extreme Networks Aerohive HiveOS versions 11.x and below remote denial of service exploit. An unauthenticated malicious user can trigger a denial of service (DoS) attack when sending specific application layer packets towards the Aerohive NetConfig UI. This proof of concept exploit renders the application unusable for 305 seconds or 5 minutes with a single HTTP request using the action.php5 script calling the CliWindow function thru the _page parameter, denying access to the web server hive user interface.

tags | exploit, remote, web, denial of service, proof of concept
SHA-256 | 8ddfc7196e610532ee20cf9cd009d476418c5d349fbfba8a6e940d7c98a09333
Red Hat Security Advisory 2020-2040-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2040-01 - Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects. Issues addressed include buffer overflow and code execution vulnerabilities.

tags | advisory, web, overflow, vulnerability, code execution
systems | linux, redhat
advisories | CVE-2019-12519, CVE-2019-12525, CVE-2020-11945
SHA-256 | f5d0d691bcd4e3bccb003c0144cfd40493f2cf3e92af0df28263bb2aff8a7309
Ubuntu Security Notice USN-4330-2
Posted May 6, 2020
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 4330-2 - USN-4330-1 fixed vulnerabilities in PHP. This update provides the corresponding update for Ubuntu 20.04 LTS. It was discovered that PHP incorrectly handled certain EXIF files. An attacker could possibly use this issue to access sensitive information or cause a crash. Various other issues were also addressed.

tags | advisory, php, vulnerability
systems | linux, ubuntu
advisories | CVE-2020-7064, CVE-2020-7065, CVE-2020-7066
SHA-256 | a94b47521185bd9a249d259818fed582a247ce53361013c29f4bc1a4c82b6901
Online Clothing Store 1.0 Cross Site Scripting
Posted May 6, 2020
Authored by Sushant Kamble

Online Clothing Store version 1.0 suffers from a persistent cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | b48bfc8a784e9064e05f86019e3eca5cbf565fd47d42fa319ba0f75a214ca0fc
Online Clothing Store 1.0 SQL Injection
Posted May 6, 2020
Authored by Sushant Kamble

Online Clothing Store version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 71c130f1afc22fdeac627410ca983e966789b24223b426686c3b350eee16d945
Red Hat Security Advisory 2020-2041-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2041-01 - Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects. Issues addressed include buffer overflow and code execution vulnerabilities.

tags | advisory, web, overflow, vulnerability, code execution
systems | linux, redhat
advisories | CVE-2019-12519, CVE-2019-12525, CVE-2020-11945
SHA-256 | 5c589ca7b830ef3a7aecec9c71350ca36d1edcdb36e7f0e9b935ab81d6d68486
Red Hat Security Advisory 2020-2038-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2038-01 - Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects. Issues addressed include buffer overflow and code execution vulnerabilities.

tags | advisory, web, overflow, vulnerability, code execution
systems | linux, redhat
advisories | CVE-2019-12519, CVE-2020-11945
SHA-256 | 3f722a63836106511507bb2d5972bba7eca0bcb1d0cde645a9d6478f10d6e6a8
webTareas 2.0.p8 Arbitrary File Deletion
Posted May 6, 2020
Authored by Besim Altinok, Ismail Bozkurt

webTareas version 2.0.p8 suffers from an arbitrary file deletion vulnerability.

tags | exploit, arbitrary
SHA-256 | 53feab1c01610ac9766079cc3e61e4a14571a15e61dcb409c67594187299d4f8
Red Hat Security Advisory 2020-2039-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2039-01 - Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects. Issues addressed include buffer overflow and code execution vulnerabilities.

tags | advisory, web, overflow, vulnerability, code execution
systems | linux, redhat
advisories | CVE-2019-12519, CVE-2020-11945
SHA-256 | d7a0425d736d549b3e44af90f1d7bab92776180a01c6a0329ce825726cb1db6c
Red Hat Security Advisory 2020-2036-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2036-01 - Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 68.8.0 ESR. Issues addressed include buffer overflow and use-after-free vulnerabilities.

tags | advisory, web, overflow, vulnerability
systems | linux, redhat
advisories | CVE-2020-12387, CVE-2020-12392, CVE-2020-12395, CVE-2020-6831
SHA-256 | 3109046f4e885562c23a6bdcc63b95c7e4fe7902a3d60d53e6b0e7d4e260a8d7
YesWiki cercopitheque 2020.04.18.1 SQL Injection
Posted May 6, 2020
Authored by coiffeur

YesWiki cercopitheque version 2020.04.18.1 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7f55d22fdee5a2d9fa9d1c21ce50be96851a1da64e897c647d1d71c018e37c9f
Red Hat Security Advisory 2020-2037-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2037-01 - Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 68.8.0 ESR. Issues addressed include buffer overflow and use-after-free vulnerabilities.

tags | advisory, web, overflow, vulnerability
systems | linux, redhat
advisories | CVE-2020-12387, CVE-2020-12392, CVE-2020-12395, CVE-2020-6831
SHA-256 | c48f18d6f22cbef7b38bbe2ed6f164d6d2b80c63097fe7a57c2dae4a45d11fa6
Pisay Online E-Learning System 1.0 SQL Injection / Code Execution
Posted May 6, 2020
Authored by Bobby Cooke

Pisay Online E-Learning System version 1.0 suffers from remote SQL Injection and code execution vulnerabilities.

tags | exploit, remote, vulnerability, code execution, sql injection
SHA-256 | 015c32b2f3ffc4e91ba637f9293f09e7320caeb03bcd1d7fcba4cb418aa58392
Red Hat Security Advisory 2020-2031-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2031-01 - Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 68.8.0 ESR. Issues addressed include buffer overflow and use-after-free vulnerabilities.

tags | advisory, web, overflow, vulnerability
systems | linux, redhat
advisories | CVE-2020-12387, CVE-2020-12392, CVE-2020-12395, CVE-2020-6831
SHA-256 | e9898fb1137983e6852bfc6d00d24ee47a7fd2f0046a9b41f95616ec146fd64a
MPC Sharj 3.11.1 Arbitrary File Download
Posted May 6, 2020
Authored by sajjadbnd

MPC Sharj version 3.11.1 suffers from an arbitrary file download vulnerability.

tags | exploit, arbitrary
SHA-256 | 87d0866e5956beef6718557ea926dc2f43a0325d813064ce510e4f2ce0967e26
Red Hat Security Advisory 2020-2032-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2032-01 - Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 68.8.0 ESR. Issues addressed include buffer overflow and use-after-free vulnerabilities.

tags | advisory, web, overflow, vulnerability
systems | linux, redhat
advisories | CVE-2020-12387, CVE-2020-12392, CVE-2020-12395, CVE-2020-6831
SHA-256 | e06f76d12cef7f28dc188c1dfc426fea0d87ab6ae1908545906f24c670663403
Red Hat Security Advisory 2020-2033-01
Posted May 6, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-2033-01 - Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 68.8.0 ESR. Issues addressed include buffer overflow and use-after-free vulnerabilities.

tags | advisory, web, overflow, vulnerability
systems | linux, redhat
advisories | CVE-2020-12387, CVE-2020-12392, CVE-2020-12395, CVE-2020-6831
SHA-256 | 307b5fa07731accf5c3d98536c7ad917d1191f484fe4850d0543733595c049a9
Booked Scheduler 2.7.7 Directory Traversal
Posted May 6, 2020
Authored by Besim Altinok, Ismail Bozkurt

Booked Scheduler version 2.7.7 suffers from an authenticated directory traversal vulnerability.

tags | exploit, file inclusion
SHA-256 | 782ac4f090f374ab130b22a73361bfc6b5f75836095d2016f4ad9bec5be2ab85
i-doit Open Source CMDB 1.14.1 Arbitrary File Deletion
Posted May 6, 2020

i-doit Open Source CMDB version 1.14.1 suffers from an arbitrary file deletion vulnerability.

tags | exploit, arbitrary
SHA-256 | b5f0c988cb88f1c69e40aed33a15a7a7ae2da82eda67348d9418f69ef79e4b37
GitLab 12.9.0 Arbitrary File Read
Posted May 6, 2020
Authored by KouroshRZ

GitLab version 12.9.0 suffers from an arbitrary file read vulnerability.

tags | exploit, arbitrary
SHA-256 | 886edf401f7e35b4647cd8d0a4cebece4fd3d286dd2d4f2f8fc58ced4c72a12d
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close