Section: .. / Last 50 Files /
| /// File Name: | fwknop-1.9.6.tar.gz | Description:
| fwknop implements an authorization scheme that requires only a single encrypted packet to communicate various pieces of information, including desired access through a Netfilter policy and/or specific commands to execute on the target system. The main application of this program is to protect services such as SSH with an additional layer of security in order to make the exploitation of vulnerabilities much more difficult. The authorization server works by passively monitoring authorization packets via libpcap. | | Author: | Michael Rash | | Homepage: | http://www.cipherdyne.org/fwknop/ | | Changes: | Added the ability to explicitly run major classes of tests 46 with two new command line arguments to the fwknop_test.pl script. Updated the fwknop client to randomize the UDP source port for default SPA packet generation. Various other updates and additions. | | File Size: | 566465 | | Last Modified: | Jul 24 12:23:37 2008 | | MD5 Checksum: | 9734c99a1c0b28b1522ce50396405d54 |
|
| /// File Name: | wordpressdm-upload.txt | Description:
| WordPress Download Manager plugin version 0.2 arbitrary file upload exploit. | | Author: | SaO | | Homepage: | http://www.saohackstyle.com/ | | File Size: | 886 | | Last Modified: | Jul 24 12:20:02 2008 | | MD5 Checksum: | ab5a1c03a0efe55d5896dd7fcf629eec |
|
| /// File Name: | ibase-disclose.txt | Description:
| ibase versions 2.03 and below suffer from a remote file disclosure vulnerability in download.php. | | Author: | Dyshoo | | File Size: | 254 | | Last Modified: | Jul 24 12:18:51 2008 | | MD5 Checksum: | fe43ec1fa0a052b7535851f9cb69cd63 |
|
| /// File Name: | atomphotoblog-sql.txt | Description:
| Atom PhotoBlog version 1.1.5b1 suffers from a remote SQL injection vulnerability. | | Author: | Mr.SQL | | Homepage: | http://www.pal-hacker.com/ | | File Size: | 1488 | | Last Modified: | Jul 24 12:17:57 2008 | | MD5 Checksum: | 69a36f18579002640832d44da0a6de28 |
|
| /// File Name: | dsa-1616-1.txt | Description:
| Debian Security Advisory 1616-1 - Damian Put discovered a vulnerability in the ClamAV anti-virus toolkit's parsing of Petite-packed Win32 executables. The weakness leads to an invalid memory access, and could enable an attacker to crash clamav by supplying a maliciously crafted Petite-compressed binary for scanning. In some configurations, such as when clamav is used in combination with mail servers, this could cause a system to "fail open," facilitating a follow-on viral attack. | | Homepage: | http://www.debian.org/security | | File Size: | 16558 | | Related CVE(s): | CVE-2008-2713 | | Last Modified: | Jul 24 12:14:46 2008 | | MD5 Checksum: | aedebbf953275b7079e71948199d5566 |
|
| /// File Name: | bailiwicked_domain.rb.txt | Description:
| This exploit targets a fairly ubiquitous flaw in DNS implementations which allow the insertion of malicious DNS records into the cache of the target nameserver. This exploit caches a single malicious nameserver entry into the target nameserver which replaces the legitimate nameservers for the target domain. By causing the target nameserver to query for random hostnames at the target domain, the attacker can spoof a response to the target server including an answer for the query, an authority server record, and an additional record for that server, causing target nameserver to insert the additional record into the cache. This insertion completely replaces the original nameserver records for the target domain. | | Author: | I)ruid, H D Moore | | Homepage: | http://www.caughq.org/ | | File Size: | 15954 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Jul 24 12:14:00 2008 | | MD5 Checksum: | 5882e859718d26d63b3bc1167eacb0fd |
|
| /// File Name: | pkd-1.1.tgz | Description:
| ipt_pkd is an iptables extension implementing port knock detection. This project provides 3 parts: the kernel module ipt_pkd, the iptables user space module libipt_pkd.so, and a user space client knock program. For the knock packet, it uses a UDP packet sent to a random port that contains a SHA-256 of a timestamp, small header, random bytes, and a shared key. ipt_pkd checks the time window of the packet and does the SHA-256 to verify the packet. The shared key is never sent. | | Author: | eric | | Changes: | Removed source port from hash. | | File Size: | 75401 | | Last Modified: | Jul 23 23:03:22 2008 | | MD5 Checksum: | 7ff6ab126922499e670b12c1882d5e7d |
|
| /// File Name: | bailiwicked_host.rb.txt | Description:
| This exploit targets a fairly ubiquitous flaw in DNS implementations which allow the insertion of malicious DNS records into the cache of the target nameserver. This exploit caches a single malicious host entry into the target nameserver. By causing the target nameserver to query for random hostnames at the target domain, the attacker can spoof a response to the target server including an answer for the query, an authority server record, and an additional record for that server, causing target nameserver to insert the additional record into the cache. | | Author: | I)ruid, H D Moore | | Homepage: | http://www.caughq.org/ | | File Size: | 16025 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Jul 23 20:05:48 2008 | | MD5 Checksum: | 4def3738d35dc00d760fa023d0106a29 |
|
| /// File Name: | SDTCleaner-v1.0.zip | Description:
| SDT Cleaner is a small laboratory tool that attempts to restore the pointers installed by Anti-Virus and Firewalls in the SSDT (System Service Descriptor Table). | | Author: | Nahuel Riva | | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 243769 | | Last Modified: | Jul 23 19:57:13 2008 | | MD5 Checksum: | 9123411f2b13fc9ec9a831f7e8a6514d |
|
| /// File Name: | dsa-1615-1.txt | Description:
| Debian Security Advisory 1615-1 - Several remote vulnerabilities have been discovered in Xulrunner, a runtime environment for XUL applications. | | Homepage: | http://www.debian.org/security | | File Size: | 31926 | | Related CVE(s): | CVE-2008-2785, CVE-2008-2798, CVE-2008-2799, CVE-2008-2800, CVE-2008-2801, CVE-2008-2802, CVE-2008-2803, CVE-2008-2805, CVE-2008-2807, CVE-2008-2808, CVE-2008-2809, CVE-2008-2811, CVE-2008-2933 | | Last Modified: | Jul 23 19:50:15 2008 | | MD5 Checksum: | 814da2c25fb7c7e932ae2c2849d21d29 |
|
| /// File Name: | dsa-1614-1.txt | Description:
| Debian Security Advisory 1614-1 - Several remote vulnerabilities have been discovered in the Iceweasel web browser, an unbranded version of the Firefox browser. It was discovered that missing boundary checks on a reference counter for CSS objects can lead to the execution of arbitrary code. Billy Rios discovered that passing an URL containing a pipe symbol to Iceweasel can lead to Chrome privilege escalation. | | Homepage: | http://www.debian.org/security | | File Size: | 8712 | | Related CVE(s): | CVE-2008-2785, CVE-2008-2933 | | Last Modified: | Jul 23 19:49:36 2008 | | MD5 Checksum: | 357a585f8c33728c1e761bc85d365a57 |
|
| /// File Name: | dsa-1540-3.txt | Description:
| Debian Security Advisory 1540-3 - This update fixes a regression in lighttpd introduced in DSA-1540, causing SSL failures. | | Homepage: | http://www.debian.org/security | | File Size: | 14614 | | Related CVE(s): | CVE-2008-1531 | | Last Modified: | Jul 23 19:48:43 2008 | | MD5 Checksum: | cccf48a06495b899a26c83ab12130eb3 |
|
| /// File Name: | USN-628-1.txt | Description:
| Ubuntu Security Notice 628-1 - Over a dozen vulnerabilities in php5 have been addressed in Ubuntu. | | Homepage: | http://security.ubuntu.com/ | | File Size: | 62408 | | Related CVE(s): | CVE-2007-4782, CVE-2007-4850, CVE-2007-5898, CVE-2007-5899, CVE-2008-0599, CVE-2008-1384, CVE-2008-2050, CVE-2008-2051, CVE-2008-2107, CVE-2008-2108, CVE-2008-2371, CVE-2008-2829 | | Last Modified: | Jul 23 19:47:53 2008 | | MD5 Checksum: | 6cd6d0407e8f8ffd96589e18817d582e |
|
| /// File Name: | vimfiletype-exec.txt | Description:
| This advisory discusses the filetype.vim vulnerability in Vim version 7.2b.10 that allows for arbitrary code execution and also notes that the Vim patch 7.1.300 did not fix the vulnerability. | | Author: | Jan Minar | | File Size: | 6106 | | Last Modified: | Jul 23 19:46:43 2008 | | MD5 Checksum: | 525775816c2441f36c404a28644bb87a |
|
| /// File Name: | emc-sql.txt | Description:
| EMC's Centera Universal Access product version CUA4.0_4735.p4 suffers from a SQL injection vulnerability. | | Author: | Aaron Brown, Lars Heidelberg | | File Size: | 4007 | | Last Modified: | Jul 23 19:44:55 2008 | | MD5 Checksum: | 535213a9fae7b8708f9e219a84119c62 |
|
| /// File Name: | AST-2008-011.txt | Description:
| Asterisk Project Security Advisory - An attacker may request an Asterisk server to send part of a firmware image. However, as this firmware download protocol does not initiate a handshake, the source address may be spoofed. Therefore, an IAX2 FWDOWNL request for a firmware file may consume as little as 40 bytes, yet produces a 1040 byte response. Coupled with multiple geographically diverse Asterisk servers, an attacker may flood an victim site with unwanted firmware packets. | | Author: | Tilghman Lesher | | Homepage: | http://www.asterisk.org/security | | File Size: | 10634 | | Related CVE(s): | CVE-2008-3264 | | Last Modified: | Jul 23 19:43:03 2008 | | MD5 Checksum: | 2185fd4b6b919de751e6fe7c8aab32a1 |
|
| /// File Name: | AST-2008-010.txt | Description:
| Asterisk Project Security Advisory - By flooding an Asterisk server with IAX2 'POKE' requests, an attacker may eat up all call numbers associated with the IAX2 protocol on an Asterisk server and prevent other IAX2 calls from getting through. Due to the nature of the protocol, IAX2 POKE calls will expect an ACK packet in response to the PONG packet sent in response to the POKE. While waiting for this ACK packet, this dialog consumes an IAX2 call number, as the ACK packet must contain the same call number as was allocated and sent in the PONG. | | Author: | Jeremy McNamara | | Homepage: | http://www.asterisk.org/security | | File Size: | 10633 | | Related CVE(s): | CVE-2008-3263 | | Last Modified: | Jul 23 19:41:47 2008 | | MD5 Checksum: | c3e6feb71c399d84d8dc74877ffc992c |
|
| /// File Name: | MDVSA-2008-154.txt | Description:
| Mandriva Linux Security Advisory - A vulnerability in xemacs was found where an attacker could provide a group of files containing local variable definitions and arbitrary Lisp code to be executed when one of the provided files is opened by xemacs. The updated packages have been patched to correct this issue. | | Homepage: | http://www.mandriva.com/security/ | | File Size: | 3385 | | Related CVE(s): | CVE-2008-2142 | | Last Modified: | Jul 23 19:39:45 2008 | | MD5 Checksum: | 02de82850dc988def1ef4ff9e0c8f68e |
|
| /// File Name: | MDVSA-2008-153.txt | Description:
| Mandriva Linux Security Advisory - A vulnerability in emacs was found where an attacker could provide a group of files containing local variable definitions and arbitrary Lisp code to be executed when one of the provided files is opened by emacs. The updated packages have been patched to correct this issue. | | Homepage: | http://www.mandriva.com/security/ | | File Size: | 8619 | | Related CVE(s): | CVE-2008-2142 | | Last Modified: | Jul 23 19:26:54 2008 | | MD5 Checksum: | 317520423f82ed3a15b919a528d64ba9 |
|
| /// File Name: | MDVSA-2008-152.txt | Description:
| Mandriva Linux Security Advisory - A vulnerability was found in Wireshark, that could cause it to crash while processing malicious packets. This update provides Wireshark 1.0.2, which is not vulnerable to that. | | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7468 | | Related CVE(s): | CVE-2008-3145 | | Last Modified: | Jul 23 19:26:33 2008 | | MD5 Checksum: | 9deb077f278a874b21006d319120b3bb |
|
| /// File Name: | joomlamamml-upload.txt | Description:
| The Joomla Mamml component suffers from a remote file disclosure vulnerability. | | Author: | e.wiZz! | | File Size: | 627 | | Last Modified: | Jul 23 19:26:13 2008 | | MD5 Checksum: | 0a4d3aebca4602e890770992430bc74c |
|
| /// File Name: | mysql_injection.pdf | Description:
| Whitepaper discussing techniques for MySQL related SQL injection. Written in Spanish. | | Author: | ka0x | | File Size: | 316847 | | Last Modified: | Jul 23 19:24:09 2008 | | MD5 Checksum: | bd8ca795f2acde98ec699e5686fdc77f |
|
| /// File Name: | oss-bypass.txt | Description:
| Outpost Security Suite Pro version 2009 suffers from multiple bypass vulnerabilities when using special characters. | | Author: | Juan Pablo Lopez Yacubian | | File Size: | 2287 | | Last Modified: | Jul 23 19:21:59 2008 | | MD5 Checksum: | 7570d3a72f5096b9588136427c83cebc |
|
| /// File Name: | PR08-16.txt | Description:
| Moodle versions 1.7.4 and below suffer from a cross site request forgery vulnerability. | | Homepage: | http://www.procheckup.com/ | | File Size: | 4631 | | Last Modified: | Jul 23 19:20:03 2008 | | MD5 Checksum: | 3a664b6adfa3d72f4d9f2a8baec3e8ec |
|
| /// File Name: | PR08-13.txt | Description:
| A cross site scripting vulnerability exists in Moodle versions 1.7.4 and below. | | Homepage: | http://www.procheckup.com/ | | File Size: | 2955 | | Last Modified: | Jul 23 19:18:13 2008 | | MD5 Checksum: | 2c780311bb56dbfd1b088e81afe2297d |
|
| /// File Name: | CS-2008-2.txt | Description:
| SocialEngine versions below 2.83 suffer from an input validation vulnerability that allows for client take over. | | Author: | Tim Loshak | | File Size: | 1341 | | Last Modified: | Jul 23 19:16:38 2008 | | MD5 Checksum: | cd06e8756e37818b845ccfa76907f968 |
|
| /// File Name: | FGA-2008-16-3.txt | Description:
| EMC Dantz Retrospect 7 Backup Server version 7.5.508 suffers from a weak password hash arithmetic vulnerability in the authentication module. | | Author: | Zhenhua Liu | | Homepage: | http://www.fortinet.com/ | | File Size: | 2366 | | Last Modified: | Jul 23 19:08:16 2008 | | MD5 Checksum: | 0e4381d6c4e9206769d3e16fded8c491 |
|
| /// File Name: | presurveypoll-sql.txt | Description:
| Pre Survey Poll suffers from a SQL injection vulnerability in default.asp. | | Author: | DreamTurk | | File Size: | 723 | | Last Modified: | Jul 23 18:49:39 2008 | | MD5 Checksum: | 4c8cc48caee75fdfa46bf471483ffa69 |
|
| /// File Name: | ezwebalbum-cookie.txt | Description:
| EZWebAlbum suffers from an insecure cookie handling vulnerability that allows anyone to be an administrator. | | Author: | hadihadi | | Homepage: | http://www.virangar.org/ | | File Size: | 1539 | | Last Modified: | Jul 23 18:48:56 2008 | | MD5 Checksum: | dd69a0f4eeaba3414e0cf5efa2ed5988 |
|
| /// File Name: | minix-dos.txt | Description:
| Minix version 3.1.2a suffers from a tty panic local denial of service vulnerability. | | Author: | kokanin | | File Size: | 577 | | Last Modified: | Jul 23 18:47:56 2008 | | MD5 Checksum: | a22651fcf1856f9932203452a358dc4e |
|
| /// File Name: | intellitamper207-exec.txt | Description:
| IntelliTamper version 2.07 server header remote code execution exploit. | | Author: | Koshi | | File Size: | 3030 | | Last Modified: | Jul 23 18:46:53 2008 | | MD5 Checksum: | 74a2288e27182326674ac87efbcd2952 |
|
| /// File Name: | intellitamper207-overflow.c | Description:
| IntelliTamper version 2.0.7 html parser remote buffer overflow exploit. | | Author: | r0ut3r | | File Size: | 3008 | | Last Modified: | Jul 23 18:45:59 2008 | | MD5 Checksum: | 88adf11e2c77e652031d76ddfa50908f |
|
| /// File Name: | dns-writeup.txt | Description:
| Interesting write up discussing DNS cache poisoning then and now. | | Author: | Monsieur Aglie | | File Size: | 10778 | | Last Modified: | Jul 22 20:57:32 2008 | | MD5 Checksum: | a0d975e9261838a800c2ee206625f579 |
|
| /// File Name: | USN-627-1.txt | Description:
| Ubuntu Security Notice 627-1 - Dan Kaminsky discovered weaknesses in the DNS protocol as implemented by Dnsmasq. A remote attacker could exploit this to spoof DNS entries and poison DNS caches. Among other things, this could lead to misdirected email and web traffic. | | Homepage: | http://security.ubuntu.com/ | | File Size: | 2579 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Jul 22 14:01:41 2008 | | MD5 Checksum: | 0b11fe1d320f9ebc0ce03f99670eab53 |
|
| /// File Name: | DSECRG-08-032.txt | Description:
| Claroline eLearning and eWorking Platform version 1.8.10 suffers from cross site scripting vulnerabilities. | | Author: | Digital Security Research Group | | Homepage: | http://www.dsec.ru/ | | File Size: | 2842 | | Last Modified: | Jul 22 14:01:02 2008 | | MD5 Checksum: | f71ed888ac06312f64ea478ffcfbd3f2 |
|
| /// File Name: | dsa-1613-1.txt | Description:
| Debian Security Advisory 1613-1 - Multiple vulnerabilities have been identified in libgd2, a library for programmatic graphics creation and manipulation. The Common Vulnerabilities and Exposures project identifies the following three issues: | | Homepage: | http://www.debian.org/security | | File Size: | 13291 | | Related CVE(s): | CVE-2007-3476, CVE-2007-3477, CVE-2007-3996, CVE-2007-2445 | | Last Modified: | Jul 22 13:59:59 2008 | | MD5 Checksum: | f8c950a3139d1a9b9ffb7c36183f28f7 |
|
| /// File Name: | MDVSA-2008-151.txt | Description:
| Mandriva Linux Security Advisory - A buffer overflow vulnerability in libxslt could be exploited via an XSL style sheet file with a long XLST transformation match condition, which could possibly lead to the execution of arbitrary code. The updated packages have been patched to correct this issue. | | Homepage: | http://www.mandriva.com/security/ | | File Size: | 6918 | | Related CVE(s): | CVE-2008-1767 | | Last Modified: | Jul 22 13:59:37 2008 | | MD5 Checksum: | 1bcd643704c45767fa68f8d446802e52 |
|
| /// File Name: | sipwitch-0.2.2.tar.gz | Description:
| GNU SIP Witch is a pure SIP-based office telephone call server that supports generic phone system features like call forwarding, hunt groups and call distribution, call coverage and ring groups, holding, and call transfer, as well as offering SIP specific capabilities such as presence and messaging. It supports secure telephone extensions for making calls over the Internet, and intercept/decrypt-free peer-to-peer audio and video extensions. It is not a SIP proxy, a multi-protocol telephone server, or an IP-PBX, and does not try to emulate Asterisk, FreeSWITCH, or Yate. | | Author: | David Sugar | | Homepage: | http://www.gnutelephony.org/ | | Changes: | Introduction of cgi control interface, server state support and use of state.xml config to set state properties, and more. | | File Size: | 434481 | | Last Modified: | Jul 22 13:46:03 2008 | | MD5 Checksum: | e9f61984910512e70c5c4f354ebefb9f |
|
| /// File Name: | shopcartdx-sql.txt | Description:
| ShopCartDx version 4.30 suffers from a remote SQL injection vulnerability. | | Author: | Cr@zy_King | | File Size: | 450 | | Last Modified: | Jul 22 13:38:51 2008 | | MD5 Checksum: | f0f09d010d615e954dc6bfdb548ae189 |
|
| /// File Name: | youtubeblog-rfisqlxss.txt | Description:
| YouTube Blog version 0.1 suffers from remote file inclusion, SQL injection, and cross site scripting vulnerabilities. | | Author: | unohope | | Homepage: | http://www.chroot.org/ | | File Size: | 1361 | | Last Modified: | Jul 22 13:38:13 2008 | | MD5 Checksum: | 9c83470e6b3fb9d7f64df17a816bc054 |
|
| /// File Name: | intellitamper-overflow.txt | Description:
| IntelliTamper version 2.0.7 html parser remote buffer overflow exploit. | | Author: | Guido Landi | | File Size: | 1934 | | Last Modified: | Jul 22 13:37:17 2008 | | MD5 Checksum: | 768f68895d134f16b4510549cd649793 |
|
| /// File Name: | modjk1219-overflow.txt | Description:
| Apache mod_jk version 1.2.19 remote buffer overflow exploit for win32. | | Author: | unohope | | Homepage: | http://www.chroot.org/ | | File Size: | 6190 | | Last Modified: | Jul 22 13:36:06 2008 | | MD5 Checksum: | 53fca1af8a7eee242ef26ee3bac1db44 |
|
| /// File Name: | zdaemonull.zip | Description:
| ZDaemon version 1.08.07 denial of service exploit that makes use of a NULL pointer vulnerability. | | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related File: | zdaemonull.txt | | File Size: | 489489 | | Last Modified: | Jul 21 18:18:59 2008 | | MD5 Checksum: | 5f9b6541fd39cf4504ce5850fe7e2902 |
|
| /// File Name: | zdaemonull.txt | Description:
| ZDaemon version 1.08.07 suffers from a NULL pointer vulnerability that allows for a denial of service. | | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | zdaemonull.zip | | File Size: | 1652 | | Last Modified: | Jul 21 18:17:27 2008 | | MD5 Checksum: | 8c85d8ec22bbb9062cb114f68f5402b1 |
|
| /// File Name: | glsa-200807-12.txt | Description:
| Gentoo Linux Security Advisory GLSA 200807-12 - bannedit reported a boundary error when handling overly long IRC MODE messages (CVE-2007-4584). Nico Golde reported an insecure creation of a temporary file within the e_hostname() function (CVE-2007-5839). Versions less than or equal to 1.1-r4 are affected. | | Homepage: | http://security.gentoo.org | | File Size: | 3594 | | Related CVE(s): | CVE-2007-4584, CVE-2007-5839 | | Last Modified: | Jul 21 18:08:23 2008 | | MD5 Checksum: | 8100eca3c7360f4b84b412bf7550fda5 |
|
| /// File Name: | DSEGRG-08-31.txt | Description:
| Interact E-Learning System version 2.4.1 suffers from a local file inclusion vulnerability in help/help.php. | | Author: | Digital Security Research Group | | Homepage: | http://www.dsec.ru/ | | File Size: | 2242 | | Last Modified: | Jul 21 18:06:52 2008 | | MD5 Checksum: | ccda3be106036a8fbfe5b9e8eace4a84 |
|
| /// File Name: | FGA-2008-16-2.txt | Description:
| EMC Dantz Retrospect 7 backup Client 7.5.116 suffers from a NULL pointer reference denial of service vulnerability. | | Author: | Zhenhua Liu | | Homepage: | http://www.fortinet.com/ | | File Size: | 2475 | | Last Modified: | Jul 21 18:04:08 2008 | | MD5 Checksum: | 812c10b6dc3e756242463147b8c58022 |
|
| /// File Name: | FGA-2008-16.txt | Description:
| EMC Dantz Retrospect 7 backup Client 7.5.116 suffers from a plaintext password hash disclosure vulnerability. | | Author: | Zhenhua Liu | | Homepage: | http://www.fortinet.com/ | | File Size: | 2562 | | Last Modified: | Jul 21 18:00:23 2008 | | MD5 Checksum: | cbb194fe670583886c0eed55f04e9339 |
|
|
|
|
|