Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 05:34:08 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1236119826&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0703-exploits%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1236119826.1338183248.1338183248.1338183248.1%3B%2B__utmz%3D32867617.1338183248.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) 0703-exploits.tgz http://packetstormsecurity.org/files/55522/0703-exploits.tgz http://packetstormsecurity.org/files/55522/0703-exploits.tgz http://packetstormsecurity.org/files/55522/0703-exploits.tgz.html Mon, 02 Apr 2007 23:08:17 GMT Packet Storm new exploits for March, 2007. aardvark-rfi.txt http://packetstormsecurity.org/files/55517/aardvark-rfi.txt http://packetstormsecurity.org/files/55517/aardvark-rfi.txt http://packetstormsecurity.org/files/55517/aardvark-rfi.txt.html Mon, 02 Apr 2007 22:51:12 GMT Aardvark Topsites PHP 5 suffers from a remote file inclusion vulnerability. ssfree-rfi.txt http://packetstormsecurity.org/files/55516/ssfree-rfi.txt http://packetstormsecurity.org/files/55516/ssfree-rfi.txt http://packetstormsecurity.org/files/55516/ssfree-rfi.txt.html Mon, 02 Apr 2007 22:50:26 GMT Shop-SCRIPT FREE suffers from remote file inclusion vulnerabilities. slaed-rfi.txt http://packetstormsecurity.org/files/55515/slaed-rfi.txt http://packetstormsecurity.org/files/55515/slaed-rfi.txt http://packetstormsecurity.org/files/55515/slaed-rfi.txt.html Mon, 02 Apr 2007 22:49:26 GMT SLAED_CMS_2 suffers from a remote file inclusion vulnerability. phpfusion2-sql.txt http://packetstormsecurity.org/files/55514/phpfusion2-sql.txt http://packetstormsecurity.org/files/55514/phpfusion2-sql.txt http://packetstormsecurity.org/files/55514/phpfusion2-sql.txt.html Mon, 02 Apr 2007 22:48:45 GMT The PHP-Fusion Calendar_Panel module suffers from a remote SQL injection vulnerability in show_event.php. devcode.txt http://packetstormsecurity.org/files/55512/devcode.txt http://packetstormsecurity.org/files/55512/devcode.txt http://packetstormsecurity.org/files/55512/devcode.txt.html Mon, 02 Apr 2007 22:42:17 GMT Exploit for the Microsoft Windows .ANI LoadAniIcon stack overflow vulnerability. dproxy-v1.c http://packetstormsecurity.org/files/55509/dproxy-v1.c http://packetstormsecurity.org/files/55509/dproxy-v1.c http://packetstormsecurity.org/files/55509/dproxy-v1.c.html Mon, 02 Apr 2007 22:35:30 GMT Remote exploit for dproxy versions 0.5 and below. Binds a shell to TCP port 4444. blogentry-xss.txt http://packetstormsecurity.org/files/55504/blogentry-xss.txt http://packetstormsecurity.org/files/55504/blogentry-xss.txt http://packetstormsecurity.org/files/55504/blogentry-xss.txt.html Mon, 02 Apr 2007 22:26:51 GMT Blog-Entry suffers from multiple cross site scripting vulnerabilities. adv80-K-159-2007.txt http://packetstormsecurity.org/files/55503/adv80-K-159-2007.txt http://packetstormsecurity.org/files/55503/adv80-K-159-2007.txt http://packetstormsecurity.org/files/55503/adv80-K-159-2007.txt.html Mon, 02 Apr 2007 22:24:38 GMT Time-Assistant versions 6.2 and below suffer from a remote file inclusion vulnerability. drake-xss.txt http://packetstormsecurity.org/files/55500/drake-xss.txt http://packetstormsecurity.org/files/55500/drake-xss.txt http://packetstormsecurity.org/files/55500/drake-xss.txt.html Mon, 02 Apr 2007 21:50:04 GMT DrakeCMS suffers from a cross site scripting vulnerability in ui.dta.php. mybb-change.txt http://packetstormsecurity.org/files/55498/mybb-change.txt http://packetstormsecurity.org/files/55498/mybb-change.txt http://packetstormsecurity.org/files/55498/mybb-change.txt.html Mon, 02 Apr 2007 21:47:07 GMT MyBB suffers from a change password vulnerability. datadomain-exec.txt http://packetstormsecurity.org/files/55464/datadomain-exec.txt http://packetstormsecurity.org/files/55464/datadomain-exec.txt http://packetstormsecurity.org/files/55464/datadomain-exec.txt.html Thu, 29 Mar 2007 07:02:36 GMT DataDomain OS versions 3.0.0 through 4.0.3.5 suffer from an arbitrary command execution flaw. wp13exp.c http://packetstormsecurity.org/files/55456/wp13exp.c http://packetstormsecurity.org/files/55456/wp13exp.c http://packetstormsecurity.org/files/55456/wp13exp.c.html Thu, 29 Mar 2007 06:21:41 GMT Corel Worperfect X3 version 13.0.0.565 suffers from a stack overflow vulnerability. Exploit included. hp-dos.txt http://packetstormsecurity.org/files/55453/hp-dos.txt http://packetstormsecurity.org/files/55453/hp-dos.txt http://packetstormsecurity.org/files/55453/hp-dos.txt.html Thu, 29 Mar 2007 06:17:34 GMT HP JetDirect print servers suffers from a remote denial of service flaw. abitwhizzy-traverse.txt http://packetstormsecurity.org/files/55452/abitwhizzy-traverse.txt http://packetstormsecurity.org/files/55452/abitwhizzy-traverse.txt http://packetstormsecurity.org/files/55452/abitwhizzy-traverse.txt.html Thu, 29 Mar 2007 06:12:12 GMT aBitWhizzy suffers from local file traversal and cross site scripting vulnerabilities. MOPB-sessiondecode.txt http://packetstormsecurity.org/files/55450/MOPB-sessiondecode.txt http://packetstormsecurity.org/files/55450/MOPB-sessiondecode.txt http://packetstormsecurity.org/files/55450/MOPB-sessiondecode.txt.html Thu, 29 Mar 2007 06:03:23 GMT Month of PHP Bugs - PHP version 4.4.5 and 4.4.6 session_decode() double free proof of concept exploit. linux-disclose-v2.txt http://packetstormsecurity.org/files/55449/linux-disclose-v2.txt http://packetstormsecurity.org/files/55449/linux-disclose-v2.txt http://packetstormsecurity.org/files/55449/linux-disclose-v2.txt.html Thu, 29 Mar 2007 06:02:12 GMT The Linux kernel suffers from a DCCP memory disclosure vulnerability. This is the second proof of concept exploit related to this vulnerability. Kernel versions 2.6.20 and above are affected. navicopa-201.txt http://packetstormsecurity.org/files/55448/navicopa-201.txt http://packetstormsecurity.org/files/55448/navicopa-201.txt http://packetstormsecurity.org/files/55448/navicopa-201.txt.html Thu, 29 Mar 2007 05:59:38 GMT This Metasploit module exploits a stack overflow in the NaviCopa HTTP server 2.01 (release version 6th October 2006 or earlier). It is not the same vulnerability as the one described in BID 20250. oracle-inject-bunker.txt http://packetstormsecurity.org/files/55447/oracle-inject-bunker.txt http://packetstormsecurity.org/files/55447/oracle-inject-bunker.txt http://packetstormsecurity.org/files/55447/oracle-inject-bunker.txt.html Thu, 29 Mar 2007 05:58:01 GMT Oracle 10g KUPM$MCP.MAIN SQL injection exploit version 1. oracle-inject.txt http://packetstormsecurity.org/files/55446/oracle-inject.txt http://packetstormsecurity.org/files/55446/oracle-inject.txt http://packetstormsecurity.org/files/55446/oracle-inject.txt.html Thu, 29 Mar 2007 05:57:01 GMT Oracle 10g KUPM$MCP.MAIN SQL injection exploit version 2. linux-dccp.txt http://packetstormsecurity.org/files/55444/linux-dccp.txt http://packetstormsecurity.org/files/55444/linux-dccp.txt http://packetstormsecurity.org/files/55444/linux-dccp.txt.html Thu, 29 Mar 2007 05:54:07 GMT The Linux kernel suffers from a DCCP memory disclosure vulnerability. Proof of concept exploit included. Kernel versions 2.6.20 and above are affected. advisory-481.txt http://packetstormsecurity.org/files/55443/advisory-481.txt http://packetstormsecurity.org/files/55443/advisory-481.txt http://packetstormsecurity.org/files/55443/advisory-481.txt.html Thu, 29 Mar 2007 02:24:43 GMT FlexBB version 1.0.0 10005 Beta Release 1 suffers from a SQL injection vulnerability when parsing the user supplied cookie value. xoops-blind.txt http://packetstormsecurity.org/files/55442/xoops-blind.txt http://packetstormsecurity.org/files/55442/xoops-blind.txt http://packetstormsecurity.org/files/55442/xoops-blind.txt.html Thu, 29 Mar 2007 02:22:08 GMT Xoops blind SQL injection exploit for print.php. Currently affects all versions. adv78-K-159-2007.txt http://packetstormsecurity.org/files/55440/adv78-K-159-2007.txt http://packetstormsecurity.org/files/55440/adv78-K-159-2007.txt http://packetstormsecurity.org/files/55440/adv78-K-159-2007.txt.html Wed, 28 Mar 2007 16:08:10 GMT C-Arbre versions 0.6PR7 and below suffer from a remote file inclusion vulnerability. advisory-realGuestbook_V5-en.txt http://packetstormsecurity.org/files/55439/advisory-realGuestbook_V5-en.txt http://packetstormsecurity.org/files/55439/advisory-realGuestbook_V5-en.txt http://packetstormsecurity.org/files/55439/advisory-realGuestbook_V5-en.txt.html Wed, 28 Mar 2007 16:05:19 GMT realGuestbook_V5 suffers from a HTML injection vulnerability.