Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 06:21:22 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1935237683&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0805-exploits%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1935237683.1338186082.1338186082.1338186082.1%3B%2B__utmz%3D32867617.1338186082.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) 0805-exploits.tgz http://packetstormsecurity.org/files/66877/0805-exploits.tgz http://packetstormsecurity.org/files/66877/0805-exploits.tgz http://packetstormsecurity.org/files/66877/0805-exploits.tgz.html Mon, 02 Jun 2008 15:30:32 GMT Packet Storm new exploits for May, 2008. socialsite-rfi.txt http://packetstormsecurity.org/files/66869/socialsite-rfi.txt http://packetstormsecurity.org/files/66869/socialsite-rfi.txt http://packetstormsecurity.org/files/66869/socialsite-rfi.txt.html Sat, 31 May 2008 19:38:31 GMT Social Site Generator suffers from a remote file inclusion vulnerability. joomlaprayer-sql.txt http://packetstormsecurity.org/files/66868/joomlaprayer-sql.txt http://packetstormsecurity.org/files/66868/joomlaprayer-sql.txt http://packetstormsecurity.org/files/66868/joomlaprayer-sql.txt.html Sat, 31 May 2008 19:37:04 GMT The Joomla component Prayercenter versions 1.4.9 and below suffer from a remote SQL injection vulnerability. passwiki-lfi.txt http://packetstormsecurity.org/files/66867/passwiki-lfi.txt http://packetstormsecurity.org/files/66867/passwiki-lfi.txt http://packetstormsecurity.org/files/66867/passwiki-lfi.txt.html Sat, 31 May 2008 19:34:47 GMT PassWiki versions 0.9.16 RC3 and below suffer from a local file inclusion vulnerability. easyway-sql.txt http://packetstormsecurity.org/files/66866/easyway-sql.txt http://packetstormsecurity.org/files/66866/easyway-sql.txt http://packetstormsecurity.org/files/66866/easyway-sql.txt.html Sat, 31 May 2008 19:33:30 GMT EasyWay CMS remote SQL injection exploit that takes advantage of index.php. phpvisitcounter-sql.txt http://packetstormsecurity.org/files/66865/phpvisitcounter-sql.txt http://packetstormsecurity.org/files/66865/phpvisitcounter-sql.txt http://packetstormsecurity.org/files/66865/phpvisitcounter-sql.txt.html Sat, 31 May 2008 19:32:30 GMT PHP Visit Counter versions 0.4 and below suffer from a SQL injection vulnerability. azuresites-sql.txt http://packetstormsecurity.org/files/66864/azuresites-sql.txt http://packetstormsecurity.org/files/66864/azuresites-sql.txt http://packetstormsecurity.org/files/66864/azuresites-sql.txt.html Sat, 31 May 2008 19:30:25 GMT AzureSites CMS suffers from insecure cookie handling and SQL injection vulnerabilities. bpblog-sql.txt http://packetstormsecurity.org/files/66859/bpblog-sql.txt http://packetstormsecurity.org/files/66859/bpblog-sql.txt http://packetstormsecurity.org/files/66859/bpblog-sql.txt.html Sat, 31 May 2008 19:19:01 GMT BP Blog version 6.0 suffers from a remote blind SQL injection vulnerability in template_permalink.asp. socialsite-sql.txt http://packetstormsecurity.org/files/66858/socialsite-sql.txt http://packetstormsecurity.org/files/66858/socialsite-sql.txt http://packetstormsecurity.org/files/66858/socialsite-sql.txt.html Sat, 31 May 2008 19:16:57 GMT Social Site Generator suffers from a remote SQL injection vulnerability. cmsimple-lfiup.txt http://packetstormsecurity.org/files/66857/cmsimple-lfiup.txt http://packetstormsecurity.org/files/66857/cmsimple-lfiup.txt http://packetstormsecurity.org/files/66857/cmsimple-lfiup.txt.html Sat, 31 May 2008 19:15:07 GMT CMSimple version 3.1 local file inclusion and arbitrary file upload exploit. psychostats-sql.txt http://packetstormsecurity.org/files/66856/psychostats-sql.txt http://packetstormsecurity.org/files/66856/psychostats-sql.txt http://packetstormsecurity.org/files/66856/psychostats-sql.txt.html Sat, 31 May 2008 19:14:05 GMT PsychoStats versions 2.3.3 and below suffer from remote SQL injection vulnerabilities. nowsmsmms-overflow.txt http://packetstormsecurity.org/files/66834/nowsmsmms-overflow.txt http://packetstormsecurity.org/files/66834/nowsmsmms-overflow.txt http://packetstormsecurity.org/files/66834/nowsmsmms-overflow.txt.html Fri, 30 May 2008 18:44:14 GMT Now SMS/MMS Gateway version 5.5 remote buffer overflow exploit that binds a shell to port 4444. mambomambads-sql.txt http://packetstormsecurity.org/files/66833/mambomambads-sql.txt http://packetstormsecurity.org/files/66833/mambomambads-sql.txt http://packetstormsecurity.org/files/66833/mambomambads-sql.txt.html Fri, 30 May 2008 18:42:59 GMT Remote SQL injection exploit for the Mambo mambads component version 1.0 RC1 Beta and 1.0 RC1. adv96-K-159-2008.txt http://packetstormsecurity.org/files/66832/adv96-K-159-2008.txt http://packetstormsecurity.org/files/66832/adv96-K-159-2008.txt http://packetstormsecurity.org/files/66832/adv96-K-159-2008.txt.html Fri, 30 May 2008 18:42:05 GMT HiveMaker Professional versions 1.0.2 and below suffer from a remote SQL injection vulnerability. applemail-dos.txt http://packetstormsecurity.org/files/66831/applemail-dos.txt http://packetstormsecurity.org/files/66831/applemail-dos.txt http://packetstormsecurity.org/files/66831/applemail-dos.txt.html Fri, 30 May 2008 18:40:21 GMT Apple Mail versions 3.1 and 3.2 suffer from a denial of service vulnerability when reading a specially crafted e-mail. dotnetnuke-xss.txt http://packetstormsecurity.org/files/66830/dotnetnuke-xss.txt http://packetstormsecurity.org/files/66830/dotnetnuke-xss.txt http://packetstormsecurity.org/files/66830/dotnetnuke-xss.txt.html Fri, 30 May 2008 18:39:01 GMT Dot Net Nuke versions 4.8.3 and below suffer from a cross site scripting vulnerability. phpbook-upload.txt http://packetstormsecurity.org/files/66829/phpbook-upload.txt http://packetstormsecurity.org/files/66829/phpbook-upload.txt http://packetstormsecurity.org/files/66829/phpbook-upload.txt.html Fri, 30 May 2008 18:37:30 GMT PHP Booking Calendar version 10d arbitrary file upload exploit. cmsscratch-traverse.txt http://packetstormsecurity.org/files/66828/cmsscratch-traverse.txt http://packetstormsecurity.org/files/66828/cmsscratch-traverse.txt http://packetstormsecurity.org/files/66828/cmsscratch-traverse.txt.html Fri, 30 May 2008 18:36:43 GMT CMS from Scratch versions 1.1.3 and below suffer from a directory traversal vulnerability in image.php. phpbook-sql.txt http://packetstormsecurity.org/files/66827/phpbook-sql.txt http://packetstormsecurity.org/files/66827/phpbook-sql.txt http://packetstormsecurity.org/files/66827/phpbook-sql.txt.html Fri, 30 May 2008 18:35:52 GMT PHP Booking Calendar version 10d remote SQL injection exploit that retrieves the administrator login and password hash. asus-overflow.txt http://packetstormsecurity.org/files/66826/asus-overflow.txt http://packetstormsecurity.org/files/66826/asus-overflow.txt http://packetstormsecurity.org/files/66826/asus-overflow.txt.html Fri, 30 May 2008 18:34:35 GMT ASUS DPC proxy versions 2.0.0.16 and 2.0.0.19 remote buffer overflow exploit that binds a shell to port 4444. xerox-xss.txt http://packetstormsecurity.org/files/66817/xerox-xss.txt http://packetstormsecurity.org/files/66817/xerox-xss.txt http://packetstormsecurity.org/files/66817/xerox-xss.txt.html Thu, 29 May 2008 23:20:20 GMT XEROX DocuShare versions 6 and below suffer from a cross site scripting vulnerability. cmsscratch-upload.txt http://packetstormsecurity.org/files/66799/cmsscratch-upload.txt http://packetstormsecurity.org/files/66799/cmsscratch-upload.txt http://packetstormsecurity.org/files/66799/cmsscratch-upload.txt.html Thu, 29 May 2008 23:16:42 GMT CMS from Scratch versions 1.1.3 and below remote shell upload exploit. dvbbs-sql.txt http://packetstormsecurity.org/files/66790/dvbbs-sql.txt http://packetstormsecurity.org/files/66790/dvbbs-sql.txt http://packetstormsecurity.org/files/66790/dvbbs-sql.txt.html Thu, 29 May 2008 17:50:53 GMT dvbbs version 8.2 is vulnerable to remote SQL injection attacks via login.asp. flashblog-upload.txt http://packetstormsecurity.org/files/66789/flashblog-upload.txt http://packetstormsecurity.org/files/66789/flashblog-upload.txt http://packetstormsecurity.org/files/66789/flashblog-upload.txt.html Thu, 29 May 2008 17:50:00 GMT FlashBlog beta version 0.31 suffers from a remote file upload vulnerability. picoflat-lfi.txt http://packetstormsecurity.org/files/66788/picoflat-lfi.txt http://packetstormsecurity.org/files/66788/picoflat-lfi.txt http://packetstormsecurity.org/files/66788/picoflat-lfi.txt.html Thu, 29 May 2008 17:46:39 GMT PicoFlat CMS version 0.5.9 suffers from a local file inclusion vulnerability in index.php. This uses the same variable that had a remote file inclusion vulnerability back in October of 2007.