Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 04:44:55 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1154390154&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F1004-exploits%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1154390154.1338180295.1338180295.1338180295.1%3B%2B__utmz%3D32867617.1338180295.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Packet Storm New Exploits For April, 2010 http://packetstormsecurity.org/files/89113/1004-exploits.tgz http://packetstormsecurity.org/files/89113/1004-exploits.tgz http://packetstormsecurity.org/files/89113/Packet-Storm-New-Exploits-For-April-2010.html Mon, 03 May 2010 23:05:15 GMT This archive contains all of the 490 exploits added to Packet Storm in April, 2010. KrM Haber Database Disclosure http://packetstormsecurity.org/files/89092/krmhaber-disclose.txt http://packetstormsecurity.org/files/89092/krmhaber-disclose.txt http://packetstormsecurity.org/files/89092/KrM-Haber-Database-Disclosure.html Fri, 30 Apr 2010 23:38:48 GMT KrM Haber suffers from a database disclosure vulnerability. Alibaba Clone Platinum SQL Injection http://packetstormsecurity.org/files/89091/alibabacloneplatinum-sql.txt http://packetstormsecurity.org/files/89091/alibabacloneplatinum-sql.txt http://packetstormsecurity.org/files/89091/Alibaba-Clone-Platinum-SQL-Injection.html Fri, 30 Apr 2010 23:37:58 GMT Alibaba Clone Platinum suffers from a remote SQL injection vulnerability. Webthaiapp Blind SQL Injection http://packetstormsecurity.org/files/89090/webthaiapp-sql.txt http://packetstormsecurity.org/files/89090/webthaiapp-sql.txt http://packetstormsecurity.org/files/89090/Webthaiapp-Blind-SQL-Injection.html Fri, 30 Apr 2010 23:35:46 GMT Webthaiapp suffers from a remote blind SQL injection vulnerability. AutoDealer 1 / 2 SQL Injection http://packetstormsecurity.org/files/89089/autodealer-sql.txt http://packetstormsecurity.org/files/89089/autodealer-sql.txt http://packetstormsecurity.org/files/89089/AutoDealer-1-2-SQL-Injection.html Fri, 30 Apr 2010 23:34:48 GMT AutoDealer versions 1 and 2 suffer from a remote SQL injection vulnerability. BPstyle Graphic Studio SQL Injection http://packetstormsecurity.org/files/89088/bpstylegs-sql.txt http://packetstormsecurity.org/files/89088/bpstylegs-sql.txt http://packetstormsecurity.org/files/89088/BPstyle-Graphic-Studio-SQL-Injection.html Fri, 30 Apr 2010 23:34:05 GMT BPstyle Graphic Studio suffers from a remote SQL injection vulnerability. Joomla NewsFeeds SQL Injection http://packetstormsecurity.org/files/89087/joomlanewsfeeds-sql.txt http://packetstormsecurity.org/files/89087/joomlanewsfeeds-sql.txt http://packetstormsecurity.org/files/89087/Joomla-NewsFeeds-SQL-Injection.html Fri, 30 Apr 2010 23:32:21 GMT The Joomla NewsFeeds component suffers from a remote SQL injection vulnerability. Puntal 2.1.0 Remote File Inclusion http://packetstormsecurity.org/files/89086/puntal-rfi.txt http://packetstormsecurity.org/files/89086/puntal-rfi.txt http://packetstormsecurity.org/files/89086/Puntal-2.1.0-Remote-File-Inclusion.html Fri, 30 Apr 2010 23:31:17 GMT Puntal version 2.1.0 suffers from a remote file inclusion vulnerability. osCommerce 3.0a5 Cross Site Request Forgery / Cross Site Scripting / Local File Inclusion http://packetstormsecurity.org/files/89080/oscommerce-xsslfixsrf.txt http://packetstormsecurity.org/files/89080/oscommerce-xsslfixsrf.txt http://packetstormsecurity.org/files/89080/osCommerce-3.0a5-Cross-Site-Request-Forgery-Cross-Site-Scripting-Local-File-Inclusion.html Fri, 30 Apr 2010 23:21:10 GMT osCommerce version 3.0a5 suffers from cross site request forgery, cross site scripting, local file inclusion and path disclosure vulnerabilities. JobPost SQL Injection http://packetstormsecurity.org/files/89079/jobpost-sql.txt http://packetstormsecurity.org/files/89079/jobpost-sql.txt http://packetstormsecurity.org/files/89079/JobPost-SQL-Injection.html Fri, 30 Apr 2010 23:20:08 GMT JobPost suffers from a remote SQL injection vulnerability. EC21 Clone 3.0 SQL Injection http://packetstormsecurity.org/files/89078/ec21clone-sql.txt http://packetstormsecurity.org/files/89078/ec21clone-sql.txt http://packetstormsecurity.org/files/89078/EC21-Clone-3.0-SQL-Injection.html Fri, 30 Apr 2010 23:19:25 GMT EC21 Clone version 3.0 suffers from a remote SQL injection vulnerability. B2B Gold Script SQL Injection http://packetstormsecurity.org/files/89077/b2bgoldscript-sql.txt http://packetstormsecurity.org/files/89077/b2bgoldscript-sql.txt http://packetstormsecurity.org/files/89077/B2B-Gold-Script-SQL-Injection.html Fri, 30 Apr 2010 23:18:48 GMT B2B Gold Script suffers from a remote SQL injection vulnerability. chCounter 3.1.1 SQL Injection / Cross Site Scripting http://packetstormsecurity.org/files/89071/chcounter-sqlxss.txt http://packetstormsecurity.org/files/89071/chcounter-sqlxss.txt http://packetstormsecurity.org/files/89071/chCounter-3.1.1-SQL-Injection-Cross-Site-Scripting.html Fri, 30 Apr 2010 00:05:28 GMT chCounter version 3.1.1 suffers from cross site scripting and remote SQL injection vulnerabilities. iScripts VisualCaster SQL Injection http://packetstormsecurity.org/files/89070/iscriptsvisualcaster-sql.txt http://packetstormsecurity.org/files/89070/iscriptsvisualcaster-sql.txt http://packetstormsecurity.org/files/89070/iScripts-VisualCaster-SQL-Injection.html Fri, 30 Apr 2010 00:03:54 GMT iScripts VisualCaster suffers from a remote SQL injection vulnerability. Apache ActiveMQ Cross Site Scripting http://packetstormsecurity.org/files/89069/apacheactivemq-xss.txt http://packetstormsecurity.org/files/89069/apacheactivemq-xss.txt http://packetstormsecurity.org/files/89069/Apache-ActiveMQ-Cross-Site-Scripting.html Fri, 30 Apr 2010 00:01:06 GMT Apache ActiveMQ version 5.3.x suffers from a cross site scripting vulnerability. deV!L'z Clanportal 1.5 Remote File Inclusion http://packetstormsecurity.org/files/89068/dvcp-rfi.txt http://packetstormsecurity.org/files/89068/dvcp-rfi.txt http://packetstormsecurity.org/files/89068/deV-Lz-Clanportal-1.5-Remote-File-Inclusion.html Thu, 29 Apr 2010 23:56:58 GMT deV!L's Clanportal version 1.5 suffers from remote file inclusion and image replacement vulnerabilities. Scratcher SQL Injection / Cross Site Scripting http://packetstormsecurity.org/files/89067/scratcher-sqlxss.txt http://packetstormsecurity.org/files/89067/scratcher-sqlxss.txt http://packetstormsecurity.org/files/89067/Scratcher-SQL-Injection-Cross-Site-Scripting.html Thu, 29 Apr 2010 23:54:48 GMT Scratcher suffers from cross site scripting and remote SQL injection vulnerabilities. Socialware 2.2 Cross Site Scripting / Shell Upload http://packetstormsecurity.org/files/89066/socialware-shellxss.txt http://packetstormsecurity.org/files/89066/socialware-shellxss.txt http://packetstormsecurity.org/files/89066/Socialware-2.2-Cross-Site-Scripting-Shell-Upload.html Thu, 29 Apr 2010 23:53:52 GMT Socialware version 2.2 suffers from cross site scripting and shell upload vulnerabilities. Apple Safari 4.0.3 CSS Denial Of Service http://packetstormsecurity.org/files/89065/safaricss-dos.txt http://packetstormsecurity.org/files/89065/safaricss-dos.txt http://packetstormsecurity.org/files/89065/Apple-Safari-4.0.3-CSS-Denial-Of-Service.html Thu, 29 Apr 2010 23:52:00 GMT Apple Safari version 4.0.3 (Win32) CSS related remote denial of service exploit. Task Freak 0.6.2 SQL Injection http://packetstormsecurity.org/files/89063/taskfreak962-sql.txt http://packetstormsecurity.org/files/89063/taskfreak962-sql.txt http://packetstormsecurity.org/files/89063/Task-Freak-0.6.2-SQL-Injection.html Thu, 29 Apr 2010 23:48:31 GMT Task Freak version 0.6.2 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Google Chrome Stack Exhaustion http://packetstormsecurity.org/files/89061/chromedll-exhaust.txt http://packetstormsecurity.org/files/89061/chromedll-exhaust.txt http://packetstormsecurity.org/files/89061/Google-Chrome-Stack-Exhaustion.html Thu, 29 Apr 2010 23:44:00 GMT Chrome acronym tag denial of service exploit. TR Forum 1.5 Cross Site Scripting / SQL Injection http://packetstormsecurity.org/files/89060/trforum-sqlxss.txt http://packetstormsecurity.org/files/89060/trforum-sqlxss.txt http://packetstormsecurity.org/files/89060/TR-Forum-1.5-Cross-Site-Scripting-SQL-Injection.html Thu, 29 Apr 2010 23:42:06 GMT TR Forum version 1.5 suffers from cross site scripting and remote SQL injection vulnerabilities. Blog Pixel Motion Backup Disclosure http://packetstormsecurity.org/files/89059/blogpixelmotion-disclose.txt http://packetstormsecurity.org/files/89059/blogpixelmotion-disclose.txt http://packetstormsecurity.org/files/89059/Blog-Pixel-Motion-Backup-Disclosure.html Thu, 29 Apr 2010 23:39:59 GMT Blog Pixel Motion suffers from a backup disclosure vulnerability. Your Articles Directory SQL Injection http://packetstormsecurity.org/files/89058/yourarticlesdirectory-sql.txt http://packetstormsecurity.org/files/89058/yourarticlesdirectory-sql.txt http://packetstormsecurity.org/files/89058/Your-Articles-Directory-SQL-Injection.html Thu, 29 Apr 2010 23:38:17 GMT Your Article Directory suffers from a remote SQL injection vulnerability. gpEasy 1.6.1 Cross Site Request Forgery http://packetstormsecurity.org/files/89056/gpeasy-xsrf.txt http://packetstormsecurity.org/files/89056/gpeasy-xsrf.txt http://packetstormsecurity.org/files/89056/gpEasy-1.6.1-Cross-Site-Request-Forgery.html Thu, 29 Apr 2010 23:32:23 GMT gpEasy version 1.6.1 suffers from a cross site request forgery vulnerability.