Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 08:14:30 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1710733155&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F1009-exploits%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1710733155.1338192870.1338192870.1338192870.1%3B%2B__utmz%3D32867617.1338192870.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Packet Storm New Exploits For September, 2010 http://packetstormsecurity.org/files/94433/1009-exploits.tgz http://packetstormsecurity.org/files/94433/1009-exploits.tgz http://packetstormsecurity.org/files/94433/Packet-Storm-New-Exploits-For-September-2010.html Fri, 01 Oct 2010 21:47:54 GMT This archive contains all of the 305 exploits added to Packet Storm in September, 2010. JomSocial 1.8.8 Shell Upload http://packetstormsecurity.org/files/94416/jomsocial-shell.txt http://packetstormsecurity.org/files/94416/jomsocial-shell.txt http://packetstormsecurity.org/files/94416/JomSocial-1.8.8-Shell-Upload.html Fri, 01 Oct 2010 02:44:13 GMT JomSocial version 1.8.8 suffers from a shell upload vulnerability. Joomla JE Directory SQL Injection http://packetstormsecurity.org/files/94415/joomlajedirectory-sql.txt http://packetstormsecurity.org/files/94415/joomlajedirectory-sql.txt http://packetstormsecurity.org/files/94415/Joomla-JE-Directory-SQL-Injection.html Fri, 01 Oct 2010 02:43:10 GMT The Joomla JE Directory component suffers from a remote SQL injection vulnerability. Zen Cart 1.3.9f Local File Inclusion http://packetstormsecurity.org/files/94414/ZSL-2010-4967.txt http://packetstormsecurity.org/files/94414/ZSL-2010-4967.txt http://packetstormsecurity.org/files/94414/Zen-Cart-1.3.9f-Local-File-Inclusion.html Fri, 01 Oct 2010 02:42:14 GMT Zen Cart version 1.3.9f suffers from a local file inclusion vulnerability. Zen Cart 1.3.9f Cross Site Scripting / SQL Injection http://packetstormsecurity.org/files/94413/ZSL-2010-4966.txt http://packetstormsecurity.org/files/94413/ZSL-2010-4966.txt http://packetstormsecurity.org/files/94413/Zen-Cart-1.3.9f-Cross-Site-Scripting-SQL-Injection.html Fri, 01 Oct 2010 02:41:17 GMT Zen Cart version 1.3.9f suffers from cross site scripting and remote SQL injection vulnerabilities. Loja eShop Cross Site Scripting http://packetstormsecurity.org/files/94411/lojaeshop-xss.txt http://packetstormsecurity.org/files/94411/lojaeshop-xss.txt http://packetstormsecurity.org/files/94411/Loja-eShop-Cross-Site-Scripting.html Fri, 01 Oct 2010 02:39:07 GMT Loja eShop suffers from a cross site scripting vulnerability. Joomla JE Job SQL Injection http://packetstormsecurity.org/files/94410/joomlajejobitemid-sql.txt http://packetstormsecurity.org/files/94410/joomlajejobitemid-sql.txt http://packetstormsecurity.org/files/94410/Joomla-JE-Job-SQL-Injection.html Fri, 01 Oct 2010 02:37:36 GMT The Joomla JE Job component suffers from a remote SQL injection vulnerability. Contact Form Generator SQL Injection http://packetstormsecurity.org/files/94409/cfg-sql.txt http://packetstormsecurity.org/files/94409/cfg-sql.txt http://packetstormsecurity.org/files/94409/Contact-Form-Generator-SQL-Injection.html Fri, 01 Oct 2010 02:35:44 GMT Contact Form Generator suffers from a remote SQL injection vulnerability. Month Of Abysssec Undisclosed Bugs - Microsoft Unicode Scripts Processor http://packetstormsecurity.org/files/94407/moaub-msunicode.txt http://packetstormsecurity.org/files/94407/moaub-msunicode.txt http://packetstormsecurity.org/files/94407/Month-Of-Abysssec-Undisclosed-Bugs-Microsoft-Unicode-Scripts-Processor.html Fri, 01 Oct 2010 02:31:35 GMT Month Of Abysssec Undisclosed Bugs - The Microsoft unicode scripts processor suffers from a remote code execution vulnerability. Month Of Abysssec Undisclosed Bugs - ASPMass Shopping Cart http://packetstormsecurity.org/files/94405/moaub-aspmass.txt http://packetstormsecurity.org/files/94405/moaub-aspmass.txt http://packetstormsecurity.org/files/94405/Month-Of-Abysssec-Undisclosed-Bugs-ASPMass-Shopping-Cart.html Fri, 01 Oct 2010 02:28:29 GMT Month Of Abysssec Undisclosed Bugs - ASPMass Shopping Cart suffers from a file upload cross site request forgery vulnerability. Microsoft IIS 6 Denial Of Service http://packetstormsecurity.org/files/94404/msiis6-dos.pdf http://packetstormsecurity.org/files/94404/msiis6-dos.pdf http://packetstormsecurity.org/files/94404/Microsoft-IIS-6-Denial-Of-Service.html Fri, 01 Oct 2010 02:26:31 GMT Microsoft IIS 6 suffers from an ASP denial of service stack overflow vulnerability. Joomla JE Guestbook 1.0 Local File Inclusion / SQL Injection http://packetstormsecurity.org/files/94385/joomlajegb-lfisql.txt http://packetstormsecurity.org/files/94385/joomlajegb-lfisql.txt http://packetstormsecurity.org/files/94385/Joomla-JE-Guestbook-1.0-Local-File-Inclusion-SQL-Injection.html Thu, 30 Sep 2010 16:41:45 GMT The Joomla JE Guestbook component version 1.0 suffers from local file inclusion and remote blind SQL injection vulnerabilities. Pluck 4.6.3 Cross Site Scripting http://packetstormsecurity.org/files/94376/pluck463-xss.txt http://packetstormsecurity.org/files/94376/pluck463-xss.txt http://packetstormsecurity.org/files/94376/Pluck-4.6.3-Cross-Site-Scripting.html Thu, 30 Sep 2010 02:12:27 GMT Pluck version 4.6.3 suffers from a cross site scripting vulnerability. GetSimple CMS 2.01 Cross Site Scripting http://packetstormsecurity.org/files/94375/getsimplecms201-xss.txt http://packetstormsecurity.org/files/94375/getsimplecms201-xss.txt http://packetstormsecurity.org/files/94375/GetSimple-CMS-2.01-Cross-Site-Scripting.html Thu, 30 Sep 2010 02:11:30 GMT GetSimple CMS version 2.01 suffers from a cross site scripting vulnerability. Zimplit 3.0 Local File Inclusion http://packetstormsecurity.org/files/94374/zimplit-lfi.txt http://packetstormsecurity.org/files/94374/zimplit-lfi.txt http://packetstormsecurity.org/files/94374/Zimplit-3.0-Local-File-Inclusion.html Thu, 30 Sep 2010 02:10:06 GMT Zimplit version 3.0 suffers from a local file inclusion vulnerability. Quick Player 1.3 Unicode SEH Exploit http://packetstormsecurity.org/files/94356/quickplayer-sehoverwrite.txt http://packetstormsecurity.org/files/94356/quickplayer-sehoverwrite.txt http://packetstormsecurity.org/files/94356/Quick-Player-1.3-Unicode-SEH-Exploit.html Thu, 30 Sep 2010 02:02:37 GMT Quick Player version 1.3 unicode SEH exploit. XFS Deleted Inode Information Disclosure http://packetstormsecurity.org/files/94354/stale_handle.c http://packetstormsecurity.org/files/94354/stale_handle.c http://packetstormsecurity.org/files/94354/XFS-Deleted-Inode-Information-Disclosure.html Thu, 30 Sep 2010 01:58:33 GMT Local information disclosure exploit that makes use of an XFS filesystem vulnerability. PHP Shop Cart 5.9 SQL Injection http://packetstormsecurity.org/files/94350/phpshopcart-sql.txt http://packetstormsecurity.org/files/94350/phpshopcart-sql.txt http://packetstormsecurity.org/files/94350/PHP-Shop-Cart-5.9-SQL-Injection.html Wed, 29 Sep 2010 20:27:01 GMT PHP Shop Cart version 5.9 suffers from a remote SQL injection vulnerability. PdShop Pro Online Store System SQL Injection http://packetstormsecurity.org/files/94349/pdshop-sql.txt http://packetstormsecurity.org/files/94349/pdshop-sql.txt http://packetstormsecurity.org/files/94349/PdShop-Pro-Online-Store-System-SQL-Injection.html Wed, 29 Sep 2010 20:25:45 GMT PdShop Pro Online Store System suffers from a remote SQL injection vulnerability. BPJewelry Store SQL Injection http://packetstormsecurity.org/files/94348/bpjewelry-sql.txt http://packetstormsecurity.org/files/94348/bpjewelry-sql.txt http://packetstormsecurity.org/files/94348/BPJewelry-Store-SQL-Injection.html Wed, 29 Sep 2010 20:24:31 GMT BPJewelry Store suffers from a remote SQL injection vulnerability. MODx Revolution 2.0.2-pl Local File Inclusion http://packetstormsecurity.org/files/94345/modx202pl-lfi.txt http://packetstormsecurity.org/files/94345/modx202pl-lfi.txt http://packetstormsecurity.org/files/94345/MODx-Revolution-2.0.2-pl-Local-File-Inclusion.html Wed, 29 Sep 2010 20:16:08 GMT MODx Revolution version 2.0.2-pl suffers from a local file inclusion vulnerability. MODx Revolution 2.0.2-pl Cross Site Request Forgery http://packetstormsecurity.org/files/94344/modx202pl-xsrf.txt http://packetstormsecurity.org/files/94344/modx202pl-xsrf.txt http://packetstormsecurity.org/files/94344/MODx-Revolution-2.0.2-pl-Cross-Site-Request-Forgery.html Wed, 29 Sep 2010 20:15:12 GMT MODx Revolution version 2.0.2-pl suffers from a cross site request forgery vulnerability. MODx Revolution 2.0.2-pl Cross Site Scripting http://packetstormsecurity.org/files/94343/modx202pl-xss.txt http://packetstormsecurity.org/files/94343/modx202pl-xss.txt http://packetstormsecurity.org/files/94343/MODx-Revolution-2.0.2-pl-Cross-Site-Scripting.html Wed, 29 Sep 2010 20:13:55 GMT MODx Revolution version 2.0.2-pl suffers from a reflected cross site scripting vulnerability. phpMyFAQ 2.6.8 Cross Site Scripting http://packetstormsecurity.org/files/94342/phpmyfaq268-xss.txt http://packetstormsecurity.org/files/94342/phpmyfaq268-xss.txt http://packetstormsecurity.org/files/94342/phpMyFAQ-2.6.8-Cross-Site-Scripting.html Wed, 29 Sep 2010 20:12:46 GMT phpMyFAQ version 2.6.8 suffers from a cross site scripting vulnerability. Month Of Abysssec Undisclosed Bugs - Microsft Excel http://packetstormsecurity.org/files/94341/moaub29-msexcel.tgz http://packetstormsecurity.org/files/94341/moaub29-msexcel.tgz http://packetstormsecurity.org/files/94341/Month-Of-Abysssec-Undisclosed-Bugs-Microsft-Excel.html Wed, 29 Sep 2010 20:06:09 GMT Month Of Abysssec Undisclosed Bugs - Microsoft Excel suffers from a SxView record parsing heap memory corruption vulnerability.