.:[ packet storm ]:.
                             
we care because you do
we care because you do

 Section:  .. / 0601-advisories  /

Page 23 of 23
<< 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 >> Files 550 - 569 of 569
Currently sorted by: File SizeSort By: File Name, Last Modified

 ///  File Name: evuln-mylittlehomepage.txt
Description:
my little homepage v2004.04.20 is vulnerable to XSS
Author:Aliaksandr Hartsuyeu
Homepage:http://evuln.com/
File Size:1189
Last Modified:Jan 27 09:22:05 2006
MD5 Checksum:b45b86521b12da4c27fd7a66264c044f

 ///  File Name: communiLDAP.txt
Description:
Multiple vulnerabilities in the LDAP component of CommuniGate Pro Server version 5.0.6 have been uncovered.
Homepage:http://www.gleg.net/protover_ldap.shtml
File Size:1187
Last Modified:Jan 30 00:14:06 2006
MD5 Checksum:74f6699d822dec4b4cfa6267fa505b4d

 ///  File Name: EV0023.txt
Description:
MyPhPim version 01.05 allows for arbitrary file uploads.
Author:Aliaksandr Hartsuyeu
File Size:1088
Last Modified:Jan 12 18:01:57 2006
MD5 Checksum:5c990a6474df82aef4b93dc2549df432

 ///  File Name: ZyXelP2000W.txt
Description:
The Zyxel P2000W (Version 2) VoIP wireless phone has an undocumented port, UDP/9090, that provides an unauthenticated attacker information about the phone, specifically the phone's MAC address and software version.
Author:Shawn Merdinger
File Size:1083
Last Modified:Jan 22 22:50:29 2006
MD5 Checksum:96ca6bc9af5bca592324b49bf42a323f

 ///  File Name: AndoNET-2004.09.02.txt
Description:
AndoNET Blog v2004.09.02 suffers from SQL injection in comentarios.php via the "entrada" variable.
Author:Aliaksandr Hartsuyeu
Homepage:http://evuln.com/vulns/50/exploit.html
File Size:1038
Last Modified:Jan 27 09:19:13 2006
MD5 Checksum:a7f498b6bc40509b055df87fb29702aa

 ///  File Name: oracle_sql_injection_kupvft.txt
Description:
The package SYS.KUPV$FT contains 3 SQL injection vulnerabilities in the functions ATTACH_JOB, OPEN_JOB, HAS_PRIVS. Oracle fixed these vulnerabilities with the package dbms_assert.
Author:Alexander Kornbrust
Homepage:http://www.red-database-security.com/advisory/oracle_sql_injection_kupv
File Size:1022
Last Modified:Jan 25 08:22:15 2006
MD5 Checksum:9e4912b4411503846108be173b49ba03

 ///  File Name: MPMHP-180W.txt
Description:
MPM HP-180W VoIP Wireless Desktop Phone has an undocumented port and service, UDP/9090, that provides an unauthenticated attacker information about the phone, specifically the phone's MAC address and software version.
Author:Shawn Merdinger
File Size:1010
Last Modified:Jan 22 22:48:58 2006
MD5 Checksum:fadfe8f8221ae189065ce55a612f150c

 ///  File Name: EV0025.txt
Description:
ACal version 2.2.5 is susceptible to system bypass.
Author:Aliaksandr Hartsuyeu
File Size:972
Last Modified:Jan 15 17:33:59 2006
MD5 Checksum:008c5f7db9c3c538ba57df36d1495d7b

 ///  File Name: EV0020.txt
Description:
Foxrum BBCode version 4.0.4f is susceptible to cross site scripting attacks.
Author:Aliaksandr Hartsuyeu
File Size:972
Last Modified:Jan 10 05:56:44 2006
MD5 Checksum:a8f56cc2e26a7bc50b628635e580c8d6

 ///  File Name: microBlog-sql.txt
Description:
microBlog version 2.0 RC-10 does not properly sanitize the $month and $year variables which can lead to SQL injection.
Author:Aliaksandr Hartsuyeu
Homepage:http://evuln.com/vulns/35/summary/bt/
File Size:969
Last Modified:Jan 22 23:12:49 2006
MD5 Checksum:18a0152fe9ae5e6e3fe93316307576d8

 ///  File Name: BlogPHP-auth.txt
Description:
It is possible to bypass authentication on BlogPHP v1.0 due to an unsanitized POST variable.
Author:Aliaksandr Hartsuyeu
Homepage:http://evuln.com/vulns/34/summary.html
File Size:954
Last Modified:Jan 22 23:09:39 2006
MD5 Checksum:1c5579f7c28d2c60190c07d9dcb385c6

 ///  File Name: microBlog-script.txt
Description:
microBlog version 2.0 RC-10 does not sanitize the URL BBcode tag leading to possible arbitrary script code insertion.
Author:Aliaksandr Hartsuyeu
Homepage:http://evuln.com/vulns/36/summary/bt/
File Size:922
Last Modified:Jan 22 23:15:12 2006
MD5 Checksum:423d03e81881f8df3d54a9fdb130c4de

 ///  File Name: Flog-infoz.txt
Description:
Flog version 1.0.1 doesn't protect directory information by default leading to disclosure of sensitive data.
Author:Aliaksandr Hartsuyeu
Homepage:http://evuln.com/vulns/38/summary/bt/
File Size:903
Last Modified:Jan 22 23:39:52 2006
MD5 Checksum:94e1fb55cf9ecd7c409c8c680fcfb138

 ///  File Name: PHPFusebox4.0.6.txt
Description:
PHP Fusebox 4.0.6 suffers from an HTML injection vulnerability. POC included.
Author:Ph03n1X
File Size:882
Last Modified:Jan 22 23:04:11 2006
MD5 Checksum:30cfeb71119bd38542eedca6211d9f28

 ///  File Name: xlpd.txt
Description:
xlpd 2.1 is susceptible to a denial of service condition when receiving too many connections from the same IP address.
Author:dr_insane
File Size:848
Last Modified:Jan 8 06:07:33 2006
MD5 Checksum:557dc2b7f86ce2cb6089ab4d26c5da53

 ///  File Name: bbcodeURL.txt
Description:
PunBB BBCode suffers from a script injection vulnerability.
Author:Night_Warrior
File Size:774
Last Modified:Jan 22 00:56:09 2006
MD5 Checksum:0a0e8b3b5364209e9cb3b12fb999de4f

 ///  File Name: linksysBEFVP41.txt
Description:
The Linksys BEFVP41 can be crashed when getting sent a maliciously crafted packet.
Author:paul14075
File Size:596
Last Modified:Jan 21 07:17:26 2006
MD5 Checksum:25a1e6c4620eb70c8c965e269d1c0736

 ///  File Name: PowerPortal-XSS.txt
Description:
PowerPortal suffers from multiple XSS problems. POC included.
Author:Night_Warrior
File Size:512
Last Modified:Jan 22 23:30:07 2006
MD5 Checksum:75af29d99cb3434170dce31f9ea69244

 ///  File Name: WBNews-XSS.txt
Description:
WBNews versions less than v1.1.0 suffer from XSS in the "Name" field.
Author:DragoN
File Size:205
Last Modified:Jan 22 23:31:56 2006
MD5 Checksum:a22d430df32ef543b9bed5ac9cae045f