Гелерия

PacketStormSecurity

dmp161lst1-overflow.txt - Destiny Media Player version 1.61 .lst file local buffer overflow proof of concept exploit that spawns calc.exe.
ayemsisemlak-disclose.txt - Ayemsis Emlak Pro suffers from a remote database disclosure vulnerability.
ayemsisemlak-sql.txt - Ayemsis Emlak Pro suffers from a remote SQL injection vulnerability that allows for authentication bypass.
cybershadecms-rfi.txt - Cybershade CMS version 0.2b remote file inclusion exploit that uses index.php.
joomlasimplereview-sql.txt - The Joomla Simple Review component version 1.x suffers from a remote SQL injection vulnerability.
RFIDIOt-0.1v.tgz - RFIDIOt is a python library for exploring RFID devices. It currently drives a couple of RFID readers made by ACG, called the HF Dual ISO and the LFX. Includes sample programs to read/write tags and the beginnings of library routines to handle the data structures of specific tags like MIFARE(r). This is the Windows version.
valsmith_colin_blog_spam.pdf - Whitepaper called Inside the Malicious World of Blog Comment Spam.
dquist_valsmith_further_down_the_vm_spiral.pdf - Presentation called Further Down the VM Spiral.
valsmith_dquist_hacking_malware.pdf - Presentation called Hacking Malware - Offense is the new Defense.
indianinstitute-sql.txt - The Indian Institute of Technology in Kharagpur suffers from a remote SQL injection vulnerability.
litolite-sqlxss.txt - Lito Lite CMS blind SQL injection and cross site scripting exploit.
destiny161lst-overflow.txt - Destiny Media Player version 1.61 .lst file local buffer overflow proof of concept exploit.
webspell4-sql.txt - Webspell version 4 suffers from a SQL injection vulnerability that allows for authentication bypass.
destiny161-overflow.txt - Destiny Media Player version 1.61 .m3u file local stack overflow exploit.
dsa-1695-1.txt - Debian Security Advisory 1695-1 - The regular expression engine of Ruby, a scripting language, contains a memory leak which can be triggered remotely under certain circumstances, leading to a denial of service condition (CVE-2008-3443).
...