what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 20 of 20 RSS Feed

Files from Nahuel Grisolia

Email addressngrisolia at cybsec.com
First Active2009-12-05
Last Active2012-11-25
Websense Proxy Filter Bypass
Posted Nov 25, 2012
Authored by Nahuel Grisolia

Websense Proxy Filter suffers from a special request filter bypass vulnerability.

tags | exploit, bypass
SHA-256 | baed8e0e50663c0af97bdc3fb3969603f6c0b777526aa8c815ba613c81bf010a
Dolibarr ERP & CRM 3 Post-Auth OS Command Injection
Posted Apr 10, 2012
Authored by Nahuel Grisolia, sinn3r | Site metasploit.com

This Metasploit module exploits a vulnerability found in Dolibarr ERP/CRM's backup feature. This software is used to manage a company's business information such as contacts, invoices, orders, stocks, agenda, etc. When processing a database backup request, the export.php function does not check the input given to the sql_compat parameter, which allows a remote authenticated attacker to inject system commands into it, and then gain arbitrary code execution.

tags | exploit, remote, arbitrary, php, code execution
SHA-256 | f473f9176eddcff3e9c592e1ef0bfc7d0a0e762392a39abfb965fb4ca8ee9b22
Dolibarr ERP / CRM OS Command Injection
Posted Apr 7, 2012
Authored by Nahuel Grisolia

Dolibarr ERP and CRM suffers from an operating system command injection vulnerability. Versions 3.1.1 and below and 3.2.0 and below are affected.

tags | exploit
SHA-256 | 12cbccf9e032e58bbcfb558ce094025f740cd5c49cca609440f370009e6de991
OracleJSP Demos Cross Site Scripting
Posted Apr 21, 2011
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - OracleJSP Demos suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 5bfefcb5481f824b3423f3f289aad12f9df050127d36eb394de6d3da4757b8b7
McAfee Email Gateway Broken Access Control
Posted May 20, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - The McAfee Email Gateway suffers from a web administration broken access control.

tags | exploit, web
SHA-256 | 63ec88451263b5d26ff0faf2d7cdb4dee405a6b42a14401f0f1265af7d5c574d
McAfee Email Gateway Privilege Escalation
Posted Apr 7, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - The McAfee Email Gateway suffers from a privilege escalation vulnerability.

tags | exploit
SHA-256 | f4c786cf31412ec33ee8d4c4ab7dc4658486398b70e358e233f1576928ae0dd7
McAfee Email Gateway Information Disclosure
Posted Apr 7, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - The McAfee Email Gateway suffers from an information disclosure vulnerability.

tags | exploit, info disclosure
SHA-256 | 86d26114cf4646342a17e137d952f8bc35258d0bb9d555267865dd729eab939e
McAfee Email Gateway Cross Site Scripting
Posted Apr 7, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - The McAfee Email Gateway suffers from multiple reflected cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 9b067b163bc06b83fbb26762d4c25cac609b4dfb962a1e0a91112fbd74ed0648
McAfee Email Gateway Denial Of Service
Posted Apr 7, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - McAfee Email Gateway suffers from a denial of service vulnerability.

tags | exploit, denial of service
SHA-256 | d2aaa4d021d559741e0251eae6f55e8f7ec3febb6d7f6fa05ae2c4d2ae54e877
EGroupware Remote Command Execution
Posted Mar 16, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - EGroupware suffers from a remote command execution vulnerability. Versions 1.4.001 / 1.4.002 / 1.6.001 / 1.6.002 and Premium Line versions 9.1 and 9.2 are affected.

tags | exploit, remote
SHA-256 | 3466397f295950b24bff97a0cee044361200ce29c5b7a1d91b43a2823cc8cb53
EGroupware Cross Site Scripting
Posted Mar 16, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - EGroupware suffers from a reflected cross site scripting vulnerability. Versions 1.4.001 / 1.4.002 / 1.6.001 / 1.6.002 and Premium Line versions 9.1 and 9.2 are affected.

tags | exploit, xss
SHA-256 | 3975fad1bb46eca4d0023c780cf0920dfc6fb20955039a232c347c8e6f871d8b
OSSIM 2.2 Remote Command Execution
Posted Mar 16, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - OSSIM version 2.2 suffers from a remote command execution vulnerability.

tags | exploit, remote
SHA-256 | fa7bc7dccfc1eea54e33881d98d9b73763826b24c23c03bff189b25b91634c35
OSSIM 2.2 Shell Upload
Posted Mar 16, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - OSSIM version 2.2 suffers from an arbitrary file upload vulnerability.

tags | exploit, arbitrary, file upload
SHA-256 | d10ef69aff7ea865577efe7a578f5fb3c7ed3de34bb0c20f737359d8187ea269
OSSIM 2.2 File Download
Posted Mar 16, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - OSSIM version 2.2 suffers from an arbitrary file download vulnerability.

tags | exploit, arbitrary
SHA-256 | e29b9aeb2eeb3a569fddcaf311d34f8de151300ac2c2e8f59d863fcafe44dd56
IBM Lotus Domino Help Cross Site Scripting
Posted Mar 3, 2010
Authored by Nahuel Grisolia | Site cybsec.com

CYBSEC Security Advisory - The help section in IBM Lotus Domino version 7.0.2 suffers from a reflected cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 72903ba509e00eb29db00ca12641bb82767735d334ecdb962b8f56a08b2128d6
OSSIM 2.1.5 SQL Injection
Posted Dec 17, 2009
Authored by Nahuel Grisolia | Site cybsec.com

OSSIM version 2.1.5 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 7cc3b49f4711d46f63cefd403e0983db634921786a63ee6cba032f67cadb74ed
OSSIM 2.1.5 Command Execution
Posted Dec 17, 2009
Authored by Nahuel Grisolia | Site cybsec.com

OSSIM version 2.1.5 suffers from a remote command execution vulnerability.

tags | exploit, remote
SHA-256 | d205a042bfabf6e01b9c93862bdadbec93b500caf9172062f9992351f36497a8
OSSIM 2.1.5 File Upload
Posted Dec 16, 2009
Authored by Nahuel Grisolia | Site cybsec.com

OSSIM version 2.1.5 suffers from an arbitrary file upload vulnerability.

tags | exploit, arbitrary, file upload
SHA-256 | ea86b94506f7fe7ba87116f169c6f922c47f74b950264941b546b960df45380d
Achievo 1.4.2 Cross Site Scripting
Posted Dec 5, 2009
Authored by Nahuel Grisolia | Site cybsec.com

Achievo version 1.4.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | ad13c4066a6974de3d00a8e51c5932564f2bd764934024b97340dcf230447093
Achievo 1.4.2 Shell Upload
Posted Dec 5, 2009
Authored by Nahuel Grisolia | Site cybsec.com

Achievo version 1.4.2 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell, file upload
SHA-256 | fd1d0f43b6c990452149cbc6a039d9120d789b1241a985a07c1c3dbbaad86a33
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close