what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 13 of 13 RSS Feed

Files Date: 2004-08-17

gv-exploitv2.c
Posted Aug 17, 2004
Authored by infamous42md

Local buffer overflow exploit that makes use of five vulnerabilities in the gv postscript viewer. Spawns a shell on port 7000.

tags | exploit, overflow, shell, local, vulnerability
SHA-256 | 44962067ebaac38a04a075b79a4c05cd40a1b6072e4b584506cb80e800edfd4f
50051.html
Posted Aug 17, 2004
Authored by Jurgen Schmidt | Site heise.de

With Service Pack 2, Microsoft introduces a new security feature which warns users before executing files that originate from an untrusted location (zone) such as the Internet. There are two flaws in the implementation of this feature: a cmd issue and the caching of ZoneIDs in Windows Explorer. The Windows command shell cmd ignores zone information and starts executables without warnings. Virus authors could use this to spread viruses despite the new security features of SP2.

tags | advisory, shell, virus
systems | windows
SHA-256 | 3cdb81a215c43759d6a855b9532ac2312dc51fbdc391b844971c7d3464f75905
199.pdf
Posted Aug 17, 2004
Authored by Xiaoyun Wang, Dengguo Feng, Xuejia Lai, Hongbo Yu | Site eprint.iacr.org

Whitepaper written on MD5 collisions that have been discovered.

tags | paper
SHA-256 | 0513838a8a73686d1626fe59ec75db5be286d44a7cc977a9826318662ea3a27d
sha0-broken.html
Posted Aug 17, 2004
Authored by Pascal Junod | Site mail-archive.com

Apparently SHA-0 has been broken. This is information obtained from a French mailing-list that shows a collision. This data is to be presented at CRYPTO '04.

tags | encryption, cryptography
SHA-256 | b3607c58b2f78efd56d6386e19b19d049cf31d307272923c94635ef49cbdaf5c
dnbc.sh.gz
Posted Aug 17, 2004
Authored by Christophe Casalegno | Site brain.digital-network.net

Digital Network Bind Chrooter is a simple bash script that puts a BIND server in a chroot jail. Install BIND, launch the script, and restart named.

tags | tool, bash
systems | unix
SHA-256 | 35e2896d950725f5223db9fd277c220ed53d29c85cf8fef8c61a2ec38d0ed57d
ethereal-user-guide.v2.pdf
Posted Aug 17, 2004
Authored by Richard Sharpe, Ed Warnicke | Site my.lulu.com

Ethereal is one of those packages that many network managers would love to be able to use, but they are often prevented from getting what they would like from Ethereal because of the lack of documentation. This document is part of an effort on the part of the Ethereal team to improve the accessibility of Ethereal.

Changes: Updated version.
tags | tool, sniffer
SHA-256 | ebc1a58a068ea49bb414e8923bc030bc9f2104ee95e9670e6edab9077bc0dc7f
openaanval-1.50-stable.tar.gz
Posted Aug 17, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: New features of 1.50 include all new notes and incident tracking system. Additional syslog support now works with any device including cisco, sonicwall and more. New setup and installation system and much, much more.
tags | tool, web, sniffer
SHA-256 | 6954b53c5533f2bbcd1430594223d437edf739a08e572c6ed370fca5fe17f538
dnsspoof.zip
Posted Aug 17, 2004
Authored by priestmaster | Site priestmaster.org

Utility that automates the DNS spoofing vulnerability in Microsoft Windows XP SP1 as described in the Phrack 62 linenoise chapter. It generates a script file that launches the netwox application with correct parameters. It works with Windows and Linux. Binary files are included.

tags | tool, spoof
systems | linux, windows, unix
SHA-256 | 85bdd1f07f2ad093ca6f2d51d289fbb5d912c199a4d830314571f23051a130fa
Secunia Security Advisory 12299
Posted Aug 17, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in rxvt-unicode, which potentially can be exploited by malicious, local users to manipulate or access sensitive information. The problem is that rxvt-unicode keeps open file handlers to other terminal windows when spawning children. This may potentially allow access to arbitrary terminal windows. This vulnerability affects versions prior to 3.6.

tags | advisory, arbitrary, local
systems | windows
SHA-256 | 11fe8ed0197e6b37e12cfda5377985d5bb7431937edd785645f974bb957c3104
rsync.nochroot.html
Posted Aug 17, 2004
Site samba.org

rsync versions 2.6.2 and below have a flaw that allows malicious users to read or write arbitrary files on a vulnerable system. In order to exploit this vulnerability, the rsync daemon cannot be running in a chroot.

tags | advisory, arbitrary
SHA-256 | c1db552a349b4582ecc14879891615a1226530a7b6645bcf16da893b2cb72992
security-advisory-001.html
Posted Aug 17, 2004
Site xephyrus.com

Xephyrus Libraries Security Advisory JST-001 - JST versions 3.0 and below are susceptible to a directory traversal vulnerability in the Xephyrus Java Simple Template Engine.

tags | advisory, java
SHA-256 | cad20b5f1ffc56b8e4e3a7821bedd76503c1a61293311e7d4b0221f8b8703172
Secunia Security Advisory 12297
Posted Aug 17, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Simple Form, which can be exploited by malicious people to use it as an open mail relay. Versions below 2.2 are affected.

tags | advisory
SHA-256 | cb56ff226ce716649193468abf714ecfb37452ac5bb707ded5252319d93775ff
Secunia Security Advisory 12260
Posted Aug 17, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debasis Mohanty has reported a vulnerability in CuteNews, which can be exploited by malicious people to conduct cross-site scripting attacks.

tags | advisory, xss
SHA-256 | 270d7f16a20bd7bb7d42df8afce6a34643901124159bc0a4b51413420fa5f8ee
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close