Ubuntu Security Notice 4611-1 - Steven French discovered that Samba incorrectly handled ChangeNotify permissions. A remote attacker could possibly use this issue to obtain file name information. Bas Alberts discovered that Samba incorrectly handled certain winbind requests. A remote attacker could possibly use this issue to cause winbind to crash, resulting in a denial of service. Francis Brosnan Blázquez discovered that Samba incorrectly handled certain invalid DNS records. A remote attacker could possibly use this issue to cause the DNS server to crash, resulting in a denial of service. Various other issues were also addressed.
50b6a7c27f354ac0c1d8d77028b90901e29fe315e929406d2422494f2552bd73
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
d39dd235b20123b43fb5cee5acd54edcf69e396c79fe833b6d59d98be7c3c7e9
sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.
80cc07e08cc7e9662c6b8ce99fd3ae8706458b8009c56369dbb1f57b3b6634c5
This archive contains all of the 154 exploits added to Packet Storm in October, 2020.
b5cfc872c238a61ff5883d14c4a76378974806ddf56ff456ce4fb59e34b2c367
WordPress Simple File List plugin version 5.4 suffers from a remote shell upload vulnerability.
b6d82218d0df472d65a5d494c1d69fb41b45f32557c4cc264981441b60469b07
Multi Restaurant Table Reservation System version 1.0 suffers from an unauthenticated remote SQL injection vulnerability.
2071310279def3d23ba0ce602c8265274777ed32c9f3792d1ab4763f2aee8cc3
Multi Restaurant Table Reservation System version 1.0 suffers from multiple persistent cross site scripting vulnerabilities.
d89b16c70cef2c278a312fb7085b95a157aa530375424a0d44c73275188db1e8
Monitorr version 1.7.6m suffers from an authorization bypass vulnerability.
b58f16284ec1093bea1656c90a5e5aaeb04539828bb4128ae4571e8f32c27e14
Monitorr version 1.7.6m suffers from an unauthenticated remote code execution vulnerability.
2dec5b27b3362abcc1abe3c0b5f46108fbb55c4f2b8d9f21cc500e2a14380d23