[dos] – Viber 4.2.0 – Non-Printable Characters Handling Denial of Service Vulnerability

Viber 4.2.0 – Non-Printable Characters Handling Denial of Service Vulnerability

[webapps] – Ganglia Web Frontend < 3.5.1 – PHP Code Execution

Ganglia Web Frontend < 3.5.1 – PHP Code Execution

[webapps] – Cyberoam Firewall CR500iNG-XP – 10.6.2 MR-1 – Blind SQL Injection Vulnerability

Cyberoam Firewall CR500iNG-XP – 10.6.2 MR-1 – Blind SQL Injection Vulnerability

[local] – Apple OS X Entitlements Rootpipe Privilege Escalation

Apple OS X Entitlements Rootpipe Privilege Escalation

[webapps] – Edimax PS-1206MF – Web Admin Auth Bypass

Edimax PS-1206MF – Web Admin Auth Bypass

[remote] – PCMan FTP Server 2.0.7 – RENAME Command Buffer Overflow

PCMan FTP Server 2.0.7 – RENAME Command Buffer Overflow

Apple OS X Entitlements Rootpipe Privilege Escalation

This Metasploit module exploits the rootpipe vulnerability and bypasses Apple’s initial fix for the issue by injecting code into a process with the ‘admin.writeconfig’ entitlement.

[webapps] – Samsung SyncThruWeb 2.01.00.26 – SMB Hash Disclosure

Samsung SyncThruWeb 2.01.00.26 – SMB Hash Disclosure

[remote] – MS SQL Server 2000/2005 SQLNS.SQLNamespace COM Object Refresh() Unhandled Pointer Exploit

MS SQL Server 2000/2005 SQLNS.SQLNamespace COM Object Refresh() Unhandled Pointer Exploit

[dos] – freeSSHd 1.3.1 – Denial of Service Vulnerability

freeSSHd 1.3.1 – Denial of Service Vulnerability