Subscribe via feed.
Archive for October, 2015

issetugid() + rsh + libmalloc OS X Local Root

Posted by deepcore under exploit (No Respond)

Last Updated on October 3, 2015 by deepcore The default root-suid binary /usr/bin/rsh on Mac OS X uses execv() in an insecure manner. /usr/bin/rsh will invoke /usr/bin/rlogin if launched with only a host argument, without dropping privileges or clearing the environment. This exploit will pass “MallocLogFile” to /usr/bin/rsh, which is then passed on to rlogin […]

ElasticSearch Path Traversal Arbitrary File Download

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore Proof of concept code that demonstrates a path traversal vulnerability in ElasticSearch that allows for arbitrary file disclosure.

MakeSFX.exe 1.44 Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore MakeSFX.exe version 1.44 suffers from stack-based buffer overflow vulnerability.

Kaspersky Small Office Security 13.0.4.233 Unsalted Hash

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Small Office Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.

Kaspersky Total Security 15.0.1.415 Unsalted Hash

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Total Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.

Kaspersky Internet Security 15.0.2.361 Unsalted Hash

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Internet Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.

Kaspersky Anti-Virus 15.0.1.415 Unsalted Hash

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Anti-Virus software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.

Kaspersky Endpoint Security For Windows 8.1.0.1042 / 10.2.1.23 Unsalted Hash

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore The SySS GmbH found out that the admin password for protecting different functions of the Kaspersky Endpoint Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.

Packet Storm New Exploits For September, 2015

Posted by deepcore under exploit (No Respond)

Last Updated on October 2, 2015 by deepcore This archive contains 191 exploits that were added to Packet Storm in September, 2015.

Apple Security Advisory 2015-09-30-01

Posted by deepcore under Apple (No Respond)

Last Updated on October 2, 2015 by deepcore Apple Security Advisory 2015-09-30-01 – iOS 9.0.2 is now available and addresses a lock screen vulnerability.

Tags: , ,