Subscribe via feed.

Mac OS X 10.8.4 Local Privilege Escalation

Mac OS X versions 10.8.4 and below local root privilege escalation exploit written in Python.

Tags: , ,

Packet Storm Advisory 2013-0827-1 – Oracle Java ByteComponentRaster.verify()

The ByteComponentRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a memory corruption vulnerability that allows bypassing of “dataOffsets[]” boundary checks. This vulnerability allows for remote code execution. User interaction is required for this exploit in that the target must visit a malicious page or open a malicious file

Tags: , ,

Packet Storm Exploit 2013-0827-1 – Oracle Java ByteComponentRaster.verify() Memory Corruption

The ByteComponentRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a memory corruption vulnerability that allows bypassing of “dataOffsets[]” boundary checks. This exploit code demonstrates remote code execution by popping calc.exe. It was obtained through the Packet Storm Bug Bounty program.

Tags: , , , ,

[remote] – dreamMail e-mail client v4.6.9.2 Stored XSS

Posted by deepcore under exploit, m$, Security, XSS (No Respond)

dreamMail e-mail client v4.6.9.2 Stored XSS

Tags: , , ,

[dos] – Samba nttrans Reply – Integer Overflow Vulnerability

Posted by deepcore under exploit, m$, Security (No Respond)

Samba nttrans Reply – Integer Overflow Vulnerability

Tags: , , ,

[webapps] – DeWeS 0.4.2 – Directory Traversal Vulnerability

Posted by deepcore under exploit, m$, Security (No Respond)

DeWeS 0.4.2 – Directory Traversal Vulnerability

Tags: , ,

[webapps] – Foreman (Red Hat OpenStack/Satellite) users/create Mass Assignment

Posted by deepcore under exploit, m$, Security (No Respond)

Foreman (Red Hat OpenStack/Satellite) users/create Mass Assignment

Tags: , , , ,

[webapps] – Netgear ProSafe – Denial of Service Vulnerability

Posted by deepcore under exploit, m$, Security (No Respond)

Netgear ProSafe – Denial of Service Vulnerability

Tags: , ,

[webapps] – Netgear ProSafe – Information Disclosure Vulnerability

Posted by deepcore under exploit, m$, Security (No Respond)

Netgear ProSafe – Information Disclosure Vulnerability

Tags: , , ,

[webapps] – CBHotel Hotel Software and Booking system 1.8 – Multiple Vulnerabilities

Posted by deepcore under exploit, m$, Security, software (No Respond)

CBHotel Hotel Software and Booking system 1.8 – Multiple Vulnerabilities

Tags: , , , ,