Quantcast
Channel: Files Date: 2013-08-11 to 2013-08-12 ≈ Packet Storm
Browsing all 6 articles
Browse latest View live

HTCSyncManagerUpdate DLL Hijacking

HTCSyncManagerUpdate suffers from a DLL hijacking vulnerability.

View Article


Tienda-Online-Economica Cross Site Scripting

Tienda-Online-Economica suffers from a cross site scripting vulnerability. Note that this advisory has site-specific information.

View Article

vbBux / vbPlaza 4.0.3 SQL Injection

vbBux / vbPlaza version 4.0.3 suffers from a remote SQL injection vulnerability.

View Article

Gnew 2013.1 Cross Site Scripting / SQL Injection

Gnew 2013.1 suffers from cross site scripting and remote SQL injection vulnerabilities.

View Article

Sybase EAServer XXE Injection

This is a supplement to the SA-20130719-0 SEC Consult advisory that notes an additional attack vector for an XXE injection vulnerability in Sybase EAServer.

View Article


Ruby on Rails Known Secret Session Cookie Remote Code Execution

This Metasploit module implements remote command execution on Ruby on Rails applications. Prerequisite is knowledge of the "secret_token" (Rails 2/3) or "secret_key_base" (Rails 4). The values for...

View Article
Browsing all 6 articles
Browse latest View live