Exploits

Sep 15, 2008 2 Nortel Switched Firewall Products SNMPv3 HMAC Authentication Bypass
Nortel has acknowledged a vulnerability in Nortel Switched Firewall products, which can be exploited by malicious people to spoof authenticated SNMPv3 packets.
http://www.exploits.net/link/3353
Sep 15, 2008 2 StingRay FTS Cross-Site Scripting Vulnerability
Marc Ruef has reported a vulnerability in StingRay FTS, which can be exploited by malicious people to conduct cross-site scripting attacks.
http://www.exploits.net/link/3352
Sep 15, 2008 3 PSCRIPT Forum "showprofil.php" SQL Injection
-tmh- has reported a vulnerability in Powies PSCRIPT Forum (pForum), which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/3351
Sep 15, 2008 3 WebSphere Application Server Unspecified Vulnerability
A vulnerability with an unknown impact has been reported in WebSphere Application Server.
http://www.exploits.net/link/3350
Sep 15, 2008 3 Debian update for git-core
Debian has issued an update for git-core. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
http://www.exploits.net/link/3349
Sep 15, 2008 1 Linux Kernel s390 ptrace Local Denial of Service
A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
http://www.exploits.net/link/3348
Sep 15, 2008 3 Ruby on Rails ":offset" and ":limit" SQL Injection Vulnerabilities
Some vulnerabilities have been reported in Ruby on Rails, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/3347
Sep 15, 2008 3 Ruby on Rails ":offset" and ":limit" SQL Injection Vulnerabilities
Some vulnerabilities have been reported in Ruby on Rails, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/3346
Sep 15, 2008 3 Ruby on Rails ":offset" and ":limit" SQL Injection Vulnerabilities
Some vulnerabilities have been reported in Ruby on Rails, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/3345
Sep 15, 2008 3 TalkBack "language" Local File Inclusion
SirGod has discovered a vulnerability in TalkBack, which can be exploited by malicious people to disclose sensitive information.
http://www.exploits.net/link/3344
Sep 15, 2008 4 Apple iPhone Multiple Vulnerabilities
Multiple vulnerabilities have been reported in Apple iPhone, which can be exploited by malicious applications to bypass certain security features, and by malicious people to poison the DNS cache, spoof TCP connections, or potentially compromise a user's device.
http://www.exploits.net/link/3343
Sep 15, 2008 2 ParaNews "news.php" Cross-Site Scripting
Xylitol has discovered two vulnerabilities in ParaNews, which can be exploited by malicious people to conduct cross-site scripting attacks.
http://www.exploits.net/link/3342
Sep 15, 2008 3 Kolab Server ClamAV Denial of Service
A vulnerability has been reported in Kolab Server, which can be exploited by malicious people to cause a DoS (Denial of Service).
http://www.exploits.net/link/3341
Sep 15, 2008 3 phsBlog "sql_cid" SQL Injection Vulnerability
Khashayar Fereidani has discovered a vulnerability in phsBlog, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/3340
Sep 15, 2008 2 Sun Solaris update for bzip2
Sun has issued an update for bzip2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
http://www.exploits.net/link/3339
Sep 15, 2008 3 SPAW Editor PHP Edition Unspecified Vulnerability
A vulnerability with unknown impact has been reported in SPAW Editor PHP Edition.
http://www.exploits.net/link/3338
Sep 12, 2008 2 ZoneAlarm Internet Security Suite "multiscan.exe" Buffer Overflow
Juan Pablo Lopez Yacubian has discovered a vulnerability in ZoneAlarm Internet Security Suite, which can be exploited by malicious people to compromise a user's system.
http://www.exploits.net/link/3337
Sep 12, 2008 3 D-iscussion Board "topic" Local File Inclusion Vulnerability
SirGod has discovered a vulnerability in D-iscussion Board, which can be exploited by malicious people to disclose sensitive information.
http://www.exploits.net/link/3336
Sep 12, 2008 3 Easy Photo Gallery Multiple Vulnerabilities
Multiple vulnerabilities have been reported in Easy Photo Gallery, which can be exploited by malicious people to bypass certain security restrictions, and conduct SQL injection and cross-site scripting attacks.
http://www.exploits.net/link/3335
Sep 12, 2008 3 WebCMS.es Cross-Site Scripting and SQL Injection Vulnerabilities
Some vulnerabilities have been reported in WebCMS.es, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
http://www.exploits.net/link/3334
Sep 12, 2008 3 Fedora update for wordpress
Fedora has issued an update for wordpress. This fixes a vulnerability, which can be exploited by malicious people to guess automatically generated passwords.
http://www.exploits.net/link/3333
Sep 12, 2008 3 WordPress Insecure Password Generation Vulnerability
Stefan Esser has reported a vulnerability in WordPress, which can be exploited by malicious people to guess automatically generated passwords.
http://www.exploits.net/link/3332
Sep 12, 2008 3 IntegraMOD Backup Directory Information Disclosure
TheJT has reported a security issue in IntegraMOD, which can be exploited by malicious people to disclose potentially sensitive information.
http://www.exploits.net/link/3331
Sep 12, 2008 3 Unreal Engine Format String Vulnerabilities
Luigi Auriemma has reported some vulnerabilities in the Unreal Engine, which can potentially be exploited by malicious people to compromise a user's system.
http://www.exploits.net/link/3330
Sep 12, 2008 3 phpVID "cat" SQL Injection Vulnerability
r45c4l has reported a vulnerability in phpVID, which can be exploited by malicious people to conduct SQL injection attacks.
http://www.exploits.net/link/3329
Sep 12, 2008 3 Ubuntu update for libxml2
Ubuntu has issued an update for libxml2. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.
http://www.exploits.net/link/3328
Sep 12, 2008 3 DotNetNuke Multiple Vulnerabilities
Some vulnerabilities have been reported in DotNetNuke, which can be exploited by malicious users to gain escalated privileges and by malicious people to bypass certain security restrictions and potentially compromise a vulnerable system.
http://www.exploits.net/link/3327
Sep 12, 2008 3 Fedora update for tomcat6
Fedora has issued an update for tomcat6. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, or disclose sensitive information.
http://www.exploits.net/link/3326
Sep 12, 2008 2 Fedora update for ipa
Fedora has issued an update for ipa. This fixes a vulnerability, which can be exploited by malicious people to disclose sensitive information.
http://www.exploits.net/link/3325
Sep 12, 2008 1 Debian update for linux-2.6.24
Debian has issued an update for linux-2.6.24. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and disclose potentially sensitive information.
http://www.exploits.net/link/3324