v

ZOC Terminal 7.25.5 Denial Of Service

ZOC Terminal version 7.25.5 denial of service proof of concept exploit.




v

dnsmasq-utils 2.79-1 Denial Of Service

dnsmasq-utils version 2.79-1 dhcp_release denial of service proof of concept exploit.




v

ZOC Terminal 7.25.5 Denial Of Service

ZOC Terminal version 7.25.5 Script denial of service proof of concept exploit.




v

Amcrest Dahua NVR Camera IP2M-841 Denial Of Service

Amcrest Dahua NVR Camera IP2M-841 denial of service proof of concept exploit.




v

CloudMe 1.11.2 Buffer Overflow

CloudMe version 1.11.2 buffer overflow proof of concept exploit. Original vulnerability discovered by hyp3rlinx.












v

execve-core.c

execve /bin/sh shellcode for Linux PPC. execve-core.s is appended.




v

Secunia Security Advisory 17850

Secunia Security Advisory - r0t has reported a vulnerability in QualityEBiz Quality PPC (QualityPPC), which can be exploited by malicious people to conduct cross-site scripting attacks.




v

envt.c

A simple program to inject linux shellcode into the environment and find its location in memory. It contains 8 shellcodes for x86, sparc, mips, and ppc.




v

VLCMediaSlayer-ppc.pl.txt

Month Of Apple Bugs - A vulnerability in the handling of the udp:// URL handler for the VLC Media Player allows remote arbitrary code execution. This is just a vanilla format string exploit for OSX on ppc.




v

Secunia Security Advisory 48336

Secunia Security Advisory - A vulnerability has been reported in Inout PPC Engine, which can be exploited by malicious people to conduct cross-site request forgery attacks.




v

Linux Kernel Sendpage Local Privilege Escalation

The Linux kernel failed to properly initialize some entries the proto_ops struct for several protocols, leading to NULL being derefenced and used as a function pointer. By using mmap(2) to map page 0, an attacker can execute arbitrary code in the context of the kernel. Several public exploits exist for this vulnerability, including spender's wunderbar_emporium and rcvalle's ppc port, sock_sendpage.c. All Linux 2.4/2.6 versions since May 2001 are believed to be affected: 2.4.4 up to and including 2.4.37.4; 2.6.0 up to and including 2.6.30.4














v

Chkrootkit Local Privilege Escalation

Chkrootkit before 0.50 will run any executable file named /tmp/update as root, allowing a trivial privsec. WfsDelay is set to 24h, since this is how often a chkrootkit scan is scheduled by default.




v

Attack On Apache Server Exposes Firewalls, Routers, Etc






v

Apache ActiveMQ Flaws Leave Servers Open To DoS Attacks







v

42: The Answer To Life, The Universe, And How Many Cisco Products Have Struts Bugs





v

Apache Vulnerabilities Spotted In OpenWhisk And Tomcat




v

Apache Struts Vulnerability Would Allow System Takeover




v

Apache Hadoop Spins Cracking Code Injection Vulnerability YARN




v

Serious Apache Server Bug Gives Root To Baddies In Shared Environments




v

Contest Seeks The Most Diminutive XSS Worm




v

Facebook Vulnerable To Critical XSS, Could Lead To Malware Attacks





v

Mozilla Tackles XSS Vulnerabilities With New Technology




v

RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence




v

XSS Vulnerabilities In 8 Million Flash Files




v

Anti-Virus Vendor Trio Plug Website Flaws