Be Secure - Main page
Welcome IntruderSunday, 2012-05-20, 11:01 PM

Thing carefull will make you more secure


Main page

SEC Consult Vulnerability Lab Security Advisory < 20111230-0 >
==============================
=========================================
             title: Microsoft ASP.NET Forms Authentication Bypass
           product: Microsoft .NET Framework
 vulnerable version: Microsoft .NET Framework Version:4.0.30319;
                    ASP.NET Version:4.0.30319.237 and below
     fixed version: MS11-100
               CVE: CVE-2011-3416
            impact: critical
          homepage: http://www.microsoft.com/net
        &... Read more »
Views: 419 | Added by: b1zz4rd | Date: 2011-12-30 | Comments (1)

# Exploit Title: Winn Guestbook v2.4.8c Stored XSS
# Date: 12/29/11
# Author: G13
# Software Link: http://code.google.com/p/winn-guestbook/, http://www.winn.ws
# Version: 2.4.8c
# Category: webapps (php)
# CVE: 2011-5026

##### Vulnerability #####

There is no sanitation on the input of the name variable. This allows malicious scripts to be added. This is a stored XSS.

##### Vendor Notification #####

12/24/11 - Vendor Notified.
12/27/11 - Vendor Acknowledged, Patch Issued.

##### Resolution #####

Upgrade to Version 2.4.8d

##### Affected Variables #####

name=[XSS]

##### Exploit #####

The script can be added right in the page, there is no filtering of input. This can easily be exploited if the email address used is added to the "approved posters" li... Read more »
Views: 1518 | Added by: b1zz4rd | Date: 2011-12-30 | Comments (18)

#2011-003 multiple implementations denial-of-service via hash algorithm
collision

Description:

A variety of programming languages suffer from a denial-of-service (DoS)
condition against storage functions of key/value pairs in hash data
structures, the condition can be leveraged by exploiting predictable
collisions in the underlying hashing algorithms.

The issue finds particular exposure in web server applications and/or
frameworks. In particular, the lack of sufficient limits for the number of
parameters in POST requests in conjunction with the predictable collision
properties in the hashing functions of the underlying languages can render web
applications vulnerable to the DoS condition. The attacker, using specially
crafted HTTP requests, can lead to a 100% of CPU usage which can last up to
several hours depending on the targeted application and server performance,
the amplification effect is con... Read more »
Views: 51 | Added by: b1zz4rd | Date: 2011-12-30 | Comments (0)

Trustwave's SpiderLabs Security Advisory TWSL2011-019:
Cross-Site Scripting Vulnerability in phpMyAdmin

https://www.trustwave.com/spiderlabs/advisories/TWSL2011-019.txt

Published: 12/22/11
Version: 1.0

Vendor: phpMyAdmin (http://www.phpmyadmin.net/)
Product: phpMyAdmin
Version affected: 3.4.8 and prior

Product description:
An open source tool developed in PHP to manage and administer MySQL
databases remotely.  The web browser interface allows creating, modifying
or deleting databases, tables, fields or rows, executing SQL statements,
and other database functions.

Credit: Jason Leyrer of Trustwave SpiderLabs

Finding 1: Cross-Site Scripting (XSS) Vulnerability in Setup Interface
CVE: CVE-2011-4782

Affected versio... Read more »
Views: 122 | Added by: b1zz4rd | Date: 2011-12-25 | Comments (2)

author...........: Egidio Romano aka EgiX
mail.............: n0b0d13s[at]gmail[dot]com
software link....: http://info.tiki.org/


[-] Vulnerability explanation:

The vulnerable code is located into /lib/wiki-plugins/wikiplugin_
snarf.php:

170.   // If the user specified a more specialized regex
171.   if ( isset($params['regex']) && isset($params['regexres']) && preg_match('/^(.)(.)+\1[^e]*$/', $params['regex']) ) {
172.      $snarf = preg_replace( $params['regex'], $params['regexres'], $snarf );
173.   }

input passed through $_REQUEST['regex'] is checked by a regular expression at line 171 to prevent
execution of arbitrary PHP code using the  'e'  modifier in a call to preg_replace() at line 172.
But  this  check  could  be  bypassed  with a  null byte ... Read more »
Views: 31 | Added by: b1zz4rd | Date: 2011-12-25 | Comments (0)

Aircrack is a suite of tools for 802.11a/b/g WEP and WPA cracking. This can be done within 40 to 512-bit WEP and password just once encrypted packets "have been collected. Aircrack can also attack WPA 1 or 2 networks using advanced cryptographic methods or forcing rough. The suite includes airodump (an 802.11 packet taker program), aireplay (an 802.11 packet injection program), aircrack (static WEP and WPA-PSK cracking), and airdecap (decrypts WEP / WPA for decision-file).

AirSnort
802.11 WEP Encryption Cracking Tool
is a wireless LAN (WLAN) tool which is used to recover the password encryption. It was developed by the shmoo group passive and operated by monitoring transmissions, computing the encryption password will be made if the package has been collected. You may also be interested in this AirSnort.

CoWPAtty
this is a good tool to force cracking WPA-PSK, considered the "New WEP" for Wireless Home Security. This progr... Read more »
Views: 63 | Added by: b1zz4rd | Date: 2011-12-19 | Comments (4)

================
Privilege escalation vulnerabilities in Nagios XI installer < 2011R1.9

Author: 0a29406d9794e4f9b30b3c5d6702c7... Read more »
Views: 63 | Added by: b1zz4rd | Date: 2011-12-17 | Comments (3)

================
Cross-Site Scripting vulnerabilities in Nagios XI < 2011R1.9

Author: 0a29406d9794e4f9b30b3c5d6702c7... Read more »
Views: 44 | Added by: b1zz4rd | Date: 2011-12-17 | Comments (1)

In this post we will show a real risk that happens today in Intenet related with IPv6 tunnels. We have detected that some of the main 6in4 tunnel providers don't control correctly the IPv6 source filtering in the client access they provide to their clients. This situation leverages a risk that make easy the execution of some attacks that require source IP spoofing.

To help the reader understand the risks that involves IP spoofing in the Internet, below are shown a brief list of attacks that take advantage of this risk:

Views: 93 | Added by: b1zz4rd | Date: 2011-12-14 | Comments (7)

======================================================================

                    Secunia Research 13/12/2011

 - Sterling Trader Data Processing Buffer Overflow Vulnerability -

======================================================================
Table of Contents

Affected Software....................................................1
Severity.............................................................2
Vendor's Description of Software.....................................3
Description of Vulnerability.........................................4
Solution.... Read more »
Views: 29 | Added by: b1zz4rd | Date: 2011-12-14 | Comments (0)

1 2 3 ... 25 26 »
Entries archive
Security News
Site friends
  • Puisi Digarudaku
  • By0urs3lf Site
  • Jasakom
  • Ikan_Teri's Site
  • Security Focus Site
  • Kang Dedy's Site
  • Kimmonosz
  • Downloader
  • Translator
  • Get Your Free Money
  • Banner
    Block content
    Calendar
    «  May 2012  »
    SuMoTuWeThFrSa
      12345
    6789101112
    13141516171819
    20212223242526
    2728293031
    NEWS
    Statistics

    Total online: 0
    Guests: 0
    Users: 0
    Counter Visitor