Latest Exploits

Syndicate content Packet Storm
Packet Storm - Information Security Services, News, Files, Tools, Exploits, Advisories and Whitepapers
Updated: 7 hours 26 min ago

Vastal I-Tech Agent Zone SQL Injection

Sun, 10/29/2017 - 23:03
Vastal I-Tech Agent Zone suffers from a remote SQL injection vulnerability.
Categories: Security

Zomato Clone Script SQL Injection

Sun, 10/29/2017 - 22:33
Zomato Clone Script suffers from a remote SQL injection vulnerability.
Categories: Security

PHP Inventory Arbitrary File Upload

Sun, 10/29/2017 - 22:01
PHP Inventory suffers from an arbitrary file upload vulnerability.
Categories: Security

Online Exam Test Application SQL Injection

Sun, 10/29/2017 - 21:22
Online Exam Test Application suffers from a remote SQL injection vulnerability.
Categories: Security

WordPress Ultimate Product Catalog 4.2.24 PHP Object Injection

Sun, 10/29/2017 - 21:22
WordPress Ultimate Product Catalog plugin versions 4.2.24 and below suffer from a PHP object injection vulnerability.
Categories: Security

MitraStar DSL-100HN-T1/GPT-2541GNAC Privilege Escalation

Sat, 10/28/2017 - 15:22
MitraStar DSL-100HN-T1 and GPT-2541GNAC routers suffer from a privilege escalation vulnerability.
Categories: Security

Android Private Internet Access Denial Of Service

Fri, 10/27/2017 - 12:48
The Android application provided by Private Internet Access (PIA) VPN service can be crashed by downloading a large file containing a list of current VPN servers. This can be exploited by an MITM attacker via intercepting and replacing this file. While the file is digitally signed, it is not served over SSL and the application did not contain logic for checking if the provided file is very large. The vendor has fixed this issue in version 1.3.3.1 and users should install the latest version.
Categories: Security

Tizen Studio 1.3 Smart Development Bridge Buffer Overflow

Fri, 10/27/2017 - 12:02
Tizen Studio version 1.3 Smart Development Bridge versions prior to 2.3.2 buffer overflow proof of concept exploit.
Categories: Security

DameWare Remote Controller 12.0.0.520 Remote Code Execution

Fri, 10/27/2017 - 10:55
DameWare Remote Controller versions 12.0.0.520 and below suffer from a remote code execution vulnerability.
Categories: Security

Watchdog Development Anti-Malware / Online Security Pro NULL Pointer Dereference

Fri, 10/27/2017 - 10:22
Watchdog Development Anti-Malware / Online Security Pro version 2.74.186.150 suffers from a NULL pointer dereference vulnerability.
Categories: Security

HitmanPro 3.7.15 Build 281 Kernel Pool Overflow

Thu, 10/26/2017 - 15:22
HitmanPro version 3.7.15 Build 281 kernel pool overflow exploit.
Categories: Security

PHPMailer 5.2.21 Local File Disclosure

Wed, 10/25/2017 - 22:13
PHPMailer versions 5.2.21 and below suffer from a file disclosure vulnerability.
Categories: Security

Mura CMS Server-Side Request Forgery / XXE Injection

Wed, 10/25/2017 - 21:53
Mura CMS versions prior to 6.2 suffer from server-side request forgery and XML external entity injection vulnerabilities.
Categories: Security

FS Shutter Stock Clone SQL Injection

Wed, 10/25/2017 - 21:53
FS Shutter Stock Clone suffers from a remote SQL injection vulnerability.
Categories: Security

FS Thumbtack Clone SQL Injection

Wed, 10/25/2017 - 21:52
FS Thumbtack Clone suffers from a remote SQL injection vulnerability.
Categories: Security

FS Trademe Clone SQL Injection

Wed, 10/25/2017 - 21:51
FS Trademe Clone suffers from a remote SQL injection vulnerability.
Categories: Security

FS Monster Clone SQL Injection

Wed, 10/25/2017 - 21:50
FS Monster Clone suffers from a remote SQL injection vulnerability.
Categories: Security

FS Care Clone SQL Injection

Wed, 10/25/2017 - 21:50
FS Care Clone suffers from a remote SQL injection vulnerability.
Categories: Security

FS Crowdfunding Script SQL Injection

Wed, 10/25/2017 - 21:48
FS Crowdfunding Script suffers from a remote SQL injection vulnerability.
Categories: Security

FS Realtor Clone SQL Injection

Wed, 10/25/2017 - 21:48
FS Realtor Clone suffers from a remote SQL injection vulnerability.
Categories: Security