<?xml version="1.0" encoding="ISO-8859-1" ?>
<rss version="2.0">
	<channel>
	<title>Packet Storm Security Last 50</title>
	<link>http://packetstormsecurity.org/</link>
	<description>50 Most Recent Packet Storm File Additions</description>
	<language>en-us</language>

<item>
	<title>dsa-1694-2.txt</title>
	<link>http://packetstormsecurity.org/0901-advisories/dsa-1694-2.txt</link>
	<description>Debian Security Advisory 1694-2 - The xterm update in DSA-1694-1 disabled font changing as a precaution. However, users reported that they need this feature. The update in this DSA makes font shifting through escape sequences configurable, using a new allowFontOps X resource, and unconditionally enables font changing through keyboard sequences. </description>
</item>
<item>
	<title>debianxterm-weakness.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/debianxterm-weakness.txt</link>
	<description>Debian GNU/Linux suffers from a XTERM DECRQSS weakness that allows for remote code execution as the user id viewing the content. </description>
</item>
<item>
	<title>USN-701-2.txt</title>
	<link>http://packetstormsecurity.org/0901-advisories/USN-701-2.txt</link>
	<description>Ubuntu Security Notice USN-701-2 - Several flaws were discovered in the Thunderbird browser engine. Boris Zbarsky discovered that the same-origin check in Thunderbird could be bypassed by utilizing XBL-bindings. Marius Schilder discovered that Thunderbird did not properly handle redirects to an outside domain when an XMLHttpRequest was made to a same-origin resource. Chris Evans discovered that Thunderbird did not properly protect a user's data when accessing a same-domain Javascript URL that is redirected to an unparsable Javascript off-site resource. Chip Salzenberg, Justin Schuh, Tom Cross, and Peter William discovered Thunderbird did not properly parse URLs when processing certain control characters. Several flaws were discovered in the Javascript engine. </description>
</item>
<item>
	<title>USN-701-1.txt</title>
	<link>http://packetstormsecurity.org/0901-advisories/USN-701-1.txt</link>
	<description>Ubuntu Security Notice USN-701-1 - Several flaws were discovered in the Thunderbird browser engine. Boris Zbarsky discovered that the same-origin check in Thunderbird could be bypassed by utilizing XBL-bindings. Marius Schilder discovered that Thunderbird did not properly handle redirects to an outside domain when an XMLHttpRequest was made to a same-origin resource. Chris Evans discovered that Thunderbird did not properly protect a user's data when accessing a same-domain Javascript URL that is redirected to an unparsable Javascript off-site resource. Chip Salzenberg, Justin Schuh, Tom Cross, and Peter William discovered Thunderbird did not properly parse URLs when processing certain control characters. Kojima Hajime discovered that Thunderbird did not properly handle an escaped null character. An attacker may be able to exploit this flaw to bypass script sanitization. Several flaws were discovered in the Javascript engine. </description>
</item>
<item>
	<title>ip-array_0.05.74c.tar.gz</title>
	<link>http://packetstormsecurity.org/UNIX/security/ip-array_0.05.74c.tar.gz</link>
	<description>IP-Array is a Linux iptables Firewall script written in bash. It allows the creation of precise, stateful rules, while remaining easy to configure. IP-Array supports VPN, Traffic Shaping (creation of custom HTB and SFQ qdiscs, Classes, and Filters), multiple external interfaces, multiple LANs, multiple DMZs, NAT, logging, MAC address matching, packet marking, syslog logging, and various sysctl settings. It also includes some presets and autoconfig options for common needs like DNS, FTP, SMTP.</description>
</item>
<item>
	<title>mandos_1.0.3.orig.tar.gz</title>
	<link>http://packetstormsecurity.org/linux/admin/mandos_1.0.3.orig.tar.gz</link>
	<description>The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.</description>
</item>
<item>
	<title>playsms093-rfilfi.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/playsms093-rfilfi.txt</link>
	<description>playSMS version 0.9.3 suffers from multiple remote and local file inclusion vulnerabilities. </description>
</item>
<item>
	<title>oraclecompress-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/oraclecompress-sql.txt</link>
	<description>Oracle 10g SYS.LT.COMPRESSWORKSPACETREE SQL injection exploit that grants DBA access and creates a new user. </description>
</item>
<item>
	<title>oraclemergework-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/oraclemergework-sql.txt</link>
	<description>Oracle 10g SYS.LT.MERGEWORKSPACE SQL injection exploit that grants DBA access and creates a new user. </description>
</item>
<item>
	<title>oracleworkspace-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/oracleworkspace-sql.txt</link>
	<description>Oracle 10g SYS.LT.REMOVEWORKSPACE SQL injection exploit that grants DBA access and creates a new user using the advanced extproc method. </description>
</item>
<item>
	<title>seamonkey1114-dos.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/seamonkey1114-dos.txt</link>
	<description>SeaMonkey versions 1.1.14 and below denial of service exploit that leverages a vulnerability found in September of 2008 for version 1.1.11. </description>
</item>
<item>
	<title>itcms-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/itcms-sql.txt</link>
	<description>IT!CMS suffers from a remote SQL injection vulnerability that allows for authentication bypass. </description>
</item>
<item>
	<title>ezpack-sqlxss.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/ezpack-sqlxss.txt</link>
	<description>ezPack version 4.2b2 suffers from cross site scripting and SQL injection vulnerabilities. </description>
</item>
<item>
	<title>goople-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/goople-sql.txt</link>
	<description>Goople versions 1.8.2 and below blind SQL injection exploit that makes use of frontpage.php. </description>
</item>
<item>
	<title>vuplayer-dos.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/vuplayer-dos.txt</link>
	<description>VUPlayer version 2.49 local denial of service proof of concept exploit that creates a malicious file. </description>
</item>
<item>
	<title>coolplayer_bof.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/coolplayer_bof.txt</link>
	<description>CoolPlayer Build 219 PlaylistSkin buffer overflow exploit that binds a shell to tcp port 4444. </description>
</item>
<item>
	<title>rosoft421-overflow.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/rosoft421-overflow.txt</link>
	<description>Rosoft Media Player version 4.2.1 local buffer overflow exploit that spawns calc.exe. </description>
</item>
<item>
	<title>riotpix-bypass.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/riotpix-bypass.txt</link>
	<description>RiotPix versions 0.61 and below suffer from a remote SQL injection vulnerability that allows for authentication bypass. </description>
</item>
<item>
	<title>riotpix-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/riotpix-sql.txt</link>
	<description>RiotPix versions 0.61 and below blind remote SQL injection exploit. </description>
</item>
<item>
	<title>phpauctionsystem-rfi.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/phpauctionsystem-rfi.txt</link>
	<description>PHP Auction System suffers from multiple remote file inclusion vulnerabilities. </description>
</item>
<item>
	<title>USN-703-1.txt</title>
	<link>http://packetstormsecurity.org/0901-advisories/USN-703-1.txt</link>
	<description>Ubuntu Security Notice USN-703-1 - Paul Szabo discovered that the DECRQSS escape sequences were not handled correctly by xterm. Additionally, window title operations were also not safely handled. If a user were tricked into viewing a specially crafted series of characters while in xterm, a remote attacker could execute arbitrary commands with user privileges. </description>
</item>
<item>
	<title>USN-702-1.txt</title>
	<link>http://packetstormsecurity.org/0901-advisories/USN-702-1.txt</link>
	<description>Ubuntu Security Notice USN-702-1 - Gunter Hockel discovered that Samba with registry shares enabled did not properly validate share names. An authenticated user could gain access to the root filesystem by using an older version of smbclient and specifying an empty string as a share name. This is only an issue if registry shares are enabled on the server by setting  registry shares = yes ,  include = registry , or  config backend = registry , which is not the default. </description>
</item>
<item>
	<title>phpauctionsystem-insecure.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/phpauctionsystem-insecure.txt</link>
	<description>PHP Auction System suffers from an insecure cookie handling vulnerability. </description>
</item>
<item>
	<title>phpauctionsystem-sqlxss.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/phpauctionsystem-sqlxss.txt</link>
	<description>PHP Auction System suffers from cross site scripting and remote SQL injection vulnerabilities. </description>
</item>
<item>
	<title>joomlaphoca-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/joomlaphoca-sql.txt</link>
	<description>Joomla Phoca Documentation remote SQL injection exploit that makes use of index.php. </description>
</item>
<item>
	<title>lfi-rfi2.txt</title>
	<link>http://packetstormsecurity.org/UNIX/scanners/lfi-rfi2.txt</link>
	<description>Local / Remote file inclusion scanner that attempts to make use of a c99 shell on a vulnerable host. </description>
</item>
<item>
	<title>theratcms-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/theratcms-sql.txt</link>
	<description>The Rat CMS Alpha 2 remote blind SQL injection exploit that leverages viewarticle.php. </description>
</item>
<item>
	<title>walusoft-traversal.txt</title>
	<link>http://packetstormsecurity.org/0901-advisories/walusoft-traversal.txt</link>
	<description>Walusoft TFTPServer2000 version 3.6.1 suffers from a directory traversal vulnerability. </description>
</item>
<item>
	<title>dmp161lst4-overflow.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/dmp161lst4-overflow.txt</link>
	<description>Destiny Media Player version 1.61 .lst file local buffer overflow proof of concept exploit that spawns calc.exe. </description>
</item>
<item>
	<title>seacureit-cfp2009.txt</title>
	<link>http://packetstormsecurity.org/papers/call_for/seacureit-cfp2009.txt</link>
	<description>SEaCURE.IT is the first international technical conference ever held in Italy on security related topics, aimed at bringing together the leading experts from all over the world, to create a unique setting for networking and discussion among the speakers and the attendees. The 2009 edition will be held from May 19th to the 22nd in Villasimius, Sardinia. </description>
</item>
<item>
	<title>plxautoreminder-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/plxautoreminder-sql.txt</link>
	<description>plxAutoReminder version 3.7 suffers from a remote SQL injection vulnerability. </description>
</item>
<item>
	<title>safari-heap.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/safari-heap.txt</link>
	<description>Safari array integer overflow proof of concept exploit. </description>
</item>
<item>
	<title>dmp161lst3-overflow.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/dmp161lst3-overflow.txt</link>
	<description>Destiny Media Player version 1.61 .lst file local buffer overflow proof of concept exploit that spawns calc.exe. </description>
</item>
<item>
	<title>tor.uclibc.i686.20090105.iso</title>
	<link>http://packetstormsecurity.org/peer2peer/tor.uclibc.i686.20090105.iso</link>
	<description>Tor-ramdisk is an i686 uClibc-based micro Linux distribution whose only purpose is to host a Tor server in an environment that maximizes security and privacy. Tor is a network of virtual tunnels that allows people and groups to improve their privacy and security on the Internet. Security is enhanced by employing a monolithically compiled GRSEC/PAX patched kernel and hardened system tools. Privacy is enhanced by turning off logging at all levels so that even the Tor operator only has access to minimal information. Finally, since everything runs in ephemeral memory, no information survives a reboot, except for the Tor configuration file and the private RSA key which may be exported/imported by FTP.</description>
</item>
<item>
	<title>solucion-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/solucion-sql.txt</link>
	<description>SolucionWeb suffers from a remote SQL injection vulnerability in main.php. </description>
</item>
<item>
	<title>joomlanewsdesc-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/joomlanewsdesc-sql.txt</link>
	<description>Joomla NA News Description component remote SQL injection exploit. </description>
</item>
<item>
	<title>pollpro-xsrf.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/pollpro-xsrf.txt</link>
	<description>PollPro version 3.0 appears to suffer from a cross site request forgery vulnerability. </description>
</item>
<item>
	<title>webspell-edit.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/webspell-edit.txt</link>
	<description>webSPELL versions 4.01.02 and below suffer from a remote edit topics vulnerability. </description>
</item>
<item>
	<title>pnphpbb212i-lfi.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/pnphpbb212i-lfi.txt</link>
	<description>PNphpBB2 versions 1.2i and below suffer from multiple local file inclusion vulnerabilities. </description>
</item>
<item>
	<title>msfxdc-contest.txt</title>
	<link>http://packetstormsecurity.org/papers/call_for/msfxdc-contest.txt</link>
	<description>MSFXDC (MetaSploit Framework eXploits Development Contest) is a challenge where the main goal is to code the largest number of new Metasploit Framework exploits modules. MSFXDC is organized by JA-PSI. </description>
</item>
<item>
	<title>wsnguest123-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/wsnguest123-sql.txt</link>
	<description>WSN Guest version 1.23 suffers from a remote SQL injection vulnerability in search.php. </description>
</item>
<item>
	<title>phpmesfilms-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/phpmesfilms-sql.txt</link>
	<description>PhpMesFilms version 1.0 suffers from a remote SQL injection vulnerability in index.php. </description>
</item>
<item>
	<title>vuplayer-overflow.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/vuplayer-overflow.txt</link>
	<description>VUPlayer version 2.49 .wax file local buffer overflow exploit that spawns calc.exe. </description>
</item>
<item>
	<title>dmp161lst2-overflow.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/dmp161lst2-overflow.txt</link>
	<description>Destiny Media Player version 1.61 .lst file local buffer overflow proof of concept exploit that spawns calc.exe. </description>
</item>
<item>
	<title>dmp161lst1-overflow.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/dmp161lst1-overflow.txt</link>
	<description>Destiny Media Player version 1.61 .lst file local buffer overflow proof of concept exploit that spawns calc.exe. </description>
</item>
<item>
	<title>ayemsisemlak-disclose.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/ayemsisemlak-disclose.txt</link>
	<description>Ayemsis Emlak Pro suffers from a remote database disclosure vulnerability. </description>
</item>
<item>
	<title>ayemsisemlak-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/ayemsisemlak-sql.txt</link>
	<description>Ayemsis Emlak Pro suffers from a remote SQL injection vulnerability that allows for authentication bypass. </description>
</item>
<item>
	<title>cybershadecms-rfi.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/cybershadecms-rfi.txt</link>
	<description>Cybershade CMS version 0.2b remote file inclusion exploit that uses index.php. </description>
</item>
<item>
	<title>joomlasimplereview-sql.txt</title>
	<link>http://packetstormsecurity.org/0901-exploits/joomlasimplereview-sql.txt</link>
	<description>The Joomla Simple Review component version 1.x suffers from a remote SQL injection vulnerability. </description>
</item>
<item>
	<title>RFIDIOt-0.1v.tgz</title>
	<link>http://packetstormsecurity.org/wireless/RFIDIOt-0.1v.tgz</link>
	<description>RFIDIOt is a python library for exploring RFID devices. It currently drives a couple of RFID readers made by ACG, called the HF Dual ISO and the LFX. Includes sample programs to read/write tags and the beginnings of library routines to handle the data structures of specific tags like MIFARE(r). This is the Windows version.</description>
</item></channel>
</rss>
