Packet Storm's last 20 added files. Last Updated: Thu May 21 20:17:03 EDT 2009 [ flashquiz-sql.txt ] 79e83f1d8fff471add51b29468c06e30 Flash Quiz Beta 2 suffers from multiple remote SQL injection vulnerabilities. [ groupwise-xss.txt ] f491052025012e9017a5d5da0bbe6627 Novell Groupwise Web Access suffers from multiple cross site scripting vulnerabilities. [ zaocms-disclose.txt ] 502b4c44e359088633e8cc81b5a93d98 ZaoCMS suffers from a remote file disclosure vulnerability in download.php. [ zaocms-insecure.txt ] c7f9db9207db7329f8eb5fcc88d0019b ZaoCMS suffers from an insecure cookie handling vulnerability. [ articledir-blindsql.txt ] a25fed9e80f418229a3e08397968dcb3 Article Directory suffers from a remote blind SQL injection vulnerability in page.php. [ MDVSA-2009-121.txt ] 9aaa6e5338f13acaf3205e37a5a22ca6 Mandriva Linux Security Advisory 2009-121 - Multiple security vulnerabilities has been identified and fixed in Little CMS. A memory leak flaw allows remote attackers to cause a denial of service (memory consumption and application crash) via a crafted image file. Multiple integer overflows allow remote attackers to execute arbitrary code via a crafted image file that triggers a heap-based buffer overflow. Multiple stack-based buffer overflows allow remote attackers to execute arbitrary code via a crafted image file associated with a large integer value for the (1) input or (2) output channel. A flaw in the transformations of monochrome profiles allows remote attackers to cause denial of service triggered by a NULL pointer dereference via a crafted image file. This update provides fixes for these issues. [ MDVSA-2009-120.txt ] 40411a2c25d7fd9f6200712d9f70d18c Mandriva Linux Security Advisory 2009-120 - Multiple security vulnerabilities has been identified and fixed in OpenSSL. The dtls1_buffer_record function in ssl/d1_pkt.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allows remote attackers to cause a denial of service (memory consumption) via a large series of future epoch DTLS records that are buffered in a queue, aka DTLS record buffer limitation bug. Multiple memory leaks in the dtls1_process_out_of_seq_message function in ssl/d1_both.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allow remote attackers to cause a denial of service (memory consumption) via DTLS records that (1) are duplicates or (2) have sequence numbers much greater than current sequence numbers, aka DTLS fragment handling memory leak. The updated packages have been patched to prevent this. [ articledirectory-sql.txt ] c12c1f4808e1303485e28367920a5e8b Article Directory suffers from a remote SQL injection vulnerability that allows for authentication bypass. [ jobscript-upload.txt ] 5245a601d40ab4035909b482f64b600e Job Script version 2.0 suffers from an arbitrary shell upload vulnerability. [ Reverse_Engineering.pdf ] 19c50bb676b1d10a4180966e99a16b50 Whitepaper called Bypassing Authentication with Reverse Engineering in Linux x86. Written in French. [ aspinlinecc-sqlxss.txt ] d4427407dd890bd7747e1e11f99a2229 ASP Inline Corporate Calendar suffers from cross site scripting and remote SQL injection vulnerabilities. [ vicidial-sql.txt ] 6f9d072d28046233760d43790aa5835c Vicidial Call Center Suite suffers from a remote SQL injection vulnerability that allows for authentication bypass. [ DDIVRT-2009-25.txt ] a9e4c0a0fb5a55991acaf2f0e3c218fe The web interface on tcp port 8090 of IPsession suffers from a SQL injection vulnerability. [ chinagames-exec.txt ] b4e4a1135cd48de152edfc62d0d34df2 ChinaGames Active-X related remote code execution exploit. [ baofeng-exec.txt ] 747e205acea99eae101b09eac2147010 BaoFeng Active-X related remote code execution exploit. [ msiiswebdav-bypass.txt ] 88f5c6917ad436df1a16908de6c90d8f Remote authentication bypass exploit for the WebDAV vulnerability in Microsoft IIS 6.0. [ 05.19.09-1.txt ] f5df636d3549f48d5c7b51f6d5d3826e iDefense Security Advisory 05.19.09 - Local exploitation of a file overwrite vulnerability in IBM Corp.'s Advanced Interactive eXecutive (AIX) could allow an attacker to overwrite arbitrary files and execute arbitrary code. The AIX libc implementation of malloc includes a debugging mechanism that is initiated by setting the MALLOCTYPE and MALLOCDEBUG environment variables. This debugging feature writes to a user-specified log file under certain conditions. There is a gap in time between the checks to see if the file is a symbolic link and the process of opening the file. If an attacker can change the file to be a symbolic link to another file within this time frame, it is possible to cause a set-uid binary to write to files owned by privileged users. iDefense confirmed the existence of this vulnerability in IBM Corp.'s AIX version 5.3. Other versions may also be affected. [ CORE-2009-0109.txt ] 66cba81d15ed53317ac0960af46eaf8b Core Security Technologies Advisory - Several cross site scripting vulnerabilities were found in the following files/urls of the Sun Java System Communications Express system. [ cisco-sa-20090520-cw.txt ] 36b09d3bf0be6807065752275ed88f69 Cisco Security Advisory - CiscoWorks Common Services contains a vulnerability that could allow an unauthenticated remote attacker to access application and host operating system files. [ dsa-1804-1.txt ] 9d111a30fa624f6f607795fce1599ab2 Debian Security Advisory 1804-1 - Several remote vulnerabilities have been discovered in racoon, the Internet Key Exchange daemon of ipsec-tools. The The Common Vulnerabilities and Exposures project identified the