Waraxe IT Security Portal
Login or Register
October 8, 2026
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 1868
Members: 0
Total: 1868
Full disclosure
[0day-rubbish] StreamSets Transformer 3.17.0 auth-mode none fallback and un-sandboxed ScalaDTransform execution to container root (8.1 primary)
[0day-rubbish] RCDevs WebADM 2.4.14 authenticated log viewer sid command injection to webadm uid 999 code execution (7.2)
[0day-rubbish] Maian Cart 3.8 addBanners unrestricted banner upload to PHP webshell and administrator command execution (7.2 primary, PR:H)
[0day-rubbish] IPConfigure Orchid VMS 26.3.0 authenticated DNF repository GPG-key property command injection to root (7.2)
[0day-rubbish] Circutor LineEds 24.11.14-r0 unauthenticated pwrstudio events.xml shellExecute command injection (9.8)
[0day-rubbish] Asustor ADM 3.5.9.RWM1 (AS602T) music.cgi act=live stored-filename command injection reaching system() (8.8 primary, PR:L)
[0day-rubbish] Advantech WebAccess Node 9.2.3 unauthenticated CrystalRpt.aspx file upload and path traversal to code execution in w3wp.exe (9.8)
SEC Consult Research 20261001 :: Arbitrary Email sender spoofing in Apple iCloud mail
SEC Consult SA-20260924-0 :: Multiple Vulnerabilities in Paessler PRTG Network Monitor #CVE-2026-4637 #CVE-2026-4638
[NotCVE-2026-0019] game-music-emu through 0.6.5 VGM Command Interpreter Missing Operand Length Check Allows Heap Out-of-Bounds Read
[NotCVE-2026-0018] game-music-emu (libgme) through 0.6.5 Unbounded GYM Command Loop Allows Heap Out-of-Bounds Read
[NotCVE-2026-0017] game-music-emu (libgme) 0.6.5 and Earlier AY Loader NULL Pointer Dereference Allows Denial of Service
[NotCVE-2026-0016] game-music-emu VGM Command Interpreter Unvalidated 0xE0 PCM Seek Offset Allows Out-of-Bounds Read and Denial of Service
APPLE-SA-09-28-2026-3 macOS Sequoia 15.8.1
APPLE-SA-09-28-2026-2 macOS Tahoe 26.7.1
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 10 matches
Two Vulnerabilities in Mambo
PostForum:Mambo Posted: Sun Mar 13, 2005 1:20 pm Subject: Two Vulnerabilities in Mambo
Dora
Replies: 2
Views: 12464





B. Remote Code Execution

B1. The simple hack made to the Cache_library
makes mambo vulnerable to a
remote arbitrary code execution attacks.

Example :

Code:
http://<site-with-mam ...
Shell in PHP >Deface toolkit pro 1.6
PostForum:Tools Posted: Fri Mar 11, 2005 3:27 pm Subject: Shell in PHP >Deface toolkit pro 1.6
Dora
Replies: 8
Views: 50154




To linux :

Could you share me this php shell scipts again ?
I get a error :

Fatal error: Call to undefined function posix_getuid() in /DISK2/WWW/nhoveem.ws/www/shell.php on line 5
Help me Phpbb 2.0.10
PostForum:PhpBB Posted: Sun Mar 06, 2005 1:48 pm Subject: Help me Phpbb 2.0.10
Dora
Replies: 1
Views: 15367




I read a bug below :


phpBB Group phpBB2 Arbitrary File Unlink Vulnerability

iDEFENSE Security Advisory 02.22.05
www.idefense.com/application/poi/display?id=205&type=vulnerabilities
Febru ...
Postnuke all versions + pnphpbb <=1.2 sql injection
PostForum:PostNuke Posted: Thu Mar 03, 2005 5:37 pm Subject: Postnuke all versions + pnphpbb <=1.2 sql injection
Dora
Replies: 5
Views: 19228




I search */index.php?name=PNphpBB2 at altavista any file many site but your exploit may be not word . Sad

Pls tell me more detail about this bug

Thank
Help me XSS Php-nuke 7.6
PostForum:Cross-site scripting aka XSS Posted: Thu Feb 24, 2005 3:04 pm Subject: Help me XSS Php-nuke 7.6
Dora
Replies: 1
Views: 10319




I read xploit in nukie 7.6

URL
modules.php?name=Downloads&d_op=NewDownloads&newdownloadshowdays=[xss code here]

as waraxe say PHp-nuke have some coutermeasures against trivial xss atta ...
Help me to resolve this pro
PostForum:Newbies corner Posted: Thu Dec 23, 2004 3:31 pm Subject: Help me to resolve this pro
Dora
Replies: 0
Views: 8699




I have just found a bug and exploit of paFileDB Version 3.1

Code:

============================
Security REPORT paFileDB 3.1
============================

Product: paFileDB Version 3.1 ...
How to exploit This XSS Vulnerability
PostForum:Cross-site scripting aka XSS Posted: Thu Dec 23, 2004 3:12 pm Subject: How to exploit This XSS Vulnerability
Dora
Replies: 0
Views: 9007




Frist , let visit http://vnonlines.com/diendan/

And login with user : Dora and pass : 1111

After that , try to browse this link :

http://vnonlines.com/download/pafiledb.php?action=email&i ...
who can help me use Remview.php to local attack ?
PostForum:Newbies corner Posted: Wed Dec 22, 2004 7:20 am Subject: who can help me use Remview.php to local attack ?
Dora
Replies: 1
Views: 11551




I know there is a way to view the structure of Dir and file on Server using remview.php scripts .
Who can discrible the detail way of using this script for me ?

Thank a lot
Help me : SQL injection Forum IBF module ArCade
PostForum:Newbies corner Posted: Wed Dec 22, 2004 7:16 am Subject: Help me : SQL injection Forum IBF module ArCade
Dora
Replies: 0
Views: 9215




I try to browse this URL : http://www.oitinhyeu.de/diendan/index.php?act=Arcade&cat=-1%20UNION%20SELECT%200,0,legacy_password,id,name,0,0,0,0,0,0,0,0,0,0,0,0,0%20FROM%20ibf_members%20

And i get ...
Help me about paFileDB Version 3.1
PostForum:Newbies corner Posted: Wed Dec 22, 2004 7:03 am Subject: Help me about paFileDB Version 3.1
Dora
Replies: 0
Views: 9160




I have just found a bug and exploit of paFileDB Version 3.1


============================
Security REPORT paFileDB 3.1
============================

Product: paFileDB Version 3.1 (and ...
Page 1 of 1
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.045 Seconds