 |
Menu |
 |
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
 |
User Info |
 |
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 113
Members: 0
Total: 113
|
|
|
|
|
 |
Full disclosure |
 |
CyberDanube Security Research 20251014-0 | Multiple Vulnerabilities in Phoenix Contact QUINT4 UPS
apis.google.com - Insecure redirect via __lu parameter(exploited in the wild)
Urgent Security Vulnerabilities Discovered in Mercku Routers Model M6a
Re: Security Advisory: Multiple High-Severity Vulnerabilities in Suno.com (JWT Leakage, IDOR, DoS)
Security Advisory: Multiple High-Severity Vulnerabilities in Suno.com (JWT Leakage, IDOR, DoS)
[SBA-ADV-20250730-01] CVE-2025-39664: Checkmk Path Traversal
[SBA-ADV-20250724-01] CVE-2025-32919: Checkmk Agent Privilege Escalation via Insecure Temporary Files
CVE-2025-59397 - Open Web Analytics SQL Injection
Re: [FD]Full Disclosure: CVE-2025-31200 & CVE-2025-31201 – 0-Click iMessage Chain ? Secure Enclave Key Theft, Wormable RCE, Crypto Theft
Re: Full Disclosure: CVE-2025-31200 & CVE-2025-31201 – 0-Click iMessage Chain ? Secure Enclave Key Theft, Wormable RCE, Crypto Theft
Re: Defense in depth -- the Microsoft way (part 93): SRP/SAFERwhitelisting goes black on Windows 11
Re: [FD]: "Glass Cage" – Zero-Click iMessage ? Persistent iOS Compromise + Bricking (CVE-2025-24085 / 24201, CNVD-2025-07885)
Re: [FD]Full Disclosure: CVE-2025-31200 & CVE-2025-31201 – 0-Click iMessage Chain ? Secure Enclave Key Theft, Wormable RCE, Crypto Theft
Samtools v1.22.1 Uncontrolled Memory Allocation from Large BED Intervals Causes Denial-of-Service in Samtools/HTSlib
Samtools v1.22.1 Improper Handling of Excessive Histogram Bin Counts in Samtools Coverage Leads to Stack Overflow
|
|
|
|
|
|
 |
|
 |
 |
|
 |
IT Security and Insecurity Portal |
|
|
drag |
|
Replies: 2 |
Views: 10881 |
|
|
 |
 |
 |
|
I still check the site from time to time, but it seems that the meaningful posts are few and far between. Too many people asking about md5's. |
|
|
|
drag |
|
Replies: 0 |
Views: 7179 |
|
|
 |
 |
 |
|
I'm looking for a light-weight, free web sniffer for windows. Anyone know of anything? |
|
|
|
drag |
|
Replies: 2 |
Views: 10232 |
|
|
 |
 |
 |
|
"JavaScript (pretty much same as java)"
Not really. |
|
|
|
drag |
|
Replies: 1 |
Views: 7664 |
|
|
 |
 |
 |
|
the headers of the email tell you |
|
|
|
drag |
|
Replies: 3 |
Views: 20416 |
|
|
 |
 |
 |
|
Seems fishy... The guy who posted the above post also has only posted once? Could be the same guy.... |
|
|
|
drag |
|
Replies: 5 |
Views: 17708 |
|
|
 |
 |
 |
|
Proxies aren't just for web, they can be used to relay data from many different service types of various ports. However, to use the proxy for the game the game itself would need to be configured with ... |
|
|
|
drag |
|
Replies: 1 |
Views: 7525 |
|
|
 |
 |
 |
|
I find it difficult to believe that he has access to the said database..
However, even if he did, I would take that to mean that he has access to an encrypted version of your password. If that's th ... |
|
|
|
drag |
|
Replies: 5 |
Views: 11603 |
|
|
 |
 |
 |
|
Rainbow tables as the answer to 'cracking' passwords quickly, and how to imlement this, is always fun for me to think about. I'm more of a hardware engineer than software, and have always thought a fu ... |
|
|
|
drag |
|
Replies: 1 |
Views: 7803 |
|
|
 |
 |
 |
|
mysql_real_escape_string() is supposed to do a pretty good job. If magic_quotes_gpc is enabled, first apply stripslashes() to the data. Using this function on data which has already been escaped will ... |
|
|
|
drag |
|
Replies: 29 |
Views: 34426 |
|
|
 |
 |
 |
|
my last post should have read:
Just to make sure I understand, the admin has set the permissions on the files so that the user (that the webserver is running under) doesn't have write access to the ... |
|
|
|
drag |
|
Replies: 29 |
Views: 34426 |
|
|
 |
 |
 |
|
Just to make sure I understand, the admin has set the permissions on the files so that the user that the webserver is running doesn't have write access to them? |
|
|
|
drag |
|
Replies: 29 |
Views: 34426 |
|
|
 |
 |
 |
|
Well.. it looks like I have no access to edit any files within the wordpress installation. Unfortunate. Does this mean that I'm pretty hosed? |
|
|
|
drag |
|
Replies: 29 |
Views: 34426 |
|
|
 |
 |
 |
|
So I have write permissions on a ton of .php files.
How do you go about finding which php files you have access to? Did you find a list of php files included in wordpress and just test them one by ... |
|
|
|
drag |
|
Replies: 1 |
Views: 16345 |
|
|
 |
 |
 |
|
Apparently upgrading to 2.0.11-pr1 fixes the problem:
http://www.frsirt.com/english/advisories/2007/1364
So, if your friend is indeed wanting to fix his/her version it seems like this would work ... |
|
|
|
drag |
|
Replies: 3 |
Views: 16485 |
|
|
 |
 |
 |
|
Is it possible to run local exploits within the r57 or c99 shell to escalate priveleges? Or do you need to be using an actual shell on the system? |
|
|
Page 1 of 2 |
Goto page 1, 2Next All times are GMT |
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|