Waraxe IT Security Portal
Login or Register
September 3, 2026
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 901
Members: 0
Total: 901
Full disclosure
CyberDanube Security Research 20260611-0 | Multiple Denial of Service Vulnerabilities in Dahua IPC/SD/NVR/XVR/EVS/VTO/VT H/ASI/TPC Camera Series
Multiple Integer Overflows in U-Boot Filesystem Parsing(CVE-2025-70290 through CVE-2025-70293)
[ADVISORY] Multiple Integer Overflows in U-Boot FilesystemParsing (CVE-2025-70290 through CVE-2025-70293)
JSON Deserialiser Unconstrained Resource Consumption Proof ofConcept
Dovecot Security Advisory 3/2026
FD - Half-click unauthenticated remote code execution on Horde Groupware IMP (from a stored XSS)
[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File
[NotCVE-2026-0012] EmpManageX Hardcoded Administrative Credentials in Login API Allow Full Access to Employee Records
[NotCVE-2026-0011] Nmap 7.99 and Earlier nselib/packet.lua Zero-Length TCP Option Infinite Loop Allows Remote Denial of Service
[NotCVE-2026-0010] Barrier 2.4.0 for Windows Unauthenticated IPC Command Execution Allows Local Privilege Escalation to SYSTEM
[NotCVE-2026-0009] NitroShare Desktop 0.3.4 Path Traversal Allows LAN-Adjacent Arbitrary File Write
Escargot v4.3.0-214-gfaee4437 Unauthenticated Remote Debugger Allows Arbitrary JavaScript Evaluation and Local File Disclosure
Escargot v4.3.0-214-gfaee4437 OS Command Injection in Crash Handler via Unsanitized Executable Path
Escargot v4.3.0-214-gfaee4437 Debugger WebSocket Off-by-One Stack Buffer Overflow
UltraJSON v5.13.0-6-g733f9e1 Length-Boundary Violation Causes Out-of-Bounds Read During Incomplete JSON Parsing
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 25 matches
Flash tag
PostForum:PhpBB Posted: Sun May 04, 2008 10:00 am Subject: Flash tag
shmk
Replies: 2
Views: 8885




No reply means that is it quite secure? Cool
Flash tag
PostForum:PhpBB Posted: Sun Apr 27, 2008 9:24 am Subject: Flash tag
shmk
Replies: 2
Views: 8885




I'm thinking to add a TAG that allow to insert swf in posts.

I'm not a flash expert so...
swf files can cause serious security holes in a php system? (retrive cookies, inject something bad, get an ...
DOM XSS
PostForum:Cross-site scripting aka XSS Posted: Sat Jan 19, 2008 9:13 pm Subject: DOM XSS
shmk
Replies: 1
Views: 12912




I heard people talking about DOM XSS that instead of inserting jscript in the page code use hole in the javascript using DOM inserted in the page.

Is it possible?
How does it function?
What kind ...
Link in forum
PostForum:Php Posted: Mon Jan 14, 2008 9:51 pm Subject: Link in forum
shmk
Replies: 6
Views: 14818




Attacker can first place normal picture to remote server and then post img link to it. This will pass all security tests and posting will be allowed. After that attacker just changes original image on ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 3:02 pm Subject: Link in forum
shmk
Replies: 6
Views: 14818




Anti-CSRF measures with random token or even with CAPTCHA (for critical requests) are very effective by my personal experience. So if you have securely written code with no potential CSRF threats, the ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 1:42 pm Subject: Link in forum
shmk
Replies: 6
Views: 14818




It's always possible to fool the security filters. Attacker can first place normal picture to remote server and then post img link to it. This will pass all security tests and posting will be allowed. ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 9:54 am Subject: Link in forum
shmk
Replies: 6
Views: 14818




What's the most secure PHP filter that allow users to insert links to sites or images in a forum without flaws in security? (regarding xss and csrf overall)
WYSIWYG are secure ?
PostForum:PhpNuke Posted: Tue Sep 14, 2004 4:49 pm Subject: WYSIWYG are secure ?
shmk
Replies: 4
Views: 15377




So I can install it without fear ? Confused
WYSIWYG are secure ?
PostForum:PhpNuke Posted: Thu Sep 09, 2004 9:10 am Subject: WYSIWYG are secure ?
shmk
Replies: 4
Views: 15377




I have heard on net that use a WYSIWYG make big holes in security... is all true ?

I have found this 2:
http://www.phpnuker.de/ (using FCKEditor)
http://www.kodetech.com/nuke70/ (using Spaw)

C ...
Who is JackFromWales4u2?
PostForum:PhpNuke Posted: Thu Sep 09, 2004 8:59 am Subject: Re: Who is JackFromWales4u2?
shmk
Replies: 8
Views: 17138




I then ran a JackFromWales4u218600 Shocked

Now the sites are 44300 Shocked
Protect varchar(255)
PostForum:Php Posted: Wed Sep 01, 2004 10:02 am Subject: Protect varchar(255)
shmk
Replies: 16
Views: 38109




I'm back !

Is possible echo smiles without make some security holes ?

To echo smiles i made this piece of code but I think is not so secure Confused Rolling Eyes Confused

$sqlsm = "SELECT code, smile_ ...
Really Nice Drop-Down Menu
PostForum:Javascript Posted: Tue Aug 10, 2004 1:20 pm Subject: Really Nice Drop-Down Menu
shmk
Replies: 1
Views: 11328




I have found a nice dropdown menu here

http://www.destroydrop.com/javascripts/tree/

I'm not a specialist in Java security, so if someone will find some security hole in this script please warnin ...
Protect varchar(255)
PostForum:Php Posted: Tue Aug 03, 2004 9:32 pm Subject: Protect varchar(255)
shmk
Replies: 16
Views: 38109




Thx again... saturday i'll leave for a 2 weeks holiday so I don't disturbe you no more Razz

Good Holiday Very Happy
Protect varchar(255)
PostForum:Php Posted: Tue Aug 03, 2004 9:27 am Subject: Protect varchar(255)
shmk
Replies: 16
Views: 38109




Confused after all this I have a REALLY stupid question (come in my mind after see some PHPNuke module)... Confused

Variable taked from database but not used later for sql INSERT or SELECT (only "echo" on pa ...
-=LOGO COMPETITION!=-
PostForum:General discussion Posted: Mon Aug 02, 2004 9:49 pm Subject: -=LOGO COMPETITION!=-
shmk
Replies: 21
Views: 45392




too late the competition is over

Doh ! Exclamation
Page 1 of 2 Goto page 1, 2Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.072 Seconds