Microsoft Reader 2.1.1.3143 NULL Byte

0
Microsoft Reader versions 2.1.1.3143 and below suffer a vulnerability where it is possible to write a NULL byte in an arbitrary location. Proof of...

Re: INSECT Pro 2.5.1 released

0
Posted by kralor on Apr 11Hola Juan, There must be a bug on your website I can't download the product, I only see a 'buy now'...

Microsoft Host Integration Server 8.5.4224.0 Denial Of Service

0
Microsoft Host Integration Server versions 8.5.4224.0 and below suffer from various denial of service vulnerabilities. Proof of concept code included. Source: Microsoft Host Integration Server...

Re: Medium severity flaw in Konqueror

0
Posted by Vincent Danen on Apr 11* Tim Brown wrote: Actually, CVE-2011-1168 was assigned to this issue as noted in the upstream advisory: http://www.kde.org/info/security/advisory-20110411-1.txt Source: Re: Medium...

VeryTools Video Spirit Pro 1.70 Buffer Overflow

0
This Metasploit module exploits a stack buffer overflow in Video Spirit versions 1.70 and below. When opening a malicious project file (.visprj), a stack...

ZDI-11-118: Novell ZENworks Asset Management Path Traversal File Overwrite Remote Code Execution Vulnerability

0
Posted by ZDI Disclosures on Apr 11ZDI-11-118: Novell ZENworks Asset Management Path Traversal File Overwrite Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-118 April 11, 2011 -- CVE ID: CVE-2010-4229 -- CVSS: 10,...

[remote] – Zend Server Java Bridge Arbitrary Java Code Execution

0
Source: - Zend Server Java Bridge Arbitrary Java Code Execution

oclHashcat-lite GPU Hash Cracking Utility 0.02

0
oclHashcat-lite Advanced GPU hash cracking utility that includes the World's fastest MD4, MD5, SHA1, and SHA256 cracker. It supports up to 16 GPUs and...

INSECT Pro 2.5.1 released

0
Posted by runlvl on Apr 11INSECT Pro 2.5 new version is now accessible on Insecurity Research servers Get it now to enjoy the positive changes...

SQLMAP – Automatic SQL Injection Tool 0.9

0
sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web...