«
Expand/Collapse
154 items tagged "download"
Related tags:
internet [+],
directory traversal [+],
shellcode [+],
remote [+],
hijacking [+],
free [+],
exploits [+],
dreambox [+],
plus [+],
vulnerability [+],
link [+],
bugtraq [+],
remote buffer overflow [+],
phux [+],
mywebserver [+],
metalink [+],
linux security [+],
free download manager [+],
dll [+],
day [+],
database [+],
dap [+],
buffer overflow vulnerability [+],
yourtube [+],
wp filebase [+],
third party software [+],
sql injection [+],
sql [+],
simple [+],
security issue [+],
safer use [+],
released [+],
read [+],
rapid [+],
plugin version [+],
phpboost [+],
php nuke [+],
per day [+],
name [+],
monitor [+],
manager version [+],
manager 2 [+],
malware [+],
jcms [+],
http [+],
fyodor [+],
full [+],
file manager [+],
fiasco [+],
exploit [+],
enterprise version [+],
enterprise [+],
efront [+],
dns [+],
dbconfig [+],
database configuration [+],
darknet [+],
croogo [+],
com [+],
client [+],
buffer overflow [+],
Newbie [+],
BackTrack [+],
Area [+],
x client [+],
window versions [+],
window [+],
vulnerabilities [+],
usernames passwords [+],
uri [+],
timeout [+],
test sequences [+],
sp2 [+],
solaris [+],
site [+],
service vulnerability [+],
security advisory [+],
reverse dns [+],
rdp [+],
poc [+],
php [+],
openttd [+],
map [+],
mandriva linux [+],
manager module [+],
maintenance program [+],
linux [+],
inclusion [+],
hacking [+],
full disclosure [+],
execute [+],
exec [+],
elouai [+],
downloads [+],
directory traversal vulnerability [+],
dialog [+],
denial of service [+],
debian linux [+],
consumption [+],
code internet [+],
cms [+],
channel keys [+],
center [+],
based buffer overflow [+],
attack [+],
aria [+],
arbitrary files [+],
arbitrary code [+],
akamai [+],
adobe download manager [+],
adobe [+],
active x control download [+],
active x control [+],
General [+],
file [+],
manager [+],
zdi [+],
youtube [+],
xp sp2 [+],
winautopwn [+],
win [+],
website [+],
vulnerability exploitation [+],
vsftpd [+],
video [+],
version 6 [+],
vana cms [+],
vana [+],
user [+],
url [+],
uploader [+],
unicode [+],
torrent [+],
thread [+],
suitable place [+],
stack buffer [+],
snif [+],
silly thing [+],
security vulnerability [+],
security [+],
secunia [+],
sdk package [+],
sdk [+],
scripti [+],
retired [+],
research [+],
remote control server [+],
remote buffer overflow vulnerability [+],
proof of concept [+],
productivity tool [+],
privilege escalation vulnerability [+],
portscan [+],
playstation 3 [+],
playstation [+],
place [+],
pass [+],
package [+],
oscss [+],
orbit downloader [+],
opera [+],
nmap [+],
network discovery [+],
netcat [+],
mozilla firefox [+],
mozilla [+],
mike [+],
manager atlcom [+],
magictree [+],
mac os x [+],
mac os [+],
local privilege escalation [+],
local [+],
launch [+],
kde [+],
kaspersky [+],
iso file [+],
index [+],
hacks [+],
hacked [+],
google [+],
git [+],
getsimple [+],
geohot [+],
frameworks [+],
found [+],
firefox [+],
filetype [+],
failed [+],
execution [+],
eclime [+],
dual boot with windows [+],
downloader [+],
download site [+],
disclosure [+],
critical portion [+],
couple suggestions [+],
core command [+],
command [+],
code execution [+],
bypass [+],
buffer overflow vulnerabilities [+],
broadcom 802 [+],
broadcom [+],
bof [+],
atlcom [+],
apache 2 [+],
apache [+],
anyone [+],
anti virus [+],
android [+],
amp [+],
al sat [+],
akamai download [+],
Tools [+],
Support [+],
ExploitsVulnerabilities [+],
4images [+],
accelerator [+],
wordpress [+],
txt [+],
s system [+]
-
-
15:40
»
Packet Storm Security Exploits
2X Client for RDP version 10.1.1204 suffers from a ClientSystem class active-x control download and execute vulnerability that affects TuxClientSystem.dll.
-
15:40
»
Packet Storm Security Misc. Files
2X Client for RDP version 10.1.1204 suffers from a ClientSystem class active-x control download and execute vulnerability that affects TuxClientSystem.dll.
-
-
18:06
»
Packet Storm Security Exploits
WordPress Count-Per-Day plugin versions prior to 3.1.1 suffer from cross site scripting and arbitrary file download vulnerabilities.
-
-
16:33
»
Packet Storm Security Exploits
Dreambox versions DM500, DM500+, DM500HD, and DM500S suffer from a file download vulnerability through a directory traversal with appending the '/' character in the HTTP GET method of the affected host address. The attacker can get to sensitive information like paid channel keys, usernames, passwords, config and plug-ins info, etc.
-
16:33
»
Packet Storm Security Misc. Files
Dreambox versions DM500, DM500+, DM500HD, and DM500S suffer from a file download vulnerability through a directory traversal with appending the '/' character in the HTTP GET method of the affected host address. The attacker can get to sensitive information like paid channel keys, usernames, passwords, config and plug-ins info, etc.
-
-
15:02
»
SecuriTeam
A security issue in Opera allows malicious people to compromise a vulnerable system.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
20:01
»
Packet Storm Security Recent Files
Secunia Research has discovered a security issue in Opera, which can be exploited by malicious people to compromise a vulnerable system. The Download dialog provides the option to run a downloadable executable at a predictable location in the browser window. This can be exploited to trick a user into clicking on the Run button by positioning a new window on top of the Download dialog that is closed e.g. via a timeout shortly before the user clicks on a link within this window. Versions 10.53, 10.54, and 10.60 are affected.
-
20:00
»
Packet Storm Security Advisories
Secunia Research has discovered a security issue in Opera, which can be exploited by malicious people to compromise a vulnerable system. The Download dialog provides the option to run a downloadable executable at a predictable location in the browser window. This can be exploited to trick a user into clicking on the Run button by positioning a new window on top of the Download dialog that is closed e.g. via a timeout shortly before the user clicks on a link within this window. Versions 10.53, 10.54, and 10.60 are affected.
-
-
0:01
»
Packet Storm Security Recent Files
Akamai's Download Manager allows attackers to download arbitrary files onto a user's desktop. Using a so-called blended threat attack it is possible to execute arbitrary code. This attack affects the ActiveX control as well as the Java applet. This was fixed in version 2.2.5.4.
-
0:01
»
Packet Storm Security Exploits
Akamai's Download Manager allows attackers to download arbitrary files onto a user's desktop. Using a so-called blended threat attack it is possible to execute arbitrary code. This attack affects the ActiveX control as well as the Java applet. This was fixed in version 2.2.5.4.
-
-
23:56
»
SecuriTeam
A vulnerability was discovered in Free Download Manager, which can be exploited by malicious people to compromise a user's system.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
23:55
»
SecuriTeam
A vulnerability was discovered in Internet Download Manager, which can be exploited by malicious people to compromise a user's system.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
21:00
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in Orbit Downloader, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to the application not properly sanitizing the name attribute of the file element of metalink files before using it to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. The vulnerability is confirmed in version 3.0.0.4 and 3.0.0.5. Other versions may also be affected.
-
0:00
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-098 - The name attribute of the file element of metalink files is not properly sanitized before being used to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. Packages for 2009.0 are provided due to the Extended Maintenance Program. The corrected packages solves these problems.
-
0:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-098 - The name attribute of the file element of metalink files is not properly sanitized before being used to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. Packages for 2009.0 are provided due to the Extended Maintenance Program. The corrected packages solves these problems.
-
-
22:00
»
Packet Storm Security Recent Files
Debian Linux Security Advisory 2047-1 - A vulnerability was discovered in aria2, a download client. The name attribute of the file element of metalink files is not properly sanitised before using it to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory.
-
22:00
»
Packet Storm Security Advisories
Debian Linux Security Advisory 2047-1 - A vulnerability was discovered in aria2, a download client. The name attribute of the file element of metalink files is not properly sanitised before using it to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory.
-
-
11:02
»
Packet Storm Security Recent Files
Secunia Research has discovered four vulnerabilities in Free Download Manager, which can be exploited by malicious people to compromise a user's system. Free Download Manager version 3.0 build 850 is affected.
-
11:02
»
Packet Storm Security Recent Files
Secunia Research has discovered a vulnerability in Free Download Manager, which can be exploited by malicious people to compromise a user's system. The name attribute of the file element of metalink files is not properly sanitised before being used to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. Free Download Manager version 3.0 build 850 is affected.
-
11:02
»
Packet Storm Security Recent Files
Secunia Research has discovered a vulnerability in aria2, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to the application not properly sanitising the name attribute of the file element of metalink files before using it to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. aria2 version 1.9.1 build2 is affected.
-
11:01
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in KDE, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to KGet not properly sanitising the name attribute of the file element of metalink files before using it to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. KDE version 4.4.2 is affected.
-
11:01
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in Free Download Manager, which can be exploited by malicious people to compromise a user's system. The name attribute of the file element of metalink files is not properly sanitised before being used to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. Free Download Manager version 3.0 build 850 is affected.
-
11:01
»
Packet Storm Security Advisories
Secunia Research has discovered four vulnerabilities in Free Download Manager, which can be exploited by malicious people to compromise a user's system. Free Download Manager version 3.0 build 850 is affected.
-
11:01
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in aria2, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to the application not properly sanitising the name attribute of the file element of metalink files before using it to download files. If a user is tricked into downloading from a specially crafted metalink file, this can be exploited to download files to directories outside of the intended download directory via directory traversal attacks. aria2 version 1.9.1 build2 is affected.
-
-
17:00
»
Packet Storm Security Recent Files
Secunia Research has discovered a vulnerability in Internet Download Manager, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by a boundary error when sending certain test sequences to an FTP server. This can be exploited to cause a stack-based buffer overflow by e.g. tricking a user into downloading a file from a specially crafted FTP URI. Successful exploitation allows execution of arbitrary code. Internet Download Manager version 5.18 is affected.
-
17:00
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in Internet Download Manager, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by a boundary error when sending certain test sequences to an FTP server. This can be exploited to cause a stack-based buffer overflow by e.g. tricking a user into downloading a file from a specially crafted FTP URI. Successful exploitation allows execution of arbitrary code. Internet Download Manager version 5.18 is affected.
-
-
14:13
»
Carnal0wnage
I wanted to be able to view/sniff some traffic from my android phone. Mostly to see how "closed" the gowalla checkin api was (not very).
The first couple suggestions were to connect the phone to wifi and checkin. To do this from the comfort of my own home meant checking in from home and I didn't really want to do that.
Installing the android emulator is pretty straightforward, the only problem is that it doesnt come with the android market or the ability to easily(?) download apps to mess with.
After some googling I found this post:
http://tech-droid.blogspot.com/2009/11/android-market-on-emulator.htmlThis enabled me to get a working android emulator with android market place.
Go
here and download the sdk for whatever system you are using, I'm on ubuntu...
You'll need to download some platforms as the sdk doesnt come with much of anyting by default.
To launch the Android SDK and AVD Manager on Windows, execute
SDK Setup.exe, at the root of the SDK directory. On Mac OS X or Linux, execute the
android tool in the
/tools/ folder. This will start the GUI (least on linux --I dont care about windows)

Go to available packages and download sdk package for Android 1.5 or 1.6. I used 1.5

over in installed packages you should see the sdk when its all done.

Go
here and download the system image for 1.5 or 1.6
Create an AVD (1.5 or 1.6). populate it how you want, I gave it one of everything on the hardware.

After you create the avd, you should have an avd folder in your .android folder. Something like .android/avd/[avdname]
Copy the system.img file you downloaded from HTC in there.
start that puppy up


If you went the 1.5 route you are probably getting a slide keyboard to open thing. Hit CTRL+F11 to change the orientation of the phone to "slide it open"

You now have a pretty much fully functional android to muck around with and now any communications with any apps should be sniffable in wireshark.

What about the GPS? The debugger gives you the ability to set the GPS manually so you can be anywhere you want to be :-)

additional reading:
https://www.isecpartners.com/files/iSEC_Android_Exploratory_Blackhat_2009.pdf-CG
-
-
18:42
»
remote-exploit & backtrack
Hello..I seen some stuff on google were people are watching videos in Ubuntu. What im trying to do is download some videos and watch the video as i use backtrack. The only way i can learn is to practice and watch videos as i go.
I installed Backtrack 4 dual boot with Windows Vista 64 bit. So as of now i have to restart my computer and then go to back track and i would like to watch some videos
is there a command or something i need to download to get the video player to work?
thanks
Big Mike
-
-
15:27
»
remote-exploit & backtrack
has anyone uploaded backtrack 4 final to any sites for download?
i tried the torrent and it was corrupted and now ive tried downloading
from the site but the download is way to slow or the site goes down
and i have to restart the dl.
so, any mirrors?
-
-
6:37
»
Hack a Day
You can now download the exploit package for the PlayStation 3. [Geohot] just posted the code you need to pull off the exploit we told you about on Sunday, making it available on a “silver platter” with just a bit of explanation on how it works. He’s located a critical portion of the memory to [...]
-
-
14:17
»
remote-exploit & backtrack
I have laptop with Broadcom 802.11 network adapter. BT didn't recognize it so with 'lspci -vnn | grep 14e4' I found out that is BCM4312 and 14e4:4315. I have to install B43 drivers for that chipset, but when I write 1st line 'git clone...' I get message to install git with 'apt-git install git-core' command. And with that command I get err messages that some adresses can't be resolved.
As I'm totaly new to linux I don't know even what I'm doing. I guess I should download b43 drivers, but I don't understand how can I download them when BT4 don't recognize my network card.
Can someone explain me something about this, or maybe tell me what I'm doing wrong?
-
-
15:31
»
remote-exploit & backtrack
hi all .. i wish that its the suitable place to put my thread,and not moving it to another place,,
As we know the backtrack final .. is about 1570 mega .. , , , so if some one could help and compress its iso file as much as possible then upload it .. i know its silly thing am asking for (but it helps me and helps others)..and here in my country the download amount is limited and only 3 G in the month and also not fast .. so i cant download it ,, but if it was smaller then i could
if some one helps .. i thank him before .. and thank you ,,