<?xml version="1.0"?>
<rss version="2.0" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:yt="http://gdata.youtube.com/schemas/2007" xmlns:atom="http://www.w3.org/2005/Atom">
   <channel>
      <title>secfeeds_exploit</title>
      <description>Pipes Output</description>
      <link>http://pipes.yahoo.com/pipes/pipe.info?_id=GCiNc_TY3BGxBZ9TmLokhQ</link>
      <atom:link rel="next" href="http://pipes.yahoo.com/pipes/pipe.run?_id=GCiNc_TY3BGxBZ9TmLokhQ&amp;_render=rss&amp;page=2"/>
      <pubDate>Thu, 01 Oct 2015 22:12:51 +0000</pubDate>
      <generator>http://pipes.yahoo.com/pipes/</generator>
      <item>
         <title>Packet Storm New Exploits For September, 2015</title>
         <link>https://packetstormsecurity.com/files/133814/1509-exploits.tgz</link>
         <description>This archive contains 191 exploits that were added to Packet Storm in September, 2015.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133814/1509-exploits.tgz</guid>
         <pubDate>Thu, 01 Oct 2015 18:03:30 +0000</pubDate>
      </item>
      <item>
         <title>Kaspersky Endpoint Security For Windows 8.1.0.1042 / 10.2.1.23 Unsalted Hash</title>
         <link>https://packetstormsecurity.com/files/133812/SYSS-2015-002.txt</link>
         <description>The SySS GmbH found out that the admin password for protecting different functions of the Kaspersky Endpoint Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133812/SYSS-2015-002.txt</guid>
         <pubDate>Thu, 01 Oct 2015 17:59:10 +0000</pubDate>
      </item>
      <item>
         <title>Kaspersky Anti-Virus 15.0.1.415 Unsalted Hash</title>
         <link>https://packetstormsecurity.com/files/133810/SYSS-2015-010.txt</link>
         <description>The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Anti-Virus software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133810/SYSS-2015-010.txt</guid>
         <pubDate>Thu, 01 Oct 2015 17:56:33 +0000</pubDate>
      </item>
      <item>
         <title>Kaspersky Internet Security 15.0.2.361 Unsalted Hash</title>
         <link>https://packetstormsecurity.com/files/133808/SYSS-2015-008.txt</link>
         <description>The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Internet Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133808/SYSS-2015-008.txt</guid>
         <pubDate>Thu, 01 Oct 2015 17:53:48 +0000</pubDate>
      </item>
      <item>
         <title>Kaspersky Total Security 15.0.1.415 Unsalted Hash</title>
         <link>https://packetstormsecurity.com/files/133806/SYSS-2015-006.txt</link>
         <description>The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Total Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133806/SYSS-2015-006.txt</guid>
         <pubDate>Thu, 01 Oct 2015 17:48:14 +0000</pubDate>
      </item>
      <item>
         <title>Kaspersky Small Office Security 13.0.4.233 Unsalted Hash</title>
         <link>https://packetstormsecurity.com/files/133804/SYSS-2015-004.txt</link>
         <description>The SySS GmbH found out that the administrator password for protecting different functions of the Kaspersky Small Office Security software, like managing backups or stopping protection services, is stored as raw, unsalted MD5 hash value in the Windows registry.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133804/SYSS-2015-004.txt</guid>
         <pubDate>Thu, 01 Oct 2015 17:44:13 +0000</pubDate>
      </item>
      <item>
         <title>MakeSFX.exe 1.44 Stack Buffer Overflow</title>
         <link>https://packetstormsecurity.com/files/133799/AS-MAKESFX-BUFF-OVERFLOW-09302015.txt</link>
         <description>MakeSFX.exe version 1.44 suffers from stack-based buffer overflow vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133799/AS-MAKESFX-BUFF-OVERFLOW-09302015.txt</guid>
         <pubDate>Thu, 01 Oct 2015 16:07:56 +0000</pubDate>
      </item>
      <item>
         <title>ElasticSearch Path Traversal Arbitrary File Download</title>
         <link>https://packetstormsecurity.com/files/133797/CVE-2015-5531.tgz</link>
         <description>Proof of concept code that demonstrates a path traversal vulnerability in ElasticSearch that allows for arbitrary file disclosure.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133797/CVE-2015-5531.tgz</guid>
         <pubDate>Thu, 01 Oct 2015 16:00:19 +0000</pubDate>
      </item>
      <item>
         <title>Dropbox FinderLoadBundle OS X Local Root Exploit</title>
         <link>https://packetstormsecurity.com/files/133796/dropboxfinderloadbundle.sh.txt</link>
         <description>The setuid root FinderLoadBundle that was included in older DropboxHelperTools versions for OS X allows loading of dynamically linked shared libraries that are residing in the same directory. The directory in which FinderLoadBundle is located is owned by root and that prevents placing arbitrary files there. But creating a hard link from FinderLoadBundle to somewhere in a directory in /tmp circumvents that protection thus making it possible to load a shared library containing a payload which creates a root shell.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133796/dropboxfinderloadbundle.sh.txt</guid>
         <pubDate>Thu, 01 Oct 2015 15:55:54 +0000</pubDate>
      </item>
      <item>
         <title>WinRAR Expired Notification Command Execution</title>
         <link>https://packetstormsecurity.com/files/133795/win_rar_rce.py.txt</link>
         <description>WinRAR suffers from an expired notification OLE remote command execution vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133795/win_rar_rce.py.txt</guid>
         <pubDate>Thu, 01 Oct 2015 15:53:44 +0000</pubDate>
      </item>
      <item>
         <title>[local] - Mac OS X 10.9.5 / 10.10.5 - rsh/libmalloc Privilege Escalation</title>
         <link>https://www.exploit-db.com/exploits/38371</link>
         <description>Mac OS X 10.9.5 / 10.10.5 - rsh/libmalloc Privilege Escalation</description>
         <guid isPermaLink="false">edb-38371</guid>
         <pubDate>Thu, 01 Oct 2015 00:00:00 +0000</pubDate>
         <category>local</category>
      </item>
      <item>
         <title>[remote] - PIXORD Vehicle 3G Wi-Fi Router 3GR-431P - Multiple Vulnerabilities</title>
         <link>https://www.exploit-db.com/exploits/38370</link>
         <description>PIXORD Vehicle 3G Wi-Fi Router 3GR-431P - Multiple Vulnerabilities</description>
         <guid isPermaLink="false">edb-38370</guid>
         <pubDate>Thu, 01 Oct 2015 00:00:00 +0000</pubDate>
         <category>remote</category>
      </item>
      <item>
         <title>[webapps] - Bosch Security Systems Dinion NBN-498 Web Interface - XML Injection</title>
         <link>https://www.exploit-db.com/exploits/38369</link>
         <description>Bosch Security Systems Dinion NBN-498 Web Interface - XML Injection</description>
         <guid isPermaLink="false">edb-38369</guid>
         <pubDate>Thu, 01 Oct 2015 00:00:00 +0000</pubDate>
         <category>webapps</category>
      </item>
      <item>
         <title>Kaseya Virtual System Administrator Code Execution / Privilege Escalation</title>
         <link>https://packetstormsecurity.com/files/133782/kaseyavsa-execescalate.txt</link>
         <description>Kaseya Virtual System Administrator suffers from multiple code execution vulnerabilities and a privilege escalation vulnerability. VSA versions 7.0.0.0 through 7.0.0.32, 8.0.0.0 through 8.0.0.22, 9.0.0.0 through 9.0.0.18, and 9.1.0.0 through 9.1.0.8 are affected.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133782/kaseyavsa-execescalate.txt</guid>
         <pubDate>Wed, 30 Sep 2015 04:13:09 +0000</pubDate>
      </item>
      <item>
         <title>Mitsubishi Melsec FX3G-24M Denial Of Service</title>
         <link>https://packetstormsecurity.com/files/133780/mitsubishimelsec-dos.txt</link>
         <description>Mitsubishi Melsec FX3G-24M suffers from a denial of service vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133780/mitsubishimelsec-dos.txt</guid>
         <pubDate>Wed, 30 Sep 2015 04:08:00 +0000</pubDate>
      </item>
      <item>
         <title>Western Digital My Cloud Command Injection</title>
         <link>https://packetstormsecurity.com/files/133777/westerndigitalmycloud-exec.txt</link>
         <description>Western Digital My Cloud with firmware versions 04.01.03-421 and 04.01.04-422 suffer from a command injection vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133777/westerndigitalmycloud-exec.txt</guid>
         <pubDate>Wed, 30 Sep 2015 03:57:03 +0000</pubDate>
      </item>
      <item>
         <title>WordPress mTheme-Unus Local File Inclusion</title>
         <link>https://packetstormsecurity.com/files/133778/wpmthemeunus-lfi.txt</link>
         <description>WordPress mTheme-Unus theme versions prior to 2.3 suffer from a local file inclusion vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133778/wpmthemeunus-lfi.txt</guid>
         <pubDate>Wed, 30 Sep 2015 00:00:22 +0000</pubDate>
      </item>
      <item>
         <title>[local] - MakeSFX.exe 1.44 - Stack Buffer Overflow</title>
         <link>https://www.exploit-db.com/exploits/38362</link>
         <description>MakeSFX.exe 1.44 - Stack Buffer Overflow</description>
         <guid isPermaLink="false">edb-38362</guid>
         <pubDate>Wed, 30 Sep 2015 00:00:00 +0000</pubDate>
         <category>local</category>
      </item>
      <item>
         <title>[local] - Dropbox &amp;lt; 3.3.x  - OSX FinderLoadBundle Local Root Exploit</title>
         <link>https://www.exploit-db.com/exploits/38360</link>
         <description>Dropbox &amp;lt; 3.3.x  - OSX FinderLoadBundle Local Root Exploit</description>
         <guid isPermaLink="false">edb-38360</guid>
         <pubDate>Wed, 30 Sep 2015 00:00:00 +0000</pubDate>
         <category>local</category>
      </item>
      <item>
         <title>Centreon 2.6.1 Persistent Cross Site Scripting</title>
         <link>https://packetstormsecurity.com/files/133758/ZSL-2015-5266.txt</link>
         <description>Centreon version 2.6.1 suffers from a stored cross site scripting vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133758/ZSL-2015-5266.txt</guid>
         <pubDate>Tue, 29 Sep 2015 01:14:40 +0000</pubDate>
      </item>
      <item>
         <title>PCMan FTP Server 2.0.7 Directory Traversal</title>
         <link>https://packetstormsecurity.com/files/133756/pcman_dir_traversal.py.txt</link>
         <description>PCMan FTP Server version 2.0.7 suffers from a directory traversal vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133756/pcman_dir_traversal.py.txt</guid>
         <pubDate>Tue, 29 Sep 2015 01:11:49 +0000</pubDate>
      </item>
      <item>
         <title>Vtiger CRM 6.3 Remote Code Execution</title>
         <link>https://packetstormsecurity.com/files/133755/vtiger-crm-authenticated-rce-cve-2015-6000.txt</link>
         <description>Vtiger CRM versions 6.3 and below suffer from an authenticated remote code execution vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133755/vtiger-crm-authenticated-rce-cve-2015-6000.txt</guid>
         <pubDate>Tue, 29 Sep 2015 01:09:53 +0000</pubDate>
      </item>
      <item>
         <title>[local] - Ubuntu Apport - Local Privilege Escalation</title>
         <link>https://www.exploit-db.com/exploits/38353</link>
         <description>Ubuntu Apport - Local Privilege Escalation</description>
         <guid isPermaLink="false">edb-38353</guid>
         <pubDate>Tue, 29 Sep 2015 00:00:00 +0000</pubDate>
         <category>local</category>
      </item>
      <item>
         <title>[remote] - ManageEngine EventLog Analyzer Remote Code Execution</title>
         <link>https://www.exploit-db.com/exploits/38352</link>
         <description>ManageEngine EventLog Analyzer Remote Code Execution</description>
         <guid isPermaLink="false">edb-38352</guid>
         <pubDate>Tue, 29 Sep 2015 00:00:00 +0000</pubDate>
         <category>remote</category>
      </item>
      <item>
         <title>[webapps] - Kaseya Virtual System Administrator - Multiple Vulnerabilities</title>
         <link>https://www.exploit-db.com/exploits/38351</link>
         <description>Kaseya Virtual System Administrator - Multiple Vulnerabilities</description>
         <guid isPermaLink="false">edb-38351</guid>
         <pubDate>Tue, 29 Sep 2015 00:00:00 +0000</pubDate>
         <category>webapps</category>
      </item>
      <item>
         <title>[webapps] - Western Digital My Cloud 04.01.03-421, 04.01.04-422 - Command Injection</title>
         <link>https://www.exploit-db.com/exploits/38350</link>
         <description>Western Digital My Cloud 04.01.03-421, 04.01.04-422 - Command Injection</description>
         <guid isPermaLink="false">edb-38350</guid>
         <pubDate>Tue, 29 Sep 2015 00:00:00 +0000</pubDate>
         <category>webapps</category>
      </item>
      <item>
         <title>[local] - IconLover 5.42 - Local Buffer Overflow Exploit</title>
         <link>https://www.exploit-db.com/exploits/38349</link>
         <description>IconLover 5.42 - Local Buffer Overflow Exploit</description>
         <guid isPermaLink="false">edb-38349</guid>
         <pubDate>Tue, 29 Sep 2015 00:00:00 +0000</pubDate>
         <category>local</category>
      </item>
      <item>
         <title>Centreon 2.6.1 Command Injection</title>
         <link>https://packetstormsecurity.com/files/133754/ZSL-2015-5265.txt</link>
         <description>Centreon version 2.6.1 suffers from a command injection vulnerability. The POST parameter 'persistant' which serves for making a new service run in the background is not properly sanitized before being used to execute commands. This can be exploited to inject and execute arbitrary shell commands as well as using cross site request forgery attacks.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133754/ZSL-2015-5265.txt</guid>
         <pubDate>Mon, 28 Sep 2015 22:03:28 +0000</pubDate>
      </item>
      <item>
         <title>IconLover 5.4.5 Stack Buffer Overflow</title>
         <link>https://packetstormsecurity.com/files/133753/VL-1609.txt</link>
         <description>IconLover version 5.4.5 suffers from a stack buffer overflow vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133753/VL-1609.txt</guid>
         <pubDate>Mon, 28 Sep 2015 22:02:19 +0000</pubDate>
      </item>
      <item>
         <title>Photos In Wifi 1.0.1 File Upload</title>
         <link>https://packetstormsecurity.com/files/133752/VL-1600.txt</link>
         <description>Photos in Wifi version 1.0.1 suffers from a remote shell upload vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133752/VL-1600.txt</guid>
         <pubDate>Mon, 28 Sep 2015 22:01:02 +0000</pubDate>
      </item>
      <item>
         <title>Centreon 2.6.1 Add Administrator Cross Site Request Forgery</title>
         <link>https://packetstormsecurity.com/files/133751/ZSL-2015-5263.txt</link>
         <description>Centreon version 2.6.1 add administrator cross site request forgery exploit.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133751/ZSL-2015-5263.txt</guid>
         <pubDate>Mon, 28 Sep 2015 20:53:39 +0000</pubDate>
      </item>
      <item>
         <title>Flash Failing Checks On uint Capacity Field</title>
         <link>https://packetstormsecurity.com/files/133750/GS20150928205154.tgz</link>
         <description>The latest version of the Vector.primitive length check in Flash 18,0,0,232 is not robust against memory corruptions such as heap overflows. While it is no longer possible to obviously bypass the length check there is still unguarded data in the object which could be corrupted to serve as a useful primitive.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133750/GS20150928205154.tgz</guid>
         <pubDate>Mon, 28 Sep 2015 20:51:54 +0000</pubDate>
      </item>
      <item>
         <title>BisonWare BisonFTP 3.5 Directory Traversal</title>
         <link>https://packetstormsecurity.com/files/133749/bisonftp_dir_trav.py.txt</link>
         <description>BisonWare BisonFTP version 3.5 suffers from a directory traversal vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133749/bisonftp_dir_trav.py.txt</guid>
         <pubDate>Mon, 28 Sep 2015 20:48:44 +0000</pubDate>
      </item>
      <item>
         <title>ManageEngine EventLog Analyzer Remote Code Execution</title>
         <link>https://packetstormsecurity.com/files/133747/manageengine_eventlog_analyzer_rce.rb.txt</link>
         <description>This Metasploit module exploits a SQL query functionality in ManageEngine EventLog Analyzer v10.6 build 10060 and previous versions. Every authenticated user, including the default &quot;guest&quot; account can execute SQL queries directly on the underlying Postgres database server. The queries are executed as the &quot;postgres&quot; user which has full privileges and thus is able to write files to disk. This way a JSP payload can be uploaded and executed with SYSTEM privileges on the web server. This Metasploit module has been tested successfully on ManageEngine EventLog Analyzer 10.0 (build 10003) over Windows 7 SP1.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133747/manageengine_eventlog_analyzer_rce.rb.txt</guid>
         <pubDate>Mon, 28 Sep 2015 20:46:07 +0000</pubDate>
      </item>
      <item>
         <title>Rowhammer Linux Kernel Privilege Escalation Proof Of Concept</title>
         <link>https://packetstormsecurity.com/files/133746/GS20150928204418.tgz</link>
         <description>Proof of concept exploit code for the Linux Rowhammer DRAM privilege escalation vulnerability.</description>
         <guid isPermaLink="false">https://packetstormsecurity.com/files/133746/GS20150928204418.tgz</guid>
         <pubDate>Mon, 28 Sep 2015 20:44:24 +0000</pubDate>
      </item>
   </channel>
</rss>
<!-- fe4.yql.bf1.yahoo.com compressed/chunked Thu Oct  1 22:12:50 UTC 2015 -->
