CVE-2009-1001
published 2009-04-15CVE-2009-1001: Unspecified vulnerability in Oracle BEA WebLogic Portal 8.1 Gold through SP6 allows remote authenticated users to gain privileges via unknown vectors.
PriorityP426medium5.5CVSS 2.0
AVNACLAuSCPIPAN
EPSS
1.48%
70.8th percentile
Unspecified vulnerability in Oracle BEA WebLogic Portal 8.1 Gold through SP6 allows remote authenticated users to gain privileges via unknown vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | bea_product_suite | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Polipo 1.0.4 - Remote Memory Corruption (PoC)
exploitdb·2009-12-07
CVE-2009-4413 Polipo 1.0.4 - Remote Memory Corruption (PoC)
Polipo 1.0.4 - Remote Memory Corruption (PoC)
---
#!/usr/bin/perl
# estranged.pl
# AKA
# Polipo 1.0.4 Remote Memory Corruption 0day PoC
#
# Jeremy Brown [[email protected]//jbrownsec.blogspot.com//krakowlabs.com] 12.07.2009
#
# *********************************************************************************************************
#
# Hzzp loves you Polipo!
#
# No use reporting this issue to Ubuntu Security unless you feel like waiting two weeks for them to sit on
# it, then UNFLAG security issue and call it a feature.
#
# I informally request that they apologize to the developers themselves x)
#
# polipo-20080907/client.c [1001-1009]:
#
# if(connection->reqlen > connection->reqbegin) {
# memmove(connection->reqbuf, connection->reqbuf + connection->reqbegin,
# connection->reqlen - co
Exploit-DB
FreeBSD 7.0/7.1 - 'vfs.usermount' Local Privilege Escalation
exploitdb·2009-07-09·CVSS 6.9
CVE-2008-3531 [MEDIUM] FreeBSD 7.0/7.1 - 'vfs.usermount' Local Privilege Escalation
FreeBSD 7.0/7.1 - 'vfs.usermount' Local Privilege Escalation
---
/*
* cve-2008-3531.c -- Patroklos Argyroudis, argp at domain census-labs.com
*
* Privilege escalation exploit for the FreeBSD-SA-08:08.nmount
* (CVE-2008-3531) vulnerability:
*
* http://security.freebsd.org/advisories/FreeBSD-SA-08:08.nmount.asc
* http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-3531
*
* For a detailed analysis see:
*
* http://census-labs.com/news/2009/07/02/cve-2008-3531-exploit/
*
* Sample run:
*
* [argp@leon ~]$ uname -rsi
* FreeBSD 7.0-RELEASE GENERIC
* [argp@leon ~]$ sysctl vfs.usermount
* vfs.usermount: 1
* [argp@leon ~]$ id
* uid=1001(argp) gid=1001(argp) groups=1001(argp)
* [argp@leon ~]$ gcc -Wall cve-2008-3531.c -o cve-2008-3531
* [argp@leon ~]$ ./cve-2008-3531
* [*] vptr = 0x006e776f
* [*
No writeups or analysis indexed.
http://osvdb.org/53767http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.htmlhttp://www.oracle.com/technology/deploy/security/wls-security/1001.htmlhttp://www.securityfocus.com/bid/34461http://www.securitytracker.com/id?1022059http://www.us-cert.gov/cas/techalerts/TA09-105A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/50053http://osvdb.org/53767http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.htmlhttp://www.oracle.com/technology/deploy/security/wls-security/1001.htmlhttp://www.securityfocus.com/bid/34461http://www.securitytracker.com/id?1022059http://www.us-cert.gov/cas/techalerts/TA09-105A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/50053
2009-04-15
Published