[Canvas] D2 Exploitation Pack 1.50, March 1 2012

DSquare Security sales at d2sec.com
Sun Mar 4 09:24:32 EST 2012


D2 Exploitation Pack 1.50 has been released with 4 new exploits.

This month we provide you a new client side exploit for HP Easy Printer Care 
which has been added to D2 Client Insider. The remote exploits of this release 
are for vBulletin and Horde.

Also, you will find a Linux kernel privilege escalation exploit (included in 
Kernvuln).


D2 Exploitation Pack is updated each month with new exploits and tools.
For customized exploits or tools please contact us at info at d2sec.com.

For sales inquiries and orders, please contact sales at d2sec.com

--
DSquare Security, LLC
http://www.d2sec.com


Changelog:

version 1.50 March 1, 2012
------------------------------

canvas_modules - Added
- d2sec_hpeasy2 : HP Easy Printer Care XMLCacheMgr Class ActiveX Control Code Execution Vulnerability (Exploit Windows)
- d2sec_vbseo : vBulletin vBSEO Remote Code Execution Vulnerability (Web Exploit) 
- d2sec_horde_backdoor : Horde 3.3.12 Backdoor Vulnérability (Web Exploit)
- client XMLRPC :
  -> support Apache Struts2 application

canvas_modules - Updated
- d2sec_clientinsider updated with new exploit
- d2sec_kernvuln :
  - a 32bit exploit for Linux Local Privilege Escalation via SUID /proc/pid/mem Vulnerability
  - minor updates



More information about the Canvas mailing list