Subscribe via feed.
Archive for April, 2014

[web applications] – WordPress Work-The-Flow Plugin 1.2.1 – Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

[dos / poc] – cFos Personal Net 3.09 – Remote Heap Memory Corruption

Posted by deepcore under exploit (No Respond)

[local exploits] – Mac OS X NFS Mount Privilege Escalation Exploit

Posted by deepcore under exploit (No Respond)

[web applications] – WordPress iMember360is 3.9.001 XSS / Disclosure / Code Execution

Posted by deepcore under exploit (No Respond)

[local exploits] – GeoCore MAX DB 7.3.3 Blind SQL Injection Vulnerability

Posted by deepcore under exploit (No Respond)

[remote exploits] – Wireshark 1.8.12/1.10.5 wiretap/mpeg.c Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

Depot WiFi 1.0.0 Code Execution / Local File Inclusion

Posted by deepcore under Apple (No Respond)

Depot WiFi version 1.0.0 for iOS suffers from code execution and local file inclusion vulnerabilities.

Tags: , ,

Mac OS X NFS Mount Privilege Escalation

Posted by deepcore under Apple (No Respond)

This exploit leverage a stack overflow vulnerability to escalate privileges. The vulnerable function nfs_convert_old_nfs_args does not verify the size of a user-provided argument before copying it to the stack. As a result by passing a large size, a local user can overwrite the stack with arbitrary content. Mac OS X Lion Kernel versions equal to […]

Tags: , ,

http://old.warincity.go.th/index.php

Posted by deepcore under Security (No Respond)

http://old.warincity.go.th/index.php notified by TheArrow

Tags:

http://iwis.warincity.go.th

Posted by deepcore under Security (No Respond)

http://iwis.warincity.go.th notified by TheArrow

Tags: