Subscribe via feed.
Archive for October, 2015

Serendipity 2.0.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Serendipity version 2.0.2 suffers from a stored cross site scripting vulnerability.

[webapps] – Joomla JNews (com_jnews) Component 8.5.1 – SQL Injection

Posted by deepcore under Security (No Respond)

Joomla JNews (com_jnews) Component 8.5.1 – SQL Injection

Tags: ,

[dos] – NetUSB Kernel Stack Buffer Overflow

Posted by deepcore under Security (No Respond)

NetUSB Kernel Stack Buffer Overflow

Tags: ,

Joomla 3.44 SQL Injection

Posted by deepcore under exploit (No Respond)

Joomla remote SQL injection mass exploitation tool that affects versions 3.2 through 3.44.

Samsung WifiHs20UtilityService Path Traversal

Posted by deepcore under exploit (No Respond)

A path traversal vulnerability was found in the WifiHs20UtilityService. This service is running on a Samsung S6 Edge device, and may be present on other Samsung device models. WifiHs20UtilityService reads any files placed in /sdcard/Download/cred.zip, and unzips this file into /data/bundle. Directory traversal in the path of the zipped contents allows an attacker to write […]

Samsung SecEmailComposer QUICK_REPLY_BACKGROUND Permission Weakness

Posted by deepcore under exploit (No Respond)

The SecEmailComposer/EmailComposer application used by the Samsung S6 Edge has an exported service action to do quick replies to emails. It was found that this action required no permissions to call, and could lead to an unprivileged application gaining access to email content.

Samsung Fimg2d FIMG2D_BITBLT_BLIT Ioctl Concurrency Flaw

Posted by deepcore under exploit (No Respond)

The Samsung Graphics 2D driver (/dev/fimg2d) is accessible by unprivileged users/applications. It was found that the ioctl implementation for this driver contains a locking error which can lead to memory errors (such as use-after-free) due to a race condition.

Samsung M2m1shot Kernel Driver Buffer Overflow

Posted by deepcore under exploit (No Respond)

The Samsung m2m1shot driver framework is used to provide hardware acceleration for certain media functions, such as JPEG decoding and scaling images. The driver endpoint (/dev/m2m1shot_jpeg) is accessible by the media server. The Samsung S6 Edge is a 64-bit device, so a compatibility layer is used to allow 32-bit processes to provide structures that are […]

[remote] – Samsung SecEmailUI Script Injection

Posted by deepcore under Security (No Respond)

Samsung SecEmailUI Script Injection

Tags: ,

[webapps] – Sagem FAST3304-V2 – Authentication Bypass

Posted by deepcore under Security (No Respond)

Sagem FAST3304-V2 – Authentication Bypass

Tags: ,