Subscribe via feed.
Archive for October, 2015

MC Inventory Manager Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MC Inventory Manager suffers from a stored cross site scripting vulnerability.

MC Inventory Manager SQL Injection

Posted by deepcore under exploit (No Respond)

MC Inventory Manager suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Typo3 4.2 / 4.5 Information Disclosure

Posted by deepcore under exploit (No Respond)

Typo3 versions 4.2 and 4.5 suffer from information disclosure vulnerabilities.

JScript 5.7 RegExpBase::FBadHeader Use-After-Free

Posted by deepcore under exploit (No Respond)

Recompiling the regular expression pattern during a replace in JScript version 5.7 (MSIE 8) can cause the code to reuse a freed string, but only if the string is freed from the cache by allocating and freeing a number of strings of certain size.

Boxoft WAV To MP3 COnverter 1.1 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Boxoft WAV to MP3 Converter version 1.1 SEH buffer overflow exploit.

X11 Keyboard Command Injection

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits open X11 servers by connecting and registering a virtual keyboard. The virtual keyboard is used to open an xterm or gnome terminal and type and execute the specified payload.

Blat 2.7.6 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Blat version 2.7.6 suffers from a stack buffer overflow vulnerability.

ElasticSearch Snapshot API Directory Traversal

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a directory traversal vulnerability in ElasticSearch, allowing an attacker to read arbitrary files with JVM process privileges, through the Snapshot API.

Microsoft Trusted Boot Security Feature Bypass

Posted by deepcore under exploit (No Respond)

An attacker with administrative access to a Windows machine with UEFI Secure Boot enabled may bypass code signing policy checks by putting intentionally-malformed configuration options in the boot configuration database (BCD).

ZyXEL PMG5318-B20A OS Command Injection

Posted by deepcore under exploit (No Respond)

ZyXEL PMG5318-B20A suffers from a command injection vulnerability via the ping function.