Subscribe via feed.
Archive for December, 2015

appRain 4.0.3 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

appRain version 4.0.3 suffers from multiple cross site request forgery vulnerabilities.

appRain 4.0.3 Code Execution

Posted by deepcore under exploit (No Respond)

appRain version 4.0.3 suffers from code execution and remote shell upload vulnerabilities.

Rightel Cross Site Scripting

Posted by deepcore under exploit (No Respond)

The Rightel mobile provider suffers from a cross site scripting vulnerability.

Pe 2.4.3 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Pe versions 2.4.3 and below suffer from a stack-based local buffer overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied input.

Secure Data Space 3.1.1-2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Secure Data Space version 3.1.1-2 suffers from a cross site scripting vulnerability.

Open Audit SQL Injection

Posted by deepcore under exploit (No Respond)

Open Audit suffers from a remote SQL injection vulnerability.

Google Chrome DLL Hijack

Posted by deepcore under exploit (No Respond)

Google Chrome’s executable installers suffer from a DLL hijacking vulnerability.

bitrix.scan Bitrix 1.0.3 Path Traversal

Posted by deepcore under exploit (No Respond)

bitrix.scan Bitrix module version 1.0.3 suffers from a path traversal vulnerability.

bitrix.mpbuilder Bitrix 1.0.10 Local File Inclusion

Posted by deepcore under exploit (No Respond)

bitrix.mpbuilder Bitrix module version 1.0.10 suffers from a local file inclusion vulnerability.

Intellect Core Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Intellect Core banking software suffers from a cross site scripting vulnerability.