[webapps] – WordPress Users Ultra Plugin 1.5.50 – Blind SQL injection
Last Updated on December 3, 2015 by deepcore WordPress Users Ultra Plugin 1.5.50 – Blind SQL injection
Tags: 0day, remote exploitLast Updated on December 3, 2015 by deepcore WordPress Users Ultra Plugin 1.5.50 – Blind SQL injection
Tags: 0day, remote exploitLast Updated on December 2, 2015 by deepcore Huawei Wimax routers suffer from cross site request forgery, information disclosure, and system manipulation vulnerabilities.
Last Updated on December 2, 2015 by deepcore Kodi 15 reintroduced an arbitrary file access vulnerability.
Last Updated on December 2, 2015 by deepcore CentOS version 7.1 and Fedora version 22 abrt local root exploit. It leverages abrt-hook-ccpp insecure open() usage and abrt-action-install-debuginfo insecure temp directory usage.
Last Updated on December 2, 2015 by deepcore Local root exploit for Redhat Enterprise Linux versions 7.0 and 7.1 that leverages abrt/sosreport.
Last Updated on December 2, 2015 by deepcore Zenphoto version 1.4.10 suffers from a cross site scripting vulnerability.
Last Updated on December 2, 2015 by deepcore Zenphoto version 1.4.10 suffers from a local file inclusion vulnerability.
Last Updated on December 2, 2015 by deepcore ntop-ng versions 2.0.151021 and below suffer from a privilege escalation vulnerability.
Last Updated on December 2, 2015 by deepcore This Metasploit module exploits the Shellshock vulnerability, a flaw in how the Bash shell handles external environment variables. This Metasploit module targets the ‘ping.sh’ CGI script, accessible through the Boa web server on Advantech switches. This Metasploit module was tested against firmware version 1322_D1.98.
Last Updated on December 2, 2015 by deepcore Acunetix WVS 10 – Local Privilege escalation
Tags: 0day, remote exploit