Subscribe via feed.
Archive for January, 2016

ProjectSend r582 Bypass / SQL Injection / File Read

Posted by deepcore under exploit (No Respond)

ProjetSend version r582 suffers from authentication bypass, remote SQL injection, insecure direct object reference, and directory traversal / arbitrary file read vulnerabilities.

Netlife Photosuite Pro – CS Cross Site Scripting Vulnerability

Posted by deepcore under exploit (No Respond)

The Vulnerability Laboratory Core Research Team discovered a client-side cross site scripting web vulnerability in official Netlife Photosuite Pro, manufactured by Netlife AS.

los818 CMS 2016 Q1 SQL Injection

Posted by deepcore under exploit (No Respond)

los818 CMS 2016 Q1 suffers from a remote SQL injection vulnerability.

WebMartIndia CMS 2016 Q1 SQL Injection

Posted by deepcore under exploit (No Respond)

WebMartIndia CMS 2016 Q1 suffers from a remote SQL injection vulnerability.

Liga Manager Online 4.0.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Liga Manager Online (LMO) version 4.0.2 suffers from a cross site scripting vulnerability.

eBay Magento Persistent Mail Encoding

Posted by deepcore under exploit (No Respond)

eBay Magento suffered from a persistent mail encoding vulnerability.

New Era Company CMS SQL Injection

Posted by deepcore under exploit (No Respond)

New Era Company suffers from a remote SQL injection vulnerability.

Ramui Web Hosting Directory Script 4.0 RFI

Posted by deepcore under exploit (No Respond)

Ramui Web Hosting Directory Script version 4.0 suffers from a remote file inclusion vulnerability.

Ramui Forum Script 9.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Ramui Forum Script version 9.0 suffers from a remote SQL injection vulnerability.

Classic Infomedia Authentication Bypass

Posted by deepcore under exploit (No Respond)

Classic Infomedia suffers from an authentication bypass vulnerability.