Subscribe via feed.
Archive for January, 2016

Ubuntu 14.04 LTS / 15.10 overlayfs Local Root

Posted by deepcore under exploit (No Respond)

Ubuntu 14.04 LTS and 15.10 overlayfs local root exploit.

D-Link DCS-931L Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a file upload vulnerability in D-Link DCS-931L network cameras. The setFileUpload functionality allows authenticated users to upload files to anywhere on the file system, allowing system files to be overwritten, resulting in execution of arbitrary commands. This Metasploit module has been tested successfully on a D-Link DCS-931L with firmware versions 1.01_B7 […]

[webapps] – AVM FRITZ!Box < 6.30 – Buffer Overflow

Posted by deepcore under Security (No Respond)

AVM FRITZ!Box < 6.30 – Buffer Overflow

Tags: ,

[webapps] – D-Link DCS-931L File Upload

Posted by deepcore under Security (No Respond)

D-Link DCS-931L File Upload

Tags: ,

[webapps] – OpenMRS Reporting Module 0.9.7 – Remote Code Execution

Posted by deepcore under Security (No Respond)

OpenMRS Reporting Module 0.9.7 – Remote Code Execution

Tags: ,

Pdfium IsFlagSet Crash

Posted by deepcore under exploit (No Respond)

Pdfium suffers from a SIGSEGV in IsFlagSet.

Pdfium CPDF_TextObject:CalcPositionData Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Pdfium suffers from a heap-based out-of-bounds read in CPDF_TextObject:CalcPositionData.

Pdfium CPDF_DIBSource:DownSampleScanline32Bit Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Pdfium suffers from a heap-based out-of-bounds read in CPDF_DIBSource:DownSampleScanline32Bit.

Pdfium Buffer Overflow

Posted by deepcore under exploit (No Respond)

Pdfium suffers from a stack-based buffer overflow in CPDF_Function:Call.

Rejetto HTTP File Server 2.3.x Remote Code Execution

Posted by deepcore under exploit (No Respond)

Rejetto HTTP File Server (HFS) version 2.3.x remote code execution exploit.