Subscribe via feed.
Archive for February, 2016

Ntpd ntp-4.2.6p5 ctl_putdata() Buffer Overflow

Posted by deepcore under exploit (No Respond)

Ntpd versions ntp-4.2.6p5 and below ctl_putdata() buffer overflow exploit.

Manage Engine OPutils 8.0 Authorization Bypass

Posted by deepcore under exploit (No Respond)

Manage Engine OPutils version 8.0 suffers from an authorization bypass vulnerability due to a missing function level access control.

smbgrind.exe Buffer Overflow

Posted by deepcore under exploit (No Respond)

smbgrind.exe suffers from a buffer overflow vulnerability.

Microsoft AFD.SYS Dangling Pointer Privilege Escalation

Posted by deepcore under exploit (No Respond)

Microsoft afd.sys version 6.1.7600.16385 suffers from a dangling pointer privilege escalation vulnerability. This exploit demonstrates the vulnerability discussed in MS14-040.

phpMyBackupPro 2.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

phpMyBackupPro version 2.5 suffers from multiple cross site scripting vulnerabilities.

phpMyBackupPro 2.5 Shell Upload

Posted by deepcore under exploit (No Respond)

phpMyBackupPro version 2.5 suffers from a remote shell upload vulnerability.

phpMyBackupPro 2.5 CSRF / Remote Command Execution

Posted by deepcore under exploit (No Respond)

phpMyBackupPro version 2.5 suffers from remote command execution and cross site request forgery vulnerabilities.

TOTVS RM PORTAL Cross Site Scripting

Posted by deepcore under exploit (No Respond)

TOTVS RM PORTAL suffers from multiple cross site scripting vulnerabilities. The vendor has not responded to reports.

Redaxo CMS 5.0.0 Cross Site Scripting / SQL Injection

Posted by deepcore under exploit (No Respond)

Redaxo CMS version 5.0.0 suffers from cross site scripting and remote SQL injection vulnerabilities.

Inductive Automation Ignition 7.8.1 Remote Leakage Of Shared Buffers

Posted by deepcore under exploit (No Respond)

Remote unauthenticated attackers are able to read arbitrary data from other HTTP sessions because Ignition uses a vulnerable Jetty server. When the Jetty web server receives a HTTP request, the below code is used to parse through the HTTP headers and their associated values. Inductive Automation versions 7.8.1 (b2016012216) and 7.8.0 (b2015101414) are affected.