Subscribe via feed.
Archive for February, 2016

glibc getaddrinfo Stack-Based Buffer Overflow

Posted by deepcore under exploit (No Respond)

glibc reserves 2048 bytes in the stack through alloca() for the DNS answer at _nss_dns_gethostbyname4_r() for hosting responses to a DNS query. Later on, at send_dg() and send_vc(), if the response is larger than 2048 bytes, a new buffer is allocated from the heap and all the information (buffer pointer, new buffer size and response […]

[webapps] – JMX2 Email Tester – (save_email.php) Web Shell Upload

Posted by deepcore under Security (No Respond)

JMX2 Email Tester – (save_email.php) Web Shell Upload

Tags: ,

[webapps] – Redaxo CMS 5.0.0 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

Redaxo CMS 5.0.0 – Multiple Vulnerabilities

Tags: ,

Texmaker 4.5 DLL Hijacking

Posted by deepcore under exploit (No Respond)

Texmaker versions 4.5 and below suffer from a DLL hijacking vulnerability.

Gold Movies 1.0.2 SQL Injection

Posted by deepcore under exploit (No Respond)

Gold Movies version 1.0.2 suffers from a remote SQL injection vulnerability.

Algobox 0.9 DLL Hijacking

Posted by deepcore under exploit (No Respond)

Algobox versions 0.9 and below suffer from a DLL hijacking vulnerability.

Tiny Tiny RSS Blind SQL Injection

Posted by deepcore under exploit (No Respond)

Tiny Tiny RSS suffers from a remote blind SQL injection vulnerability.

JMX2 Email Tester Remote Shell Upload

Posted by deepcore under exploit (No Respond)

JMX2 Email Tester suffers from a remote shell upload vulnerability.

Xymon 4.3.x Buffer Overflow / Code Execution / Information Disclosure

Posted by deepcore under exploit (No Respond)

Xymon 4.3.x versions suffers from buffer overflow, information disclosure, code execution, cross site scripting, and various other vulnerabilities.

[webapps] – ManageEngine OPutils 8.0 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

ManageEngine OPutils 8.0 – Multiple Vulnerabilities

Tags: ,