Subscribe via feed.
Archive for February, 2016

WordPress Simple Add Pages Or Posts 1.6 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

WordPress Simple Add Pages Or Posts plugin version 1.6 suffers from a cross site request forgery vulnerability.

Avira Cross Site Scripting

Posted by deepcore under exploit (No Respond)

translate.avira.com suffers from a cross site scripting vulnerability.

ManageEngine Network Configuration Management Build 11000 CSRF

Posted by deepcore under exploit (No Respond)

ManageEngine Network Configuration Management build 11000 suffers from a cross site request forgery vulnerability.

ManageEngine Eventlog Analyzer 10 Privilege Escalation

Posted by deepcore under exploit (No Respond)

ManageEngine Eventlog Analyzer versions 4.0 through 10 suffer from a privilege escalation vulnerability.

iScripts EasyCreate 3.0 XSS / CSRF / SQL Injection

Posted by deepcore under exploit (No Respond)

iScripts EasyCreate version 3.0 suffers from cross site request forgery, cross site scripting, and remote SQL injection vulnerabilities.

iScripts EasyCreate 3.0 Remote Code Execution

Posted by deepcore under exploit (No Respond)

iScripts EasyCreate version 3.0 remote code execution exploit.

Winhex Editor 18.7 DLL Hijacking

Posted by deepcore under exploit (No Respond)

Winhex Editor versions 18.7 and below suffer from a dll hijacking vulnerability.

WordPress Comment Rating 1.5.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Comment Rating plugin version 1.5.0 suffers from a cross site scripting vulnerability.

Hippo CMS 10.1 Stored Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Hippo CMS version 10.1 suffers from a stored cross site scripting vulnerability.

Hippo CMS 10.1 XML External Entity Information Disclosure

Posted by deepcore under exploit (No Respond)

Hippo CMS version 10.1 suffers from an XML External Entity information disclosure vulnerability.