Subscribe via feed.
Archive for February, 2016

Thru Managed File Transfer Portal 9.0.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Thru Managed File Transfer Portal version 9.0.2 suffers from a cross site scripting vulnerability.

Thru Managed File Transfer Portal 9.0.2 SQL Injection

Posted by deepcore under exploit (No Respond)

Thru Managed File Transfer Portal version 9.0.2 suffers from a remote SQL injection vulnerability.

Drupal 8.0.x-dev Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Drupal version 8.0.x-dev suffers from a cross site scripting vulnerability on IE8 and older versions.

[webapps] PEAR LiveUser < 0.16.8 – Arbitrary File Access

Posted by deepcore under Security (No Respond)

PEAR LiveUser < 0.16.8 – Arbitrary File Access

Tags: ,

STIMS Cutter 1.1.3.20 SEH Overwrite Buffer Overflow

Posted by deepcore under exploit (No Respond)

STIMS Cutter version 1.1.3.20 overflow proof of concept with SEH overwrite.

iFixIt Guide Cross Site Scripting

Posted by deepcore under exploit (No Respond)

iFixIt suffered from a persistent cross site scripting vulnerability.

iFixIt Profile Cross Site Scripting

Posted by deepcore under exploit (No Respond)

iFixIt suffered from a persistent cross site scripting vulnerability.

Prezi Cross Site Scripting / Open Redirect

Posted by deepcore under exploit (No Respond)

Prezi suffered from cross site scripting and open redirection vulnerabilities.

Investors Application Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Investors Application suffered from a client-side script insertion vulnerability.

Chamilo LMS Insecure Direct Object Reference

Posted by deepcore under exploit (No Respond)

Chamilo LMS suffers from an insecure direct object reference vulnerability.