Subscribe via feed.
Archive for March, 2016

Samsung SW Update Tool 2.2.5.16 Man-In-The-Middle

Posted by deepcore under exploit (No Respond)

The Samsung SW Update tool version 2.2.5.16 suffers from a man-in-the-middle vulnerability.

SAP Download Manager 2.1.142 Weak Encryption

Posted by deepcore under exploit (No Respond)

SAP Download Manager is a Java application offered by SAP that allows downloading software packages and support notes. This program stores the user’s settings in a configuration file. Sensitive values, such as the proxy username and password if set, are stored encrypted using a fixed static key. Versions up to 2.1.142.

PHP Utility Belt Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a remote code execution vulnerability in PHP Utility Belt, which is a set of tools for PHP developers and should not be installed in a production environment, since this application runs arbitrary PHP code as an intended functionality.

http://www.amnat-ed.go.th/web2/web1/web/news/rYdbcPE8qOT5.html

Posted by deepcore under Security (No Respond)

http://www.amnat-ed.go.th/web2/web1/web/news/rYdbcPE8qOT5.html notified by Mr.Rizgar.halshoy.kurdish.blackhat

Tags:

http://wb.srisangworn.go.th/mw.html

Posted by deepcore under Security (No Respond)

http://wb.srisangworn.go.th/mw.html notified by Moroccanwolf

Tags:

[papers] FUCK THEM ALL (FTA) – Staminus Communications

Posted by deepcore under Security (No Respond)

FUCK THEM ALL (FTA) – Staminus Communications

Tags: ,

[remote] – PHP Utility Belt Remote Code Execution

Posted by deepcore under Security (No Respond)

PHP Utility Belt Remote Code Execution

Tags: ,

[webapps] – WordPress Beauty & Clean Theme 1.0.8 – Arbitrary File Upload Vulnerability

Posted by deepcore under Security (No Respond)

WordPress Beauty & Clean Theme 1.0.8 – Arbitrary File Upload Vulnerability

Tags: ,

[webapps] – WordPress DZS Videogallery Plugin <=8.60 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

WordPress DZS Videogallery Plugin <=8.60 – Multiple Vulnerabilities

Tags: ,

Exim 4.84-3 Local Root / Privilege Escalation

Posted by deepcore under exploit (No Respond)

Exim versions 4.84-3 and below suffer from a local privilege escalation vulnerability.