Subscribe via feed.
Archive for April, 2016

http://www.nakhonratchasima.m-society.go.th/ok.html

Posted by deepcore under Security (No Respond)

http://www.nakhonratchasima.m-society.go.th/ok.html notified by Nofawkx Al

Tags:

http://www.pathumthani.m-society.go.th/ok.html

Posted by deepcore under Security (No Respond)

http://www.pathumthani.m-society.go.th/ok.html notified by Nofawkx Al

Tags:

http://www.phangnga.m-society.go.th/ok.html

Posted by deepcore under Security (No Respond)

http://www.phangnga.m-society.go.th/ok.html notified by Nofawkx Al

Tags:

http://www.prachinburi.m-society.go.th

Posted by deepcore under Security (No Respond)

http://www.prachinburi.m-society.go.th notified by Moroccanwolf

Tags:

AVAST #13 – Persistent Cross Site Scripting Vulnerability

Posted by deepcore under exploit (No Respond)

An independent vulnerability laboratory researcher discovered a cross site scripting web vulnerability in the official AVAST online service web-application.

Django CMS v3.2.3 – Filter Bypass & Persistent Vulnerability

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered an application-side vulnerability in the Django v3.2.3 Content Management System.

Microsoft Internet Explorer 11 DLL Hijacking

Posted by deepcore under exploit (No Respond)

Microsoft Internet Explorer 11 ships with MSHTML.DLL referencing various DLLs which are not present on a Windows 7 SP1 installation, Windows 10 is not affected, other Windows versions have not been tested. According to “MSHTML.DLL is at the heart of Internet Explorer and takes care of its HTML and Cascading Style Sheets (CSS) parsing and […]

AirOS 6.x Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

AirOS version 6.x suffers from an arbitrary file upload vulnerability.

PfSense Community Edition 2.2.6 CSRF / XSS / Command Injection

Posted by deepcore under exploit (No Respond)

PfSense Community Edition versions 2.2.6 and below suffer from cross site scripting, code injection, and cross site request forgery vulnerabilities.

Webnet CMS 1.2 XSS / File Disclosure / SQL Injection

Posted by deepcore under exploit (No Respond)

Webnet CMS version 1.2 suffers from cross site scripting, file disclosure, and remote SQL injection vulnerabilities.