Archive for April, 2016
Posted by deepcore under Security (No Respond)
[webapps] – SocialEngine 4.8.9 – SQL Injection
Posted by deepcore under Security (No Respond)
[local] – Panda Security URL Filtering < 4.3.1.9 – Privilege Escalation
Posted by deepcore under Security (No Respond)
[local] – Panda Endpoint Administration Agent < 7.50.00 – Privilege Escalation
Posted by deepcore under Security (No Respond)
[dos] – Linux x86 – Disable ASLR by Setting the RLIMIT_STACK Resource to Unlimited
Posted by deepcore under Security (No Respond)
Linux x86 – Disable ASLR by Setting the RLIMIT_STACK Resource to Unlimited
Tags: 0day, remote exploithttp://vaccine9.ddc.moph.go.th/0day.txt
Posted by deepcore under Security (No Respond)
http://vaccine9.ddc.moph.go.th/0day.txt notified by jok3r
Tags: defacementPerli v2.6 iOS – Filter Bypass & Persistent Vulnerability
Posted by deepcore under exploit (No Respond)
The Vulnerability Laboratory Core Research Team discovered an application-side encoding vulnerability in the official Perli iOS mobile application api.
Eight Webcom CMS (2016 Q2) – SQL Injection Vulnerability
Posted by deepcore under exploit (No Respond)
An independent vulnerability laboratory researcher discovered a remote sql-injection vulnerability in the official Eight Webcom web-application (2016 Q2).
Apple iOS 9.3 S/Plus – Touch Passcode Bypass Vulnerability
Posted by deepcore under exploit (No Respond)
The vulnerability laboratory core research team discovered a local passcode bypass vulnerability in the official Apple iOS 9.3.1 iPhone 6S & Plus models.
MyBB 1.6.x / 1.8.x Tags Cross Site Scripting
Posted by deepcore under exploit (No Respond)
The MyBB Tags plugin in versions 1.6.x and 1.8.x suffer from a cross site scripting vulnerability.