Subscribe via feed.
Archive for May, 2016

WordPress Event Registration 6.02.02 XSS / SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Event Registration plugin version 6.02.02 suffers from cross site scripting and remote SQL injection vulnerabilities.

Skype Manager Filter Bypass

Posted by deepcore under exploit (No Respond)

manager.skype.com suffered from a filter bypass vulnerability.

Micrsoft Windows BSOD Privilege Escalation

Posted by deepcore under exploit (No Respond)

Microsoft Windows blue screen of death exploit that leverages a privilege escalation vulnerability as defined in CVE-2016-0051.

Dell SonicWall Scrutinizer 11.0.1 SQL Injection / Code Execution

Posted by deepcore under exploit (No Respond)

Dell SonicWall Scrutinizer versions 11.0.1 and below setUserSkin/deleteTab SQL injection / remote code execution exploit that leverages a vulnerability found by Brandon Perry in July of 2014.

Certec EDV atvise SCADA Server 2.5.9 Privilege Escalation

Posted by deepcore under exploit (No Respond)

Certec EDV atvise SCADA server version 2.5.9 suffers from a privilege escalation vulnerability.

Notes 4.5 Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

Notes version 4.5 for iOS suffers from an arbitrary file upload vulnerability.

Stanford SQL Injection

Posted by deepcore under exploit (No Respond)

Stanford suffered from a remote SQL injection vulnerability.

Trend Micro Direct Pass Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Trend Micro Direct Pass suffers from bypass and cross site scripting vulnerabilities.

WordPress BulletProof Security 53.3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress BulletProof Security version 53.3 suffers from a cross site scripting vulnerability.

Joomla Event Manager 2.x Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Joomla Event Manager component version 2.x suffers from a cross site scripting vulnerability.