Subscribe via feed.
Archive for May, 2016

WordPress Advanced Custom Fields 4.4.7 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Advanced Custom Fields plugin version 4.4.7 suffers from a cross site scripting vulnerability.

http://maewanphrao.go.th/by.htm

Posted by deepcore under Security (No Respond)

http://maewanphrao.go.th/by.htm notified by GeNErAL

Tags:

http://nccdmuk.go.th/by.htm

Posted by deepcore under Security (No Respond)

http://nccdmuk.go.th/by.htm notified by GeNErAL

Tags:

http://dumyai.go.th/z.html

Posted by deepcore under Security (No Respond)

http://dumyai.go.th/z.html notified by ?Mr.bonz-101

Tags:

Packet Storm New Exploits For April, 2016

Posted by deepcore under exploit (No Respond)

This archive contains all of the 144 exploits added to Packet Storm in April, 2016.

Wireshark dissect_2008_16_security_4 Buffer Overflow

Posted by deepcore under exploit (No Respond)

The included proof of concept causes a crash due to a stack-based buffer overflow in Wireshark in dissect_2008_16_security_4.

Wireshark alloc_address_wmem Assertion Failure

Posted by deepcore under exploit (No Respond)

An assertion failure has been discovered in alloc_address_wmem in the ASAN build of Wireshark.

Wireshark ett_zbee_zcl_pwr_prof_enphases Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Multiple crashes exist in the ASAN build of Wireshark due to a static out-of-bounds memory read while accessing ett_zbee_zcl_pwr_prof_enphases.

[shellcode] – .Net Framework Execute Native x86 Shellcode

Posted by deepcore under Security (No Respond)

.Net Framework Execute Native x86 Shellcode

Tags: ,

[remote] – Apache Struts Dynamic Method Invocation Remote Code Execution

Posted by deepcore under Security (No Respond)

Apache Struts Dynamic Method Invocation Remote Code Execution

Tags: ,