Subscribe via feed.
Archive for June, 2016

XuezhuLi FileSharing Path Traversal

Posted by deepcore under exploit (No Respond)

XuezhuLi FileSharing suffers from a path traversal vulnerability.

XuezhuLi FileSharing Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

XuezhuLi FileSharing suffers from a cross site request forgery vulnerability.

FinderView Path Traversal / Cross Site Scripting

Posted by deepcore under exploit (No Respond)

FinderView suffers from path traversal and cross site scripting vulnerabilities.

Windows Local WebDAV NTLM Reflection Elevation Of Privilege

Posted by deepcore under exploit (No Respond)

A default installation of Windows 7/8 can be made to perform a NTLM reflection attack through WebDAV which allows a local user to elevate privileges to local system.

http://khoasai.go.th

Posted by deepcore under Security (No Respond)

http://khoasai.go.th notified by Turksiberordu.org

Tags:

[webapps] – Alibaba Clone B2B Script – Arbitrary File Disclosure

Posted by deepcore under Security (No Respond)

Alibaba Clone B2B Script – Arbitrary File Disclosure

Tags: ,

[shellcode] – Linux Netcat Reverse Shell – 32bit – 77 bytes

Posted by deepcore under Security (No Respond)

Linux Netcat Reverse Shell – 32bit – 77 bytes

Tags: ,

[webapps] – Getsimple CMS 3.3.10 – Arbitrary File Upload

Posted by deepcore under Security (No Respond)

Getsimple CMS 3.3.10 – Arbitrary File Upload

Tags: ,

Horsys 8 Session Fixation / User Enumeration / XSS

Posted by deepcore under exploit (No Respond)

Horsys version 8 suffers from session fixation, user enumeration, cross site scripting, and various other vulnerabilities.

Parishcouncil CMS SAS4.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Parishcouncil CMS version SAS4.5 suffers from a cross site scripting vulnerability.