Subscribe via feed.
Archive for June, 2016

Hyperoptic (Tilgin) Router HG23xx CSRF / Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Hyperoptic (Tilgin) routers versions HG2330, HG2302, and HG2301 suffer from cross site request forgery and cross site scripting vulnerabilities.

Mozilla Firefox DLL Hijacking

Posted by deepcore under exploit (No Respond)

The fix applied for CVE-2014-1520 does not fix a DLL hijacking issue with Mozilla Firefox’s executable installer.

Joomla En-Masse 6.4 SQL Injection

Posted by deepcore under exploit (No Respond)

Joomla En-Masse component versions 5.1 through 6.4 suffer from a remote SQL injection vulnerability.

BookingWizz LFI / XSS / CSRF / SQL Injection

Posted by deepcore under exploit (No Respond)

BookingWizz versions prior to 5.5 suffer from having default administrative credentials, local file inclusion, cross site request forgery, cross site scripting, and remote SQL injection vulnerabilities.

Adobe Promises Fix For Flash Zero-Day Being Used By Hackers

Posted by deepcore under exploit (No Respond)

http://www.e-learning.dss.go.th

Posted by deepcore under Security (No Respond)

http://www.e-learning.dss.go.th notified by r00tkit

Tags:

[remote] – Bomgar Remote Support Unauthenticated Code Execution (msf)

Posted by deepcore under Security (No Respond)

Bomgar Remote Support Unauthenticated Code Execution (msf)

Tags: ,

[webapps] – Ultrabenosaurus ChatBoard – Stored XSS

Posted by deepcore under Security (No Respond)

Ultrabenosaurus ChatBoard – Stored XSS

Tags: ,

[webapps] – Joomla En Masse (com_enmasse) Component 5.1 – 6.4 – SQL Injection

Posted by deepcore under Security (No Respond)

Joomla En Masse (com_enmasse) Component 5.1 – 6.4 – SQL Injection

Tags: ,

[webapps] – w2wiki – Multiple XSS Vulnerabilities

Posted by deepcore under Security (No Respond)

w2wiki – Multiple XSS Vulnerabilities

Tags: ,