Subscribe via feed.
Archive for June, 2016

AjaxExplorer 1.10.3.2 CSRF / XSS / Command Execution

Posted by deepcore under exploit (No Respond)

AjaxExplorer version 1.10.3.2 suffers from cross site request forgery, cross site scripting, and remote command execution vulnerabilities.

PHPList 3.2.4 Cross Site Request Forgery / Cross Site Scripting

Posted by deepcore under exploit (No Respond)

PHPList version 3.2.4 suffers from cross site request forgery and cross site scripting vulnerabilities.

Liferay CE Stored Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Liferay CE versions prior to 6.2 CE GA6 suffer from a persistent cross site scripting vulnerability.

Joomla SecurityCheck 2.8.9 Cross Site Scripting / SQL Injection

Posted by deepcore under exploit (No Respond)

Joomla SecurityCheck component version 2.8.9 suffers from cross site scripting and remote SQL injection vulnerabilities.

Packet Storm New Exploits For May, 2016

Posted by deepcore under exploit (No Respond)

This archive contains all of the 151 exploits added to Packet Storm in May, 2016.

Wireshark erf_meta_read_tag SIGSEGV Invalid Memory Read

Posted by deepcore under exploit (No Respond)

A SIGSEGV crash due to an invalid memory read can be observed in an ASAN build of Wireshark.

[dos] – Websockify (C Implementation) 0.8.0 – Buffer Overflow

Posted by deepcore under Security (No Respond)

Websockify (C Implementation) 0.8.0 – Buffer Overflow

Tags: ,

[webapps] – Joomla SecurityCheck Extension 2.8.9 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

Joomla SecurityCheck Extension 2.8.9 – Multiple Vulnerabilities

Tags: ,

[webapps] – Liferay CE < 6.2 CE GA6 – Stored XSS

Posted by deepcore under Security (No Respond)

Liferay CE < 6.2 CE GA6 – Stored XSS

Tags: ,

[webapps] – Relay Ajax Directory Manager relayb01-071706, 1.5.1, 1.5.3 – Unauthenticated File Upload

Posted by deepcore under Security (No Respond)

Relay Ajax Directory Manager relayb01-071706, 1.5.1, 1.5.3 – Unauthenticated File Upload

Tags: ,