Subscribe via feed.
Archive for July, 2016

Neoscreen 4.5 Blind SQL Injection

Posted by deepcore under exploit (No Respond)

Neoscreen version 4.5 suffers from a remote blind SQL injection vulnerability.

Neoscreen 4.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Neoscreen version 4.5 suffers from a cross site scripting vulnerability.

Joomla Showdown 1.5.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Joomla Showdown component version 1.5.0 suffers from a remote SQL injection vulnerability.

Bellini/Supercook Wi-Fi Yumi SC200 Information Disclosure / Code Execution

Posted by deepcore under exploit (No Respond)

Bellini/Supercook Wi-Fi Yumi SC200 suffers from code execution, weak default password, and information disclosure vulnerabilities.

WordPress Contact Form To Email 1.1.47 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Contact Form to Email plugin version 1.1.47 suffers from a cross site scripting vulnerability.

WordPress Code Snippets 2.6.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Code Snippets plugin version 2.6.1 suffers from a cross site scripting vulnerability.

PHP File Vault 0.9 Directory Traversal / File Read

Posted by deepcore under exploit (No Respond)

PHP File Vault version 0.9 suffers from directory traversal and file reading vulnerabilities.

Micro Focus Filr CSRF / XSS / Code Execution

Posted by deepcore under exploit (No Respond)

Multiple Micro Focus Filr appliances suffer from cross site request forgery, cross site scripting, command injection, insecure design, missing cookie flag, authentication bypass, poor permission, and path traversal vulnerabilities.

CodoForum 3.2.1 SQL Injection

Posted by deepcore under exploit (No Respond)

CodoForum version 3.2.1 suffers from a remote SQL injection vulnerability.

CoolPlayer+ Portable 2.19.6 Stack Overflow

Posted by deepcore under exploit (No Respond)

CoolPlayer+ Portable version 2.19.6 m3u stack overflow exploit with egghunter shellcode and aslr bypass.