Subscribe via feed.
Archive for August, 2016

AlienVault USM/OSSIM 5.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

AlienVault USM/OSSIM version 5.2 suffers from a cross site scripting vulnerability.

Dotclear 2.9.1 Directory Download

Posted by deepcore under exploit (No Respond)

Dotclear version 2.9.1 suffers from a directory download vulnerability.

Dotclear 2.9.1 Shell Upload

Posted by deepcore under exploit (No Respond)

Dotclear version 2.9.1 suffers from a remote shell upload vulnerability.

Dotclear 2.9.1 SSRF / XSPA

Posted by deepcore under exploit (No Respond)

Dotclear version 2.9.1 allows authenticated users to leverage the RSS import functionality to scan ports of the internal network.

Micro Focus GroupWise Cross Site Scripting / Overflows

Posted by deepcore under exploit (No Respond)

Micro Focus GroupWise version 2014 R2 SP1 and below suffer from buffer overflow, cross site scripting, and integer overflow vulnerabilities.

FreePBX 13.0.35 Remote Code Execution

Posted by deepcore under exploit (No Respond)

FreePBX version 13.0.35 suffers from a remote code execution vulnerability.

E-Cidade 2.3.52 Directory Traversal

Posted by deepcore under exploit (No Respond)

E-Cidade versions 2.3.52 and below suffer from a directory traversal vulnerability.

Hotspot Shield DLL Hijacking

Posted by deepcore under exploit (No Respond)

Hotspot Shield suffers from a dll hijacking vulnerability.

Zarafe CMS 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Zarafe CMS version 1.0 suffers from a cross site scripting vulnerability.

Zarafe CMS 1.0 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Zarafe CMS version 1.0 suffers from a cross site request forgery vulnerability.