Subscribe via feed.
Archive for September, 2016

Adobe Flash Video Decompression Memory Corruption

Posted by deepcore under exploit (No Respond)

Adobe Flash suffers from a memory corruption vulnerability in video decompression.

Linux SELinux W+X AIO Protection Bypass

Posted by deepcore under exploit (No Respond)

SELinux suffers from a protection bypass that allows for a memory mapping that is both readable and writable.

Metasploit Web UI Static secret_key_base Value

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits the Web UI for Metasploit Community, Express and Pro where one of a certain set of Weekly Releases have been applied. These Weekly Releases introduced a static secret_key_base value. Knowledge of the static secret_key_base value allows for deserialization of a crafted Ruby Object, achieving code execution. This Metasploit module is based […]

3GP Player 4.7.0 – DLL Hijacking Vulnerability

Posted by deepcore under exploit (No Respond)

No abstract description available in the upcomings!

DLL Hijack Auditor 3.5 Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

DLL Hijack Auditor version 3.5 suffers from a stack buffer overflow vulnerability.

Dolphin 7.3.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Dolphin version 7.3.0 suffers from an error-based remote SQL injection vulnerability.

VegaDNS 0.13.2 Remote Command Injection

Posted by deepcore under exploit (No Respond)

VegaDNS version 0.13.2 suffers from a remote command injection vulnerability.

Exponent CMS 2.3.9 Blind SQL Injection

Posted by deepcore under exploit (No Respond)

Exponent CMS versions 2.3.9 and below suffer from a remote blind SQL injection vulnerability.

WordPress W3 Total Cache 0.9.4.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress W3 Total Cache (w3tc) plugin versions 0.9.4.1 and below suffer from a cross site scripting vulnerability.

Microsoft Office PowerPoint 2010 Invalid Pointer Reference

Posted by deepcore under exploit (No Respond)

Microsoft PowerPoint 2010 suffers from an invalid pointer dereference vulnerability.