Subscribe via feed.
Archive for November, 2016

EasyPHP Devserver 16.1.1 Cross Site Request Forgery / Remote Command Execution

Posted by deepcore under exploit (No Respond)

EasyPHP Devserver version 16.1.1 suffers from cross site request forgery and remote code execution vulnerabilities.

Microsoft Internet Explorer 8 8 MSHTML SRunPointer::SpanQualifier/RunType Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

A specially crafted web-page can cause Microsoft Internet Explorer 8 to attempt to read data beyond the boundaries of a memory allocation. The issue does not appear to be easily exploitable.

TP-LINK TDDP Buffer Overflow / Missing Authentication

Posted by deepcore under exploit (No Respond)

Core Security Technologies Advisory – TP-LINK TDDP suffers from buffer overflow and missing authentication vulnerabilities.

Linux Kernel 2.6.32-642 / 3.16.0-4 Inode Integer Overflow

Posted by deepcore under exploit (No Respond)

Linux kernels 2.6.32-642 and 3.16.0-4 inode integer overflow proof of concept exploit.

Chrome Blink SpeechRecognitionController Use-After-Free

Posted by deepcore under exploit (No Respond)

A specially crafted web-page can cause the blink rendering engine used by Google Chrome and Chromium to continue to use a speech recognition API object after the memory block that contained the object has been freed. An attacker can force the code to read a pointer from the freed memory and use this to call […]

Linux Kernel 2.6.18 move_pages() Information Leak

Posted by deepcore under exploit (No Respond)

Linux kernel version 2.6.18 suffers from a move_pages() information leak vulnerability.

Linux Kernel 2.6.32-rc1 x86_64 Register Leak

Posted by deepcore under exploit (No Respond)

Linux kernel version 2.6.32-rc1 x86_64 register leak proof of concept code.

Linux Kernel 2.6.x pipe.c Privilege Escalation

Posted by deepcore under exploit (No Respond)

Linux kernel versions 2.6.10 up to but not including 2.6.31.5 pipe.c privilege escalation exploit.

Linux Kernel 4.6.3 Netfilter Privilege Escalation

Posted by deepcore under exploit (No Respond)

This Metasploit module attempts to exploit a netfilter bug on Linux Kernels before 4.6.3, and currently only works against Ubuntu 16.04 (not 16.04.1) with kernel 4.4.0-21-generic. Several conditions have to be met for successful exploitation.

http://www.secondary11.go.th/myoffice/ska2/a.txt

Posted by deepcore under defacement (No Respond)

http://www.secondary11.go.th/myoffice/ska2/a.txt notified by ID10T

Tags: