Subscribe via feed.
Archive for December, 2016

Apport 2.x Local Code Execution

Posted by deepcore under exploit (No Respond)

Apport version 2.x on Ubuntu Desktop versions 12.10 up to 16.04 local code execution exploit.

Naenara Browser 3.5 (Red Star OS 3.0) Code Execution

Posted by deepcore under exploit (No Respond)

Naenara Browser version 3.5 exploit (JACKRABBIT) that uses a known Firefox bug to obtain code execution on Red Star OS 3.0 desktop.

RSSMON / BEAM (Red Star OS 3.0) Shellshock

Posted by deepcore under exploit (No Respond)

This is a shellshock exploit for RSSMON and BEAM, network services for Red Star OS version 3.0 SERVER edition.

Docebo LMS v6.9 – (Clone Links) Persistent Vulnerability

Posted by deepcore under exploit (No Respond)

A vulnerability laboratory core team researcher discovered an application-side cross site scripting vulnerability in the…

Edge SkateShop Blind SQL Injection

Posted by deepcore under exploit (No Respond)

Edge SkateShop suffers from a remote blind SQL injection vulnerability.

eramba Enterprise / Community Cross Site Scripting

Posted by deepcore under exploit (No Respond)

eramba Enterprise Edition versions e1.0.6.018 and below and Community Edition versions c1.0.6.001 and below suffer from a persistent cross site scripting vulnerability.

WordPress Quiz And Survey Master 4.7.8 / 4.5.4 XSS / CSRF

Posted by deepcore under exploit (No Respond)

WordPress Quiz and Survey Master versions 4.5.4 and 4.7.8 suffer from cross site request forgery and cross site scripting vulnerabilities.

Microsoft Internet Explorer 9 IEFRAME CView::EnsureSize Use-After-Free

Posted by deepcore under exploit (No Respond)

Microsoft Internet Explorer 9 suffers from an IEFRAME CView::EnsureSize use-after-free vulnerability.

Orthanc DICOM Server 1.1.0 Unquoted Service Path Privilege Escalation

Posted by deepcore under exploit (No Respond)

Orthanc DICOM Server version 1.1.0 suffers from an unquoted service path privilege escalation vulnerability.

Orthanc DICOM Server 1.1.0 Remote Memory Corruption

Posted by deepcore under exploit (No Respond)

Orthanc DICOM Server version 1.1.0 suffers from a remote memory corruption vulnerability.