Subscribe via feed.
Archive for January, 2017

KB Messages PHP Script 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

KB Messages PHP Script version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

KB Login Authentication Script 1.1 SQL Injection

Posted by deepcore under exploit (No Respond)

KB Login Authentication Script version 1.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

KB Affiliate Referral PHP Script 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

KB Affiliate Referral PHP Script version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

OpenSSH 6.8 / 6.9 PTY Privilege Escalation

Posted by deepcore under exploit (No Respond)

OpenSSH versions 6.8 and 6.9 suffer from a PTY privilege escalation vulnerability.

Systemd 228 Privilege Escalation

Posted by deepcore under exploit (No Respond)

Systemd 228 privilege escalation proof of concept exploit.

GNU Screen 4.5.0 Local Root Privilege Escalation

Posted by deepcore under exploit (No Respond)

GNU Screen version 4.5.0 local root privilege escalation exploit.

TM RG4332 2.7.0 Arbitrary File Disclosure

Posted by deepcore under exploit (No Respond)

TM RG4332 wireless router version 2.7.0 suffers from an arbitrary file disclosure vulnerability.

CSRFT – Cross Site Request Forgeries (Exploitation) Toolkit

Posted by deepquest under tools (No Respond)

This project has been developed to exploit CSRF Web vulnerabilities and provide you a quick and easy exploitation toolkit. In few words, this is a simple HTTP Server in NodeJS that will communicate with the clients (victims) and send them payload that will be executed using JavaScript. This has been developed entirely in NodeJS, and […]

Tags:

http://maelaolocal.go.th/by.htm

Posted by deepcore under defacement (No Respond)

http://maelaolocal.go.th/by.htm notified by GeNErAL

Tags:

Mac OS X Keychain Breaker

Posted by deepquest under Apple, OSX security tools, tools (No Respond)

The chainbreaker can extract user credential in a Keychain file with Master Key or user password in forensically sound manner. Master Key candidates can be extracted from volafox or volatility keychaindump module.

Tags: , ,