Subscribe via feed.
Archive for March, 2017

Vanelo Wanelo Clone SQL Injection

Posted by deepcore under exploit (No Respond)

Vanelo Wanelo Clone suffers from a remote SQL injection vulnerability.

Global In Shell Upload

Posted by deepcore under exploit (No Respond)

Global In suffers from a remote shell upload vulnerability.

Domain Marketplace Script SQL Injection

Posted by deepcore under exploit (No Respond)

Domain Marketplace Script suffers from a remote SQL injection vulnerability.

Yellow Pages Script 3.2 SQL Injection

Posted by deepcore under exploit (No Respond)

Yellow Pages Script version 3.2 suffers from a remote SQL injection vulnerability.

Yacht Listing Script 2.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Yacht Listing Script version 2.0 suffers from a remote SQL injection vulnerability.

Property Listing Script 3.1 SQL Injection

Posted by deepcore under exploit (No Respond)

Property Listing Script version 3.1 suffers from a remote SQL injection vulnerability.

Fiyo CMS 2.0.6.1 Privilege Escalation

Posted by deepcore under exploit (No Respond)

Fiyo CMS version 2.0.6.1 suffers from a privilege escalation vulnerability due to poor design with trusting the client to tell the server a user’s role.

MobaXterm Personal Edition 9.4 Path Traversal

Posted by deepcore under exploit (No Respond)

MobaXterm Personal Edition version 9.4 suffers from a path traversal vulnerability.

WatchGuard XTMv 11.12 Build 516911 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

WatchGuard XTMv version 11.12 Build 516911 suffers from a cross site request forgery vulnerability.

Netgear R7000 / R6400 cgi-bin Command Injection

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an arbitrary command injection vulnerability in Netgear R7000 and R6400 router firmware version 1.0.7.2_1.1.93 and possibly earlier.