Subscribe via feed.
Archive for May, 2017

miniupnpc 2.0.20170421 Denial Of Service

Posted by deepcore under exploit (No Respond)

miniupnpc suffers from an integer signedness error when parsing a chunked encoded http response.

Quest Privilege Manager pmmasterd Buffer Overflow

Posted by deepcore under exploit (No Respond)

This Metasploit modules exploits a buffer overflow in the Quest Privilege Manager, a software used to integrate Active Directory with Linux and Unix systems. The vulnerability exists in the pmmasterd daemon, and can only triggered when the host has been configured as a policy server ( Privilege Manager for Unix or Quest Sudo Plugin). A […]

http://queen9.ohm.go.th/wp-content/melo.jpg

Posted by deepcore under defacement (No Respond)

http://queen9.ohm.go.th/wp-content/melo.jpg notified by magelang6etar

Tags:

http://lamphuncity.go.th/main/wp-content/melo.jpg

Posted by deepcore under defacement (No Respond)

http://lamphuncity.go.th/main/wp-content/melo.jpg notified by magelang6etar

Tags:

http://statbbi.nso.go.th/docs/

Posted by deepcore under defacement (No Respond)

http://statbbi.nso.go.th/docs/ notified by ulzr1z

Tags:

http://jms.mot.go.th/docs/

Posted by deepcore under defacement (No Respond)

http://jms.mot.go.th/docs/ notified by ulzr1z

Tags:

http://siweb.dss.go.th/chain/

Posted by deepcore under defacement (No Respond)

http://siweb.dss.go.th/chain/ notified by Alemin_Krali

Tags:

Microsoft OneDrive iOS App 8.13 Insecure URI Scheme Handling

Posted by deepcore under exploit (No Respond)

Microsoft OneDrive iOS App version 8.13 suffers from insecure handling of URI schemes.

MS17-010 SMBv1 SrvOs2FeaToNt OOB Remote Code Execution

Posted by deepcore under exploit (No Respond)

SMBv1 SrvOs2FeaToNt OOB is prone to a remote code execution vulnerability because the application fails to perform adequate boundary-checks on user-supplied input. This exploit leverages this vulnerability as described in MS17-010.

ASUS Routers CSRF / Information Disclosure

Posted by deepcore under exploit (No Respond)

ASUS routers suffer from cross site request forgery and information disclosure vulnerabilities. Versions affected include RT-AC55U, RT-AC56R, RT-AC56S, RT-AC56U, RT-AC66U, RT-AC88U, RT-AC66R, RT-AC66U, RT-AC66W, RT-AC68W, RT-AC68P, RT-AC68R, RT-AC68U, RT-AC87R, RT-AC87U, RT-AC51U, RT-AC53U, RT-AC1900P, RT-AC3100, RT-AC3200, RT-AC5300, RT-N11P, RT-N12 (D1 version only), RT-N12+, RT-N12E, RT-N18U, RT-N56U, RT-N66R, RT-N66U (B1 version only), and RT-N66W.