Subscribe via feed.
Archive for May, 2017

http://plaiklad.go.th/images/img-thumb/0.txt

Posted by deepcore under defacement (No Respond)

http://plaiklad.go.th/images/img-thumb/0.txt notified by CaFe_ID

Tags:

http://thaimuang.go.th/images/img-thumb/0.txt

Posted by deepcore under defacement (No Respond)

http://thaimuang.go.th/images/img-thumb/0.txt notified by CaFe_ID

Tags:

http://wangtanode.go.th/images/0.txt

Posted by deepcore under defacement (No Respond)

http://wangtanode.go.th/images/0.txt notified by CaFe_ID

Tags:

ViMbAdmin 3.0.15 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

ViMbAdmin version 3.0.15 suffers from multiple cross site request forgery vulnerabilities.

ViMbAdmin 3.0.15 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

ViMbAdmin version 3.0.15 suffers from multiple cross site scripting vulnerabilities.

CloudBees Jenkins 2.32.1 Remote Code Execution

Posted by deepcore under exploit (No Respond)

CloudBees Jenkins version 2.32.1 suffers from an unauthenticated remote code execution vulnerability.

WordPress Facebook 1.0.13 SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Facebook plugin versions 1.0.13 and below suffer from a remote SQL injection vulnerability.

WordPress Spider Event Calendar 1.5.49 SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Spider Event Calendar plugin versions 1.5.49 and below suffer from a remote SQL injection vulnerability.

WordPress WebDorado Gallery 1.3.29 SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress WebDorado Gallery plugin versions 1.3.29 and below suffer from a remote SQL injection vulnerability.

Crypttech CryptoLog Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits the sql injection and command injection vulnerability of CryptoLog. An un-authenticated user can execute a terminal command under the context of the web user. login.php endpoint is responsible for login process. One of the user supplied parameter is used by the application without input validation and parameter binding. Which cause a […]