Subscribe via feed.
Archive for July, 2017

rpcinfo Portmap DUMP Call Amplification Distributed Denial Of Service

Posted by deepcore under exploit (No Respond)

rpcinfo portmap DUMP call amplification distributed denial of service exploit.

IoT mDNS/DNS-SD QM Amplification Distributed Denial Of Service

Posted by deepcore under exploit (No Respond)

IoT mDNS/DNS-SD QM amplification distributed denial of service exploit.

PDNS Manager Remote Command Execution

Posted by deepcore under exploit (No Respond)

PDNS Manager from Git master 3bf4e28 (2016-12-12) through 2bb00ea (2017-05-22) suffer from a remote command execution vulnerability.

GoAutoDial 3.3 Authentication Bypass / Command Injection

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a SQL injection flaw in the login functionality for GoAutoDial version 3.3-1406088000 and below, and attempts to perform command injection. This also attempts to retrieve the admin user details, including the cleartext password stored in the underlying database. Command injection will be performed with root privileges. The default pre-packaged ISO builds […]

http://www.onep.go.th/o.htm

Posted by deepcore under defacement (No Respond)

http://www.onep.go.th/o.htm notified by chinafans

Tags:

OpenDreamBox 2.0.0 Remote Code Execution

Posted by deepcore under exploit (No Respond)

OpenDreamBox version 2.0.0 suffers from a remote code execution vulnerability in the WebAdmin plugin.

CMS Made Simple 2.2.1 Local File Inclusion

Posted by deepcore under exploit (No Respond)

CMS Made Simple versions 2.2.1 and below suffers from a local inclusion vulnerability.

DoorGets CMS 7.0 Open Redirect

Posted by deepcore under exploit (No Respond)

DoorGets CMS version 7.0 suffers from an open redirect vulnerability.

eVestigator Forensic PenTester Remote Code Execution

Posted by deepcore under exploit (No Respond)

eVestigator Forensic PenTester version 1 suffers from a remote code execution vulnerability via man-in-the-middle attacks.

BOA Web Server 0.94.14rc21 Arbitrary File Access

Posted by deepcore under exploit (No Respond)

BOA Web Server version 0.94.14rc21 an arbitrary file access vulnerability.