Subscribe via feed.
Archive for August, 2017

Philex CMS 0.2 Directory Traversal

Posted by deepcore under exploit (No Respond)

Philex CMS version 0.2 suffers from a directory traversal vulnerability.

Microsoft Edge CInputDateTimeScrollerElement::_SelectValueInternal Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Microsoft Edge suffers from an out-of-bounds read in CInputDateTimeScrollerElement::_SelectValueInternal. The vulnerability has been confirmed on Windows 10 Enterprise 64-bit (OS version 1607, OS build 14393.1198) and Microsoft Edge 38.14393.1066.0, Microsoft EdgeHTML 14.14393.

Microsoft Resnet – DNS Configuration Web Vulnerability

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered a dns configuration ulnerability in the official Microsoft Re…

ImageBay 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

ImageBay version 1.0 suffers from a remote SQL injection vulnerability.

De-Tutor 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

De-Tutor version 1.0 suffers from a remote SQL injection vulnerability.

Pluck CMS 4.7.4 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Pluck CMS version 4.7.4 suffers from a cross site request forgery vulnerability.

De-Journal Academic Journal And Peer Review System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

De-Journal Academic Journal and Peer Review System version 1.0 suffers from a remote SQL injection vulnerability.

De-Workshop Auto Workshop Portal 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

De-Workshop Auto Workshop Portal version 1.0 suffers from a remote SQL injection vulnerability.

RealTime RWR-3G-100 Router Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

RealTime RWR-3G-100 router suffers from a cross site request forgery vulnerability.

Theo CMS 2.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Theo CMS versions 2.0 and below suffer from a remote SQL injection vulnerability.