Subscribe via feed.
Archive for August, 2017

http://wiangpapao.chiangrai.doae.go.th/newweb/Intruder.txt

Posted by deepcore under defacement (No Respond)

http://wiangpapao.chiangrai.doae.go.th/newweb/Intruder.txt notified by CyberTeam

Tags:

http://wiangchiangrung.chiangrai.doae.go.th/newweb/Intruder.txt

Posted by deepcore under defacement (No Respond)

http://wiangchiangrung.chiangrai.doae.go.th/newweb/Intruder.txt notified by CyberTeam

Tags:

http://wiangchai.chiangrai.doae.go.th/newweb/Romantic.txt

Posted by deepcore under defacement (No Respond)

http://wiangchai.chiangrai.doae.go.th/newweb/Romantic.txt notified by CyberTeam

Tags:

http://mueang.chiangrai.doae.go.th/newweb/Intruder.txt

Posted by deepcore under defacement (No Respond)

http://mueang.chiangrai.doae.go.th/newweb/Intruder.txt notified by CyberTeam

Tags:

http://khuntan.chiangrai.doae.go.th/newweb/Intruder.txt

Posted by deepcore under defacement (No Respond)

http://khuntan.chiangrai.doae.go.th/newweb/Intruder.txt notified by CyberTeam

Tags:

http://chiangkhong.chiangrai.doae.go.th/newweb/Romantic.txt

Posted by deepcore under defacement (No Respond)

http://chiangkhong.chiangrai.doae.go.th/newweb/Romantic.txt notified by CyberTeam

Tags:

VehicleWorkshop Authentication Bypass / SQL Injection

Posted by deepcore under exploit (No Respond)

VehicleWorkshop suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Microsoft Windows LNK Shortcut File Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a vulnerability in the handling of Windows Shortcut files (.LNK) that contain a dynamic icon, loaded from a malicious DLL. This vulnerability is a variant of MS15-020 (CVE-2015-0096). The created LNK file is similar except in an additional SpecialFolderDataBlock is included. The folder ID set in this SpecialFolderDataBlock is set to […]

VehicleWorkshop Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

VehicleWorkshop suffers from a remote file upload vulnerability.

SOL.Connect ISET-mpp Meter 1.2.4.2 SQL Injection

Posted by deepcore under exploit (No Respond)

SOL.Connect ISET-mpp meter version 1.2.4.2 suffers from a remote SQL injection vulnerability that allows for authentication bypass.