This Metasploit module exploits an information disclosure vulnerability found in Advantech SUSIAccess versions 3.0 and below. The vulnerability is triggered when sending a GET request to the server with a series of dot dot slashes (../) in the file parameter.
macOS and iOS sandbox escapes and privilege escalation vulnerabilities exist due to unexpected shared memory-backed xpc_data objects.
Advantech SUSIAccess versions 3.0 and below suffers from a RecoveryMgmt file upload vulnerability.
This Metasploit module exploits an unsafe Javascript API implemented in Nitro and Nitro Pro PDF Reader version 11. The saveAs() Javascript API function allows for writing arbitrary files to the file system. Additionally, the launchURL() function allows an attacker to execute local files on the file system and bypass the security dialog Note: This is […]
http://reo09.mnre.go.th/reo09/admin/question/ notified by Mr. DellatioNx196
Tags:
defacement
GNU libiberty suffers from a buffer overflow vulnerability.
FreeIPA version 2.213 suffers from a session hijacking vulnerability.
Friends in War Make or Break version 1.7 suffers from an unauthenticated administrative password change vulnerability.
Friends in War Make or Break version 1.7 suffers from a remote SQL injection vulnerability.