Subscribe via feed.
Archive for September, 2017

UCOPIA Wireless Appliance Restricted Shell Escape

Posted by deepcore under exploit (No Respond)

UCOPIA Wireless Appliance version prior to 5.1.8 suffer from a restricted shell escape vulnerability.

UCOPIA Wireless Appliance Privilege Escalation

Posted by deepcore under exploit (No Respond)

UCOPIA Wireless Appliance version prior to 5.1.8 suffer from a chroot escape privilege escalation vulnerability.

PhpCollab 2.5.1 SQL Injection

Posted by deepcore under exploit (No Respond)

PhpCollab versions 2.5.1 and below suffer from multiple remote SQL injection vulnerabilities.

PhpCollab 2.5.1 Shell Upload

Posted by deepcore under exploit (No Respond)

PhpCollab versions 2.5.1 and below suffer from a remote shell upload vulnerability.

Qmail SMTP Bash Environment Variable Injection (Shellshock)

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a shellshock vulnerability on Qmail, a public domain MTA written in C that runs on Unix systems. Due to the lack of validation on the MAIL FROM field, it is possible to execute shell code on a system with a vulnerable BASH (Shellshock). This flaw works on the latest Qmail versions […]

Easy Blog PHP Script 1.3a SQL Injection

Posted by deepcore under exploit (No Respond)

Easy Blog PHP Script version 1.3a suffers from a remote SQL injection vulnerability.

Adult Script Pro 2.2.4 SQL Injection

Posted by deepcore under exploit (No Respond)

Adult Script Pro version 2.2.4 suffers from a remote SQL injection vulnerability.

Article Directory Script 3.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Article Directory Script version 3.0 suffers from a remote SQL injection vulnerability.

D-Park Pro Domain Parking Script 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

D-Park Pro Domain Parking Script version 1.0 suffers from a remote SQL injection vulnerability.

Ingenious School Management System 2.3.0 Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

Ingenious School Management System version 2.3.0 suffers from a remote file upload vulnerability.