Subscribe via feed.
Archive for October, 2017

WordPress Polls 1.2.4 SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Polls plugin version 1.2.4 suffers from a remote SQL injection vulnerability.

Mikogo 5.4.1.160608 Local Credentials Disclosure

Posted by deepcore under exploit (No Respond)

Mikogo version 5.4.1.160608 is vulnerable to local credential disclosure. The supplied password is stored as a MD5 hash format in memory. A potential attacker could reveal the supplied password hash and re-use it or store it via the configuration file in order to gain access to the account.

[webapps] FS Realtor Clone – 'id' SQL Injection

Posted by deepcore under Security (No Respond)

FS Realtor Clone – ‘id’ SQL Injection

Tags: ,

[webapps] Mura CMS < 6.2 – Server-Side Request Forgery / XML External Entity Injection

Posted by deepcore under Security (No Respond)

Mura CMS < 6.2 – Server-Side Request Forgery / XML External Entity Injection

Tags: ,

[webapps] FS Thumbtack Clone – 'ser' SQL Injection

Posted by deepcore under Security (No Respond)

FS Thumbtack Clone – ‘ser’ SQL Injection

Tags: ,

[webapps] FS Care Clone – 'sitterService' SQL Injection

Posted by deepcore under Security (No Respond)

FS Care Clone – ‘sitterService’ SQL Injection

Tags: ,

[webapps] FS Monster Clone – 'id' SQL Injection

Posted by deepcore under Security (No Respond)

FS Monster Clone – ‘id’ SQL Injection

Tags: ,

[webapps] FS Crowdfunding Script – 'id' SQL Injection

Posted by deepcore under Security (No Respond)

FS Crowdfunding Script – ‘id’ SQL Injection

Tags: ,

[webapps] FS Trademe Clone – 'id' SQL Injection

Posted by deepcore under Security (No Respond)

FS Trademe Clone – ‘id’ SQL Injection

Tags: ,

[webapps] FS Shutter Stock Clone – 'keywords' SQL Injection

Posted by deepcore under Security (No Respond)

FS Shutter Stock Clone – ‘keywords’ SQL Injection

Tags: ,