WordPress Z-URL Preview plugin version 1.6.1 suffers from a persistent cross site scripting vulnerability.
>> ARCHIVE: 2017-12
WordPress WP Mailster plugin version 1.5.4.0 suffers from a persistent cross site scripting vulnerability.
Claymore’s Dual ETH + DCR/SC/LBC/PASC GPU Miner versions 10.1 and below suffer from a stack buffer overflow vulnerability.
VirtualBox suffers from a remote code execution vulnerability due to downloading updates over HTTP.
WordPress Smart Marketing SMS and Newsletters Forms plugin version 1.1.1 suffers from a persistent cross site scripting vulnerability.
This Metasploit module exploits a flaw in how the Equation Editor handles OLE objects in memory to execute arbitrary code using RTF files without interaction.
Within Polycom command shell, a command execution flaw exists in lan traceroute, one of the dev commands, which allows for an attacker to execute arbitrary payloads with telnet or openssl.
Web Application Firewall (WAF) Evasion Techniques
Linux Kernel – DCCP Socket Use-After-Free
LaCie 5big Network 2.2.8 – Command Injection