Subscribe via feed.
Archive for December, 2017

[webapps] FS Shaadi Clone – 'token' SQL Injection

Posted by deepcore under Security (No Respond)

FS Shaadi Clone – ‘token’ SQL Injection

Tags: ,

aws-cfn-bootstrap Local Code Execution

Posted by deepcore under exploit (No Respond)

aws-cfn-bootstrap versions prior to 1.4-22.14 suffer from a local code execution vulnerability.

Axis Communications MPQT/PACS Heap Overflow / Information Leakage

Posted by deepcore under exploit (No Respond)

Axis Communications MPQT/PACS suffers from heap overflow and information leakage vulnerabilities.

SocuSoft Co. Photo 2 Video Converter 8.0.0 Code Execution / DoS

Posted by deepcore under exploit (No Respond)

SocuSoft Co. Photo 2 Video Converter Free and Pro variants version 8.0.0 suffer from a buffer overflow in the pdmlog.dll library.

MistServer 2.12 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MistServer version 2.12 suffers from a persistent cross site scripting vulnerability.

Artica Web Proxy 3.06.112216 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Artica Web Proxy version 3.06.112216 suffers from a remote code execution vulnerability.

Abyss Web Server Memory Heap Corruption

Posted by deepcore under exploit (No Respond)

Abyss Web Server versions prior to 2.11.6 suffer from a memory heap corruption vulnerability.

Jobs2Careers / Coroflot Clone SQL Injection

Posted by deepcore under exploit (No Respond)

Jobs2Careers / Coroflot Clone suffer from a remote SQL injection vulnerability.

HP iMC Plat 7.2 Remote Code Execution

Posted by deepcore under exploit (No Respond)

HP iMC Plat version 7.2 suffers from a remote code execution vulnerability.

WinduCMS 3.1 Local File Disclosure

Posted by deepcore under exploit (No Respond)

WinduCMS versions 3.1 and below suffer from a local file disclosure vulnerability.