http://www.policeubon.go.th

http://www.policeubon.go.th notified by ErrOr SquaD

http://tessabantak.go.th/index.php

http://tessabantak.go.th/index.php notified by The WTJ

ZKTeco ZKTime Web 2.0.1.12280 Cross Site Scripting

ZKTeco ZKTime Web version 2.0.1.12280 suffers from a cross site scripting vulnerability.

ZKTeco ZKTime Web 2.0.1.12280 Cross Site Request Forgery

ZKTeco ZKTime Web version 2.0.1.12280 suffers from a cross site request forgery vulnerability.

WordPress WooCommerce 2.0 / 3.0 Directory Traversal

WordPress WooCommerce plugin versions 2.0 and 3.0 suffer from a directory traversal vulnerability.

Huge Dirty Cow Proof Of Concept

This is a proof of concept for the Huge Dirty Cow vulnerability (CVE-2017-1000405). Before running, make sure to set transparent huge pages to “always” with “echo always | sudo tee /sys/kernel/mm/transparent_hugepage/enabled”.

Windows Defender Controlled Folder Bypass

Windows Defender suffers from a controlled folder bypass through the UNC path. Affected includes Windows 10 1709 and Antimalware client version 4.12.16299.15.

Packet Storm New Exploits For November, 2017

This archive contains all of the 126 exploits added to Packet Storm in November, 2017.

http://www.samkohos.moph.go.th

http://www.samkohos.moph.go.th notified by The WTJ

[webapps] MistServer 2.12 – Cross-Site Scripting

MistServer 2.12 – Cross-Site Scripting