Subscribe via feed.
Archive for January, 2018

Primefaces 5.x Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an expression language remote code execution flaw in the Primefaces JSF framework. Primefaces versions prior to 5.2.21, 5.3.8 or 6.0 are vulnerable to a padding oracle attack, due to the use of weak crypto and default encryption password and salt.

http://www.kkpho.go.th

Posted by deepcore under defacement (No Respond)

http://www.kkpho.go.th notified by ./Sn0w

Tags:

[dos] macOS 10.13 (17A365) – Kernel Memory Disclosure due to Lack of Bounds Checking in 'AppleIntelCapriController::getDisplayPipeCapability'

Posted by deepcore under Security (No Respond)

macOS 10.13 (17A365) – Kernel Memory Disclosure due to Lack of Bounds Checking in ‘AppleIntelCapriController::getDisplayPipeCapability’

Tags: ,

[webapps] GitStack 2.3.10 – Unauthenticated Remote Code Execution

Posted by deepcore under Security (No Respond)

GitStack 2.3.10 – Unauthenticated Remote Code Execution

Tags: ,

[dos] Smiths Medical Medfusion 4000 – 'DHCP' Denial of Service

Posted by deepcore under Security (No Respond)

Smiths Medical Medfusion 4000 – ‘DHCP’ Denial of Service

Tags: ,

[webapps] Primefaces 5.x – Remote Code Execution (Metasploit)

Posted by deepcore under Security (No Respond)

Primefaces 5.x – Remote Code Execution (Metasploit)

Tags: ,

http://backoffice.onec.go.th/Vlyn.html

Posted by deepcore under defacement (No Respond)

http://backoffice.onec.go.th/Vlyn.html notified by Vlyn

Tags:

http://parpong.go.th/r0t.htm

Posted by deepcore under defacement (No Respond)

http://parpong.go.th/r0t.htm notified by NmR.Hacker

Tags:

CentOS Web Panel v0.9.8.12 – CS Cross Site Vulnerabilities

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered a client-side cross site scripting vulnerability in the CentO…

[dos] Microsoft Edge Chakra JIT – Stack-to-Heap Copy

Posted by deepcore under Security (No Respond)

Microsoft Edge Chakra JIT – Stack-to-Heap Copy

Tags: ,