Subscribe via feed.
Archive for February, 2018

glibc '$ORIGIN' Expansion Privilege Escalation

Posted by deepcore under exploit (No Respond)

This Metasploit module attempts to gain root privileges on Linux systems by abusing a vulnerability in the GNU C Library (glibc) dynamic linker. glibc ld.so in versions before 2.11.3, and 2.12.x before 2.12.2 does not properly restrict use of the LD_AUDIT environment variable when loading setuid executables which allows control over the $ORIGIN library search […]

[webapps] Paypal Clone Script 1.0.9 – 'id' / 'acctype' SQL Injection

Posted by deepcore under Security (No Respond)

Paypal Clone Script 1.0.9 – ‘id’ / ‘acctype’ SQL Injection

Tags: ,

[webapps] Readymade Video Sharing Script 3.2 – 'search' SQL Injection

Posted by deepcore under Security (No Respond)

Readymade Video Sharing Script 3.2 – ‘search’ SQL Injection

Tags: ,

http://www.charatlocal.go.th/readme.htm

Posted by deepcore under defacement (No Respond)

http://www.charatlocal.go.th/readme.htm notified by Dijehaji

Tags:

http://www.kohkaeo.go.th/readme.htm

Posted by deepcore under defacement (No Respond)

http://www.kohkaeo.go.th/readme.htm notified by Dijehaji

Tags:

http://www.jomjan.go.th/readme.htm

Posted by deepcore under defacement (No Respond)

http://www.jomjan.go.th/readme.htm notified by Dijehaji

Tags:

[webapps] Schools Alert Management Script 2.0.2 – Arbitrary File Upload

Posted by deepcore under Security (No Respond)

Schools Alert Management Script 2.0.2 – Arbitrary File Upload

Tags: ,

[webapps] Select Your College Script 2.0.2 – Authentication Bypass

Posted by deepcore under Security (No Respond)

Select Your College Script 2.0.2 – Authentication Bypass

Tags: ,

[webapps] Bitcoin MLM Software 1.0.2 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Bitcoin MLM Software 1.0.2 – Cross-Site Scripting

Tags: ,

[webapps] Multi religion Responsive Matrimonial 4.7.2 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Multi religion Responsive Matrimonial 4.7.2 – Cross-Site Scripting

Tags: ,