Subscribe via feed.
Archive for April, 2018

[remote] Drupal < 7.58 – 'Drupalgeddon3' Authenticated Remote Code (Metasploit)

Posted by deepcore under Security (No Respond)

Drupal < 7.58 – 'Drupalgeddon3' Authenticated Remote Code (Metasploit)

Tags: ,

[webapps] Nagios XI 5.2.[6-9], 5.3, 5.4 – Chained Remote Root

Posted by deepcore under Security (No Respond)

Nagios XI 5.2.[6-9], 5.3, 5.4 – Chained Remote Root

Tags: ,

[webapps] WordPress Plugin Form Maker 1.12.20 – CSV Injection

Posted by deepcore under Security (No Respond)

WordPress Plugin Form Maker 1.12.20 – CSV Injection

Tags: ,

[dos] macOS 10.13.2 – Double mach_port_deallocate in kextd due to Failure to Comply with MIG Ownership Rules

Posted by deepcore under Security (No Respond)

macOS 10.13.2 – Double mach_port_deallocate in kextd due to Failure to Comply with MIG Ownership Rules

Tags: ,

[dos] Navicat < 12.0.27 – Oracle Connection Overflow

Posted by deepcore under Security (No Respond)

Navicat < 12.0.27 – Oracle Connection Overflow

Tags: ,

[dos] macOS/iOS – ReportCrash mach port Replacement due to Failure to Respect MIG Ownership Rules

Posted by deepcore under Security (No Respond)

macOS/iOS – ReportCrash mach port Replacement due to Failure to Respect MIG Ownership Rules

Tags: ,

TP-Link Technologies TL-WA850RE Wi-Fi Range Extender Unauthorized Remote Reboot

Posted by deepcore under exploit (No Respond)

TP-Link Technologies TL-WA850RE Wi-Fi Range Extender suffers from an unauthorized remote reboot vulnerability.

Frog CMS 0.9.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Frog CMS version 0.9.5 suffers from a persistent cross site scripting vulnerability.

Google Chrome V8 Arrow Function Scope Fixing Bug

Posted by deepcore under exploit (No Respond)

Google Chrome V8 suffers from an arrow function scope fixing bug.

Shopy Point Of Sale 1.0 CSV Injection

Posted by deepcore under exploit (No Respond)

Shopy Point of Sale version 1.0 suffers from a CSV injection vulnerability.