Subscribe via feed.
Archive for May, 2018

[webapps] EasyService Billing 1.0 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

EasyService Billing 1.0 – Cross-Site Scripting

Tags: ,

[webapps] Ajax Full Featured Calendar 2.0 – 'search' SQL Injection

Posted by deepcore under Security (No Respond)

Ajax Full Featured Calendar 2.0 – ‘search’ SQL Injection

Tags: ,

Samsung Galaxy S7 Edge OMACP WbXml String Extension Processing Overflow

Posted by deepcore under exploit (No Respond)

Samsung Galaxy S7 Edge suffers from an OMACP WbXml string extension processing overflow vulnerability.

Microsoft Edge Chakra Cross Context Bug Use-After-Free

Posted by deepcore under exploit (No Respond)

Microsoft Edge Chakra suffers from a cross context use-after-free vulnerability.

Skia / Firefox SkTDArray Integer Overflow

Posted by deepcore under exploit (No Respond)

Skia and Firefox suffer from an issue where an integer overflow in SkTDArray can lead to an out-of-bounds write.

Linux Ext4 Out-Of-Bounds Memcpy

Posted by deepcore under exploit (No Respond)

Linux ext4 suffers from an out-of-bounds memcpy via a non-inline system.data xattr.

Wecodex Hotel CMS 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Wecodex Hotel CMS version 1.0 suffers from a remote SQL injection vulnerability.

Wecodex Restaurant CMS 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Wecodex Restaurant CMS version 1.0 suffers from a remote SQL injection vulnerability.

eWallet Online Payment Gateway 2 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

eWallet Online Payment Gateway version 2 suffers from a cross site request forgery vulnerability.

Mcard Mobile Card Selling Platform 1 SQL Injection

Posted by deepcore under exploit (No Respond)

Mcard Mobile Card Selling Platform version 1 suffers from a remote SQL injection vulnerability.