Subscribe via feed.
Archive for June, 2018

[webapps] Dimofinf CMS 3.0.0 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Dimofinf CMS 3.0.0 – Cross-Site Scripting

Tags: ,

[webapps] OEcms 3.1 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

OEcms 3.1 – Cross-Site Scripting

Tags: ,

GetPocket – Multiple Persistent Web Vulnerabilities

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered multiple input validation web vulnerabilities in the official…

Shopify – (Comments) Cross Site Scripting Vulnerability

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research Team discovered a script code inject web vulnerability in the official Shopif…

ReleaseWire – (Foldername) Persistent Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MACCMS 10 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

MACCMS version 10 suffers from a cross site request forgery vulnerability.

Redaxo CMS Mediapool Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

Redaxo CMS Mediapool add-on versions prior to 5.5.1 suffer from a remote file upload vulnerability.

Microsoft Windows 10 1709 Child Process Restriction Mitigation Bypass

Posted by deepcore under exploit (No Respond)

Microsoft Windows 10 version 1709 suffers from a child process restriction mitigation bypass vulnerability.

Ecos Secure Boot Stick 5.6.5 Credential Disclosure / Information Leak

Posted by deepcore under exploit (No Respond)

Ecos Secure Boot Stick version 5.6.5 and System Management version 5.2.68 suffers from credential disclosure and various other security vulnerabilities that can lead to information disclosure.

Rockwell Automation RSLinx Classic / FactoryTalk Linx Gateway Privilege Escalation

Posted by deepcore under exploit (No Respond)

Rockwell Automation RSLinx Classic and FactoryTalk Linx Gateway suffer from a privilege escalation vulnerability. Rockwell Automation RSLinx Classic versions 3.90.01, 3.73.00, 3.72.00, and 2.58.00 are susceptible. Rockwell Automation FactoryTalk Linx Gateway version 3.90.00 is susceptible.