Subscribe via feed.
Archive for June, 2018

WebKitGTK+ WebKitFaviconDatabase Denial Of Service

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a vulnerability in WebKitFaviconDatabase when pageURL is unset. If successful, it could lead to application crash, resulting in denial of service.

Schools Alert Management Scripts Arbitrary File Read

Posted by deepcore under exploit (No Respond)

Schools Alert Management Script suffers from an arbitrary file real vulnerability.

Schools Alert Management Scripts get_sec.php SQL Injection

Posted by deepcore under exploit (No Respond)

Schools Alert Management Script suffers from a remote SQL injection vulnerability.

WordPress Pie Register Blind SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Pie Register plugin versions prior to 3.0.9 suffer from a remote blind SQL injection vulnerability.

Event Manager Admin Panel events_new.php SQL Injection

Posted by deepcore under exploit (No Respond)

The Event Manager PHP Script admin panel suffers from a remote SQL injection vulnerability in events_new.php.

Joomla Ek Rishta 2.10 SQL Injection

Posted by deepcore under exploit (No Respond)

Joomla Ek Rishta component version 2.10 suffers from a remote SQL injection vulnerability.

Schools Alert Management Script Arbitrary File Delete

Posted by deepcore under exploit (No Respond)

Schools Alert Management Script suffers from an arbitrary file deletion vulnerability.

userSpice 4.3.24 X-Forwarded-For Cross Site Scripting

Posted by deepcore under exploit (No Respond)

userSpice version 4.3.24 suffers from an X-Forwarded-For cross site scripting vulnerability.

userSpice 4.3.24 Username Enumeration

Posted by deepcore under exploit (No Respond)

userSpice version 4.3.24 suffers from a username enumeration vulnerability.

Splunk 6.2.3 / 7.0.1 Information Disclosure

Posted by deepcore under exploit (No Respond)

Splunk versions 6.2.3 through 7.0.1 suffer from an information disclosure vulnerability.