TP-Link TL-WR841N V13 Command Injection

TP-Link TL-WR841N v13 suffers from a blind command injection vulnerability.

TP-Link TL-WR841N V13 Insecure Direct Object Reference

TP-Link TL-WR841N v13 suffers from an authentication bypass vulnerability via an insecure direct object reference vulnerability.

Apple Security Advisory 2018-06-27-1

Apple Security Advisory 2018-06-27-1 – SwiftNIO 1.8.0 is now available and addresses a buffer overflow vulnerability.

http://wwwlbo.moph.go.th/jmvt.txt

http://wwwlbo.moph.go.th/jmvt.txt notified by Echo1

WordPress 4.9.6 Arbitrary File Deletion

WordPress versions 4.9.6 and below suffer from an arbitrary file deletion vulnerability.

PRTG Command Injection

PRTG versions prior to 18.2.39 suffer from a command execution vulnerability.

[webapps] DIGISOL DG-HR3400 Wireless Router – Cross-Site Scripting

DIGISOL DG-HR3400 Wireless Router – Cross-Site Scripting

[webapps] BEESCMS 4.0 – Cross-Site Request Forgery (Add Admin)

BEESCMS 4.0 – Cross-Site Request Forgery (Add Admin)

[webapps] hycus CMS 1.0.4 – Authentication Bypass

hycus CMS 1.0.4 – Authentication Bypass

[webapps] HongCMS 3.0.0 – SQL Injection

HongCMS 3.0.0 – SQL Injection