Subscribe via feed.
Archive for July, 2018

10-Strike Bandwidth Monitor 3.7 Local Buffer Overflow

Posted by deepcore under exploit (No Respond)

10-Strike Bandwidth Monitor version 3.7 suffers from a buffer overflow vulnerability.

Inteno's IOPSYS Local Privilege Escalation

Posted by deepcore under exploit (No Respond)

Inteno’s IOPSYS suffers from an authenticated local privilege escalation vulnerability.

10-Strike LANState 8.8 Local Buffer Overflow

Posted by deepcore under exploit (No Respond)

10-Strike LANState version 8.8 suffers from a buffer overflow vulnerability.

WordPress Snazzy Maps 1.1.3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Snazzy Maps plugin versions 1.1.3 and below suffer from a cross site scripting vulnerability.

CleanMyMac3 Local Privilege Escalation

Posted by deepcore under exploit (No Respond)

CleanMyMac3 suffers from a local privilege escalation vulnerability.

Core FTP 2.0 XRMD Denial Of Service

Posted by deepcore under exploit (No Respond)

Core FTP version 2.0 XRMD denial of service proof of concept exploit.

Skia SkScan::FillPath Heap Overflow

Posted by deepcore under exploit (No Respond)

There is a heap overflow in Skia when drawing paths with anti-aliasing turned off. This issue can be triggered in both Google Chrome and Mozilla Firefox by rendering a specially crafted SVG image. Proof of concepts included.

Trivum Multiroom Setup Tool 8.76 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Trivum Multiroom Setup Tool version 8.76 suffers from a cross site request forgery vulnerability.

Axis Network Camera Remote Command Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an authentication bypass in .srv functionality and a command injection in parhand to execute code as the root user.

FTPShell Client 5.22 Remote Buffer Overflow

Posted by deepcore under exploit (No Respond)

FTPShell Client version 5.22 suffers from a remote buffer overflow vulnerability.