Subscribe via feed.
Archive for August, 2018

cPanel 76 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

cPanel versions 76 and below suffer from a filename based cross site scripting vulnerability.

Jetty 6.1.6 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Jetty version 6.1.6 suffers from a cross site scripting vulnerability.

Cloudme 1.9 Buffer Overflow

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a stack buffer overflow in Cloudme version 1.8.x and 1.9.x.

Wansview 1.0.2 Denial Of Service

Posted by deepcore under exploit (No Respond)

Wansview version 1.0.2 suffers from a denial of service vulnerability.

Nasdaq BWise 5.0 JMX/RMI Interface Remote Code Execution

Posted by deepcore under exploit (No Respond)

Nasdaq BWise version 5.0 suffers from a JMX/RMI interface remote code execution vulnerability.

cgit Directory Traversal

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a directory traversal vulnerability in cgit versions prior to 1.2.1.

ASUSTOR NAS ADM 3.1.0 Remote Command Execution / SQL Injection

Posted by deepcore under exploit (No Respond)

ASUSTOR NAS ADM version 3.1.0 suffers from code execution and remote SQL injection vulnerabilities.

Foxit Reader 9.0.1.1049 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Foxit Reader version 9.0.1.1049 remote code execution exploit with DEP bypass on heap with shellcode.

Atmosphere 1.x / 2.x Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Async-IO.org Atmosphere suffers from a cross site scripting vulnerability. Versions affected include 2.4.0 through 2.4.28, 2.3.0 through 2.3.9, 2.2.0 through 2.2.12, 2.1.0 through 2.1.13, 2.0.0 through 2.0.11, and 1.0.0 through 1.0.20.

ownCloud iOS Application 3.7.3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

ownCloud version 3.7.3 for iOS suffers from a cross site scripting vulnerability.