Subscribe via feed.
Archive for August, 2018

Microsoft DirectX SDK (June 2010) Xact3.exe DLL Hijacking

Posted by deepcore under exploit (No Respond)

The Microsoft DirectX SDK “Xact3.exe” cross-platform tool allows for arbitrary code execution via a trojan horse file “xbdm.dll” in the current working directory, upon opening a “.xap” project file from the same location.

Switch Port Mapping Tool 2.81.2 Denial Of Service

Posted by deepcore under exploit (No Respond)

Switch Port Mapping Tool version 2.81.2 suffers from a denial of service vulnerability.

Acunetix WVS 10.0 Build 20150623 Denial Of Service

Posted by deepcore under exploit (No Respond)

Acunetix WVS version 10.0 Build 20150623 suffers from a denial of service vulnerability.

IP Finder 1.5 Denial Of Service

Posted by deepcore under exploit (No Respond)

IP Finder version 1.5 suffers from a denial of service vulnerability.

IBM Sterling B2B Integrator 5.2.0.1 / 5.2.6.3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

IBM Sterling B2B Integrator versions 5.2.0.1 5.2.6.3 suffer from a cross site scripting vulnerability.

Google Android USB Directory Traversal

Posted by deepcore under exploit (No Respond)

Android suffers from a directory traversal vulnerability leveraged over USB via injection in blkid output.

PostgreSQL 9.4-0.5.3 Privilege Escalation

Posted by deepcore under exploit (No Respond)

PostgreSQL version 9.4-0.5.3 suffers from a privilege escalation vulnerability.

IceWarp WebMail 12.0.3.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

IceWarp WebMail versions 12.0.3.1 and below suffer from a cross site scripting vulnerability.

PLC Wireless Router GPN2.4P21-C-CN Denial Of Service

Posted by deepcore under exploit (No Respond)

PLC Wireless Router GPN2.4P21-C-CN suffers from a denial of service vulnerability via an unauthenticated remote reboot flaws.

iSmartViewPro 1.5 Buffer Overflow

Posted by deepcore under exploit (No Respond)

iSmartViewPro version 1.5 suffers from a ‘SavePath for ScreenShots’ buffer overflow vulnerability.