Subscribe via feed.
Archive for October, 2018

Phoenix Contact WebVisit 6.40.00 Password Disclosure

Posted by deepcore under exploit (No Respond)

Phoenix Contact WebVisit version 6.40.00 suffers from a password disclosure vulnerability.

Microsoft SQL Server Management Studio 17.9 / 18.0 Preview 4 XML Injection

Posted by deepcore under exploit (No Respond)

Microsoft SQL Server Management Studio versions 17.9 and 18.0 Preview 4 suffer from a REGSRVR filehandling XML external entity injection vulnerability.

Microsoft SQL Server Management Studio 17.9 / 18.0 Preview 4 XML Injection

Posted by deepcore under exploit (No Respond)

Microsoft SQL Server Management Studio versions 17.9 and 18.0 Preview 4 suffer from a xel filetype XML external entity injection vulnerability.

E-Registrasi Pencak Silat 18.10 SQL Injection

Posted by deepcore under exploit (No Respond)

E-Registrasi Pencak Silat version 18.10 suffers from a remote SQL injection vulnerability.

Microsoft SQL Server Management Studio 17.9 / 18.0 Preview 4 XML Injection

Posted by deepcore under exploit (No Respond)

Microsoft SQL Server Management Studio versions 17.9 and 18.0 Preview 4 suffer from an xmla filetype XML external entity injection vulnerability.

LUYA CMS 1.0.12 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

LUYA CMS version 1.0.12 suffers from a cross site scripting vulnerability.

CAMALEON CMS 2.4 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

CAMALEON CMS version 2.4 suffers from a cross site scripting vulnerability.

[webapps] SugarCRM 6.5.26 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

SugarCRM 6.5.26 – Cross-Site Scripting

Tags: ,

[webapps] HaPe PKH 1.1 – Arbitrary File Upload

Posted by deepcore under Security (No Respond)

HaPe PKH 1.1 – Arbitrary File Upload

Tags: ,

[webapps] CAMALEON CMS 2.4 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

CAMALEON CMS 2.4 – Cross-Site Scripting

Tags: ,