Subscribe via feed.
Archive for November, 2018

D-LINK Central WifiManager (CWM 100) 1.03 r0098 Server-Side Request Forgery

Posted by deepcore under exploit (No Respond)

Using a web browser or script server-side request forgery (SSRF) can be initiated against internal/external systems to conduct port scans by leveraging D-LINK’s MailConnect component. The MailConnect feature on D-Link Central WiFiManager CWM-100 version 1.03 r0098 devices is intended to check a connection to an SMTP server but actually allows outbound TCP to any port […]

D-LINK Central WifiManager (CWM 100) 1.03 r0098 DLL Hijacking

Posted by deepcore under exploit (No Respond)

D-Link Central WiFiManager CWM-100 version 1.03 r0098 devices will load a trojan horse “quserex.dll” and will create a new thread running with SYSTEM integrity.

http://leamsingha.go.th/king.txt

Posted by deepcore under defacement (No Respond)

http://leamsingha.go.th/king.txt notified by ErrOr SquaD

Tags:

http://chanmunic.go.th/king.txt

Posted by deepcore under defacement (No Respond)

http://chanmunic.go.th/king.txt notified by ErrOr SquaD

Tags:

http://www.kakoh.go.th/imggallery

Posted by deepcore under defacement (No Respond)

http://www.kakoh.go.th/imggallery notified by Yacine_Dexter

Tags:

http://ictg.onwr.go.th/layouts/

Posted by deepcore under defacement (No Respond)

http://ictg.onwr.go.th/layouts/ notified by Ayyıldız Tim

Tags:

http://flood.correct.go.th

Posted by deepcore under defacement (No Respond)

http://flood.correct.go.th notified by Ayyıldız Tim

Tags:

[shellcode] Linux/x64 – Bind TCP (4444/TCP) Shell (/bin/sh) + Password (1234567) Shellcode (136 bytes)

Posted by deepcore under Security (No Respond)

Linux/x64 – Bind TCP (4444/TCP) Shell (/bin/sh) + Password (1234567) Shellcode (136 bytes)

Tags: ,

eToolz 3.4.8.0 Denial Of Service

Posted by deepcore under exploit (No Respond)

eToolz version 3.4.8.0 suffers from a denial of service vulnerability.

VSAXESS 2.6.2.70 Build 20171226_053 Denial Of Service

Posted by deepcore under exploit (No Respond)

VSAXESS version 2.6.2.70 build 20171226_053 suffers from an organization field denial of service vulnerability.