Subscribe via feed.
Archive for November, 2018

Arm Whois 3.11 Denial Of Service

Posted by deepcore under exploit (No Respond)

Arm Whois version 3.11 suffers from a denial of service vulnerability.

WebDrive 18.00.5057 Denial Of Service

Posted by deepcore under exploit (No Respond)

WebDrive version 18.00.5057 suffers from a denial of service vulnerability.

Artha The Open Thesaurus 1.0.3.0 Denial Of Service

Posted by deepcore under exploit (No Respond)

Artha The Open Thesaurus version 1.0.3.0 suffers from a denial of service vulnerability.

Packet Storm New Exploits For October, 2018

Posted by deepcore under exploit (No Respond)

This archive contains all of the 252 exploits added to Packet Storm in October, 2018.

Brava! Enterprise / Server 16.4 Information Disclosure

Posted by deepcore under exploit (No Respond)

Brava! Enterprise and Server components versions 7.5 through 16.4 suffer from a sensitive data exposure vulnerability due to weak permissions.

Anviz AIM CrossChex Standard 4.3 Excel Macro Injection

Posted by deepcore under exploit (No Respond)

CSV (XLS) Injection (Excel Macro Injection or Formula Injection) exists in the AIM CrossChex version 4.3 when importing or exporting users using xls Excel file. This can be exploited to execute arbitrary commands on the affected system via SE attacks when an attacker inserts formula payload in the Name field when adding a user or […]

[webapps] Jelastic 5.4 – 'host' SQL Injection

Posted by deepcore under Security (No Respond)

Jelastic 5.4 – ‘host’ SQL Injection

Tags: ,

[dos] WinMTR 0.91 – Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

WinMTR 0.91 – Denial of Service (PoC)

Tags: ,

[webapps] qdPM 9.1 – 'filter_by' SQL Injection

Posted by deepcore under Security (No Respond)

qdPM 9.1 – ‘filter_by’ SQL Injection

Tags: ,

[webapps] Gate Pass Management System 2.1 – 'login' SQL Injection

Posted by deepcore under Security (No Respond)

Gate Pass Management System 2.1 – ‘login’ SQL Injection

Tags: ,