Subscribe via feed.
Archive for November, 2018

No-Cms 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

No-Cms version 1.0 suffers from a remote SQL injection vulnerability.

phpMyAdmin 4.8.1 Authenticated Local File Inclusion

Posted by deepcore under exploit (No Respond)

phpMyAdmin version 4.8.1 authenticated local file inclusion proof of concept exploits.

Netgear Unauthenticated Remote Command Execution

Posted by deepcore under exploit (No Respond)

Netgear WN604 versions before 3.3.3 and WN802Tv2, WNAP210v2, WNAP320, WNDAP350, WNDAP360, and WNDAP660 versions before 3.5.5.0 allow remote attackers to execute arbitrary commands.

[remote] Netgear Devices – Unauthenticated Remote Command Execution (Metasploit)

Posted by deepcore under Security (No Respond)

Netgear Devices – Unauthenticated Remote Command Execution (Metasploit)

Tags: ,

Joomla Admin 3.7.4 Database Disclosure

Posted by deepcore under exploit (No Respond)

Joomla com_admin component versions 2.5.4 through 3.7.4 suffer from a database disclosure vulnerability.

Joomla MacGallery Database Disclosure

Posted by deepcore under exploit (No Respond)

The Joomla com_macgallery component suffers from a database disclosure vulnerability.

WordPress Pods 2.7.9 Database Disclosure

Posted by deepcore under exploit (No Respond)

WordPress Pods plugin version 2.7.9 suffers from a database disclosure vulnerability.

Cory Support 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Cory Support version 1.0 suffers from a remote time-based SQL injection vulnerability.

WordPress Absolutely Glamorous Custom Admin 6.4.1 Database Disclosure

Posted by deepcore under exploit (No Respond)

WordPress Absolutely Glamorous Custom Admin plugin version 6.4.1 suffers from a database disclosure vulnerability.

Consona Password Reset Security Bypass

Posted by deepcore under exploit (No Respond)

Multiple Consona products suffered from a password reset security bypass vulnerability.