Subscribe via feed.
Archive for November, 2018

[webapps] Synaccess netBooter NP-0801DU 7.4 – Cross-Site Request Forgery (Add Admin)

Posted by deepcore under Security (No Respond)

Synaccess netBooter NP-0801DU 7.4 – Cross-Site Request Forgery (Add Admin)

Tags: ,

HTML Video Player 1.2.5 Buffer Overflow

Posted by deepcore under exploit (No Respond)

HTML Video Player version 1.2.5 suffers from a buffer overflow vulnerability.

XMPlay 3.8.3 Denial Of Service

Posted by deepcore under exploit (No Respond)

XMPlay version 3.8.3 suffers from a denial of service vulnerability.

Microsoft Edge Chakra OP_Memset Type Confusion

Posted by deepcore under exploit (No Respond)

Microsoft Edge suffers from a Chakra OP_Memset type confusion vulnerability.

Synaccess netBooter NP-02x / NP-08x 6.8 Authentication Bypass

Posted by deepcore under exploit (No Respond)

Synaccess netBooter NP-02x and NP-08x version 6.8 suffer from an authentication bypass vulnerability due to a missing control check when calling the webNewAcct.cgi script while creating users. This allows an unauthenticated attacker to create an admin user account and bypass authentication giving her the power to turn off a power supply to a resource.

Synaccess netBooter NP-0801DU 7.4 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Synaccess netBooter NP-0801DU version 7.4 suffers from a cross site request forgery vulnerability.

Ricoh myPrint Hardcoded Credentials / Information Disclosure

Posted by deepcore under exploit (No Respond)

Ricoh myPrint suffers from hardcoded application credential and information disclosure vulnerabilities. The myPrint windows client version 2.9.2.4 and myPrint android client version 2.2.7 are both affected.

http://www.nonsamran.go.th/nonsamran/file_editor/Hx.html

Posted by deepcore under defacement (No Respond)

http://www.nonsamran.go.th/nonsamran/file_editor/Hx.html notified by ./H9xHacker

Tags:

http://www.donsailocal.go.th/donsailocal/file_editor/Hx.html

Posted by deepcore under defacement (No Respond)

http://www.donsailocal.go.th/donsailocal/file_editor/Hx.html notified by ./H9xHacker

Tags:

[local] Microsoft Windows – DfMarshal Unsafe Unmarshaling Privilege Escalation

Posted by deepcore under Security (No Respond)

Microsoft Windows – DfMarshal Unsafe Unmarshaling Privilege Escalation

Tags: ,