Subscribe via feed.
Archive for December, 2018

Alumni Tracer SMS Notification Cross Site Request Forgery / SQL Injection

Posted by deepcore under exploit (No Respond)

Alumni Tracer SMS version Notification suffers from cross site request forgery and remote SQL injection vulnerabilities.

Tourism Website Blog Code Execution / SQL Injection

Posted by deepcore under exploit (No Respond)

Tourism Website version Blog suffers from code execution and remote SQL injection vulnerabilities.

PrestaShop 1.6.x / 1.7.x Remote Code Execution

Posted by deepcore under exploit (No Respond)

PrestaShop versions 1.6.x and 1.7.x suffer from a remote code execution vulnerability.

TP-Link Archer C1200 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

TP-Link Archer C1200 suffers from a cross site scripting vulnerability.

Adobe ColdFusion 2018 Shell Upload

Posted by deepcore under exploit (No Respond)

Adobe ColdFusion 2018 suffers from a remote shell upload vulnerability.

Huawei B315s-22 Information Disclosure

Posted by deepcore under exploit (No Respond)

Huawei B315s-22 suffers from an information disclosure vulnerability.

ThinkPHP 5.x Remote Code Execution

Posted by deepcore under exploit (No Respond)

ThinkPHP versions prior to 5.0.23 and prior to 5.1.31 suffer from a remote code execution vulnerability.

WordPress AutoSuggest 0.24 SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress AutoSuggest plugin version 0.24 suffers from a remote SQL injection vulnerability.

Apache OFBiz 16.11.05 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Apache OFBiz version 16.11.05 suffers from a cross site scripting vulnerability.

HotelDruid 2.3 SQL Injection

Posted by deepcore under exploit (No Respond)

HotelDruid version 2.3 suffers from a remote SQL injection vulnerability.