Subscribe via feed.
Archive for December, 2018

D-Link DSL-2770L Credential Disclosure

Posted by deepcore under exploit (No Respond)

D-Link DSL-2770L suffers from an administrative credential disclosure vulnerability.

D-Link DSL-2770L / DIR-140L / DIR-640L Credential Disclosure

Posted by deepcore under exploit (No Respond)

D-Link DSL-2770L, DIR-140L, DIR-640L, DWR-116, DWR-512, DWR-555, and DWR-921 all suffer from an administrative credential disclosure vulnerability.

D-Link DIR-140L / DIR-640L Credential Disclosure

Posted by deepcore under exploit (No Respond)

D-Link DIR-140L and DIR-640L suffer from an administrative credential disclosure vulnerability.

Microsoft Edge 42.17134.1.0 Denial Of Service

Posted by deepcore under exploit (No Respond)

Microsoft Edge version 42.17134.1.0 Tree::ANode::DocumentLayout denial of service proof of concept exploit.

Juniper Secure Access SSL VPN Privilege Escalation

Posted by deepcore under exploit (No Respond)

Certain Secure Access SA Series SSL VPN products (originally developed by Juniper Networks but now sold and supported by Pulse Secure, LLC) allow privilege escalation, as demonstrated by Secure Access SSL VPN SA-4000 5.1R5 (build 9627) 4.2 Release (build 7631). This occurs because appropriate controls are not performed.

ZeusCart 4.0 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

ZeusCart version 4.0 suffers from a cross site request forgery vulnerability.

WordPress Firma Rehberi 4.9.9 Shell Upload / SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Firma Rehberi theme version 4.9.9 suffers from remote shell upload and remote SQL injection vulnerabilities.

WordPress Cvp-Adegrontec 4.8.3 Shell Upload

Posted by deepcore under exploit (No Respond)

WordPress Cvp-Adegrontec theme version 4.8.3 suffers from a remote shell upload vulnerability.

WordPress Share-Buttons 4.9.9 Shell Upload

Posted by deepcore under exploit (No Respond)

WordPress Share-Buttons plugin version 4.9.9 suffers from a remote shell upload vulnerability.

WordPress Saphali-Customer-Reviews 5.0.2 Shell Upload

Posted by deepcore under exploit (No Respond)

WordPress Saphali-Customer-Reviews plugin version 5.0.2 suffers from a remote shell upload vulnerability.