Subscribe via feed.
Archive for March, 2019

[webapps] Moodle 3.4.1 – Remote Code Execution

Posted by deepcore under Security (No Respond)

Moodle 3.4.1 – Remote Code Execution

Tags: ,

[webapps] Vembu Storegrid Web Interface 4.4.0 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

Vembu Storegrid Web Interface 4.4.0 – Multiple Vulnerabilities

Tags: ,

[webapps] ICE HRM 23.0 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

ICE HRM 23.0 – Multiple Vulnerabilities

Tags: ,

[remote] Mail Carrier 2.5.1 – 'MAIL FROM' Buffer Overflow

Posted by deepcore under Security (No Respond)

Mail Carrier 2.5.1 – ‘MAIL FROM’ Buffer Overflow

Tags: ,

[webapps] NetData 1.13.0 – HTML Injection

Posted by deepcore under Security (No Respond)

NetData 1.13.0 – HTML Injection

Tags: ,

[webapps] CMS Made Simple Showtime2 Module 3.6.2 – Authenticated Arbitrary File Upload

Posted by deepcore under Security (No Respond)

CMS Made Simple Showtime2 Module 3.6.2 – Authenticated Arbitrary File Upload

Tags: ,

[webapps] Laundry CMS – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

Laundry CMS – Multiple Vulnerabilities

Tags: ,

Microsoft Windows MSHTML Engine Edit Remote Code Execution

Posted by deepcore under exploit (No Respond)

The Microsoft Windows MSHTML Engine is prone to a vulnerability that allows attackers to execute arbitrary code on vulnerable systems because of improper validation of specially crafted web documents (html, xhtml, etc).

WordPress GraceMedia Media Player 1.0 Local File Inclusion

Posted by deepcore under exploit (No Respond)

WordPress GraceMedia Media Player plugin version 1.0 suffers from a local file inclusion vulnerability.

pfSense 2.4.4-p1 (HAProxy Package 0.59_14) Cross Site Scripting

Posted by deepcore under exploit (No Respond)

pfSense version 2.4.4-p1 with HAProxy Package version 0.59_14 suffers from a cross site scripting vulnerability.