Subscribe via feed.
Archive for March, 2019

1C-Bitrix Site Management Russia 2.0 Open Redirection

Posted by deepcore under exploit (No Respond)

1C-Bitrix Site Management Russia version 2.0 suffers from an open redirection vulnerability.

WordPress WP-DreamworkGallery 2.3 CSRF / Shell Upload

Posted by deepcore under exploit (No Respond)

WordPress WP-DreamworkGallery plugin version 2.3 suffers from cross site request forgery and remote shell upload vulnerabilities.

zzzphp CMS 1.6.1 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

zzzphp CMS version 1.6.1 suffers from a cross site request forgery vulnerability.

Microsoft Edge Chakra 1.11.4 Type Confusion

Posted by deepcore under exploit (No Respond)

Microsoft Edge Chakra version 1.11.4 read permission via type confusion proof of concept exploit.

Mailtraq WebMail 2.17.7.3550 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Mailtraq WebMail version 2.17.7.3550 suffers from a persistent cross site scripting vulnerability.

Ability Mail Server 4.2.6 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Ability Mail Server version 4.2.6 suffers from a persistent cross site scripting vulnerability.

Bold CMS 3.6.4 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Bold CMS version 3.6.4 suffers from a cross site scripting vulnerability.

Craft CMS 3.1.12 Pro Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Craft CMS version 3.1.12 Pro suffers from a cross site scripting vulnerability.

SAP J2EE Engine/7.01/Portal/EPP Protocol Cross Site Scripting

Posted by deepcore under exploit (No Respond)

SAP J2EE Engine/7.01/Portal/EPP suffers from a cross site scripting vulnerability in /ctcprotocol/Protocol.

SAP J2EE Engine/7.01/Fiori test2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

SAP J2EE Engine/7.01/Fiori suffers from a cross site scripting vulnerability in /TestJDBC_Web/test2.