Subscribe via feed.
Archive for March, 2019

[webapps] Raisecom XPON ISCOMHT803G-U_2.0.0_140521_R4.1.47.002 – Remote Code Execution

Posted by deepcore under Security (No Respond)

Raisecom XPON ISCOMHT803G-U_2.0.0_140521_R4.1.47.002 – Remote Code Execution

Tags: ,

[shellcode] Linux/x86 – iptables -F Shellcode (43 bytes)

Posted by deepcore under Security (No Respond)

Linux/x86 – iptables -F Shellcode (43 bytes)

Tags: ,

[webapps] Splunk Enterprise 7.2.4 – Custom App Remote Command Execution (Persistent Backdoor / Custom Binary)

Posted by deepcore under Security (No Respond)

Splunk Enterprise 7.2.4 – Custom App Remote Command Execution (Persistent Backdoor / Custom Binary)

Tags: ,

[webapps] zzzphp CMS 1.6.1 – Cross-Site Request Forgery

Posted by deepcore under Security (No Respond)

zzzphp CMS 1.6.1 – Cross-Site Request Forgery

Tags: ,

CMSsite 1.0 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

CMSsite version 1.0 suffers from multiple cross site request forgery vulnerabilities.

OOP CMS BLOG 1.0 Cross Site Request Forgery / SQL Injection

Posted by deepcore under exploit (No Respond)

OOP CMS BLOG version 1.0 suffers from cross site request forgery and remote SQL injection vulnerabilities.

FileZilla 3.40.0 Denial Of Service

Posted by deepcore under exploit (No Respond)

FileZilla version 3.40.0 suffers from multiple denial of service vulnerabilities.

XNU Copy-On-Write Behavior Bypass

Posted by deepcore under exploit (No Respond)

XNU suffers from a copy-on-write behavior bypass via mount of user-owned filesystem image.

TransMac 12.3 Denial Of Service

Posted by deepcore under exploit (No Respond)

TransMac version 12.3 suffers from a denial of service vulnerability.

Usermin 1.750 Remote Command Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an arbitrary command execution vulnerability in Usermin 1.750 and lower versions. This vulnerability has the same characteristics as the Webmin 1.900 RCE.