Subscribe via feed.
Archive for April, 2019

Zikula Core CMS 2.0.13 Database Disclosure

Posted by deepcore under exploit (No Respond)

Zikula Core CMS version 2.0.13 suffers from a database disclosure vulnerability.

LabF nfsAxe 3.7 Ping Client Buffer Overflow

Posted by deepcore under exploit (No Respond)

LabF nfsAxe version 3.7 ping client buffer overflow exploit.

[remote] ManageEngine Applications Manager 14.0 – Authentication Bypass / Remote Command Execution (Metasploit)

Posted by deepcore under Security (No Respond)

ManageEngine Applications Manager 14.0 – Authentication Bypass / Remote Command Execution (Metasploit)

Tags: ,

[webapps] 74CMS 5.0.1 – Cross-Site Request Forgery (Add New Admin User)

Posted by deepcore under Security (No Respond)

74CMS 5.0.1 – Cross-Site Request Forgery (Add New Admin User)

Tags: ,

[local] LabF nfsAxe 3.7 Ping Client – 'Host IP' Buffer Overflow (Direct Ret)

Posted by deepcore under Security (No Respond)

LabF nfsAxe 3.7 Ping Client – ‘Host IP’ Buffer Overflow (Direct Ret)

Tags: ,

[shellcode] Linux/ARM – Password-Protected Reverse TCP Shellcode (100 bytes)

Posted by deepcore under Security (No Respond)

Linux/ARM – Password-Protected Reverse TCP Shellcode (100 bytes)

Tags: ,

[webapps] WordPress Plugin Contact Form Builder 1.0.67 – Cross-Site Request Forgery / Local File Inclusion

Posted by deepcore under Security (No Respond)

WordPress Plugin Contact Form Builder 1.0.67 – Cross-Site Request Forgery / Local File Inclusion

Tags: ,

[dos] Google Chrome 73.0.3683.103 V8 JavaScript Engine – Out-of-Memory in Invalid Table Size Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

Google Chrome 73.0.3683.103 V8 JavaScript Engine – Out-of-Memory in Invalid Table Size Denial of Service (PoC)

Tags: ,

[dos] Ease Audio Converter 5.30 – '.mp4' Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

Ease Audio Converter 5.30 – ‘.mp4’ Denial of Service (PoC)

Tags: ,

[webapps] Msvod 10 – Cross-Site Request Forgery (Change User Information)

Posted by deepcore under Security (No Respond)

Msvod 10 – Cross-Site Request Forgery (Change User Information)

Tags: ,