This Metasploit module generates an ODT file with a mouse over event that when triggered, will execute arbitrary code.
>> ARCHIVE: 2019-04
Atlassian Confluence Widget Connector Macro – Velocity Template Injection (Metasploit)
SystemTap 1.3 – MODPROBE_OPTIONS Privilege Escalation (Metasploit)
Oracle Business Intelligence / XML Publisher 11.1.1.9.0 / 12.2.1.3.0 / 12.2.1.4.0 – XML External Entity Injection
Oracle Business Intelligence 11.1.1.9.0 / 12.2.1.3.0 / 12.2.1.4.0 – Directory Traversal
UltraVNC Viewer version 1.2.2.4 suffers from a denial of service vulnerability.
UltraVNC Launcher version 1.2.2.4 suffers from a denial of service vulnerability.
Seo Panel Newsletter plugin version 1.2.0 suffers from a cross site scripting vulnerability.
RemoteMouse version 3.008 suffers from an arbitrary remote command execution vulnerability.