Subscribe via feed.
Archive for April, 2019

Backup Key Recovery 2.2.4 Denial Of Service

Posted by deepcore under exploit (No Respond)

Backup Key Recovery version 2.2.4 denial of service proof of concept exploit.

JioFi 4G M2S 1.0.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

JioFi 4G M2S version 1.0.2 suffers from cross site scripting and html injection vulnerabilities.

JioFi 4G M2S 1.0.2 Denial Of Service

Posted by deepcore under exploit (No Respond)

JioFi 4G M2S version 1.0.2 suffers from a denial of service vulnerability.

[dos] systemd – DynamicUser can Create setuid Binaries when Assisted by Another Process

Posted by deepcore under Security (No Respond)

systemd – DynamicUser can Create setuid Binaries when Assisted by Another Process

Tags: ,

[webapps] Apache Pluto 3.0.0 / 3.0.1 – Persistent Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Apache Pluto 3.0.0 / 3.0.1 – Persistent Cross-Site Scripting

Tags: ,

[dos] NSauditor 3.1.2.0 – 'Name' Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

NSauditor 3.1.2.0 – ‘Name’ Denial of Service (PoC)

Tags: ,

[dos] NSauditor 3.1.2.0 – 'Community' Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

NSauditor 3.1.2.0 – ‘Community’ Denial of Service (PoC)

Tags: ,

ManageEngine Applications Manager 14.0 SQL Injection / Command Injection

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits SQL injection and command injection vulnerability in the ManageEngine AM versions 14 and below.

Linux Overflow Via FUSE

Posted by deepcore under exploit (No Respond)

Linux suffers from a page->_refcount overflow via FUSE with ~140GiB RAM usage.

74CMS 5.0.1 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

74CMS version 5.0.1 suffers from a cross site request forgery vulnerability.