Subscribe via feed.
Archive for June, 2019

Cisco Prime Infrastructure Health Monitor TarArchive Directory Traversal

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a vulnerability found in Cisco Prime Infrastructure. The issue is that the TarArchive Java class the HA Health Monitor component uses does not check for any directory traversals while unpacking a Tar file, which can be abused by a remote user to leverage the UploadServlet class to upload a JSP payload […]

[local] Cisco Prime Infrastructure – Runrshell Privilege Escalation (Metasploit)

Posted by deepcore under Security (No Respond)

Cisco Prime Infrastructure – Runrshell Privilege Escalation (Metasploit)

Tags: ,

[remote] Cisco Prime Infrastructure Health Monitor – TarArchive Directory Traversal (Metasploit)

Posted by deepcore under Security (No Respond)

Cisco Prime Infrastructure Health Monitor – TarArchive Directory Traversal (Metasploit)

Tags: ,

[dos] Linux – Use-After-Free via race Between modify_ldt() and #BR Exception

Posted by deepcore under Security (No Respond)

Linux – Use-After-Free via race Between modify_ldt() and #BR Exception

Tags: ,

[webapps] BlogEngine.NET 3.3.6/3.3.7 – XML External Entity Injection

Posted by deepcore under Security (No Respond)

BlogEngine.NET 3.3.6/3.3.7 – XML External Entity Injection

Tags: ,

[webapps] WebERP 4.15 – SQL injection

Posted by deepcore under Security (No Respond)

WebERP 4.15 – SQL injection

Tags: ,

[local] Tuneclone 2.20 – Local SEH Buffer Overflow

Posted by deepcore under Security (No Respond)

Tuneclone 2.20 – Local SEH Buffer Overflow

Tags: ,

Serv-U FTP Server 15.1.6 Privilege Escalation

Posted by deepcore under exploit (No Respond)

Serv-U FTP Server version 15.1.6 suffers from a local privilege escalation vulnerability.

Sahi Pro 7.x / 8.x Directory Traversal

Posted by deepcore under exploit (No Respond)

Sahi Pro versions 7.x and 8.x suffer from a directory traversal vulnerability.

Sahi Pro 8.x SQL Injection

Posted by deepcore under exploit (No Respond)

Sahi Pro version 8.x suffers from a remote SQL injection vulnerability.