Subscribe via feed.
Archive for July, 2019

Microsoft Windows 7 Build 7601 (x86) Local Privilege Escalation

Posted by deepcore under exploit (No Respond)

Microsoft Windows 7 Build 7601 (x86) local privilege escalation exploit.

Moodle Filepicker 3.5.2 Server-Side Request Forgery

Posted by deepcore under exploit (No Respond)

Moodle Filepicker version 3.5.2 suffers from a server-side request forgery vulnerability.

pdfresurrect 0.15 Buffer Overflow

Posted by deepcore under exploit (No Respond)

pdfresurrect version 0.15 suffers from a buffer overflow vulnerability.

Ahsay Backup 7.x / 8.x File Upload / Remote Code Execution

Posted by deepcore under exploit (No Respond)

Ahsay Backup versions 7.x through 8.1.1.50 suffer from authenticated arbitrary file upload and remote code execution vulnerabilities.

Ahsay Backup 7.x / 8.x File Upload / Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an authenticated insecure file upload and code execution flaw in Ahsay Backup versions 7.x through 8.1.1.50. To successfully execute the upload credentials are needed, default on Ahsay Backup trial accounts are enabled so an account can be created. It can be exploited in Windows and Linux environments to get remote code […]

Ahsay Backup 7.x / 8.x XML Injection

Posted by deepcore under exploit (No Respond)

Ahsay Backup versions 7.x through 8.1.1.50 suffer from an XML external entity injection vulnerability.

Zurmo 3.2.6 Out Of Band Code Evaluation

Posted by deepcore under exploit (No Respond)

Zurmo version 3.2.6 suffers from an out-of-band code evaluation vulnerability.

Zurmo 3.2.6 Open Redirection

Posted by deepcore under exploit (No Respond)

Zurmo version 3.2.6 suffers from an open redirection vulnerability.

Zurmo 3.2.6 Persistent Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Zurmo version 3.2.6 suffers from a persistent cross site scripting vulnerability.

Zurmo 3.2.6 Iframe Injection

Posted by deepcore under exploit (No Respond)

Zurmo version 3.2.6 suffers from an iframe injection vulnerability.