Subscribe via feed.
Archive for August, 2019

Canon PRINT 2.5.5 URI Injection

Posted by deepcore under exploit (No Respond)

Canon PRINT version 2.5.5 suffers from a content provider URI injection vulnerability.

Sentrifugo 3.2 File Upload Restriction Bypass

Posted by deepcore under exploit (No Respond)

Sentrifugo version 3.2 suffers from a file upload restriction bypass vulnerability.

Sentrifugo 3.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Sentrifugo version 3.2 suffers from a persistent cross site scripting vulnerability.

DomainMod 4.13 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

DomainMod versions 4.13 and below suffer from a cross site scripting vulnerability.

Zyxel NWA/NAP/WAC Hardcoded Credentials

Posted by deepcore under exploit (No Respond)

An FTP service runs on the Zyxel wireless access point that contains the configuration file for the WiFi network. This FTP server can be accessed with hard-coded credentials that are embedded in the firmware of the AP. When the WiFi network is bound to another VLAN, an attacker can cross the network by fetching the […]

Zyxel USG/UAG/ATP/VPN/NXC External DNS Requests

Posted by deepcore under exploit (No Respond)

Zyxel USG/UAG/ATP/VPN/NXC series suffer from an issue where a DNS request can be made by an unauthenticated attacker to either spam a DNS service of a third party with requests that have a spoofed origin or probe whether domain names are present on the internal network behind the firewall.

http://www.thamchalong.go.th/index.php

Posted by deepcore under defacement (No Respond)

http://www.thamchalong.go.th/index.php notified by SaMi1

Tags:

http://www.moungjedton.go.th/news_files_att/[a1435651102].

Posted by deepcore under defacement (No Respond)

http://www.moungjedton.go.th/news_files_att/[a1435651102]. notified by SaMi1

Tags:

Google Finds Malicious Sites Pushing iOS Exploits For Years

Posted by deepcore under exploit (No Respond)

Outlook Password Recovery 2.10 Denial Of Service

Posted by deepcore under exploit (No Respond)

Outlook Password Recovery version 2.10 suffers from a denial of service vulnerability.