Subscribe via feed.
Archive for August, 2019

Django CRM 0.2.1 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Django CRM version 0.2.1 suffers from multiple cross site request forgery vulnerabilities.

Webmin 1.890 expired Remote Root

Posted by deepcore under exploit (No Respond)

Webmin version 1.890 (based on 1.920 research) expired remote root exploit.

[webapps] Tableau – XML External Entity

Posted by deepcore under Security (No Respond)

Tableau – XML External Entity

Tags: ,

[local] Exim 4.87 / 4.91 – Local Privilege Escalation (Metasploit)

Posted by deepcore under Security (No Respond)

Exim 4.87 / 4.91 – Local Privilege Escalation (Metasploit)

Tags: ,

[webapps] WordPress Plugin UserPro 4.9.32 – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

WordPress Plugin UserPro 4.9.32 – Cross-Site Scripting

Tags: ,

[webapps] WordPress Plugin Import Export WordPress Users 1.3.1 – CSV Injection

Posted by deepcore under Security (No Respond)

WordPress Plugin Import Export WordPress Users 1.3.1 – CSV Injection

Tags: ,

[webapps] openITCOCKPIT 3.6.1-2 – Cross-Site Request Forgery

Posted by deepcore under Security (No Respond)

openITCOCKPIT 3.6.1-2 – Cross-Site Request Forgery

Tags: ,

[webapps] LSoft ListServ < 16.5-2018a – Cross-Site Scripting

Posted by deepcore under Security (No Respond)

LSoft ListServ < 16.5-2018a – Cross-Site Scripting

Tags: ,

http://www.panghinfon.go.th/m-1.html

Posted by deepcore under defacement (No Respond)

http://www.panghinfon.go.th/m-1.html notified by moncet

Tags:

Nimble Streamer 3.x Directory Traversal

Posted by deepcore under exploit (No Respond)

Nimble Stream versions 3.0.2-2 up to 3.5.4.9 suffer from a directory traversal vulnerability.