Subscribe via feed.
Archive for November, 2019

[webapps] Fastweb Fastgate 0.00.81 – Remote Code Execution

Posted by deepcore under Security (No Respond)

Fastweb Fastgate 0.00.81 – Remote Code Execution

Tags: ,

[webapps] gSOAP 2.8 – Directory Traversal

Posted by deepcore under Security (No Respond)

gSOAP 2.8 – Directory Traversal

Tags: ,

[webapps] Technicolor TC7300.B0 – 'hostname' Persistent Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Technicolor TC7300.B0 – ‘hostname’ Persistent Cross-Site Scripting

Tags: ,

[webapps] Technicolor TD5130.2 – Remote Command Execution

Posted by deepcore under Security (No Respond)

Technicolor TD5130.2 – Remote Command Execution

Tags: ,

[webapps] FUDForum 3.0.9 – Remote Code Execution

Posted by deepcore under Security (No Respond)

FUDForum 3.0.9 – Remote Code Execution

Tags: ,

GCafe 3.0 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

GCafe version 3.0 suffers from a gbClienService unquoted service path vulnerability.

Alps HID Monitor Service 8.1.0.10 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Alps HID Monitor Service version 8.1.0.10 suffers from an ApHidMonitorService unquoted service path vulnerability.

PunBB 1.4.4 Database Disclosure

Posted by deepcore under exploit (No Respond)

PunBB with SQLite appears to store its database within the webroot, allowing it to be retrieved by attackers.

XML Notepad 2.8.0.4 XML External Entity Injection

Posted by deepcore under exploit (No Respond)

XML Notepad version 2.8.0.4 suffers from an XML external entity injection vulnerability.

iOS IOUSBDeviceFamily 12.4.1 Heap Corruption Proof Of Concept

Posted by deepcore under exploit (No Respond)

iOS IOUSBDeviceFamily version 12.4.1 IOInterruptEventSource heap corruption proof of concept exploit.