Fastweb Fastgate 0.00.81 – Remote Code Execution
>> ARCHIVE: 2019-11
Fastweb Fastgate 0.00.81 – Remote Code Execution
gSOAP 2.8 – Directory Traversal
Technicolor TC7300.B0 – ‘hostname’ Persistent Cross-Site Scripting
Technicolor TD5130.2 – Remote Command Execution
FUDForum 3.0.9 – Remote Code Execution
GCafe version 3.0 suffers from a gbClienService unquoted service path vulnerability.
Alps HID Monitor Service version 8.1.0.10 suffers from an ApHidMonitorService unquoted service path vulnerability.
PunBB with SQLite appears to store its database within the webroot, allowing it to be retrieved by attackers.
XML Notepad version 2.8.0.4 suffers from an XML external entity injection vulnerability.
iOS IOUSBDeviceFamily version 12.4.1 IOInterruptEventSource heap corruption proof of concept exploit.