Subscribe via feed.
Archive for December, 2019

AVE DOMINAplus 1.10.x Cross Site Request Forgery / Cross Site Scripting

Posted by deepcore under exploit (No Respond)

AVE DOMINAplus versions 1.10.x and below suffer from cross site request forgery and cross site scripting vulnerabilities.

AVE DOMINAplus 1.10.x Unauthenticated Remote Reboot

Posted by deepcore under exploit (No Respond)

AVE DOMINAplus versions 1.10.x and below suffer from an unauthenticated remote reboot vulnerability.

AVE DOMINAplus 1.10.x Authentication Bypass

Posted by deepcore under exploit (No Respond)

AVE DOMINAplus versions 1.10.x and below suffer from an authentication bypass vulnerability.

AVE DOMINAplus 1.10.x Credential Disclosure

Posted by deepcore under exploit (No Respond)

AVE DOMINAplus versions 1.10.x and below suffer from a credential disclosure vulnerability.

OpenBSD Dynamic Loader chpass Privilege Escalation

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a vulnerability in the OpenBSD ld.so dynamic loader (CVE-2019-19726). The _dl_getenv() function fails to reset the LD_LIBRARY_PATH environment variable when set with approximately ARG_MAX colons. This can be abused to load libutil.so from an untrusted path, using LD_LIBRARY_PATH in combination with the chpass set-uid executable, resulting in privileged code execution. This […]

http://www.reo15.moe.go.th/web/

Posted by deepcore under defacement (No Respond)

http://www.reo15.moe.go.th/web/ notified by Family Attack Cyber

Tags:

Prime95 29.8 Build 6 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Prime95 version 29.8 build 6 SEH buffer overflow exploit.

Microsoft Windows 10 BasicRender.sys Denial Of Service

Posted by deepcore under exploit (No Respond)

Microsoft Windows 10 BasicRender.sys denial of service proof of concept exploit.

phpMyChat-Plus 1.98 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

phpMyChat-Plus version 1.98 suffers from a cross site scripting vulnerability.

FreeSWITCH 1.10.1 Command Execution

Posted by deepcore under exploit (No Respond)

FreeSWITCH version 1.10.1 suffers from a command execution vulnerability.