Subscribe via feed.
Archive for January, 2020

IBM RICOH 6400 Printer HTML Injection

Posted by deepcore under exploit (No Respond)

The IBM RICOH 6400 printer suffers from an html injection vulnerability.

Citrix ADC (NetScaler) Directory Traversal / Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a directory traversal in Citrix Application Deliver y Controller (ADC), aka NetScaler, and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0, to execute an arbitrary command payload.

Barco WePresent file_transfer.cgi Command Injection

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an unauthenticated remote command injection vulnerability found in Barco WePresent and related OEM’ed products. The vulnerability is triggered via an HTTP POST request to the file_transfer.cgi endpoint.

[webapps] Huawei HG255 – Directory Traversal ( Metasploit )

Posted by deepcore under Security (No Respond)

Huawei HG255 – Directory Traversal ( Metasploit )

Tags: ,

[webapps] Online Book Store 1.0 – 'bookisbn' SQL Injection

Posted by deepcore under Security (No Respond)

Online Book Store 1.0 – ‘bookisbn’ SQL Injection

Tags: ,

[dos] WeChat – Memory Corruption in CAudioJBM::InputAudioFrameToJBM

Posted by deepcore under Security (No Respond)

WeChat – Memory Corruption in CAudioJBM::InputAudioFrameToJBM

Tags: ,

[dos] Redir 3.3 – Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

Redir 3.3 – Denial of Service (PoC)

Tags: ,

[webapps] IBM RICOH InfoPrint 6500 Printer – HTML Injection

Posted by deepcore under Security (No Respond)

IBM RICOH InfoPrint 6500 Printer – HTML Injection

Tags: ,

[webapps] IBM RICOH 6400 Printer – HTML Injection

Posted by deepcore under Security (No Respond)

IBM RICOH 6400 Printer – HTML Injection

Tags: ,

[local] VPN unlimited 6.1 – Unquoted Service Path

Posted by deepcore under Security (No Respond)

VPN unlimited 6.1 – Unquoted Service Path

Tags: ,